Home / Enterprise
Bespoke applications for bigger organisations.
Platforms, portals and integrations, built with the same engineering discipline as every site on this page — just applied to a larger, more complex brief.
What we build.
Software that holds real data, real permissions and real consequences if it's wrong.
Sign-in and permissions
Who can see what, decided in one place and enforced structurally, not re-checked by hand in every route.
Multi-tenant platforms
One system serving several organisations, each one's data isolated from the others by design, not by convention.
Records and documents
Secure storage, an audit trail, and the right data-protection housekeeping built in from day one, not added after a complaint.
Internal tools and dashboards
The software your team actually uses, built to the same standard as the public-facing site.
Integrations
Talking to the systems you already run, rather than asking you to replace them.
Migration off something that's outgrown itself
Moving off a spreadsheet, a legacy system, or a tool that's started working against you, without losing anything in the move.
Why the engineering matters more here.
A brochure site that breaks is embarrassing. A permissions bug in a system holding real records is a data breach. We treat the two with the same discipline, because the second one is where it matters most.
Security first, structurally
Least privilege everywhere, and isolation enforced in one place and guarded by tests, never re-implemented per route.
Specified before it's built
A written spec with numbered acceptance criteria, agreed before any code is generated.
Reviewed by someone who didn't build it
Architecture and security are reviewed before code, and the code itself is reviewed before it ships.
Portable, not locked in
We host on Cloudflare today. For a larger project we'll weigh a larger cloud provider on its merits, and keep business logic out of provider-specific glue where that costs little.
Proof, not just promises.
Our PCC platform gives a multi-parish church benefice secure sign-in, member records and permissioned document management — sign-in, data-protection housekeeping and all, built to the same standard described on How we work. SiteAdmin, described on its own page, is the same discipline applied to a self-healing service that runs in production every day.
What we mean by quality. The right values, the right thing properly specified, sound architecture, and disciplined, tested practice.
How it works.
A conversation
What you need, who it's for, and what already exists that we need to work with or around.
Spec and architecture
A written spec with numbered acceptance criteria, and a security and architecture review before any code is generated.
Built and tested
Every change runs the full test suite — accessibility, security and content — the same gate as everything else we ship.
Launched, watched, maintained
Live, checked every morning against known security flaws, with tested fixes proposed automatically and approved by a person.
What it costs.
We aim to provide the highest possible quality at the lowest possible commercial price. A fixed quote, agreed before we start, after a free first conversation about what you actually need.