Agility PIM (Product Information Management)
Agility is a cloud-based Product Information Management/Product Experience Management and publishing solution, enabling marketing and ecommerce professionals to gather, enrich and publish their product catalogue to ecommerce websites, print catalogues and any other online or offline channel.
Features
- Centralised hub for all product data
- Supplier onboarding tools with data quality routines
- Unlimited language support
- Personalisation and versioning tools
- Publishing and syndication tools
- Unlimited products and SKUs (long tail)
- Reporting and analytics capabilities
- Flexible integration options for back-office and ecommerce
- Adobe InDesign integration native to the tool
- AI Generative Content tools for automation
Benefits
- Faster time to market for new products
- More accurate and consistent product data
- Easier and faster translation and localisation for new markets
- Channel specific assortments with customised content
- Faster time to market for print catalogues
- Maximise search results on your ecommerce site
- Improved customer experience
- Actionable insights delivered through analytics
- Improved online engagement and conversion rates
- Automation through AI-based functionality
Pricing
- Education pricing available
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
3 9 3 9 9 8 3 3 2 1 6 4 2 8 4
Contact
AGILITY MULTICHANNEL LIMITED
Jason Simpson
Telephone: 07958125448
Email: jason.simpson@insightsoftware.com
About your service
- Service categories
-
Applications
Content workflow and management
Persuasive content management
- Digital Asset Management Applications
- Product Content Management Applications
- Multi cloud support
- No
Service scope
- Software add-on or extension
- No
- Cloud deployment model
- Private cloud
- Service constraints
- Scheduled monthly maintenance window, limited to one hour.
- System requirements
-
- Any Chrome-based browser can be used to access Agility
- Safari (Mac) and MS Edge supported to access Agility
- Single sign-on supported using clients own authenticator
User support
- Email or online ticketing support
- Yes
- Support response times
- All tickets are acknowledged same-day.
- User can manage status and priority of support tickets
- Yes
- Online ticketing support accessibility
- WCAG 2.2 A
- Phone support
- No
- Web chat support
- No
- Onsite support
- Yes, at extra cost
- Support levels
-
Standard Support is included within the SaaS fees. This includes provision of an online ticket system using Salesforce. All tickets are prioritised according to a Support Policy. No other support level is required.
We provide an Account Manager and a Customer Success Manager who liaise with technical support and engineering teams on the clients behalf. - Support available to third parties
- Yes
Onboarding and offboarding
- Getting started
-
Using Agility involves an implementation project. This is a workshop-driven process to:
1. establish and build the ideal taxonomy and data model for the client
2. capture existing data sources
3. configure the data management features for managing and enriching the products data
4. configure workflows, workspaces and business rules
5. configure the publishing and syndication rules for downstream channels
6. train the core team on using the solution
The project can also include systems integrations which connect the PIM to upstream data sources such as ERP or another back-office system, and connect PIM to downstream channels such as ecommerce. - Service documentation
- Yes
- Documentation formats
-
- HTML
- Other
- Other documentation formats
-
- AI powered agent within the user interface
- Video-based enablement/training
- End-of-contract data extraction
- Users with the appropriate access rights and training can export the data themselves, or the client can request that their data is exported for them when the contract ends. Typically such data is exported into spreadsheets, or a database back-up can be provided (MS SQL).
- End-of-contract process
-
At the end of the contract the client has the option to renew for additional 12 month periods or to terminate the agreement.
Annual SaaS fees include the entitlement to access an instance of the software and to receive all new releases (Service Packs) during the term of the contract. The fee will include the number of named user accounts that they require, and this can flex up and down each year. The fees also include access to the support helpdesk where issues can be reported and resolved.
At additional cost the client may choose to provision additional non-productive environments, and they may choose to buy additional users licences during the term. The may also choose to engage with us to provide additional professional services from time to time including training, data manipulation, configuration and systems integration. - Documentation accessibility standard
- WCAG 2.2 A
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Microsoft Edge
- Firefox
- Chrome
- Safari
- Other
- Application to install
- No
- Designed for use on mobile devices
- No
- Service interface
- Yes
- User support accessibility
- WCAG 2.2 A
- Description of service interface
- Agility is accessed via a browser-based user interface, similar to a modern website. Users log-in and can have separate permissions. Different views of the data and different functionality is provided to different users or groups via 'Workspaces'. 'Gadgets' deliver end-user functionality which means different gadgets can be selected to populate a workspace for a specific use case or user group. There is a gadget API meaning the tool is full extensible and customisable.
