What we deliver
Twara Technologies builds web portals and data dashboards that give the right people controlled access to the information and actions they need. Common types include:
- Customer portals for orders, invoices, service requests, documents and account management.
- Partner, dealer and supplier portals for onboarding, price lists, purchase orders, claims and shared performance data.
- Employee and intranet portals for policies, requests, approvals and internal tools behind single sign-on.
- Operational dashboards that combine data from several systems into live views for managers and teams.
Each portal is built on secure identity, clear permissions and reliable integrations, because a portal is only as useful as the data behind it.
Typical scope
- User groups, roles and the permission model, including organisation-level and record-level rules.
- Authentication: single sign-on, self-registration with verification, invitations and multi-factor authentication.
- Core portal functions: dashboards, document libraries, forms and requests, notifications, messaging and search.
- Integrations with back-end systems, often through an integration layer that shields the portal from changes in those systems.
- Dashboard design: metric definitions, data pipelines, visualisations, filters and exports.
- Administration tools for managing users, content and configuration.
Technologies we work with
| Need | Options | When we tend to choose each |
|---|---|---|
| Portal application | React or Angular front end with Node.js, .NET, Java or Python services | Angular and .NET are common in organisations already standardised on Microsoft tooling; React with Node.js suits teams wanting a single language. |
| Identity | Microsoft Entra ID, Okta, Auth0, Keycloak, Amazon Cognito | Use what your organisation already runs for staff; choose a customer identity product for large external user bases; Keycloak when self-hosting is required. |
| Dashboards | Chart libraries such as Apache ECharts or Chart.js; embedded Power BI, Looker Studio or Metabase | Custom charts for workflow-embedded views; embedded BI when analysts need to keep authoring reports. |
| Data | PostgreSQL, SQL Server, a cloud data warehouse, scheduled ETL or event streams | Matched to data volumes, freshness needs and existing platforms. |
| Integration | REST APIs, message queues, iPaaS tools | Queues for reliability between systems; iPaaS where many standard connectors are needed. |
How we approach it
- Map users and journeys. Who signs in, what they need to see and do, and which systems hold that information today.
- Define access. A role and permission matrix, reviewed with the business owners and your security team.
- Define the numbers. For dashboards, each metric gets a written definition, source, owner and refresh frequency before any chart is drawn.
- Prototype. A clickable prototype of key screens, tested with representative users.
- Build in increments. Identity and integrations first, then features by priority, demonstrated on staging.
- Test access and load. Permission tests, security testing and load tests against expected concurrency.
- Roll out. Phased onboarding of user groups, with guides and support channels ready.
Quality, security and performance
- Authorisation. The OWASP API Security Top 10 (2023) lists broken object level authorisation and broken function level authorisation among the most serious API risks. Portals are particularly exposed to both, so we test every endpoint with users from different roles and organisations.
- Web security. Design and code review against the OWASP Top 10, secure session management, rate limiting and protection of file uploads and downloads.
- Audit and monitoring. Logs of sign-ins, permission changes and sensitive actions, retained according to your policy and available for investigation.
- Personal data. Portals often hold personal data. The Digital Personal Data Protection Act, 2023 requires reasonable security safeguards to prevent personal data breaches; we design encryption, access control and retention around that requirement, with legal interpretation from your advisers. These provisions are being brought into force in phases; our DPDP guide tracks the dates.
- Accessibility. Portal screens, tables and charts are designed against WCAG 2.2, including keyboard operation and text alternatives for visual data.
- Dashboard performance. Pre-aggregated data, caching and pagination so that views stay responsive as data grows.
Engagement options
- Fixed-scope first release. A defined portal or dashboard set for a specific user group.
- Time and materials roadmap. Phased expansion to more user groups, systems and features as adoption grows.
- Ongoing support. Monitoring, user administration help, integration upkeep and enhancements through our support and maintenance service.
If your customers, partners or teams rely on email and spreadsheets to get information from you, talk to us about a portal.