Life stories by After Cloud
After Cloud brings life story work into the
digital age, for adults in residential care or pre admission.
Accessible on any device, transforming
care records into personal historical narratives that inform better person centred care, which families can treasure for generations.
Transformational impact for your service
and those you support.
Features
- Role based multi user access with permissions
- Flexible SDKs enable secure integration with existing system workflows
- Real time analytics provide insights, reporting, usage trends and performance
- Interactive tools support multimedia storytelling, inclusion and guided engagement
- Cloud native architecture scales securely across organisations and services
- Engagement features encourage participation through prompts and notifications
- Digital life story creation combines text, audio, images and video
- Controlled sharing enables safe access for families, professionals and partners
- Security by design with encryption, access controls, compliance and monitoring
- Long term storage and archiving with retention, retrieval and governance
Benefits
- Create and manage life stories collaboratively in one secure platform
- Publish content from multiple devices without complex or specialist training
- Reduce administration through automated workflows, permissions and reporting
- Access information remotely to support flexible working and faster decisions
- Maintain consistent records with centralised storage and version control
- Improve collaboration between professionals, families and partner organisations
- Strengthen governance using clear permissions, audit trails and compliance controls
- Scale service delivery without infrastructure changes or operational disruption
- Gain insights to improve outcomes, planning and operational efficiency
- Support continuity of care with accessible, up to date records
Pricing
- Education pricing available
- Free trial available
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
2 7 1 2 7 4 9 7 9 8 6 2 1 4 7
Contact
After Cloud
Darren Evans
Telephone: 07547699966
Email: darren@dylogic.co.uk
About your service
- Service categories
-
Application Development and Deployment
Data management
Database management systems
- Relational Database Management Systems
- Non-Schematic Database Management Systems
- Document-Oriented Database Systems
- Key-Accessible Database Systems
Database administration and development
- Database Administration
- Database Development and Optimization
Data integration and intelligence
- Data Ingestion and Transformation Software
- Data Access Infrastructure Software
- Metadata Management Software
- Data Archiving and Information LifD-Cycle Management
- Multi cloud support
- Yes
Service scope
- Software add-on or extension
- No
- Cloud deployment model
-
- Public cloud
- Private cloud
- Service constraints
- After Cloud is delivered as a fully managed SaaS solution and cannot be deployed on-premises or within buyer-hosted infrastructure. A stable internet connection and a modern supported browser are required. Access is role-based and controlled through customer-managed user permissions. Integrations operate via approved APIs within agreed rate limits. Storage, media uploads and retention policies follow contracted parameters. Planned maintenance occurs outside core UK business hours with advance notice; emergency updates may occur at shorter notice. Service availability, backup and disaster-recovery targets follow our published SLA and depend on underlying cloud provider performance.
- System requirements
-
- Access to the Internet via desktop
- Access to the Internet via mobile
User support
- Email or online ticketing support
- Yes
- Support response times
-
After Cloud will use reasonable endeavours to ensure:
Response to support queries within 4 business hours or if out of hours by the following day - User can manage status and priority of support tickets
- Yes
- Online ticketing support accessibility
- WCAG 2.2 AAA
- Phone support
- No
- Web chat support
- Yes
- Web chat support availability
- 24 hours, 7 days a week
- Web chat support accessibility standard
- WCAG 2.2 AAA
- Web chat accessibility testing
- None to date
- Onsite support
- No
- Support levels
-
Support is included as part of the standard SaaS subscription with no additional cost. The service operates on secure, resilient cloud infrastructure with continuous monitoring. We use reasonable endeavours to maintain 99.5% availability, excluding planned maintenance. Scheduled maintenance is notified in advance to minimise disruption.
We provide structured support during UK business hours (Monday–Friday). All support queries are acknowledged within four business hours. Incidents are prioritised by severity, with critical service-impacting issues targeted for resolution within 48 hours
where possible. Non-critical issues and service requests follow agreed priority levels based on impact and complexity.
Each organisation is assigned a dedicated account manager as their primary point of contact. They coordinate onboarding, configuration guidance, service reviews and ongoing support, and liaise with our technical team to progress issues efficiently.
