Turn Shared Security Specifications into Firewall Requests
When a security specification is shared for action, Notis can check its rules and create the described firewall.
Trigger
File Shared (Permissions Added)
Triggers when new sharing permissions are granted to a file or folder. Uses Drive's `changes.list` endpoint with inline `permissions` in the `fields` mask so each change carries the file's current permission set provider-atomically. We diff that against `seen_permission_keys` to identify newly added grants. Drive page tokens are the primary cursor; if Drive rejects a stored token, the trigger raises `PollingTriggerError` without clearing state rather than silently re-baselining and dropping events. Limitation: truly ephemeral permissions (added and revoked between two polls without any other file modification in between) are not detected. Drive Activity API would catch those but requires an additional OAuth scope and a different payload contract.
Action
Create New Firewall
Tool to create a new firewall. use when you need to define a firewall name and custom rules (requires at least one inbound and one outbound rule).
Why this helps
Security rule changes can sit in shared documents while infrastructure configuration remains unchanged.
- Connect a shared security specification to a firewall request.
- Require at least one inbound and one outbound rule.
- Get a report when the specification does not provide enough information.
Setup
Build it in a few focused steps.
- 1Connect Google Drive and DigitalOcean once in the Notis portal.
- 2Create an automation in Automations, then New Automation, and give it a name.
- 3In one instruction, tell Notis to review newly shared security specifications and create a firewall only when its name and custom inbound and outbound rules are explicit.
- 4Pick the Google Drive File Shared trigger and choose where run reports should go.
- 5Test with one real shared specification.
Questions about this workflow
What rules are required?
The DigitalOcean firewall action requires at least one inbound rule and one outbound rule. The specification should state both.
Does sharing a file always create a firewall?
The event indicates new sharing permissions. Instruct Notis to identify the relevant security specifications and only act when the content contains a complete request.
When this happens · Trigger
Do this · Action
Supported Triggers and Actions
Notis builds workflows that link Google Drive to Digital ocean. A trigger fires from one place; an action lands in another.
Google Drive triggers
Digital ocean actions
Recurring trigger
Notis starts this workflow on a schedule, such as daily, weekly, or during business hours.
Create Custom Image
Tool to create a new custom image by providing a url to a linux vm image. use when you need to import a vm image into digitalocean after specifying name, url, distribution, and region.
Webhook trigger
Notis starts this workflow when an external tool or custom backend sends an HTTP request.
Create Database Cluster
Tool to create a new managed database cluster. use when you need to provision a database cluster with name, engine, version, region, size, and number of nodes.
Comment Added (Docs/Sheets/Slides)
Triggers when a new comment is added to Google Docs, Sheets, or Slides.
Create New Block Storage Volume
Tool to create a new block storage volume. use when you need to provision persistent block storage after confirming the target region supports volumes. example: "create a 100 gib ext4 backup volume named 'db-backup' in nyc1."
File Created
Triggers when a new file is created in Google Drive.
Create New Domain
Tool to create a new domain. use when you have the domain name and optionally an ip address to assign an a record.
File Deleted or Trashed
Triggers when a file is moved to trash or permanently deleted in Drive.
Create Domain Record
Tool to create a new dns record for a domain. use after confirming domain exists and record specifics.
File Shared (Permissions Added)
Triggers when new sharing permissions are granted to a file or folder. Uses Drive's `changes.list` endpoint with inline `permissions` in the `fields` mask so each change carries the file's current permission set provider-atomically. We diff that against `seen_permission_keys` to identify newly added grants. Drive page tokens are the primary cursor; if Drive rejects a stored token, the trigger raises `PollingTriggerError` without clearing state rather than silently re-baselining and dropping events. Limitation: truly ephemeral permissions (added and revoked between two polls without any other file modification in between) are not detected. Drive Activity API would catch those but requires an additional OAuth scope and a different payload contract.
Create New Droplet
Tool to create a new droplet. use when you need to provision a vm with name, region, size, and image.
File Updated
Triggers when a file's metadata or content changes in Google Drive.
Create New Firewall
Tool to create a new firewall. use when you need to define a firewall name and custom rules (requires at least one inbound and one outbound rule).
Google Drive Changes
Triggers when changes are detected in a Google Drive.
Create New Kubernetes Cluster
Tool to create a new kubernetes cluster. use when you have finalized the cluster name, region, version, and at least one node pool. confirm region supports kubernetes clusters before use.
Connect any two apps with Notis in the middle.
Google Drive and Digital ocean, or any other combination from 1,000+ integrations.
When this happens · Trigger
Do this · Action
Save your first hour today.
7-day trial of any paid plan, with 20$ of usage included.
No card. Works with personal or business Digital ocean.