Services
Custom software development for your business, secure by design
Custom development for your business: websites, portals and management software built secure from the first line of code, GDPR-compliant, integrated with the systems you already use. And with the code that stays yours.
Security by design
Applied to the code, not bolted on at the end.
Cookieless site
No tracking, no banner: this site is the proof.
Your code
Delivered and documented, no lock-in.
Transparency
Costs, timelines and limits stated up front.
What gets built
Business websites
Custom sites that are clear, fast, search-optimised and accessible. To get you found and build trust, without off-the-shelf templates.
Web applications and custom management software
The tools that run the business: web management systems, portals, private areas, dashboards. Built around your process and integrated with the systems you already have, including legacy ones, instead of throwing them away.
AS/400 management system modernisation
Got an AS/400 (IBM i) system that runs the business but lives isolated? It gets modernised and integrated with the web, gradually and securely, without rewriting it.
Application security and GDPR
Secure development following OWASP standards and GDPR compliance by design. The thread through everything, not an extra.
Why custom, and when not
An off-the-shelf product costs less and starts right away, but you adapt to it: you pay for features you do not use and stay tied to its platform. Custom costs more and takes longer, but it is built around the way you work, integrates with what you have, and grows with you. It is not always the right choice: for standard needs, a good ready-made product is fine. Custom pays off when your process is an advantage worth protecting, or when ready-made products simply do not fit.
How the work goes, in phases
Listening and analysis
It starts from the goal, the real constraints and the systems you already use.
Clear proposal
Solution, timeline and cost presented transparently, without needless jargon.
Step-by-step development
In verifiable blocks, with security applied during, not after.
Testing and delivery
Tests, hardening, and delivery of the documented code: it is yours.
Support
Ongoing assistance, at an agreed and sustainable pace.
Security and GDPR by design
Security is not an SSL certificate added at the end: it is a discipline applied to the code from the very first line. In practice it means:
- validating every piece of data that comes in;
- handling authentication and permissions properly, with least-privilege access;
- protecting against known vulnerabilities (OWASP reference);
- collecting the minimum data needed (privacy by design).
For your business it means less exposed surface, less risk of breaches and fines, and software that is born GDPR-compliant rather than made compliant afterwards. Reference stack: Java back-end with Spring Boot, React and Next.js front-end, PostgreSQL database, container deployment on European cloud.
The code is yours: no lock-in
The code of your project is yours, delivered and documented, with no strings attached. No technological captivity, no mandatory fee to stay in control of your own tool. If one day you want to change provider, you can.
Illustrative examples
Example scenarios, not delivered work.
- A portal with a private area for clients to consult documents and files.
- An internal management tool that replaces spreadsheets and manual steps.
- A dashboard that pulls scattered data into one readable view.
- Integrating an old management system with a new web interface, without throwing away what works.
Frequently asked questions
How is the cost estimated?
It starts with a low-cost initial analysis that defines scope and priorities; then a phased quote, with costs and timelines set before starting.
How long does it take?
It depends on complexity; the work proceeds in verifiable phases, with agreed, realistic timelines.
Is the code mine?
Yes, delivered and documented, with no lock-in.
What does «GDPR by design» mean?
The software is born compliant: minimised data and privacy from the design stage, not made compliant afterwards.
What do you not do?
Product CRM, contact centre and product business intelligence stay out of scope: better a specialist than a generalist.
Why does the site have no cookie banner?
Because it is cookieless: no tracking, so no banner. It is the method in practice.
A website with no cookie banner: it can be done, and it is better
It starts from your goal, not from the technology
Describe in a couple of lines what the project needs to solve, and get a clear assessment, no strings attached.
Request an assessment