Depth D0 · Wellhead

Survey the stack first

For technical and marketing leads with systems already running and a problem they can name. Blueharbour finds how deep it runs in your search visibility, software or infrastructure, then works at that depth. We work with companies in Europe and worldwide.

  1. 02 surfaceHow search engines read you, and how you run day to day
  2. 10 processAutomation, AI systems and the products your customers use
  3. 20 systemsCloud platforms, data and the systems underneath
  4. 28 foundationsSecurity and compliance at the base of it all

Each service line sits in one of these zones.

The section through the stack

Six lines of work. Pick one to see what it delivers.

Search and AI visibility

Four sub-services, from crawl access at the surface down to measurement across classic search results and AI answers.

Open the line

Managed services

Three sub-services: monitoring and support, release operations and infrastructure care.

Open the line

Cloud, data and modernisation

Three sub-services: migration, data platform and legacy retirement.

Open the line

Security and compliance readiness

Three sub-services: NIS2 and DORA readiness, data protection contour and secure delivery.

Open the line

How depth works

Every problem sits at a depth. We drill from the surface until we reach the layer that causes it, and the work happens there. Shallow layers are what visitors and machines see; deeper layers carry them.

  1. 02Surface: 02, 06How crawlers and assistants read you
  2. 10Process: 10, 14Workflows, models, products
  3. 20Systems: 20Platforms, data, migrations
  4. 28Foundations: 28Controls and evidence

Industries we work with

We are a new company. These are the sectors our methods and tooling are set up for, not a list of clients.

Technology we work with

We choose from this set for each engagement rather than selling one stack. When you already run a stack, we work inside it.

Languages and runtimes
TypeScript · JavaScript · Node · Python · Go · SQL · Bash
Front end
React · TanStack Start · Next.js · Astro · Vite · Tailwind
Back end and APIs
REST · GraphQL · webhooks · background workers · queues
Data
PostgreSQL · pgvector · Supabase · Redis · dbt · BigQuery
AI
Anthropic API · OpenAI API · open weight models on hosted inference · embeddings and vector search · retrieval over your own content · evaluation harnesses · prompt and model version control
Content systems
Strapi · Sanity · Contentful · WordPress for migrations · Notion as a source
Commerce
Shopify · WooCommerce · headless storefronts
CRM and messaging
HubSpot · Salesforce · transactional mail providers
Automation
n8n · scheduled jobs · event driven triggers
Cloud and delivery
Vercel · Cloudflare · AWS · Google Cloud · Docker · Terraform · GitHub Actions
Quality and observability
Playwright · Sentry · uptime monitoring · structured logging · error budgets
Search and measurement
Google Search Console · GA4 · Plausible · Umami · Looker Studio · Schema.org structured data · log file analysis
Security and access
SSO and SAML · secret managers · dependency scanning · SBOM · least privilege reviews

These are the tools we work with, not partnerships, certifications or resale agreements.

What a core sample contains

Input
We start from what you already have: repository access, the analytics account, the current architecture notes. If something we need is missing, the first finding says so.
Method
Each engagement follows a written plan with named checkpoints, agreed before work begins. The plan only changes when you approve the change.
Deliverable
Every piece of work ends in something you keep, such as a register, a codebase or a configured system. It is documented so your team can run it without us.
Measured by
We agree the measure at scoping, using figures your own tools already report. If a result cannot be measured that way, we tell you before the work starts.

How the work runs

No client case studies yet. Here is the method instead.

  1. 01

    Scoping

    We read the stack, write down what we found and price the work against that record. You get a fixed scope and a list of what we left out on purpose.

  2. 02

    Building

    Work happens in your repositories and accounts, in small changes your team can review. Each change points back to the scope item it serves.

  3. 03

    Handover

    You receive documentation, access and a recorded walkthrough for your team. Support after handover is a separate agreement, and it is optional.

What we will not do

  • We do not certify. We prepare controls and evidence for an audit. Certification is done by an accredited body, and we are not one.
  • We do not give legal advice. We work from the text of a law and say where your counsel needs to decide. Legal opinions and contracts come from your lawyers.
  • We do not promise placement in AI answers. No one outside the companies that run AI assistants controls which sources they quote. We remove the reasons to skip you and record what changes.
  • We do not take work we cannot staff. If we do not have the people with the right skills free when you need them, we say so before you sign, not after.

Start with one layer

Name the part of the stack you want examined. We reply with the questions we would ask before any work starts.

Request a section review

An email exchange first, no call needed.

Questions on pricing, ownership and access first? Read the answers.