Technical support is delivered by experienced cloud support engineers, ensuring customers have both a consistent relationship and access to specialist expertise. Enhanced support options can be provided where required. - Support available to third parties
- Yes
- AI chatbot
- Yes
Onboarding and offboarding
- Getting started
-
We help users start using the After Cloud service quickly and confidently through a seamless onboarding and support process.
Each organisation receives assisted setup, including account configuration, user access, permissions and initial content structure. Our team works with nominated administrators to ensure the service is aligned to organisational needs, policies and working practices from the outset.
We provide guided onboarding sessions delivered remotely, introducing users to key features, workflows and best practice for creating and managing digital life stories. These sessions are designed for both administrators and frontline users, ensuring everyone understands how to use the service effectively.
Online training resources are available to support different learning styles and roles. This includes recorded demonstrations, step by step guidance and practical examples that users can follow at their own pace. Comprehensive user documentation is provided, covering everyday tasks, administration, security and data management.
Ongoing support is available during UK business hours, with access to our support team for questions, troubleshooting and advice. This combination of assisted setup, onboarding, training and documentation enables users to adopt the Storyteller service quickly, reduce disruption to existing workflows and begin delivering value immediately. - Service documentation
- Yes
- Documentation formats
-
- Other
- Other documentation formats
- Word
- End-of-contract data extraction
-
After Cloud supports secure and transparent data extraction in line with UK GDPR requirements.
Users can request access to their data through a Subject Access Request. Upon receipt of a valid request, After Cloud will provide a structured export of all relevant data associated with the requesting organisation or individual. Data is supplied in commonly used, machine readable formats and includes digital life story content, metadata and associated records where applicable. The process is supported by our team to ensure accuracy, completeness and timely delivery within statutory timescales.
Where Storyteller is used within children’s services, the platform is intentionally designed to preserve the child’s digital life story over time. By definition, Storyteller supports long term continuity, ensuring content is retained securely so it remains available to the child until they reach adulthood. This reflects the purpose of life story work and the importance of safeguarding identity, memory and personal history.
Data retention and access are governed by agreed contractual terms and data protection policies. Where lawful and appropriate, access can transition to the young person as they reach adulthood. Data deletion or transfer is carried out only in accordance with legal obligations, safeguarding considerations and the rights of the individual. - End-of-contract process
-
At the end of the contract, organisations can choose to either renew, transition, or end their use of the After Cloud service. Standard contract closure includes continued access to the platform until the official end date, ongoing support for data export, and secure retention of content in line with safeguarding requirements, particularly for adult’s digital life stories.
The standard SaaS price includes full access to the After Cloud platform, system hosting and maintenance, user administration, security and compliance features, standard support during business hours, onboarding, online training, and user documentation. All updates and feature enhancements released during the contract period are included at no extra cost.
Any additional services, such as bespoke reporting, complex data extraction, or technical consultancy beyond the standard support scope, are treated as optional extras. Following a valid Subject Access Request at contract end, After Cloud conducts a technical analysis of the data held and the reporting requirements of the organisation. A personalised quote is then provided for any work required to prepare, extract or transfer that data securely.
This approach ensures organisations retain control of their information, comply with legal and safeguarding obligations, and can plan for any additional technical work with clear, transparent costs. - Documentation accessibility standard
- WCAG 2.2 AA
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Microsoft Edge
- Firefox
- Chrome
- Safari
- Opera
- Other
- Application to install
- No
- Designed for use on mobile devices
- Yes
- Differences between the mobile and desktop service
-
After Cloud is a responsive web based application that adapts to all devices whilst maintaining core functionality across mobile and desktop platforms.
Mobile:
Camera integration for instant photo and video capture
Microphone access for voice recording
Simplified interface prioritising essential features
Suitable for bedside use in care settings
Desktop:
Full keyboard and mouse support
Larger screen for content review and organisation
Multi file upload capabilities
Suited for administrative tasks
Extended display for viewing multiple items
Both platforms offer seamless synchronisation, ensuring content created is immediately available. Accessibility features, including screen reader support and voice input, function consistently across both platforms. - Service interface
- Yes
- User support accessibility
- WCAG 2.2 AA
- Description of service interface
- The service interface gives users access to the platform.
- Accessibility standards
- WCAG 2.2 AA
- Accessibility testing
-
Tested with users requiring assistive technology, including individuals with dementia and severe accessibility needs.
