Skip to main content

Help us improve the Digital Marketplace - send your feedback

After Cloud

Heritage by After Cloud

Heritage by After Cloud brings heritage preservation into the digital age, for organisations managing historic assets. Accessible on any device, transforming asset records into interactive historical narratives that inform better stewardship and conservation, which communities can treasure for generations
Transformational impact for your service
and those you support.

Features

  • Role based multi user access with permissions
  • Flexible SDKs enable secure integration with existing system workflows
  • Real time analytics provide insights, reporting, usage trends and performance
  • Interactive tools support multimedia storytelling, inclusion and guided engagement
  • Cloud native architecture scales securely across organisations and services
  • Engagement features encourage participation through prompts and notifications
  • Digital history creation combines text, audio, images and video
  • Controlled sharing enables safe access for users
  • Security by design with encryption, access controls, compliance and monitoring
  • Long term storage and archiving with retention, retrieval and governance

Benefits

  • Create and manage Heritage assets collaboratively in one secure platform
  • Publish content from multiple devices without complex or specialist training
  • Reduce administration through automated workflows, permissions and reporting
  • Access information remotely to support flexible working and faster decisions
  • Maintain consistent records with centralised storage and version control
  • Improve collaboration between professionals, and partner organisations
  • Strengthen governance using clear permissions, audit trails and compliance controls
  • Scale service delivery without infrastructure changes or operational disruption
  • Gain insights to improve planning and operational efficiency
  • Support continuity with accessible, up to date records

Pricing

  • Education pricing available

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at darren@dylogic.co.uk. Tell them what format you need. It will help if you say what assistive technology you use.

Framework

G-Cloud 15

Service ID

8 7 1 1 5 9 9 9 9 9 8 2 1 1 3

Contact

After Cloud Darren Evans
Telephone: 07547699966
Email: darren@dylogic.co.uk

About your service

Service categories

Application Development and Deployment

Data management

Database management systems

  • Relational Database Management Systems
  • Fixed Record Database Management Systems
  • Multivalue Database Management Systems
  • Document-Oriented Database Systems
Multi cloud support
Yes

Service scope

Software add-on or extension
No
Cloud deployment model
  • Public cloud
  • Private cloud
Service constraints
No Constraints to the provision of Heritage as a SaaS provision in line with our SLA.
System requirements
  • Access to the Internet via desktop
  • Access to the Internet via mobile

User support

Email or online ticketing support
Yes
Support response times
After Cloud will use reasonable endeavours to ensure:
Response to support queries within 4 business hours or if out of hours by the following day
User can manage status and priority of support tickets
Yes
Online ticketing support accessibility
WCAG 2.2 AAA
Phone support
No
Web chat support
Yes
Web chat support availability
24 hours, 7 days a week
Web chat support accessibility standard
WCAG 2.2 AAA
Web chat accessibility testing
None to date
Onsite support
No
Support levels
Our support levels are included within the standard Software as a Service subscription to meet public sector operational requirements without additional cost.

After Cloud uses reasonable endeavours to provide a minimum system availability of 99.5 percent, excluding planned maintenance. Maintenance is scheduled in advance and communicated to customers to minimise disruption. The service is hosted on secure, resilient cloud infrastructure with continuous monitoring.

We provide a structured support model during UK business hours, Monday to Friday. All support queries are acknowledged within four business hours. Incidents are prioritised by severity, with critical service impacting issues targeted for resolution within 48 hours where possible. Non critical issues and service requests are handled in line with agreed priority levels and complexity.

Each supported organisation is assigned a dedicated account manager. The account manager acts as the primary point of contact, coordinating onboarding, configuration guidance, service reviews and ongoing support. They also liaise with our technical team to ensure issues are progressed efficiently and resolved within agreed service levels.

Technical support is delivered by experienced cloud support engineers . This model ensures customers benefit from a consistent relationship through an account manager and access to specialist technical expertise.

Enhanced support can be arranged.
Support available to third parties
Yes
AI chatbot
Yes

Onboarding and offboarding

Getting started
We help users start using the Heritage by After Cloud service quickly and confidently through a seamless onboarding and support process.

Each organisation receives assisted setup, including account configuration, user access, permissions and initial content structure. Our team works with nominated administrators to ensure the service is aligned to organisational needs, policies and working practices from the outset.

