Add a Risk Manually
This article provides step-by-step instructions on creating a new risk record directly within Gatekeeper, via the risk register, a vendor record, or a workflow.
Estimated Read Time: 5 minutes
Sections in this article:
What Data is Stored on a Risk Record?
Risk records contain the following core data fields (mandatory fields are marked with an asterisk*):
- *Risk Name: This is a title, or a short description of the risk.
- *Risk Type: This helps categorise the risk.
- *Status: Open, Closed, or Accepted.
- *Vendor: This is the vendor with whom the risk is associated. The vendor record should already exist within Gatekeeper before adding the risk.
- *Probability: The likelihood that the risk will occur.
- *Impact: The given impact if the risk occurs.
- Owner: The user responsible for the risk.
- Due Date: The date by which the risk is due to be closed.
- Comments: Any additional details that may be useful to store against the risk.
In addition:
-
Any custom data fields that have been configured will be available to populate against the risk record.
- The Residual Probability and Impact fields will be available if an administrator has enabled them.
Note: The names of the Probability and Impact fields are configurable, so they may appear differently in your tenant. See Configure Risk Data for further details.
Create a Risk
Risk records can be added from:
- The Risk Register

- A vendor record

To do this:
- Navigate to the Risk Register or vendor record, then click Add.
- Select Risk.
- Enter the required data, then once finished click Save.

Note: If risks are created via the vendor record, the vendor field will be populated automatically.
The new risk will then be visible within the Risk Register and within the Risk tab of the relevant vendor record.
Manage Risks Within Workflows
If a workflow phase has been configured to show risk data, users can view and add risks directly from any workflow cards that are associated with a vendor record. To do this:
- Click on the workflow card to open it.
- Click the Risks tab within the sidebar, then click New.

- Enter the required details, then click Save.
Note:
- Workflow Administrators, Local Administrators, and phase owners can view, create, update, and delete all risks from within the sidebar.
- Collaborators can only view associated risks.
By default, the Risk tab will not be visible on workflow cards. To amend this:
- Click on the relevant workflow phase to edit it.
- Enable the Show Associated Risks toggle.

- Repeat this process for any other phases where users require access to risk data.
FAQs
Why can't I see risks on a workflow card?
There are two common causes.
First, the Show Associated Risks toggle may not be enabled on the workflow phase. This setting is configured per phase, so risks being visible in one phase does not mean they will appear after the card moves. A Workflow Administrator will need to edit each phase where visibility is required and enable the toggle.
Second, even with the toggle enabled, the Risks tab will not display if the workflow card is not linked to a vendor record. Check that the Associate Vendor with the card checkbox is selected on the vendor name field in the workflow form. See Associate Existing Contracts and Vendors in a Workflow for configuration steps.
Can I link a risk to a contract as well as a vendor?
Risks are associated with vendor records only, not contracts directly. However, if a workflow card is associated with a contract, any risks linked to the vendor associated with that contract will be visible in the Risks tab, and new risks can be added from there.
How is the Risk Score calculated?
Gatekeeper uses your Likelihood and Impact ratings to calculate a Low, Medium or High score. If residual ratings are populated, Gatekeeper uses those instead of the inherent ratings.
See the scoring matrix for further details.