Dementia Patient Testing
We conducted sessions with dementia patients in care settings to evaluate:
Memory Support Features: Testing simplified navigation, validating that consistent layouts and clear visual cues reduce confusion
Familiar Interactions: Ensuring touch and stylus inputs mirror natural writing and drawing movements
Carer Collaboration: Observing how patients and carers work together to create content, informing our collaborative features
Assistive Technology Evaluation
Testing included users with:
Motor Impairments: Validation with Apple Pencil, stylus devices, and adaptive switches in hospice settings, confirming single handed operation and large touch targets
Visual Impairments: Screen reader testing (Voice Over, JAWS) and high contrast mode verification
Voice Control: Assessment of dictation and voice command functionality for users unable to type
Key Findings
Testing revealed the importance of fatigue friendly design, immediate visual feedback, and flexible input methods. Users particularly valued the ability to pause and resume sessions, and the option to create content through multiple methods (drawing, speaking, typing, or uploading).
Ongoing Commitment
We continue user testing with each major update, incorporating feedback from healthcare professionals, carers, and end users to ensure After Cloud remains accessible and supportive for all abilities. - API
- No
- Customisation available
- No
Scaling
- Independence of resources
- We guarantee consistent performance for all users by using dynamic load balancing and resource allocation across multiple servers. Requests are queued and processed efficiently, ensuring one user’s activity does not slow another’s. Our scalable cloud infrastructure automatically adjusts capacity based on demand, and dedicated compute resources handle high-priority tasks. Combined with real-time monitoring, this ensures every user experiences fast, reliable service regardless of overall system load.
Analytics
- Service usage metrics
- Yes
- Metrics types
-
The platform captures and analyses user engagement patterns, enabling clients to understand how their users interact with the service. This includes session tracking, user journey mapping, and behavioural cohort analysis. We also provide real time monitoring of system performance metrics ensuring optimal service delivery. Clients are provided with access to intuitive reports that present key metrics and insights in an accessible, visual format. Outputs can be customised to display the most relevant information for different stakeholder groups.
Upon request, analytics data can be exported in standard formats (CSV, JSON) to support integration with existing business intelligence tools and reporting workflows. - Reporting types
-
- Real-time dashboards
- Regular reports
- Reports on request
- Resource tagging
- Yes
- FOCUS resource tagging
- No
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Other security clearance
- Government security clearance
- Baseline Personnel Security Standard (BPSS)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
- United Kingdom
- User control over data storage and processing locations
- No
- Datacentre security standards
- Managed by a third party
- Penetration testing frequency
- At least once a year
- Penetration testing approach
- NCSC approved service provider
- Protecting data at rest
-
- Physical access control, complying with CSA CCM v4.0
- Physical access control, complying with SSAE-18 / ISAE 3402
- Physical access control, complying with another standard
- Encryption of all physical media
- Scale, obfuscating techniques, or data storage sharding
- Data sanitisation process
- Yes
- Equipment disposal approach
- Complying with a recognised standard, for example CSA CCM v4.0, CAS (Sanitisation) or ISO/IEC 27001
- Data sanitisation type
-
- Deleted data can’t be directly accessed / Cryptographic Erasure
- Data Erasure
Data importing and exporting
- Data export approach
- After Cloud is governed at an organisational admin level or on an individual user basis. Users cannot export their data directly from the system. They will first be required to apply a subject access request to After Cloud, after which the requested data is securely transferred to the originating organisation.
- Data export formats
- CSV
- Data import formats
-
- CSV
- Other
- Other data import formats
-
- Images
- Audio
- Text
- Video
Data-in-transit protection
- Data protection between buyer and supplier networks
-
- Private network or public sector network
- TLS (version 1.2 or above)
- IPsec or TLS VPN gateway
- Legacy SSL and TLS (under version 1.2)
- Data protection within supplier network
-
- TLS (version 1.2 or above)
- IPsec or TLS VPN gateway
- Legacy SSL and TLS (under version 1.2)
Availability and resilience
- Guaranteed availability
-
After Cloud is hosted on AWS, leveraging resilient cloud infrastructure to ensure reliability and continuity. We provide a guaranteed system availability of 99.5%, excluding scheduled maintenance, which is communicated in advance to minimise disruption.
