Skip to main content
Atlassian Marketplace PartnerVendor 121946720 Forge apps for Jira CloudFigures verified July 2026
Custom Fields Toolbox

by Werare · 07 of 20 by installs

Cascading selectsthat validatebefore they save.

Custom Fields Toolbox adds the field types Jira Cloud leaves out: cascading selects with regex validation, read-only and calculated fields, and encrypted fields for data that shouldn't sit in plain text. Built on Forge, all of it runs inside your own Jira site.

Rating
5.0 (6 reviews)
Installs
68
Badge
Cloud Fortified
Platform
Atlassian Forge
Hosting
Jira Cloud only
Price
Free for 30 days

§1 · What it does

01

Cascading selects that validate

Chain dependent dropdowns and reject values that don't match a pattern before the issue saves. No post-function cleanup afterwards.

02

Regex-validated text fields

Constrain any text field to a pattern: ticket IDs, cost codes, semver strings. Invalid input is blocked at edit time.

03

Encrypted custom fields

Store sensitive values encrypted at rest in Forge storage, readable only through the field itself.

04

Read-only and calculated fields

Surface a value computed from other fields, or data users shouldn't edit, without writing a script.

05

Time-in-status fields

Expose how long an issue sat in each status as a first-class, JQL-searchable field.

§2 · See it configured

This app is configuration, not a UI to tour. Here is what that configuration looks like.

01 · Regex validation on a text field
^[A-Z]{2,4}-\d{3,6}$
// accepts PROJ-1234 and OPS-88213 · rejects "n/a" and "TBD"
02 · A calculated, read-only field
{{issue.story_points}} * {{issue.cost_per_point}}
// renders estimated cost on the issue view; users can't edit it
03 · Cascading select, validated
Region → Country → City where City must match ^[A-Za-z .-]+$
// each level filters the next; the final value is pattern-checked before save

§3 · A look inside

Advanced Custom Fields app inside Jira showing the Encrypted Fields Configuration page, with the Jira top navigation, an Apps sidebar listing custom field tools, and a permissions panel for a Single Line Encryption Field with Users, Groups, Roles, Reporter, and Assignee options plus a Save Permissions button.
Fig. 1 · Encrypted field permissions, set by user, group, role, reporter or assignee.

§4 · How it works

Atlassian Forge · Cloud Fortified

Custom Fields Toolbox runs on Atlassian Forge and carries Atlassian's Cloud Fortified badge: an independent security review plus a published uptime SLO. Its field configuration and encrypted values live in Forge storage, hosted by Atlassian inside your Jira site.

It does reach a small number of external services (a working-days date API and avatar CDNs), so it isn't in the Runs on Atlassian program. It does not ship your issue content to them.

Read the full security overview →

§5 · Permissions and data

The exact OAuth scopes this app’s Forge manifest requests, and where its data goes.

read:jira-workRead issues, projects, boards and field values.
write:jira-workCreate or update issues and field values.
read:jira-userRead the user directory to resolve names and avatars.
read:user:jiraRead user records for lookups and assignment.
read:group:jiraRead group membership.
read:project:jiraRead project metadata.
read:issue:jiraRead individual issues.
read:field:jiraRead custom-field definitions.
read:comment:jiraRead issue comments.
read:audit-log:jiraRead the audit log for reporting.
storage:appStore the app's own configuration in Atlassian-hosted Forge storage.
…30+ read scopes (full list in manifest)Additional read scopes for reporting; the full list is in the app's Forge manifest.
Stores and egressField configuration (cascading options, regex patterns) and encrypted field values, in Forge storage. Egress: Reaches working-days.p.rapidapi.com, gravatar.com, wp.com, api.media.atlassian.com. Everything else stays on Atlassian. Residency: Forge storage follows your site's residency; external calls may route outside your region.

§6 · Compatibility

Hosting

Jira Cloud only

Project types

Company-managed and team-managed

Products

Jira Software, Jira Service Management

Known limits

Calculated fields recompute on issue view

§7 · Pricing and reviews

Pricing

Per-user pricing, billed by Atlassian on your existing invoice. Free for the first 30 days.

Cloud apps are priced on your Jira site's total user tier, not the number of people who use the app.

Live pricing on the Marketplace ↗

Reviews

5.0

6 reviews on the Marketplace

The Marketplace figure as of July 2026. Nothing rounded, nothing hidden.

Read all reviews ↗

§8 · Release log

2026.07.01Encrypted fields now support access controls per field.Latest
2026.05.14Faster recompute for calculated fields on the issue view.
2026.03.02Regex validator: clearer inline error messages.

§9 · Questions

Yes. Regex and cascading rules are enforced at edit time, so an invalid value never reaches the issue in the first place.

Encrypted at rest in Forge storage inside your own site. Nothing is sent to Werare.

Time-in-status is exposed as a searchable field. Calculated fields are read-only and render on the issue view.

Try it on a real project.

Free for 30 days. Billed by Atlassian after that, on the invoice you already have.

Start the free trial