Secureframe records like vendors and risks come with a built-in set of fields, but every organization tracks information that's unique to its own processes, things like contract renewal dates on vendors, a "last reviewed" date on controls, or a cost center on assets. Custom fields let you define these fields yourself, so this data can live in Secureframe alongside everything else instead of in an external spreadsheet.
Once an admin creates a custom field, it automatically appears on every record of that type, where it can be filled in, edited, filtered, and included in exports, just like a native field.
Custom fields are supported on the following record types:
Vendors
Risks
Controls
Tests
Asset Inventory (Devices, Infrastructure, Repositories, and Tickets)
Note: Custom fields are available in Early Access to customers on the Complete plan. Reach out to your customer success manager if you don't see them in your account. Only admins can create and manage custom field definitions.
Creating a Custom Field
Custom fields are managed centrally from Company Settings.
Navigate to Company Settings and select the Custom Fields tab.
Click + Create custom field.
In the modal, configure your field:
Record type (required), which type of record the field will appear on. A single field can apply to more than one record type. See table below.
Field name (required), the display name of the field (e.g., "Contract end date").
Field type (required), determines the input control users will see
Description (optional), context about what the field captures. This appears in the manage table to help other admins understand the field's purpose.
If you chose the Single-select or Multi-select field type, define the list of options users can pick from.
Click Add.
Record types
Each custom field is attached to one or more record types. The record type determines which page in Secureframe the field appears on:
Record Type | Where the custom field appears |
Control | Controls page → a control's detail page |
Device | Asset Inventory page → Devices tab → a device's detail page |
Infrastructure | Asset Inventory page → Infrastructure tab → a resource's detail page |
Repository | Asset Inventory page → Repositories tab → a repository's detail page |
Risk | Risk Management page → a risk's detail page in the risk register |
Test | Tests page → a test's detail page |
Ticket | Asset Inventory page → Tickets tab → a ticket's detail page |
Vendor | Vendors page → a vendor's detail page |
Filling in Custom Field Values on a Record
Custom field values live on each record's detail page, in a dedicated Custom fields section below the record's built-in details.
Open any record of the type your field applies to, for example, a vendor from the Vendors page.
Scroll to the Custom fields section. Each field appears as a label and value; fields that haven't been filled in yet show None.
Click Edit, enter your values, and save.
Filtering and Sorting by Custom Fields
Custom fields also appear as columns on the record table for each record type, and can be used to filter and sort, just like for built-in fields.
Open the table for the record type, for example, the Vendors page.
Click the filter icon to open the Filters panel. Your custom fields appear alongside the built-in filters, with filter options matched to the field's type, date ranges for Date fields, option pickers for Single-select and Multi-select fields, and so on.
Custom field columns can be shown, hidden, and reordered from the columns panel, and custom field filters can be saved as part of a saved view.
For more on filtering, see Filtering in the Secureframe app.
Managing your Custom Fields
The Custom Fields tab in Company Settings lists every field your organization has defined, with its name, description, record type, and field type. You can search the list or filter it by record type.
To edit or delete a field, click the three-dot menu at the end of its row:
Edit, update the field's name, description, or options.
Delete, removes the field and its values from all records of that type.
Warning: Deleting a custom field removes it from every record it appears on, along with the values entered on those records. If you delete a field by mistake, contact Secureframe support.
Frequently Asked Questions (FAQ)
Who can create custom fields?
Only admins can create, edit, and delete custom field definitions. All users can view and fill in custom field values on records.
What field types are currently supported?
We currently support Text, Date, Single-select, Multi-select, Number, Boolean, and URL for custom fields.
Is there a limit on how many custom fields I can create?
Yes, there is a limit of 100. If you need more than this, contact Secureframe support.
Can I make a custom field required?
All custom fields currently show up as optional values.
Can custom fields be added to Personnel or Policies?
Custom fields currently support Vendors, Risks, Controls, Tests, and Asset Inventory. Support for additional record types is on our roadmap.
Can I fill in custom fields during a vendor assessment?
Yes. Vendor custom fields can be completed as part of a vendor assessment workflow, not only from the vendor detail page.
My saved view dropped custom field filter chips. Is that fixed?
Yes. Custom field filters in the filter panel and saved-view filter chips should persist with the rest of the view.