If availability falls below this level, users can submit a claim for service credits. Credits are calculated proportionally based on downtime relative to the subscription cost and applied to future invoices. No direct cash refunds are provided.
This SLA, supported by AWS’s enterprise-grade hosting, ensures predictable service performance, operational continuity, and accountability. Users can rely on secure, accessible digital life story services with a clear, fair mechanism to address any service interruptions.
This SLA framework, underpinned by AWS infrastructure, ensures predictable service performance, accountability, and operational continuity. Users benefit from both enterprise-grade hosting and a clear, fair mechanism for addressing service interruptions, supporting confidence in the platform’s reliability for critical digital life story work. - Approach to resilience
-
After Cloud is designed to be a highly resilient platform, ensuring continuous availability and reliability for users. The service is hosted on AWS cloud infrastructure, which provides multiple layers of redundancy, automated failover, and geographically distributed data centres. This ensures that services remain operational even in the event of hardware failures, network issues, or localized disruptions.
Data is stored across multiple availability zones, with automated replication to protect against single points of failure. Backups are performed regularly, and recovery processes are tested to maintain data integrity and minimise potential downtime. System monitoring and alerting are active 24/7, enabling rapid detection and response to operational issues.
The architecture of After Cloud is built for scalability and fault tolerance, with load balancing and redundant components that allow the platform to continue operating during high demand or partial system outages. Routine maintenance is planned and communicated in advance, ensuring minimal impact to users.
Combined, these measures ensure that After Cloud can deliver reliable, secure, and continuous access to digital life story services. Users benefit from a platform that is robust against failures, preserves data integrity, and supports uninterrupted delivery of critical services for children, families, and professionals. - Outage reporting
-
After Cloud reports service outages through multiple channels to ensure users are informed promptly.
While we do not currently operate a public status dashboard, users receive email alerts in the event of planned maintenance, service interruptions, or significant outages. These alerts provide clear information on the nature of the issue, expected resolution times, and any actions required by users.
For organisations with technical integrations, outage notifications can also be delivered via an API (when in place), enabling automated monitoring or internal alerting systems to track service availability in real time. We also plan to include the information on organisational dashboards for transparent visibility at an organisational admin level.
All incidents are recorded and communicated in line with our operational policies. Users are kept informed throughout the lifecycle of an outage, from detection to resolution, ensuring transparency and enabling teams to plan accordingly.
This approach ensures that users have timely visibility of service performance, can respond to interruptions effectively, and maintain continuity in delivering digital life story services. By combining proactive alerts via email with optional API integration, Storyteller supports both operational oversight and automated monitoring for critical workflows.
Identity and authentication
- User authentication needed
- No
- Access restrictions in management interfaces and support channels
- Administrative interfaces are restricted to authorised users through authenticated accounts and permission levels aligned to assigned roles. Access to management functions is logged and monitored. Support channels are similarly controlled, with requests accepted only from verified organisational contacts and handled in accordance with least-privilege principles, ensuring only approved After Cloud personnel can access customer environments when required.
- Access restriction testing frequency
- At least every 6 months
- Management access authentication
- Username or password
Audit information for users
- Access to user activity audit information
- Users contact the support team to get audit information
- How long user audit data is stored for
- At least 12 months
- Access to supplier activity audit information
- Users contact the support team to get audit information
- How long supplier audit data is stored for
- At least 12 months
- How long system logs are stored for
- At least 12 months
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
-
- CSA CSM version 4.0
- Other
- Other security governance standards
- Cyber Essentials (working towards ISO7001).
- Information security policies and processes
-
After Cloud is Cyber Essentials certified and follows a structured set of information security policies and processes to protect user data and platform integrity. They cover access control, data protection, secure development, incident management, and acceptable use, ensuring compliance with relevant regulatory and industry standards.
All policies are formally documented, reviewed regularly, and communicated to staff. Staff are trained on security responsibilities, including recognising and reporting potential threats, managing user credentials, and handling sensitive information appropriately. Compliance is monitored through regular audits, system checks, and internal reporting.
Our reporting structure ensures accountability: Our CPTO oversees technical security, while the Data Protection Officer and senior management monitor policy adherence, incident response, and continuous improvement. Any breaches or suspected incidents are escalated immediately through defined channels, with clear procedures for containment, investigation, and notification where required.
