Skip to content

Related services

The services around a build that keep it working.

A launch is one day. Updates, monitoring, testing, audits, migrations and advice fill every day after it, and that is where most of the cost and risk lives. These are the supporting services OlDevs provides, and how we decide which ones a client needs.

You own the code and IP Weekly demos Reply within one business day

Agent running - queue empty

Flow 04

01

Trigger

Webhook

02

Enrich

Normalise

03

Decide

Policy

04

Act

Resolve

Run log

> Matched 42 records

> Routed 7 exceptions to a human

> Closed 35 tickets automatically

35

Auto-resolved today

6h

Engineer time saved daily

Related services, in short

OlDevs, a full-stack studio in Vancouver, treats supporting services as part of the build rather than an afterthought.Maintenance retainers, DevOps, QA automation, accessibility and security reviews, modernisation and advisory work are scoped from the same requirements as the software. One accountable team handles them, clients own every account and repository, and each engagement is quoted against a written scope.

Key facts

01Default retainer
Monthly, scoped in hours, cancellable with notice
02Accessibility target
WCAG 2.2 AA
03Languages
English and French
04Ownership
Client holds all code, accounts and IP
05First response
Within one business day
06Updated
September 2026

Related services

Six supporting services clients ask for most

Each card says when the service is the right call and what it costs in time and attention later, so you can decide before you request a quote.

01

Maintenance and support retainers

Right when software is live and someone has to own updates, uptime, backups and small changes. A retainer buys a named team and a monthly block of hours. The later cost is discipline: unused hours are wasted, and a backlog nobody prioritises turns a retainer into a slow rebuild.

Monthly · Named team · SLA

02

DevOps and cloud management

Right when deployments are manual, environments drift, or the cloud bill surprises you every month. We write infrastructure as code, set up pipelines and monitoring, and hand over the console. Later cost: someone must keep reading alerts and approving upgrades, or the automation quietly rots.

Terraform · CI/CD · Monitoring · Cost control

03

QA and test automation

Right when every release needs a day of clicking through screens, or a regression has already reached customers. We write end-to-end and API tests that run in the pipeline and block bad builds. The later cost is maintenance: tests age with the product, and flaky ones get ignored unless someone prunes them.

Playwright · API tests · Regression

04

Accessibility audits and remediation

Right when procurement asks for a WCAG statement, a complaint arrives, or you serve the public. We audit against WCAG 2.2 AA with assistive technology, fix what we find, and document it. Later cost: every new page and component must follow the same rules, so the design system and content editors need training.

WCAG 2.2 AA · Audit · Remediation · Training

05

Legacy modernisation and re-platforming

Right when a plugin-heavy WordPress site, an unsupported framework or a monolith blocks every change. We move in stages: WordPress to headless, monolith to modules, old database to a supported one, with the current system live throughout. Later cost: two systems to run during the overlap, and editor retraining.

Headless · Modular · Data migration

06

Technical due diligence and fractional CTO

Right when you are buying, investing, raising, or running a product without a senior technical lead. Due diligence is a written view of code, architecture, security and team risk. Fractional CTO work is ongoing: roadmap, hiring, vendors. Later cost: advice only pays off if someone inside has authority to act on it.

Due diligence · Advisory · Roadmap

Tooling

What we use to run it.

Concrete tools, current at the time of writing.

Monitoring and operations

GrafanaPrometheusSentryDatadogOpenTelemetryUptimeRobotPagerDuty

Infrastructure and delivery

TerraformOpenTofuGitHub ActionsDockerKubernetesAWS ca-central-1 and ca-west-1Google Cloud Montréal regionCloudflare

Testing and quality

PlaywrightCypressVitestJestk6SonarQube

Accessibility and performance

axe DevToolsLighthouseWAVENVDAVoiceOverWebPageTestChrome DevTools

Security

OWASP ZAPSnykDependabotTrivyHashiCorp Vault1Password

Analytics and documentation

Google Analytics 4Google Tag ManagerMatomoLooker StudioStorybookFigmaNotion

How we scope

Six questions we ask before quoting support work.

