Skip to content
Notis

Rotate Secrets and Sync Instantly

Mark an issue secret-rotation. Variables update in Codemagic. Credentials synced across all builds.

Trigger

Issue Updated Trigger

Triggered when an issue is updated. For example labels are changed, issue status is changed, etc.

Action

Update Variable in Group

Tool to update an existing variable within a specified variable group in Codemagic. Use when you need to modify a variable's name, value, or secure status.

Why this helps

Rotating secrets means context switching between Linear and Codemagic, and manual variable updates risk errors and misses.

  • Secrets updated in Codemagic from Linear issues
  • No manual variable updates or context switching
  • