G-Cloud is the UK Government's official marketplace for cloud software. Being listed makes it straightforward for public-sector teams to purchase a service that has met the framework's requirements for security, data protection and accountability.

We're preparing the two public-sector editions of our platform for listing:

iFire for fire & rescue services and iRescue for HM Coastguard. (iCrew, for the RNLI and independent lifeboats, is available directly and isn't part of this framework.)

74% On track
10 complete 5 in progress 2 still to come

Becoming an approved supplier

  • Established UK business
    iOnCall is run in the UK by Graham Murt as a sole trader.
    Complete
  • Service description prepared
    A clear description of the service for public-sector buyers.
    Complete
  • Transparent pricing
    Simple, published per-user pricing for the framework.
    Complete
  • Terms & conditions
    Customer terms aligned to the G-Cloud contract, under legal review.
    In progress
  • Business insurance
    Professional indemnity and liability cover.
    Complete
  • Framework application
    Submitting our application as soon as the next window opens.
    Planned

Data protection & privacy

  • Data Protection Impact Assessment
    A full assessment of how we protect personal data, including responder location.
    Complete
  • Data processing agreement
    Our formal data-handling commitments to customer organisations.
    Complete
  • Privacy notice
    A plain-English explanation of the information we hold and why.
    Complete
  • Record of processing activities
    A maintained register of how data is used across the service.
    Complete

Security & resilience

  • Cyber Essentials certification
    Our Cyber Essentials self-assessment is well advanced — we're completing the final technical items before we certify.
    In progress
  • Security review & hardening
    An end-to-end review of our systems, with improvements being rolled out.
    In progress
  • Cloud security principles
    Documented responses to the NCSC's 14 Cloud Security Principles.
    Complete
  • Information security policies
    Written policies covering access control, incident response, change management and backups.
    In progress
  • Business continuity plan
    Plans to keep the service running and recover quickly from disruption.
    In progress

Accessibility

  • Accessibility audit (WCAG 2.2 AA)
    An independent audit of our apps against the recognised accessibility standard.
    Planned
  • Accessibility statement
    A published statement of how accessible our apps are, with any known issues.
    Complete

What happens next

The current G-Cloud application window has closed and the framework goes live in September 2026. It then reopens to new suppliers at intervals, and we intend to apply at the very next opportunity — so we're using the time to get everything in place rather than rushing it.

Since our last update we've completed a further round of security review and hardening across the platform, upgraded the server's cryptography and database libraries to current supported versions, and drafted our information-security policy set. The remaining work is concentrated on the Cyber Essentials certificate and the independent accessibility audit.