We provide guided onboarding sessions delivered remotely, introducing users to key features, workflows and best practice for creating and managing digital life stories. These sessions are designed for both administrators and frontline users, ensuring everyone understands how to use the service effectively.

Online training resources are available to support different learning styles and roles. This includes recorded demonstrations, step by step guidance and practical examples that users can follow at their own pace. Comprehensive user documentation is provided, covering everyday tasks, administration, security and data management.

Ongoing support is available during UK business hours, with access to our support team for questions, troubleshooting and advice. This combination of assisted setup, onboarding, training and documentation enables users to adopt the Storyteller service quickly, reduce disruption to existing workflows and begin delivering value immediately.
Service documentation
Yes
Documentation formats
  • PDF
  • Other
Other documentation formats
Word
End-of-contract data extraction
After Cloud supports secure and transparent data extraction in line with UK GDPR requirements.

Users can request access to their data through a Subject Access Request. Upon receipt of a valid request, After Cloud will provide a structured export of all relevant data associated with the requesting organisation or individual. Data is supplied in commonly used, machine readable formats and includes digital life story content, metadata and associated records where applicable. The process is supported by our team to ensure accuracy, completeness and timely delivery within statutory timescales.

Where Storyteller is used within children’s services, the platform is intentionally designed to preserve the child’s digital life story over time. By definition, Storyteller supports long term continuity, ensuring content is retained securely so it remains available to the child until they reach adulthood. This reflects the purpose of life story work and the importance of safeguarding identity, memory and personal history.

Data retention and access are governed by agreed contractual terms and data protection policies. Where lawful and appropriate, access can transition to the young person as they reach adulthood. Data deletion or transfer is carried out only in accordance with legal obligations, safeguarding considerations and the rights of the individual.
End-of-contract process
At the end of the contract, organisations can choose to either renew, transition, or end their use of Heritage by After Cloud. Standard contract closure includes continued access to the platform until the official end date, ongoing support for data export, and secure retention of content in line with requirements, particularly for digital asset stories.

The standard SaaS price includes full access to the Heritage by After Cloud platform, system hosting and maintenance, user administration, security and compliance features, standard support during business hours, onboarding, online training, and user documentation. All updates and feature enhancements released during the contract period are included at no extra cost.

Any additional services, such as bespoke reporting, complex data extraction, or technical consultancy beyond the standard support scope, are treated as optional extras. Following a valid Subject Access Request at contract end, After Cloud conducts a technical analysis of the data held and the reporting requirements of the organisation. A personalised quote is then provided for any work required to prepare, extract or transfer that data securely.

This approach ensures organisations retain control of their information, comply with legal and safeguarding obligations, and can plan for any additional technical work with clear, transparent costs.
Documentation accessibility standard
WCAG 2.2 AA

Using the service

Web browser interface
Yes
Supported browsers
  • Microsoft Edge
  • Firefox
  • Chrome
  • Safari
  • Opera
  • Other
Application to install
No
Designed for use on mobile devices
Yes
Differences between the mobile and desktop service
After Cloud is a responsive web based application that adapts to all devices whilst maintaining core functionality across mobile and desktop platforms.

Mobile:

Camera integration for instant photo and video capture
Microphone access for voice recording
Simplified interface prioritising essential features
Suitable for use in all heritage settings

Desktop:

Full keyboard and mouse support
Larger screen for content review and organisation
Multi file upload capabilities
Suited for administrative tasks
Extended display for viewing multiple items

Both platforms offer seamless synchronisation, ensuring content created is immediately available. Accessibility features, including screen reader support and voice input, function consistently across both platforms.
Service interface
Yes
User support accessibility
WCAG 2.2 AA
Description of service interface
The service interface gives users access to the platform.
Accessibility standards
WCAG 2.2 AA
Accessibility testing
Memory Support Features: Testing simplified navigation, validating that consistent layouts and clear visual cues reduce confusion
Familiar Interactions: Ensuring touch and stylus inputs mirror natural writing and drawing movements together to create content, informing our collaborative features

Assistive Technology Evaluation
Testing included users with:

Motor Impairments: Validation with Apple Pencil, stylus devices, and adaptive switches in hospice settings, confirming single handed operation and large touch targets
Visual Impairments: Screen reader testing (Voice Over, JAWS) and high contrast mode verification
Voice Control: Assessment of dictation and voice command functionality for users unable to type

Key Findings
Testing revealed the importance of fatigue friendly design, immediate visual feedback, and flexible input methods. Users particularly valued the ability to pause and resume sessions, and the option to create content through multiple methods (drawing, speaking, typing, or uploading).

