The platform, plus people.
Software solves the record-keeping. Some of the work still needs someone to do it. These are the services and add-ons FlickerBytes delivers around Niyam - each one scoped and quoted, none of them a hidden plan feature.
Plans, add-ons and services are different things.
We keep the distinction explicit so nothing on this site implies you are buying something you are not.
Plans
The Niyam Compliance Platform and Consent & Preferences are products with tiers and published prices. Both have a free tier. Prices and limits come from our product catalogue.
View pricingAdd-ons
Capacity or scope added to an existing subscription - extra entities, extra frameworks, extra Active Data Principals. Quoted against your current plan.
Ask about add-onsServices
Work our team performs: managed compliance, Virtual DPO, data mapping, assessments, training, VAPT. Always scoped, never a tier feature.
See VAPTServices & add-ons.
Managed Compliance
We run the compliance programme alongside your team - control ownership, evidence chasing, and the reporting cadence - so the platform is actually operated rather than merely licensed.
Scoped and quoted by our team.
Talk to sales- A named engagement lead
- Evidence collection driven by us
- Monthly posture reporting
- Audit preparation and support
Virtual DPO / DPO support
Named Data Protection Officer support for organisations that need the role without a full-time hire - grievance handling, rights oversight, regulator correspondence and annual reporting.
Scoped and quoted by our team.
Talk to sales- Named DPO contact for your organisation
- Grievance and rights oversight
- Regulator correspondence support
- Annual DPO report
Data mapping
A structured discovery exercise that produces the data map everything else depends on - systems, data categories, purposes, flows, processors and retention.
Scoped and quoted by our team.
Talk to sales- Workshops with system owners
- A populated data inventory in Niyam
- Cross-border flow register
- Retention recommendations by purpose
Vendor assessment
We assess your third parties for you - issuing questionnaires, reviewing responses, scoring risk and recording the outcome against each vendor.
Scoped and quoted by our team.
Talk to sales- Questionnaire issue and chase
- Expert review of responses
- Risk scoring and tiering
- Findings recorded in your vendor register
Compliance training
Role-appropriate training for engineers, support teams and leadership, with completion records that count as evidence for your awareness controls.
Scoped and quoted by our team.
Talk to sales- Role-based content
- Live or recorded delivery
- Completion tracking
- Evidence for awareness controls
Custom integrations
Connect Niyam to the systems that hold your evidence, where an out-of-the-box connector does not already exist.
Scoped and quoted by our team.
Talk to sales- Scoping against your stack
- Build and test
- Evidence automation
- Handover and documentation
Additional entities
Extend your programme across additional legal entities or group companies, each with its own scope and reporting, under one group view.
Scoped and quoted by our team.
Talk to sales- Entity-level scoping
- Separate reporting per entity
- Group-level roll-up
- Shared control inheritance
Additional frameworks
Add frameworks beyond your plan's allowance, including sector-specific and custom control sets.
Scoped and quoted by our team.
Talk to sales- Framework onboarding
- Control mapping to your existing evidence
- Gap assessment
- Reporting per framework
Active Data Principal packs
Additional Active Data Principal capacity for Consent & Preferences, for organisations growing past their plan's included allowance.
Scoped and quoted by our team.
Talk to sales- Capacity added to your subscription
- No change to consent behaviour
- Usage visible in-app
- Statutory operations never blocked
VAPT is its own engagement.
Vulnerability assessment and penetration testing is delivered by our security team and scoped separately from everything above. It has its own page.
VAPT services- Web, mobile, API, cloud and network
- Manual testing, not just scanning
- Remediation-focused reporting
- Retest and sign-off included
Questions about services.
Because these are scoped engagements, and a number without a scope would be misleading. Our plan pricing is published and read live from our product catalogue; services are quoted after a short conversation about what you actually need.
No. Both Niyam products have a free tier and are designed to be self-serve. Services exist for organisations that want the work done with them or for them.
Yes, and most customers do. Start free, see where the gaps are, then bring us in for the parts that need people.
No. Capacity affects your commercial allowance only. Consent capture, withdrawal, preference changes and data-principal rights are never blocked by a commercial limit - that is a deliberate design rule in the product, not a policy we apply case by case.
Tell us what you need done.
A short scoping conversation is usually enough for us to come back with a plan and a number.