01

Who will maintain it

If your in-house team runs PHP, we do not hand them a Go service. Every supporting service is scoped around the people who will hold it after us: their skills, hours and appetite to learn.

02

Where it has to live

Data residency, procurement rules and existing vendor contracts decide the hosting region and often the provider before any technical preference does. We confirm them in the first call.

03

The budget of change

Every system has a limit to how much can change per quarter without breaking the organisation around it. Modernisation and re-platforming are phased to that limit, not to what is technically possible.

04

What breaks first

We rank risks by likelihood and cost when they happen: an expired certificate, an unpatched plugin, one person who knows the deployment. The retainer or audit addresses the top of that list first.

05

Evidence before opinion

Audits, performance reports and due diligence come with reproducible findings: the URL, the test, the screenshot, the fix. Recommendations that cannot be traced to a finding do not make the report.

06

You can leave at any time

Documentation, credentials and infrastructure code are handed over as we go, not at the end. If a supporting service only works while OlDevs is present, it is not finished.

Who it's for

Support and modernisation for organisations that have to get it right.

Corporations

Multiple systems, several vendors and an internal IT team that owns production. We fit into your change control, provide security and accessibility evidence, and run retainers with a named contact and monthly reporting.

Associations and government

WCAG 2.2 AA, bilingual EN/FR content, Canadian data residency and procurement-ready documentation are the usual requirements. We audit, remediate and document so your accessibility statement is true, and train editors to keep it that way.

Franchises

Dozens or hundreds of locations on one platform means one deployment affects everyone. We set up staged rollouts, per-location monitoring and a support process so a franchisee's problem reaches an engineer directly.

Startups

You need a fractional CTO before a full-time one, due diligence packs when investors ask, and a DevOps setup that does not need a platform team. We keep the stack small, write it down, and hand it to your first senior hire.

FAQ

Related services — questions we hear first.

A monthly block of hours with a named team, covering dependency and security updates, uptime monitoring, backups and restore tests, small content and feature changes, and a monthly report. Larger pieces of work are scoped separately so the retainer stays predictable, and we agree the carry-over rule for unused hours up front.

Yes. We start with a short onboarding audit: access to every account, a read of the code and infrastructure, a list of known risks, and a baseline of tests. You get that document whether or not you continue with us, and accounts stay in your organisation's ownership, never ours.

Usually yes, whatever the legal exposure in your province and sector. Enterprise and public-sector buyers ask suppliers for WCAG conformance, and accessibility fixes overlap heavily with usability and search fixes. An audit tells you where you stand; you decide how far to remediate.

A security review is our engineers reading code, configuration and dependencies against a checklist and fixing what we find. A penetration test is an independent third party attacking the running system. We do the first and coordinate the second: choosing the tester, preparing the environment, fixing the findings.

Not by default. WordPress with a disciplined theme and few plugins is fine for most content sites. We recommend a headless or custom rebuild when the plugin stack is the product, when editors and developers keep blocking each other, or when performance and security findings recur every quarter.

Architecture, code quality, test coverage, security posture, infrastructure cost, licensing of dependencies, and how dependent the product is on individual people. Typical engagements run one to three weeks. The output is a written report with rated risks an investor or acquirer can act on.

Yes. Fractional CTO and advisory engagements are a fixed number of hours per month for roadmap, vendor selection, hiring support and architecture reviews. There is no obligation to have us build anything, and we will say so when another supplier is the better fit.

Still have a question? Ask us when you request a quote

Let’s connect

Tell us what needs looking after.

Describe the product and what keeps you up at night. We’ll reply within one business day with a plan and a tailored quote — no obligation.

We’ll only use your details to prepare your quote. No lists, no spam.

Call us Request a quote