- Accessibility standards
- WCAG 2.2 A
- Accessibility testing
- Unknown
- API
- Yes
- What users can and can't do using the API
-
The Agility API is a RESTful web service and can be used to connect Agility to upstream systems such as ERP or back-office platforms, product life cycle management platforms and downstream systems such as ecommerce or web content management platforms. This creates a real-time connection. The API is also used to connect directly with Adobe InDesign, making the tool another UI for Agility, enabling graphic designers to connect directly to the Agility data and content to automatically paginate catalogues for example.
The API enables users to perform all read/write/modify functions. - API documentation
- Yes
- API documentation formats
- HTML
- API sandbox or test environment
- Yes
- Customisation available
- Yes
- Description of customisation
-
The user interface (look & feel) can be customised using CSS.
Gadget functionality can be customised and extended using HTML, CSS and Javascript.
The data model, including the full taxonomy and every object can be customised and is typically unique to each and every customer.
The rights and permissions model is totally granular and all users can be managed as individuals or groups with custom rights and permissions.
Imports, exports and transformations are all customised according to the clients business rules. This is performed within a UI and is done either by the software vendor, or by the client assuming those users have gone through the appropriate training.
Most customisations are performed within the user interface itself, by users with the appropriate access rights.
Scaling
- Independence of resources
- Agility is a single-tenant private SaaS solution. Other buyers are not sharing the same resources. Each buyer has dedicated virtual machines.
Analytics
- Service usage metrics
- Yes
- Metrics types
-
We provide system monitoring metrics that show CPU usage and storage usage. This enables the client to scale their Agility instance according to demand.
Users can also interrogate system logging to monitor user activity. - Reporting types
-
- Regular reports
- Reports on request
- Resource tagging
- Yes
- FOCUS resource tagging
- No
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Other security clearance
- Government security clearance
- Baseline Personnel Security Standard (BPSS)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
- United Kingdom
- User control over data storage and processing locations
- Yes
- Datacentre security standards
- Managed by a third party
- Penetration testing frequency
- At least once a year
- Penetration testing approach
- Another external penetration testing organisation
- Protecting data at rest
-
- Physical access control, complying with CSA CCM v4.0
- Physical access control, complying with SSAE-18 / ISAE 3402
- Encryption of all physical media
- Data sanitisation process
- Yes
- Equipment disposal approach
- Complying with a recognised standard, for example CSA CCM v4.0, CAS (Sanitisation) or ISO/IEC 27001
- Data sanitisation type
- Deleted data can’t be directly accessed / Cryptographic Erasure
Data importing and exporting
- Data export approach
-
User export data in a number of ways:
1. manually within the UI to export data in Excel, CSV, XML or JSON format.
2. scheduled using our data integration tool (ETL). For example this could be a regular feed of data that the client provides to a customer.
3. via integration, typically an ETL process or API connection which exports data to another business system such as an ecommerce platform, ERP or just another database - Data export formats
-
- CSV
- Other
- Other data export formats
-
- MS Excel
- JSON
- MS SQL
- Adobe InDesign via page production
- Data import formats
-
- CSV
- Other
- Other data import formats
- MS Excel
Data-in-transit protection
- Data protection between buyer and supplier networks
-
- TLS (version 1.2 or above)
- IPsec or TLS VPN gateway
- Data protection within supplier network
-
- TLS (version 1.2 or above)
- IPsec or TLS VPN gateway
Availability and resilience
- Guaranteed availability
-
We will make available the Service to Customer's production tenant 99.5% of the time, measured over a calendar month, provided, however, that the following shall not be considered downtime, and the time to perform the following shall not be included in the time the Service is unavailable: (i) preventative maintenance; (ii) application Updates to the Service.
A sliding scale of service credits are provided if we fail to meet the minimum availability, starting at 10% of the fees paid, up to 50% of the fees paid with a final option to terminate with a full refund. - Approach to resilience
- Available on request, however broadly speaking we are using all of the available features of Microsoft Azure for resilience. Additional levels of resilience such duplicate databases and application across multiple data centres are also available at additional cost.
- Outage reporting
- Email alerts to the clients system administrators.
Identity and authentication
- User authentication needed
- Yes
- User authentication
-
- Multi-Factor Authentication (MFA)
- Public key authentication (including by TLS client certificate)
- Dedicated link (for example VPN)
- Username or password
- Access restrictions in management interfaces and support channels
- No users of the service have access to servers or code, only the business user interface that provides end-user functionality. The management interface is for user administration only and access to this is restricted to only those users that the client has allocated as a System Administrators. This is a specific user licence type and the functions it enables are only accessible by this licence type. This includes managing role and permissions (view/read/write) for all other business users.
