Make security follow-up easier to start
When a code alert arrives, surface the available Vision projects for the next review step.
Trigger
New Code Scanning Alert Created
Triggers when a new code scanning alert is created in a repository. Fires an event for each newly created code scanning alert detected in the configured repository. Alerts can be filtered by Git reference, scanning tool, state, and severity. The payload includes the alert number, rule details, tool information, state, severity, and the location of the most recent instance.
Action
List Projects
Tool to list Google Cloud projects accessible by the authenticated user. Use when you need to enumerate available project IDs and resource names before performing further operations.
Why this helps
Security alerts compete with many priorities, and the first follow-up often requires remembering where the related cloud project lives.
- Reduces the number of places to search
- Creates a consistent security follow-up cue
- Helps scope the affected Vision environment
Setup
Build it in a few focused steps.
- 1Connect GitHub and Google Cloud Vision to Notis once in the portal.
- 2Create an automation or ask Notis to list accessible Vision projects and summarize the next review context when a relevant code scanning alert appears.
- 3Pick the New Code Scanning Alert Created trigger and choose a channel for run reports.
- 4Trigger one test alert in a safe repository and verify the project list is reported.
Questions about this workflow
Should every scanning alert run this?
Use alert filters and specify which tools, severities, or repositories matter in the instruction.
Does this remediate the alert?
No. It prepares the Vision project context for human or agent-led review.
When this happens · Trigger
Do this · Action
Supported Triggers and Actions
Notis builds workflows that link GitHub to Google cloud vision. A trigger fires from one place; an action lands in another.
GitHub triggers
Google cloud vision actions
Recurring trigger
Notis starts this workflow on a schedule, such as daily, weekly, or during business hours.
Create Vision Product
Tool to create and return a new Product resource. Use when you need to register a product in a specific project/location after preparing product details.
Webhook trigger
Notis starts this workflow when an external tool or custom backend sends an HTTP request.
Create ReferenceImage
Tool to create a ReferenceImage under a product. Use when adding a new image to a product for detection.
New Workflow Artifact Created
Triggers when a new workflow artifact is created in a GitHub repository. Monitors for newly created GitHub Actions workflow artifacts. Optionally filters by artifact name to restrict monitoring to specific artifacts.
Delete Product
Tool to permanently delete a Product and its reference images. Use after confirming the product's resource name.
Branch Changed
Triggers when a GitHub branch changes. Monitors a specific branch for: - New commits pushed (head commit SHA changes) - Protection status toggled (branch becomes protected or unprotected) - Protection settings changed, including: required status checks and their enforcement level, admin enforcement, required pull request reviews (dismiss stale reviews, code owner reviews, approving review count, last push approval), required linear history, force push allowance, deletion allowance, conversation resolution, branch locking, and fork syncing.
Get Product
Tool to get information associated with a Product. Use when you have the product resource name and need its details.
New Branch Created
Triggers when a new branch is created in a GitHub repository. Detects newly created branches. Deleted branches do not fire events.
Get Product Set
Tool to get a ProductSet. Use when you need metadata details of an existing ProductSet by its full resource name. Use after obtaining the resource name.
Check Run Status / Conclusion Changed
Triggers when a specific GitHub check run changes its status or conclusion. Monitors a single check run for changes to: status (queued, in_progress, completed, etc.), conclusion (success, failure, neutral, cancelled, skipped, timed_out, action_required), started_at, and completed_at.
Import Product Sets
Tool to asynchronously import reference images into ProductSets from a CSV in GCS. Use when you need to bulk import images into product sets via a Cloud Storage CSV.
Check Suite Status / Conclusion Changed
Triggers when a GitHub check suite changes its status or conclusion for a given ref. Monitors all check suites associated with a git reference (branch, tag, or commit SHA) for changes to status (queued, in_progress, completed, etc.) and conclusion (success, failure, neutral, cancelled, skipped, timed_out, action_required, startup_failure, stale). Optionally filters by GitHub App ID.
List IndexEndpoints
Tool to list IndexEndpoints in a project and location. Use when you need to retrieve existing IndexEndpoints and handle pagination.
New Code Scanning Alert Created
Triggers when a new code scanning alert is created in a repository. Fires an event for each newly created code scanning alert detected in the configured repository. Alerts can be filtered by Git reference, scanning tool, state, and severity. The payload includes the alert number, rule details, tool information, state, severity, and the location of the most recent instance.
List Locations
Tool to list available Vision AI service locations for a project. Use when you need to discover supported regions before making region-specific API calls.
Connect any two apps with Notis in the middle.
GitHub and Google cloud vision, or any other combination from 1,000+ integrations.
When this happens · Trigger
Do this · Action
Save your first hour today.
7-day trial of any paid plan, with 20$ of usage included.
No card. Works with personal or business Google cloud vision.