Clean up temporary DNS blocks after release changes
Temporary protection should not quietly become permanent clutter.
Trigger
GitHub Release State Changed
Triggers when a specific GitHub release (identified by tag name) changes. Monitors the release title, body/notes, draft flag, prerelease flag, published timestamp, target branch/commit, and the set of attached assets. The payload includes the full current release details, a list of which fields changed, and the previous values for comparison.
Action
Remove Denylist Domain
Tool to remove a domain from a profile's denylist. use after confirming the domain is currently denied to clean it up.
Why this helps
Temporary denylist entries are often forgotten after the incident or release that justified them ends.
- Prevents stale temporary blocks.
- Keeps profiles easier to maintain.
- Removes a recurring cleanup decision from your head.
Setup
Build it in a few focused steps.
- 1Connect GitHub and NextDNS to Notis once through the portal.
- 2Create the automation in the portal or ask Notis to create it conversationally.
- 3Use this instruction: When the monitored GitHub release changes state, confirm that the named temporary domain is currently denied and remove it from the selected NextDNS profile.
- 4Select the release state trigger, choose the reporting channel, and test with one release change.
Questions about this workflow
Will it remove unrelated domains?
No. Name the exact temporary domain in the instruction.
Can it wait for a published release?
Yes. Configure the release event and condition in the plain-language instruction.
When this happens · Trigger
Do this · Action
Supported Triggers and Actions
Notis builds workflows that link GitHub to Nextdns. A trigger fires from one place; an action lands in another.
GitHub triggers
Nextdns actions
Recurring trigger
Notis starts this workflow on a schedule, such as daily, weekly, or during business hours.
Add Blocked TLD
Tool to add a top-level domain to the security blocklist for a nextdns profile. use after listing current security settings to ensure the tld is not already blocked.
Webhook trigger
Notis starts this workflow when an external tool or custom backend sends an HTTP request.
Add Denylist Domain
Tool to add a domain to the denylist of a nextdns profile. use when blocking specific domains under a profile after obtaining its id.
New Workflow Artifact Created
Triggers when a new workflow artifact is created in a GitHub repository. Monitors for newly created GitHub Actions workflow artifacts. Optionally filters by artifact name to restrict monitoring to specific artifacts.
Toggle Block Page
Tool to enable or disable block page for a configuration. use when you need to toggle whether dns blocks show a block page.
Branch Changed
Triggers when a GitHub branch changes. Monitors a specific branch for: - New commits pushed (head commit SHA changes) - Protection status toggled (branch becomes protected or unprotected) - Protection settings changed, including: required status checks and their enforcement level, admin enforcement, required pull request reviews (dismiss stale reviews, code owner reviews, approving review count, last push approval), required linear history, force push allowance, deletion allowance, conversation resolution, branch locking, and fork syncing.
Clear Logs
Tool to clear dns logs for a nextdns profile. use when you want to remove all existing query logs for a given profile. note: this operation cannot be undone.
New Branch Created
Triggers when a new branch is created in a GitHub repository. Detects newly created branches. Deleted branches do not fire events.
Create Profile
This tool allows users to create a new nextdns profile. it uses the post method at the endpoint https://api.nextdns.io/profiles. a profile is a distinct configuration set for dns filtering and security settings.
Check Run Status / Conclusion Changed
Triggers when a specific GitHub check run changes its status or conclusion. Monitors a single check run for changes to: status (queued, in_progress, completed, etc.), conclusion (success, failure, neutral, cancelled, skipped, timed_out, action_required), started_at, and completed_at.
Delete NextDNS Configuration
Tool to delete a nextdns configuration profile. use when you need to remove an existing profile by its id. use after confirming the profile exists.
Check Suite Status / Conclusion Changed
Triggers when a GitHub check suite changes its status or conclusion for a given ref. Monitors all check suites associated with a git reference (branch, tag, or commit SHA) for changes to status (queued, in_progress, completed, etc.) and conclusion (success, failure, neutral, cancelled, skipped, timed_out, action_required, startup_failure, stale). Optionally filters by GitHub App ID.
Download Logs
Tool to download dns logs for a profile. use when you need the url of the exported logs. use after confirming the profile id is valid. supports getting a redirect url or json.
New Code Scanning Alert Created
Triggers when a new code scanning alert is created in a repository. Fires an event for each newly created code scanning alert detected in the configured repository. Alerts can be filtered by Git reference, scanning tool, state, and severity. The payload includes the alert number, rule details, tool information, state, severity, and the location of the most recent instance.
Get Analytics Devices
Tool to retrieve analytics aggregated by devices. use when you need per-device query metrics within a specific time frame.
Connect any two apps with Notis in the middle.
GitHub and Nextdns, or any other combination from 1,000+ integrations.
When this happens · Trigger
Do this · Action
Save your first hour today.
7-day trial of any paid plan, with 20$ of usage included.
No card. Works with personal or business Nextdns.