Ongoing Commitment
We continue user testing with each major update, incorporating feedback from healthcare professionals, carers, and end users to ensure After Cloud and our associated products remain accessible and supportive for all abilities.
API
No
Customisation available
Yes
Description of customisation
Users can customise timeline content, organisation, and presentation. Each heritage asset timeline can include personalised descriptions, custom dates and milestones, multimedia content selection (images, videos, audio, documents), and narrative structure. Organisations can brand their timelines and control privacy settings, determining whether timelines are public or private.

Customisation occurs through the intuitive webbased and mobile interface. Users upload chosen multimedia content, write or dictate custom descriptions and historical narratives, arrange content chronologically along the timeline, and add contextual information about assets. The platform supports flexible content organisation, allowing users to emphasise specific historical periods, events, or features. Each timeline generates a unique QR code that can be customised for placement at physical asset locations.

Authorised organisational users including heritage managers, conservation officers, archivists, and designated staff members can create and customise timelines. Access levels can be configured to allow multiple team members to collaborate on timeline development. Organisations control user permissions, determining who can create, edit, publish, or view timelines within their subscription. Administrative users manage overall account settings, branding, and access controls.

Scaling

Independence of resources
We guarantee consistent performance for all users by using dynamic load balancing and resource allocation across multiple servers. Requests are queued and processed efficiently, ensuring one user’s activity does not slow another’s. Our scalable cloud infrastructure automatically adjusts capacity based on demand, and dedicated compute resources handle high-priority tasks. Combined with real-time monitoring, this ensures every user experiences fast, reliable service regardless of overall system load.

Analytics

Service usage metrics
Yes
Metrics types
The platform captures and analyses user engagement patterns, enabling clients to understand how their users interact with the service. This includes session tracking, user journey mapping, and behavioural cohort analysis. We also provide real time monitoring of system performance metrics ensuring optimal service delivery. Clients are provided with access to intuitive reports that present key metrics and insights in an accessible, visual format. Outputs can be customised to display the most relevant information for different stakeholder groups.
Upon request, analytics data can be exported in standard formats (CSV, JSON) to support integration with existing business intelligence tools and reporting workflows.
Reporting types
  • Real-time dashboards
  • Regular reports
  • Reports on request
Resource tagging
Yes
FOCUS resource tagging
No

Resellers

Supplier type
Not a reseller

Staff security

Staff security clearance
Other security clearance
Government security clearance
Baseline Personnel Security Standard (BPSS)

Asset protection

Knowledge of data storage and processing locations
Yes
Data storage and processing locations
United Kingdom
User control over data storage and processing locations
No
Datacentre security standards
Managed by a third party
Penetration testing frequency
At least once a year
Penetration testing approach
NCSC approved service provider
Protecting data at rest
  • Physical access control, complying with CSA CCM v4.0
  • Physical access control, complying with SSAE-18 / ISAE 3402
  • Physical access control, complying with another standard
  • Encryption of all physical media
  • Scale, obfuscating techniques, or data storage sharding
Data sanitisation process
Yes
Equipment disposal approach
Complying with a recognised standard, for example CSA CCM v4.0, CAS (Sanitisation) or ISO/IEC 27001
Data sanitisation type
  • Deleted data can’t be directly accessed / Cryptographic Erasure
  • Data Erasure

Data importing and exporting

Data export approach
Heritage is a closed group service governed at an organisational admin level. Users cannot export their data directly from the system. They will first be required to apply a subject access request to After Cloud, after which the requested data is securely transferred to the originating organisation.
Data export formats
  • CSV
  • Other
Data import formats
  • CSV
  • Other
Other data import formats
  • Images
  • Audio
  • Text
  • Video

Data-in-transit protection

Data protection between buyer and supplier networks
  • Private network or public sector network
  • TLS (version 1.2 or above)
  • IPsec or TLS VPN gateway
  • Legacy SSL and TLS (under version 1.2)
Data protection within supplier network
  • TLS (version 1.2 or above)
  • IPsec or TLS VPN gateway
  • Legacy SSL and TLS (under version 1.2)

Availability and resilience

Guaranteed availability
Heritage by After Cloud is hosted on AWS, leveraging resilient cloud infrastructure to ensure reliability and continuity. We provide a guaranteed system availability of 99.5%, excluding scheduled maintenance, which is communicated in advance to minimise disruption.

