Skip to content
Notis

Review risk models after a policy document changes

A policy update can change what your audits need to cover. Bring your available 21risk risk models into the review while the change is visible.

Trigger

File Updated

Triggers when a file's metadata or content changes in Google Drive.

Action

Get Risk Models

Tool to retrieve risk models used for audits and compliance. use when you need to list available risk models with optional odata queries.

Why this helps

Policy changes can be separated from audit planning, making it harder to remember whether review scope should be reconsidered.

  • Prompt a risk model review when relevant Drive content changes.
  • Keep policy updates connected to audit planning discussions.
  • Help reviewers spot possible coverage questions sooner.

Setup

Build it in a few focused steps.

  • 1Connect Google Drive and 21risk once in the Notis portal.
  • 2Create an automation in Automations, New Automation, and name it for policy change review.
  • 3Tell Notis: when a Drive file is updated, retrieve 21risk risk models and summarize potential review questions if the file appears to be a policy or procedure. Flag when the file context is insufficient.
  • 4Pick the Google Drive File Updated trigger and choose where run reports should go.
  • 5Test with one real policy update and inspect the suggested questions.

Questions about this workflow

Does this change an audit's risk model?

No. The available action retrieves risk models. A person should decide whether any audit scope or model needs updating.

Will every Drive update trigger a useful policy review?

The trigger covers file metadata or content changes broadly. Your instruction should ask Notis to identify policy or procedure context and report when it is unclear.

When this happens · Trigger

Do this · Action

Supported Triggers and Actions

Notis builds workflows that link Google Drive to 21risk. A trigger fires from one place; an action lands in another.

Google Drive triggers

21risk actions

Recurring trigger

Notis starts this workflow on a schedule, such as daily, weekly, or during business hours.

TriggerScheduled

Get Compliance

Tool to retrieve compliance data for sites, categories, or questions. use when you need odata-based compliance data for analytics or reporting.

ActionInstant

Webhook trigger

Notis starts this workflow when an external tool or custom backend sends an HTTP request.

TriggerInstant

Get Items (BETA)

Tool to retrieve items (beta) from the 21risk odata api. use when you need a filtered and paged list of items for analytics and reporting. example: get items($filter="item cost gt 100", $top=50).

ActionInstant

Comment Added (Docs/Sheets/Slides)

Triggers when a new comment is added to Google Docs, Sheets, or Slides.

TriggerPolling

Get Items Per Month

Tool to retrieve fact table data for itemspermonth, one row per question per site per month. use when querying monthly item data with odata parameters ($filter, $top, $skip, $select, maxpagesizeinmb).

ActionInstant

File Created

Triggers when a new file is created in Google Drive.

TriggerPolling

Get Organizations

Tool to retrieve organizations from the 21risk odata api. use when you need to list, filter, or paginate organizations via odata parameters after authentication is confirmed.

ActionInstant

File Deleted or Trashed

Triggers when a file is moved to trash or permanently deleted in Drive.

TriggerPolling

Get Properties

Tool to fetch a list of properties related to sites, including cope information and other relevant data. use when you need property insurance details via odata api after authentication.

ActionInstant

File Shared (Permissions Added)

Triggers when new sharing permissions are granted to a file or folder. Uses Drive's `changes.list` endpoint with inline `permissions` in the `fields` mask so each change carries the file's current permission set provider-atomically. We diff that against `seen_permission_keys` to identify newly added grants. Drive page tokens are the primary cursor; if Drive rejects a stored token, the trigger raises `PollingTriggerError` without clearing state rather than silently re-baselining and dropping events. Limitation: truly ephemeral permissions (added and revoked between two polls without any other file modification in between) are not detected. Drive Activity API would catch those but requires an additional OAuth scope and a different payload contract.

TriggerPolling

Get Reports

Tool to retrieve audit reports, including draft, published, and scheduled reports. use when you need a paginated list of reports with optional odata filtering.

ActionInstant

File Updated

Triggers when a file's metadata or content changes in Google Drive.

TriggerPolling

Get RiskModel Categories

Tool to retrieve risk model categories for grouping questions and compliance checks. use when you need to filter, select, or paginate risk model categories via odata parameters ($filter, $select, $orderby, $top, $skip, $count).

ActionInstant

Google Drive Changes

Triggers when changes are detected in a Google Drive.

TriggerPolling

Get Risk Models

Tool to retrieve risk models used for audits and compliance. use when you need to list available risk models with optional odata queries.

ActionInstant

Connect any two apps with Notis in the middle.

Google Drive and 21risk, or any other combination from 1,000+ integrations.

When this happens · Trigger

Do this · Action

Save your first hour today.

7-day trial of any paid plan, with 20$ of usage included.
No card. Works with personal or business 21risk.