devguard
Collections

Variables

Variables capture important information using a name and a value, allowing you to reuse details consistently across your risks, assets and policies.

Overview

Variables provide a flexible way to store and manage organization-specific name-value pairs that do not fit into other structured collections. This allows teams to maintain values such as the company name, VAT number, or other important references in a centralized, consistent manner across your organization.

Common examples include Company Name (Acme Corp), VAT Number (DE123456789), and Default Country Code (DE).

Core Functionality

We provide a central place to store variables as name-value pairs, ensuring that organization-specific data is consistent and accessible wherever needed. Variables can be referenced across modules to unify operational, compliance, and reporting processes.

Variables can be updated quickly, with changes reflected instantaneously across all modules that use them. Every modification is tracked in the audit log for accountability.

Fields Explained

FieldDescriptionExample
NameThe name of the variable being storedCompany Name
SlugUnique identifier generated from the name for referencingcompany-name
ValueThe stored value for the variableAcme Corp

Note: Name, Slug, and Value are required fields.

Export and Import

Variables can be exported and imported from the platform. An export will provide a CSV with all fields, including related metadata. The import does not require all fields. The following is an example of a minimal CSV file:

variables.csv
slug,name,value
company-name,Company Name,Acme Corp
vat-number,VAT Number,DE123456789
default-country-code,Default Country Code,DE

Best Practices

  • Use clear and descriptive names so each variable’s purpose is immediately understood.
  • Store organization-specific data that does not have a dedicated collection (e.g., VAT numbers, legal names, region codes).
  • Regularly review variables to ensure values remain accurate and relevant.
  • Avoid storing sensitive or secret information in plain text variables unless encryption or access controls are enforced.
  • Document how and where variables are referenced to support long-term maintainability.

For example, you may store VAT Number with the value DE123456789 or Company Name with the value Acme Corp to ensure consistent usage in invoices, contracts, and system-generated documents.

Our platform ensures that when variables are used across your organization, they remain clear, consistent, and accessible wherever needed.

Comments

Every variable's detail view has a Comments tab for discussing it in place, so the reasoning behind a decision stays attached to the record instead of living in a chat thread nobody can find later.

Write a comment with light formatting (bold, italic, underline, lists), reply to any comment (replies cannot be nested further), and edit or delete your own. Deleting a comment that has replies leaves a placeholder so the conversation still reads in order.

Type @ to mention a colleague. They are notified in the app and by email, and can adjust how often they hear about comments under Account → Notifications.

How is this guide?

On this page