Review IP Hazard Signals When a File Is Shared
When an IP report is shared, get its available hazard signals summarized for a timely review.
Trigger
File Shared (Permissions Added)
Triggers when new sharing permissions are granted to a file or folder. Uses Drive's `changes.list` endpoint with inline `permissions` in the `fields` mask so each change carries the file's current permission set provider-atomically. We diff that against `seen_permission_keys` to identify newly added grants. Drive page tokens are the primary cursor; if Drive rejects a stored token, the trigger raises `PollingTriggerError` without clearing state rather than silently re-baselining and dropping events. Limitation: truly ephemeral permissions (added and revoked between two polls without any other file modification in between) are not detected. Drive Activity API would catch those but requires an additional OAuth scope and a different payload contract.
Action
Hazard Report API
Tool to fetch a cybersecurity hazard report for a specified ip address. use when assessing an ip's threat profile (vpn, proxy, blacklists, hosting risk).
Why this helps
Shared security notes can be overlooked while teams coordinate who should inspect the underlying IP.
- Run a hazard report on an IP in a newly shared file.
- Bring VPN, proxy, blacklist, and hosting risk signals into a summary.
- Prompt a timely human review when a report is shared.
Setup
Build it in a few focused steps.
- 1Connect Google Drive and Big Data Cloud once in the Notis portal.
- 2Create an automation in Automations, New Automation, and give it a name.
- 3Tell Notis to find an IP address in a newly shared file, request its hazard report, and summarize the findings for review.
- 4Choose File Shared (Permissions Added) as the trigger and select a channel for run reports.
- 5Test with a real shared file containing an IP address.
Questions about this workflow
What does the hazard report assess?
It provides cybersecurity hazard information for a specified IP, including signals such as VPN, proxy, blacklists, and hosting risk.
Does sharing the file itself change its permissions?
No. The workflow uses the sharing event as a trigger and requests an IP hazard report.
When this happens · Trigger
Do this · Action
Supported Triggers and Actions
Notis builds workflows that link Google Drive to Big data cloud. A trigger fires from one place; an action lands in another.
Google Drive triggers
Big data cloud actions
Recurring trigger
Notis starts this workflow on a schedule, such as daily, weekly, or during business hours.
Am I Roaming API
Tool to determine if the user is roaming based on their ip address and gps coordinates. use after obtaining device location to verify roaming status before mobile actions.
Webhook trigger
Notis starts this workflow when an external tool or custom backend sends an HTTP request.
ASN Extended Receiving From Info API
Tool to return upstream providers (receivingfrom) for a given asn. use when you need a paginated list of ases feeding traffic for the specified asn.
Comment Added (Docs/Sheets/Slides)
Triggers when a new comment is added to Google Docs, Sheets, or Slides.
ASN Extended Transit To Info API
Tool to return downstream customers (transitto) for a given asn. use when you need a paginated list of ases receiving traffic from a specific asn.
File Created
Triggers when a new file is created in Google Drive.
ASN Rank List API
Tool to fetch a ranked list of autonomous systems by ipv4 announcement volumes. use after you need to compare or analyze as ranks.
File Deleted or Trashed
Triggers when a file is moved to trash or permanently deleted in Drive.
BGP Active Prefixes API
Tool to retrieve ipv4 or ipv6 prefixes currently announced on bgp. use when inspecting bgp routing announcements for a given asn.
File Shared (Permissions Added)
Triggers when new sharing permissions are granted to a file or folder. Uses Drive's `changes.list` endpoint with inline `permissions` in the `fields` mask so each change carries the file's current permission set provider-atomically. We diff that against `seen_permission_keys` to identify newly added grants. Drive page tokens are the primary cursor; if Drive rejects a stored token, the trigger raises `PollingTriggerError` without clearing state rather than silently re-baselining and dropping events. Limitation: truly ephemeral permissions (added and revoked between two polls without any other file modification in between) are not detected. Drive Activity API would catch those but requires an additional OAuth scope and a different payload contract.
Reverse Geocoding With Timezone API
Tool to return reverse geocoding and time zone info for given coordinates. use when you need both locality details and timezone data in one call.
File Updated
Triggers when a file's metadata or content changes in Google Drive.
Country by IP Address API
Tool to geolocate an ip address and retrieve country details and demographics. use when you need country-level data after obtaining the target ip address.
Google Drive Changes
Triggers when changes are detected in a Google Drive.
Country Info API
Tool to fetch detailed country information by iso code. use when you need localized names, currencies, regions, and other metadata for a country.
Connect any two apps with Notis in the middle.
Google Drive and Big data cloud, or any other combination from 1,000+ integrations.
When this happens · Trigger
Do this · Action
Save your first hour today.
7-day trial of any paid plan, with 20$ of usage included.
No card. Works with personal or business Big data cloud.