Skip to content
Notis

Prepare the right context for security communication

Security work needs focused context, especially when public messaging may follow.

Trigger

New Code Scanning Alert Created

Triggers when a new code scanning alert is created in a repository. Fires an event for each newly created code scanning alert detected in the configured repository. Alerts can be filtered by Git reference, scanning tool, state, and severity. The payload includes the alert number, rule details, tool information, state, severity, and the location of the most recent instance.

Action

List Properties

Tool to retrieve all properties for the authenticated account. use after obtaining a valid api key and login.

Why this helps

Security alerts create urgent context switching and make it easy to lose track of which product context matters.

  • Creates a focused review cue
  • Reduces frantic searching during security work
  • Helps keep product context consistent

Setup

Build it in a few focused steps.

  • 1Connect GitHub and Endorsal to Notis once through the portal.
  • 2Create an automation in the portal or ask Notis to list Endorsal properties relevant to the affected product before reviewing communication options.
  • 3Select the new code scanning alert trigger and choose a channel for run reports.
  • 4Test it with a non-sensitive test alert and confirm the context returned is appropriate.

Questions about this workflow

Does this expose security details publicly?

No. It only retrieves account context for your internal review and should be limited to an appropriate reporting channel.

Can I restrict it to specific scanning tools?

Yes. Define the repository, tool, severity, or reference conditions in the plain-language instruction.

When this happens · Trigger

Do this · Action

Supported Triggers and Actions

Notis builds workflows that link GitHub to Endorsal. A trigger fires from one place; an action lands in another.

GitHub triggers

Endorsal actions

Recurring trigger

Notis starts this workflow on a schedule, such as daily, weekly, or during business hours.

TriggerScheduled

Create Testimonial

Tool to submit a new testimonial. use when adding customer feedback to your endorsal account after gathering input.

ActionInstant

Webhook trigger

Notis starts this workflow when an external tool or custom backend sends an HTTP request.

TriggerInstant

Get AutoRequest Campaign

Tool to retrieve a specific autorequest campaign by its unique identifier. use when you need to fetch details of an existing autorequest campaign.

ActionInstant

New Workflow Artifact Created

Triggers when a new workflow artifact is created in a GitHub repository. Monitors for newly created GitHub Actions workflow artifacts. Optionally filters by artifact name to restrict monitoring to specific artifacts.

TriggerPolling

Get Contact

Tool to retrieve details of a specific contact by its unique identifier. use when you have the contact id and need to fetch complete contact details.

ActionInstant

Branch Changed

Triggers when a GitHub branch changes. Monitors a specific branch for: - New commits pushed (head commit SHA changes) - Protection status toggled (branch becomes protected or unprotected) - Protection settings changed, including: required status checks and their enforcement level, admin enforcement, required pull request reviews (dismiss stale reviews, code owner reviews, approving review count, last push approval), required linear history, force push allowance, deletion allowance, conversation resolution, branch locking, and fork syncing.

TriggerPolling

Get Tag

Tool to retrieve details of a specific tag by its unique identifier. use when you have a tag id and need full tag metadata.

ActionInstant

New Branch Created

Triggers when a new branch is created in a GitHub repository. Detects newly created branches. Deleted branches do not fire events.

TriggerPolling

Get Testimonial

Tool to retrieve details of a specific testimonial by its unique identifier. use after obtaining the testimonial id to fetch its full details.

ActionInstant

Check Run Status / Conclusion Changed

Triggers when a specific GitHub check run changes its status or conclusion. Monitors a single check run for changes to: status (queued, in_progress, completed, etc.), conclusion (success, failure, neutral, cancelled, skipped, timed_out, action_required), started_at, and completed_at.

TriggerPolling

Get Widget

Tool to retrieve details of a specific widget by its unique identifier. use when you need full widget details before editing or analysis.

ActionInstant

Check Suite Status / Conclusion Changed

Triggers when a GitHub check suite changes its status or conclusion for a given ref. Monitors all check suites associated with a git reference (branch, tag, or commit SHA) for changes to status (queued, in_progress, completed, etc.) and conclusion (success, failure, neutral, cancelled, skipped, timed_out, action_required, startup_failure, stale). Optionally filters by GitHub App ID.

TriggerPolling

List AutoRequest Campaigns

Tool to retrieve a list of all autorequest campaigns. use when you need to view both active and inactive campaigns.

ActionInstant

New Code Scanning Alert Created

Triggers when a new code scanning alert is created in a repository. Fires an event for each newly created code scanning alert detected in the configured repository. Alerts can be filtered by Git reference, scanning tool, state, and severity. The payload includes the alert number, rule details, tool information, state, severity, and the location of the most recent instance.

TriggerPolling

List Contacts

Tool to retrieve all contacts associated with your account. use when you need to browse or manage your contact list after authentication.

ActionInstant

Connect any two apps with Notis in the middle.

GitHub and Endorsal, or any other combination from 1,000+ integrations.

When this happens · Trigger

Do this · Action

Save your first hour today.

7-day trial of any paid plan, with 20$ of usage included.
No card. Works with personal or business Endorsal.