If availability falls below this level, users can submit a claim for service credits. Credits are calculated proportionally based on downtime relative to the subscription cost and applied to future invoices. No direct cash refunds are provided.

This SLA, supported by AWS’s enterprise-grade hosting, ensures predictable service performance, operational continuity, and accountability. Users can rely on secure, accessible digital life story services with a clear, fair mechanism to address any service interruptions.

This SLA framework, underpinned by AWS infrastructure, ensures predictable service performance, accountability, and operational continuity. Users benefit from both enterprise-grade hosting and a clear, fair mechanism for addressing service interruptions, supporting confidence in the platform’s reliability for critical digital life story work.
Approach to resilience
Heritage by After Cloud is designed to be a highly resilient platform, ensuring continuous availability and reliability for users. The service is hosted on AWS cloud infrastructure, which provides multiple layers of redundancy, automated failover, and geographically distributed data centres. This ensures that services remain operational even in the event of hardware failures, network issues, or localized disruptions.

Data is stored across multiple availability zones, with automated replication to protect against single points of failure. Backups are performed regularly, and recovery processes are tested to maintain data integrity and minimise potential downtime. System monitoring and alerting are active 24/7, enabling rapid detection and response to operational issues.

The architecture of After Cloud is built for scalability and fault tolerance, with load balancing and redundant components that allow the platform to continue operating during high demand or partial system outages. Routine maintenance is planned and communicated in advance, ensuring minimal impact to users.

Combined, these measures ensure that After Cloud can deliver reliable, secure, and continuous access to digital life story services. Users benefit from a platform that is robust against failures, preserves data integrity, and supports uninterrupted delivery of critical services for children, families, and professionals.
Outage reporting
Heritage by After Cloud reports service outages through multiple channels to ensure users are informed promptly.

While we do not currently operate a public status dashboard, users receive email alerts in the event of planned maintenance, service interruptions, or significant outages. These alerts provide clear information on the nature of the issue, expected resolution times, and any actions required by users.

For organisations with technical integrations, outage notifications can also be delivered via an API (when in place), enabling automated monitoring or internal alerting systems to track service availability in real time. We also plan to include the information on organisational dashboards for transparent visibility at an organisational admin level.

All incidents are recorded and communicated in line with our operational policies. Users are kept informed throughout the lifecycle of an outage, from detection to resolution, ensuring transparency and enabling teams to plan accordingly.

This approach ensures that users have timely visibility of service performance, can respond to interruptions effectively, and maintain continuity in delivering digital life story services. By combining proactive alerts via email with optional API integration, Storyteller supports both operational oversight and automated monitoring for critical workflows.

Identity and authentication

User authentication needed
No
Access restrictions in management interfaces and support channels
Administrative interfaces are restricted to authorised users through authenticated accounts and permission levels aligned to assigned roles. Access to management functions is logged and monitored. Support channels are similarly controlled, with requests accepted only from verified organisational contacts and handled in accordance with least-privilege principles, ensuring only approved After Cloud personnel can access customer environments when required.
Access restriction testing frequency
At least every 6 months
Management access authentication
Username or password

Audit information for users

Access to user activity audit information
Users contact the support team to get audit information
How long user audit data is stored for
At least 12 months
Access to supplier activity audit information
Users contact the support team to get audit information
How long supplier audit data is stored for
At least 12 months
How long system logs are stored for
At least 12 months

Security governance

Named board-level person responsible for service security
Yes
Security governance certified
Yes
Security governance standards
  • CSA CSM version 4.0
  • Other
Other security governance standards
Cyber Essentials (working towards ISO7001).
Information security policies and processes
After Cloud is Cyber Essentials certified and follows a structured set of information security policies and processes to protect user data and platform integrity. They cover access control, data protection, secure development, incident management, and acceptable use, ensuring compliance with relevant regulatory and industry standards.

All policies are formally documented, reviewed regularly, and communicated to staff. Staff are trained on security responsibilities, including recognising and reporting potential threats, managing user credentials, and handling sensitive information appropriately. Compliance is monitored through regular audits, system checks, and internal reporting.