We enforce policy compliance through access controls, multi-factor authentication, encrypted storage, and monitoring of system activity. Regular reviews and audits confirm adherence and identify opportunities for improvement.
By combining CE certification, robust policies, staff training, and a clear reporting structure, After Cloud ensures that information security is embedded in both operational practices and organisational culture, providing users with confidence that their data is managed securely. - Software Security Code of Practice
- Yes
Operational security
- Configuration and change management standard
- Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
- Configuration and change management approach
- Our configuration and change management processes ensure all service components are identified, documented, and tracked throughout their full lifecycle using controlled inventories and version management. Any proposed change follows a formal change process, including risk and impact assessment, to evaluate potential security implications before approval. Changes are reviewed, tested, and authorised by appropriate personnel, with segregation of duties applied where possible. All changes are logged and auditable, ensuring continued security, integrity, and availability of the service.
- Vulnerability management type
- Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
- Vulnerability management approach
- Our vulnerability management process continuously assesses potential threats through regular vulnerability scanning, risk assessments, and security reviews of our services. Identified vulnerabilities are prioritised based on severity and potential impact. Security patches are deployed promptly in line with defined SLAs, with critical patches applied as soon as possible following validation and testing. Information about potential threats is obtained from trusted sources including vendor security advisories, industry alerting services, and recognised security bodies such as NCSC and CVE databases
- Protective monitoring type
- Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
- Protective monitoring approach
- Our protective monitoring processes use continuous logging, alerting, and automated monitoring to identify potential compromises such as unusual activity, unauthorised access, or system anomalies. Alerts are reviewed by trained personnel and correlated to assess severity and impact. When a potential compromise is identified, incident response procedures are initiated to contain, investigate, and remediate the issue. Incidents are prioritised by risk, with critical incidents responded to immediately and in line with defined response time objectives.
- Incident management type
- Complies with a recognised standard, for example, CSA CCM v4.0 or ISO/IEC 27035:2011 or SSAE-18 / ISAE 3402
- Incident management approach
- We maintain formal incident management processes. Pre-defined response procedures exist for common events such as service degradation, security alerts, and availability issues. Users report incidents through designated support channels, including email and via the designated customer account manager. Incidents are logged, prioritised, investigated, and resolved by our operations team following documented escalation paths. Post-incident reports are provided to affected users as appropriate, summarizing the root cause, impact, remediation actions, and any preventive measures implemented.
- Post-quantum cryptography secure
- Yes
Secure development
- Approach to secure software development best practice
- Conforms to a recognised standard, but self-assessed
Public sector networks
- Connection to public sector networks
- No
Pricing
- Discount for educational organisations
- Yes
- Free trial available
- Yes
- Description of free trial
- All users have access to the system for 14 days, with no limitation to access or usability, enabling them to test all system features.
- Link to free trial
- https://app.aftercloud.co.uk/sign-up
Discount percentage by annual call-off contract value (excluding VAT)
- Less than £250,000
- 5%
- Between £250,000 and £500,000
- 5%
- Between £500,001 and £1,000,000
- 5%
- Between £1,000,001 and £2,500,000
- 5%
- Between £2,500,001 and £5,000,000
- 5%
- Over £5,000,001
- 5%
Non-mandatory Standards and certifications
- ISO/IEC 27001 certification
- No
- ISO 28000:2022 certification
- No
- ISO 9001 certification
- No
- Quality management systems (QMS)
- Yes
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Please provide your Cyber Essentials Certificate Number
- 14200a12-fcd0-4f97-a378-b2893531be53
- Cyber essentials plus
- No
- Cyber Essentials Alternative
- You do not have a current and valid Cyber Essentials Plus certificate, or will not have in place within 12 months of the date of award but have an IASME certified equivalent.
- Other security certifications
- No
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Build an NHS fit for the future: That is there when people need it; with fewer lives lost to the biggest killers; in a fairer Britain, where everyone lives well for longer.
Policy Outcome 8: Increasing productivity through physical and mental wellbeing: In the supply chain and communities in the relevant area.
- Understanding barriers to access to health and social care services or employment opportunities e.g. digital inclusion
-