Review stale returned assets from GitHub
Let the policy and returned last-seen field do the sorting.
Trigger
New Issue Created
Triggers when a new issue is created in a GitHub repository. Pull requests are automatically excluded -- only true issues produce events. Results can be filtered by labels, assignee, creator, and mentioned user. The payload includes the issue number, title, body, state, labels, assignees, comment count, creator details, timestamps, and direct links to the issue on GitHub.
Action
SQL API Execute Query
Tool to execute SQL queries across Hosts and IPs. Use when you need to retrieve data via SecurityTrails SQL API.
Why this helps
Old infrastructure stays on mental lists long after it stops being relevant.
- Requires a documented last-seen field.
- Applies the supplied threshold.
- Produces a bounded review list.
Setup
Build it in a few focused steps.
- 1Connect both integrations once.
- 2Ask Notis to run the supported SQL query and apply the issue's last-seen policy.
- 3Choose the new-issue trigger and report channel, then test with one policy threshold.
Questions about this workflow
What makes an asset stale?
Only the threshold supplied in the issue determines staleness, using a returned last-seen field.
Does stale mean unsafe?
No. It means the item merits review under the supplied policy.
When this happens · Trigger
Do this · Action
Supported Triggers and Actions
Notis builds workflows that link GitHub to Securitytrails. A trigger fires from one place; an action lands in another.
GitHub triggers
Securitytrails actions
Recurring trigger
Notis starts this workflow on a schedule, such as daily, weekly, or during business hours.
Bulk Static Asset Rules
Tool to bulk add or remove static asset rules for a project. Use when performing batch updates (up to 1000 rules total) asynchronously; verify changes via the Get Static Assets endpoint.
Webhook trigger
Notis starts this workflow when an external tool or custom backend sends an HTTP request.
Get Company Associated IPs
Tool to retrieve IPs associated with a company domain. Use when you need to find all IP addresses linked to an organization's domain name.
New Workflow Artifact Created
Triggers when a new workflow artifact is created in a GitHub repository. Monitors for newly created GitHub Actions workflow artifacts. Optionally filters by artifact name to restrict monitoring to specific artifacts.
Get Domain
Tool to retrieve current data about a given domain, including DNS record statistics. Use when you need to fetch detailed domain insights after determining the target hostname.
Branch Changed
Triggers when a GitHub branch changes. Monitors a specific branch for: - New commits pushed (head commit SHA changes) - Protection status toggled (branch becomes protected or unprotected) - Protection settings changed, including: required status checks and their enforcement level, admin enforcement, required pull request reviews (dismiss stale reviews, code owner reviews, approving review count, last push approval), required linear history, force push allowance, deletion allowance, conversation resolution, branch locking, and fork syncing.
Get Domain SSL
Tool to fetch current and historical SSL certificate details for a hostname. Use when you need to retrieve SSL data after identifying the domain.
New Branch Created
Triggers when a new branch is created in a GitHub repository. Detects newly created branches. Deleted branches do not fire events.
IP Search Statistics
Tool to fetch summary statistics for an IP DSL query. Use when you need metrics for IP search queries.
Check Run Status / Conclusion Changed
Triggers when a specific GitHub check run changes its status or conclusion. Monitors a single check run for changes to: status (queued, in_progress, completed, etc.), conclusion (success, failure, neutral, cancelled, skipped, timed_out, action_required), started_at, and completed_at.
List ASI Projects
Tool to list ASI projects available to the account. Use when you need project IDs for subsequent ASI operations.
Check Suite Status / Conclusion Changed
Triggers when a GitHub check suite changes its status or conclusion for a given ref. Monitors all check suites associated with a git reference (branch, tag, or commit SHA) for changes to status (queued, in_progress, completed, etc.) and conclusion (success, failure, neutral, cancelled, skipped, timed_out, action_required, startup_failure, stale). Optionally filters by GitHub App ID.
Ping
Tool to test authentication and connectivity with the SecurityTrails API. Use after configuring API key.
New Code Scanning Alert Created
Triggers when a new code scanning alert is created in a repository. Fires an event for each newly created code scanning alert detected in the configured repository. Alerts can be filtered by Git reference, scanning tool, state, and severity. The payload includes the alert number, rule details, tool information, state, severity, and the location of the most recent instance.
Scroll Results
Tool to continue scrolling through DSL search results. Use after receiving a scroll_id from a prior search to fetch the next batch of data.
Connect any two apps with Notis in the middle.
GitHub and Securitytrails, or any other combination from 1,000+ integrations.
When this happens · Trigger
Do this · Action
Save your first hour today.
7-day trial of any paid plan, with 20$ of usage included.
No card. Works with personal or business Securitytrails.