Skip to content
Notis

Bring the affected file into security follow-up

Move from a finding document to the source file that needs a closer look.

Trigger

Webhook received

Notis starts this workflow when an external tool or custom backend sends an HTTP request.

Action

Get File Contents

Tool to fetch the contents of a specified file on the default branch. use when you need raw file text without cloning the repo or using a slower code-host api.

Why this helps

Security findings can stall while someone searches for the affected file and reassembles context.

  • Retrieve the cited file directly from Sourcegraph.
  • Give a reviewer a faster path from finding to source.
  • Keep the follow-up focused on the affected code.

Setup

Build it in a few focused steps.

  • 1Connect iLovePDF and Sourcegraph once through the Notis portal.
  • 2Create an automation named Security finding file context.
  • 3In one prompt, ask Notis to use the repository and file path sent with the webhook to fetch that file from Sourcegraph.
  • 4Set the trigger to incoming webhook and choose a run-report channel; test with a finding for a known file.

Questions about this workflow

Does fetching the file remediate the finding?

No. It supplies source text for a person to review and decide on remediation.

What if the finding omits a file path?

The prompt should report that the path is missing instead of guessing which file to fetch.

When this happens · Trigger

Do this · Action

Supported Triggers and Actions

Notis builds workflows that link iLovePDF to Sourcegraph. A trigger fires from one place; an action lands in another.

iLovePDF triggers

Sourcegraph actions

Recurring trigger

Notis starts this workflow on a schedule, such as daily, weekly, or during business hours.

TriggerScheduled

Check Site Settings Edit Permission

Tool to check whether site settings can be edited through the api. use when you need to confirm the api allows site settings edits before attempting configuration changes.

ActionInstant

Webhook trigger

Notis starts this workflow when an external tool or custom backend sends an HTTP request.

TriggerInstant

Compare Commits

Tool to compare two commits in a repository and retrieve their file diffs. use after confirming the repository name and commit shas to inspect differences.

ActionInstant

Get Commit Details

Get detailed information about a specific commit in a repository.

ActionInstant

Get Current User

Tool to retrieve information about the currently authenticated user. use when needing confirmation of identity via sourcegraph graphql api.

ActionInstant

Get File Contents

Tool to fetch the contents of a specified file on the default branch. use when you need raw file text without cloning the repo or using a slower code-host api.

ActionInstant

List Repositories

Tool to list repositories on the sourcegraph instance. use when you need to paginate through all available repositories.

ActionInstant

List Repository Files

Tool to list all files and directories in a repository path. use when you need to enumerate files in a repository without cloning.

ActionInstant

List repository languages

Tool to list languages used in a repository. use when you need to determine the primary and all languages of a given repository; call after you have the repository name.

ActionInstant

Connect any two apps with Notis in the middle.

iLovePDF and Sourcegraph, or any other combination from 1,000+ integrations.

When this happens · Trigger

Do this · Action

Save your first hour today.

7-day trial of any paid plan, with 20$ of usage included.
No card. Works with personal or business Sourcegraph.