- Access restriction testing frequency
- At least every 6 months
- Management access authentication
-
- Multi-Factor Authentication (MFA)
- Public key authentication (including by TLS client certificate)
- Dedicated link (for example VPN)
- Username or password
Audit information for users
- Access to user activity audit information
- Users have access to real-time audit information
- How long user audit data is stored for
- User-defined
- Access to supplier activity audit information
- Users have access to real-time audit information
- How long supplier audit data is stored for
- User-defined
- How long system logs are stored for
- User-defined
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- No
- Security governance approach
- As a business we are working in compliance with ISO27001 and SOC2 and we are awaiting certification. Other software products within our group have already been certified and a rolling programme is in place to ensure that all products have ISO27001.
- Information security policies and processes
-
Our business has a Chief Information Security Officer and a team responsbile for IS. Its influence spans the whole company and the information security policy covers all aspects of the business including HR, Asset Management, Access Controls, Cryptography, Physical & Environmental (ISO27001), Operations, Communications, System Acquisition, Development and Maintenance, Supplier Relationships and Compliance.
Policies are reviewed and published (versioned) annually and full training is provided to all employees via 3rd party partners such as KnowB4 etc.
Processes are independently audited for compliance. - Software Security Code of Practice
- Yes
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
- Agility PIM is based on a 3-tier architecture comprising of an application server (Wildfly), a database server (MS SQL) and a user interface served up through Apache. All components are monitored as part of the service using N-ABLE RMM and Pingdom. This includes monitoring uptime, services, failed logins, disk space thresholds, performance, and network access. Vulnerability scanning is performed using Crashtest Security and patching of 3rd party software is performed quarterly using N-ABLE RMM and PowerShell Scripts. All system updates and new Agility versions are deployed in TEST before being pushed to PROD.
- Vulnerability management type
- Supplier-defined controls
- Vulnerability management approach
-
Each Agility customer environment is subject to system monitoring as outlined in the previous question. Service and Environment monitoring runs every 5 minutes, 24/7/365.
Potential threats are assessed on the basis of severity; low = policy or own standard violation, med = known exploited vulnerability (KEV) emergency high = critical. Response times are 1 days for remediation plan, 7 days to patch/mitigate if non critical.
Information about potential threats comes from a variety of sources including Microsoft, CISA, CVE and NVD. - Protective monitoring type
- Supplier-defined controls
- Protective monitoring approach
- Agility environment monitoring is provided as part of the service. Potential compromises are detected using a range of tools including antivirus, crashtest security, and the tools provided within Microsoft Azure's datacentre. Potential compromised are patched at the earliest possible maintenance window. High priority patches may be installed with short notice after recommendations from our CISO. The company maintains a documents incident response plan which is tested and updated periodically.
- Incident management type
- Supplier-defined controls
- Incident management approach
-
We maintain a documented incident response plan. The plan is tested and updated periodically.
If we becomes aware of a breach leading to the accidental or unlawful destruction, loss, alteration, unauthorized disclosure of, or access to Data, we shall notify Customer, within 48 hours after determining an Incident has impacted or will impact the Data.
Customer is provided timely information about the Incident to the extent known to us, including the nature and consequences of the Incident, the measures taken or proposed by us to mitigate or contain the Incident, the status of our investigation, and contacts to obtain information. - Post-quantum cryptography secure
- No
Secure development
- Approach to secure software development best practice
- Conforms to a recognised standard, but self-assessed
Public sector networks
- Connection to public sector networks
- No
Pricing
- Discount for educational organisations
- Yes
- Free trial available
- No
Discount percentage by annual call-off contract value (excluding VAT)
- Less than £250,000
- 10%
- Between £250,000 and £500,000
- 15%
- Between £500,001 and £1,000,000
- 20%
- Between £1,000,001 and £2,500,000
- 25%
- Between £2,500,001 and £5,000,000
- 35%
- Over £5,000,001
- 40%
Non-mandatory Standards and certifications
- ISO/IEC 27001 certification
- No
- ISO 28000:2022 certification
- No
- ISO 9001 certification
- No
- Quality management systems (QMS)
- Yes
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- No
- Cyber Essentials Alternative
- You do not have a current and valid Cyber Essentials certificate, or will not have in place within 12 months of the date of award but have an IASME certified equivalent.
- Cyber essentials plus
- No
- Cyber Essentials Alternative
- You do not have a current and valid Cyber Essentials Plus certificate, or will not have in place within 12 months of the date of award but have an IASME certified equivalent.
- Other security certifications
- No
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority
- New or retained jobs on the contract workforce in the relevant area that meet the criteria set out in MAC 1b, 1c and 1d
- Providing opportunities for, and measuring and monitoring of, staff workforce conditions over time, including employee engagement, involvement in decision-making and satisfaction and adapting to any changes in the results, with clear processes for acting on issues identified
- Monitoring of employee engagement rates (by protected characteristic) and, where necessary, the development of actions to ensure all voices are heard across the diversity of the workforce
- Activities that support an environment where staff are educated about, and feel empowered to, address their physical wellbeing
- Activities that support an environment where staff are educated about and feel empowered to report and address bullying and harassment
- Entitlement to sick pay for the contract workforce, with provision in place for any staff who do not meet the earnings threshold for statutory sick pay, payment of sick pay from day one of absence and payment of staff on the contract workforce who are off sick a replacement income of 100% of their usual earnings for as long as possible
- Measures to support in-work progression to help people in the contract workforce, to move into higher paid work by developing new skills relevant to the contract
- Support for educational attainment relevant to the contract, including training schemes that address skills gaps and result in recognised qualifications
- Understanding of the modern slavery risks and issues affecting the market, industry, sector or country (of origin or of source) relevant to the contract, and the workforce in the supplier’s own organisation and those of its key subcontractors
- Measures to identify, mitigate and manage modern slavery risks relating to the contract and how these will be implemented
- Outline policies and practices to be applied to or put in place for the contract to mitigate and manage modern slavery risks, including: Pre-employment checks, recruitment practices. Workplace conditions, safeguarding plans and processes in place and regular monitoring with relevant groups considered, which may include sampling
- How to ensure business decisions re: price/cost, short lead times, payment timescales do not create modern slavery risks in the supply chain
- Means of influencing staff, suppliers, customers, communities and/or any other appropriate stakeholders with respect to modern slavery risks relating to the contract
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 2: Skills for growth: Supporting growth sectors and addressing skills gaps.
- Understanding of employment and relevant skills issues, and of the education and training issues relating to the contract. Illustrative examples: demographics, skills shortages, new opportunities in high growth sectors, geographic/local community and skills/employment challenges
- Support for educational attainment relevant to the contract, including training schemes that address skills gaps and result in recognised qualifications
-
Mission: Make Britain a clean energy superpower: To cut bills, create jobs and deliver security with cheaper, zero-carbon electricity by 2030, accelerating to net zero
Policy Outcome 4: Sustainable procurement practices: Reducing carbon footprints, minimising waste, and promoting the use of clean energy and green technologies.
- Understanding of opportunities for additional environmental benefits delivery in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
-
Mission: Break down barriers to opportunity: By reforming our childcare and education systems, to make sure there is no class ceiling on the ambitions of young people in Britain
Policy Outcome 6: Employment and training: For those who face barriers to employment
- Understanding of the issues affecting the representation of disabled people in the workforce in the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors
- Working conditions which promote an inclusive working environment and promote retention and progression
- Understanding of the issues affecting inequality in employment, skills and pay in the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors. Measures to tackle inequality in employment, skills and pay in the contract workforce
- Inclusive and accessible development practices, including guidance for line managers on recruiting, managing and developing people with a disability or health condition
-
Mission: Break down barriers to opportunity: By reforming our childcare and education systems, to make sure there is no class ceiling on the ambitions of young people in Britain
Policy Outcome 7: Creating a pipeline of opportunities: For the contract workforce, reducing barriers to entry for under-represented groups.
- Understanding of the issues affecting the development of new skills by target cohort
-
Mission: Build an NHS fit for the future: That is there when people need it; with fewer lives lost to the biggest killers; in a fairer Britain, where everyone lives well for longer.
Policy Outcome 8: Increasing productivity through physical and mental wellbeing: In the supply chain and communities in the relevant area.
- Understanding of issues relating to health and wellbeing, including physical and mental health, in the contract workforce
- Understanding barriers to access to health and social care services or employment opportunities e.g. digital inclusion
- Inclusive and accessible recruitment practices, development practices and retention policies that support-focused activities including those provided in the Guide for line managers on recruiting, managing and developing which support people with a disability or health condition
- Actions to invest in the physical and mental health and wellbeing of the contract workforce
-