higroupContact us
services/consulting & strategy/technology due diligence
// sub-service

Technology Due Diligence

An independent read on what you are actually buying. We assess codebases, teams, and infrastructure, and report what we find rather than what anyone hopes we find.

Diligence is one of the few engagements where our incentive has to be visibly neutral. We are not bidding for the remediation work, and we say so up front, because an assessment written by the team hoping to fix it is worth very little.


We look at the things that determine what happens after the deal: code quality and test coverage, architecture and its scaling limits, security posture, licensing and IP hygiene, infrastructure cost trajectory, and usually most predictive how much critical knowledge lives in one or two people’s heads.


The report separates what is genuinely broken from what is merely unfashionable. Plenty of profitable systems are unglamorous, and a rewrite recommendation should have to earn itself. Findings come with severity, estimated remediation cost, and how they should affect the price.

What this includes

  • /Codebase quality, test coverage, and maintainability review
  • /Architecture assessment and scaling limits
  • /Security posture and known vulnerability review
  • /Licensing, dependency, and IP hygiene check
  • /Infrastructure cost and operational risk
  • /Team capability and key-person risk

When teams call us

  • /Acquiring a company whose product is its software
  • /Investing in a technical business you cannot assess in-house
  • /Inheriting a system with no documentation or history
  • /Validating a vendor before a long-term commitment
  • /A board that needs an independent second opinion
// other consulting & strategy services

IT Advisory

Technology decisions that answer to business goals. We help leadership teams plan, prioritise, and govern technical work without needing to become engineers.

learn more

Solution Architecture

System design that fits your constraints, not a reference diagram. We shape the technical approach before a team commits months to building it.

learn more

Project & PPM Consulting

Delivery practices that make timelines believable. We help teams plan, track, and ship work predictably without burying anyone in process.

learn more
// good to know

Common questions

What does technology due diligence include?+

We assess the codebase, architecture, test coverage, security posture, dependencies, licensing, infrastructure, operational risk, and key-person dependency.

Who is technology due diligence for?+

It is typically used by investors, acquirers, boards, and leadership teams that need an independent view of a software product before making a significant commitment.

How long does a technology due diligence engagement take?+

Most engagements take around two to four weeks, depending on the size of the product, quality of documentation, and access to the technical team and systems.

Do you estimate the cost of fixing the issues you find?+

Yes. Findings are graded by severity and, where possible, include an estimated remediation effort or cost so the technical risk can be understood commercially.

Will you recommend a rewrite if the technology is outdated?+

Only if the evidence supports it. We distinguish between technology that is genuinely risky and technology that is simply unfashionable, and we document the trade-offs behind any recommendation.

Do you also take on the remediation work afterwards?+

The due diligence itself is independent and does not assume we will receive follow-on development work. If remediation support is later required, that is treated as a separate engagement.

Need help with technology due diligence?

Whether it is a rebuild or extra hands, the first call is 30 minutes.

Book a 30-min call