Review risk models after a policy document changes
A policy update can change what your audits need to cover. Bring your available 21risk risk models into the review while the change is visible.
Trigger
File Updated
Triggers when a file's metadata or content changes in Google Drive.
Action
Get Risk Models
Tool to retrieve risk models used for audits and compliance. use when you need to list available risk models with optional odata queries.
Why this helps
Policy changes can be separated from audit planning, making it harder to remember whether review scope should be reconsidered.
- Prompt a risk model review when relevant Drive content changes.
- Keep policy updates connected to audit planning discussions.
- Help reviewers spot possible coverage questions sooner.
Setup
Build it in a few focused steps.
- 1Connect Google Drive and 21risk once in the Notis portal.
- 2Create an automation in Automations, New Automation, and name it for policy change review.
- 3Tell Notis: when a Drive file is updated, retrieve 21risk risk models and summarize potential review questions if the file appears to be a policy or procedure. Flag when the file context is insufficient.
- 4Pick the Google Drive File Updated trigger and choose where run reports should go.
- 5Test with one real policy update and inspect the suggested questions.
Questions about this workflow
Does this change an audit's risk model?
No. The available action retrieves risk models. A person should decide whether any audit scope or model needs updating.
Will every Drive update trigger a useful policy review?
The trigger covers file metadata or content changes broadly. Your instruction should ask Notis to identify policy or procedure context and report when it is unclear.
When this happens · Trigger
Do this · Action
Supported Triggers and Actions
Notis builds workflows that link Google Drive to 21risk. A trigger fires from one place; an action lands in another.
Google Drive triggers
21risk actions
Recurring trigger
Notis starts this workflow on a schedule, such as daily, weekly, or during business hours.
Get Compliance
Tool to retrieve compliance data for sites, categories, or questions. use when you need odata-based compliance data for analytics or reporting.
Webhook trigger
Notis starts this workflow when an external tool or custom backend sends an HTTP request.
Get Items (BETA)
Tool to retrieve items (beta) from the 21risk odata api. use when you need a filtered and paged list of items for analytics and reporting. example: get items($filter="item cost gt 100", $top=50).
Comment Added (Docs/Sheets/Slides)
Triggers when a new comment is added to Google Docs, Sheets, or Slides.
Get Items Per Month
Tool to retrieve fact table data for itemspermonth, one row per question per site per month. use when querying monthly item data with odata parameters ($filter, $top, $skip, $select, maxpagesizeinmb).
File Created
Triggers when a new file is created in Google Drive.
Get Organizations
Tool to retrieve organizations from the 21risk odata api. use when you need to list, filter, or paginate organizations via odata parameters after authentication is confirmed.
File Deleted or Trashed
Triggers when a file is moved to trash or permanently deleted in Drive.
Get Properties
Tool to fetch a list of properties related to sites, including cope information and other relevant data. use when you need property insurance details via odata api after authentication.
File Shared (Permissions Added)
Triggers when new sharing permissions are granted to a file or folder. Uses Drive's `changes.list` endpoint with inline `permissions` in the `fields` mask so each change carries the file's current permission set provider-atomically. We diff that against `seen_permission_keys` to identify newly added grants. Drive page tokens are the primary cursor; if Drive rejects a stored token, the trigger raises `PollingTriggerError` without clearing state rather than silently re-baselining and dropping events. Limitation: truly ephemeral permissions (added and revoked between two polls without any other file modification in between) are not detected. Drive Activity API would catch those but requires an additional OAuth scope and a different payload contract.
Get Reports
Tool to retrieve audit reports, including draft, published, and scheduled reports. use when you need a paginated list of reports with optional odata filtering.
File Updated
Triggers when a file's metadata or content changes in Google Drive.
Get RiskModel Categories
Tool to retrieve risk model categories for grouping questions and compliance checks. use when you need to filter, select, or paginate risk model categories via odata parameters ($filter, $select, $orderby, $top, $skip, $count).
Google Drive Changes
Triggers when changes are detected in a Google Drive.
Get Risk Models
Tool to retrieve risk models used for audits and compliance. use when you need to list available risk models with optional odata queries.
Connect any two apps with Notis in the middle.
Google Drive and 21risk, or any other combination from 1,000+ integrations.
When this happens · Trigger
Do this · Action
Save your first hour today.
7-day trial of any paid plan, with 20$ of usage included.
No card. Works with personal or business 21risk.