Frameworks

Custom Frameworks

Import or author control libraries for internal policies, customer questionnaires, and industry schemes.

Overview

Why Custom Frameworks on one graph

Not every program fits a catalog framework. Build your own control sets, map them to tests and integrations, and reuse the same evidence engine as SOC 2 or ISO.

Merge internal policy controls with external obligations in a unified matrix.

What you can prove
  • Custom control tests and sampling
  • Evidence lineage identical to catalog frameworks
  • Export packages tailored to enterprise buyers

Platform

How we help you run the framework

Capabilities map directly to workspace modules — no parallel spreadsheets required.

Authoring & versioning

Control text, guidance, and mappings evolve with approval workflows and version history.

Hybrid mapping

Many-to-many links between custom controls and standard frameworks for full coverage.

Customer security reviews

Answer questionnaires from the live control graph instead of static PDFs.

Roadmap

Your path to Custom Frameworks compliance

Import or author controls

Import an existing control library or author your own from scratch with our structured editor.

Map to evidence

Attach tests, integration signals, and evidence to custom controls — same engine as SOC 2.

Reuse across frameworks

Map custom controls to catalog frameworks so evidence collected once satisfies multiple programs.

Custom Frameworks in your tenant

Map criteria, owners, and evidence once — reuse across audits and customer reviews.