Our reporting structure ensures accountability: Our CPTO oversees technical security, while the Data Protection Officer and senior management monitor policy adherence, incident response, and continuous improvement. Any breaches or suspected incidents are escalated immediately through defined channels, with clear procedures for containment, investigation, and notification where required.

We enforce policy compliance through access controls, multi-factor authentication, encrypted storage, and monitoring of system activity. Regular reviews and audits confirm adherence and identify opportunities for improvement.

By combining CE certification, robust policies, staff training, and a clear reporting structure, After Cloud ensures that information security is embedded in both operational practices and organisational culture, providing users with confidence that their data is managed securely.
Software Security Code of Practice
Yes

Operational security

Configuration and change management standard
Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
Configuration and change management approach
Our configuration and change management processes ensure all service components are identified, documented, and tracked throughout their full lifecycle using controlled inventories and version management. Any proposed change follows a formal change process, including risk and impact assessment, to evaluate potential security implications before approval. Changes are reviewed, tested, and authorised by appropriate personnel, with segregation of duties applied where possible. All changes are logged and auditable, ensuring continued security, integrity, and availability of the service.
Vulnerability management type
Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
Vulnerability management approach
Our vulnerability management process continuously assesses potential threats through regular vulnerability scanning, risk assessments, and security reviews of our services. Identified vulnerabilities are prioritised based on severity and potential impact. Security patches are deployed promptly in line with defined SLAs, with critical patches applied as soon as possible following validation and testing. Information about potential threats is obtained from trusted sources including vendor security advisories, industry alerting services, and recognised security bodies such as NCSC and CVE databases
Protective monitoring type
Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
Protective monitoring approach
Our protective monitoring processes use continuous logging, alerting, and automated monitoring to identify potential compromises such as unusual activity, unauthorised access, or system anomalies. Alerts are reviewed by trained personnel and correlated to assess severity and impact. When a potential compromise is identified, incident response procedures are initiated to contain, investigate, and remediate the issue. Incidents are prioritised by risk, with critical incidents responded to immediately and in line with defined response time objectives.
Incident management type
Complies with a recognised standard, for example, CSA CCM v4.0 or ISO/IEC 27035:2011 or SSAE-18 / ISAE 3402
Incident management approach
We maintain formal incident management processes. Pre-defined response procedures exist for common events such as service degradation, security alerts, and availability issues. Users report incidents through designated support channels, including email and via the designated customer account manager. Incidents are logged, prioritised, investigated, and resolved by our operations team following documented escalation paths. Post-incident reports are provided to affected users as appropriate, summarizing the root cause, impact, remediation actions, and any preventive measures implemented.
Post-quantum cryptography secure
Yes

Secure development

Approach to secure software development best practice
Conforms to a recognised standard, but self-assessed

Public sector networks

Connection to public sector networks
No

Pricing

Discount for educational organisations
Yes
Free trial available
No

Discount percentage by annual call-off contract value (excluding VAT)

Less than £250,000
5%
Between £250,000 and £500,000
5%
Between £500,001 and £1,000,000
5%
Between £1,000,001 and £2,500,000
5%
Between £2,500,001 and £5,000,000
5%
Over £5,000,001
5%

Non-mandatory Standards and certifications

ISO/IEC 27001 certification
No
ISO 28000:2022 certification
No
ISO 9001 certification
No
Quality management systems (QMS)
Yes
CSA STAR certification
No
PCI certification
No
Cyber essentials
Yes
Please provide your Cyber Essentials Certificate Number
14200a12-fcd0-4f97-a378-b2893531be53
Cyber essentials plus
No
Cyber Essentials Alternative
You do not have a current and valid Cyber Essentials Plus certificate, or will not have in place within 12 months of the date of award but have an IASME certified equivalent.
Other security certifications
No

Social value

Section B - Commitment for Future: Delivery
  • Mission: Build an NHS fit for the future: That is there when people need it; with fewer lives lost to the biggest killers; in a fairer Britain, where everyone lives well for longer.

    Policy Outcome 8: Increasing productivity through physical and mental wellbeing: In the supply chain and communities in the relevant area.

    • Understanding barriers to access to health and social care services or employment opportunities e.g. digital inclusion

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at darren@dylogic.co.uk. Tell them what format you need. It will help if you say what assistive technology you use.