Bring the affected file into security follow-up
Move from a finding document to the source file that needs a closer look.
Trigger
Webhook received
Notis starts this workflow when an external tool or custom backend sends an HTTP request.
Action
Get File Contents
Tool to fetch the contents of a specified file on the default branch. use when you need raw file text without cloning the repo or using a slower code-host api.
Why this helps
Security findings can stall while someone searches for the affected file and reassembles context.
- Retrieve the cited file directly from Sourcegraph.
- Give a reviewer a faster path from finding to source.
- Keep the follow-up focused on the affected code.
Setup
Build it in a few focused steps.
- 1Connect iLovePDF and Sourcegraph once through the Notis portal.
- 2Create an automation named Security finding file context.
- 3In one prompt, ask Notis to use the repository and file path sent with the webhook to fetch that file from Sourcegraph.
- 4Set the trigger to incoming webhook and choose a run-report channel; test with a finding for a known file.
Questions about this workflow
Does fetching the file remediate the finding?
No. It supplies source text for a person to review and decide on remediation.
What if the finding omits a file path?
The prompt should report that the path is missing instead of guessing which file to fetch.
When this happens · Trigger
Do this · Action
Supported Triggers and Actions
Notis builds workflows that link iLovePDF to Sourcegraph. A trigger fires from one place; an action lands in another.
iLovePDF triggers
Sourcegraph actions
Recurring trigger
Notis starts this workflow on a schedule, such as daily, weekly, or during business hours.
Check Site Settings Edit Permission
Tool to check whether site settings can be edited through the api. use when you need to confirm the api allows site settings edits before attempting configuration changes.
Webhook trigger
Notis starts this workflow when an external tool or custom backend sends an HTTP request.
Compare Commits
Tool to compare two commits in a repository and retrieve their file diffs. use after confirming the repository name and commit shas to inspect differences.
Get Commit Details
Get detailed information about a specific commit in a repository.
Get Current User
Tool to retrieve information about the currently authenticated user. use when needing confirmation of identity via sourcegraph graphql api.
Get File Contents
Tool to fetch the contents of a specified file on the default branch. use when you need raw file text without cloning the repo or using a slower code-host api.
List Repositories
Tool to list repositories on the sourcegraph instance. use when you need to paginate through all available repositories.
List Repository Files
Tool to list all files and directories in a repository path. use when you need to enumerate files in a repository without cloning.
List repository languages
Tool to list languages used in a repository. use when you need to determine the primary and all languages of a given repository; call after you have the repository name.
Connect any two apps with Notis in the middle.
iLovePDF and Sourcegraph, or any other combination from 1,000+ integrations.
When this happens · Trigger
Do this · Action
Save your first hour today.
7-day trial of any paid plan, with 20$ of usage included.
No card. Works with personal or business Sourcegraph.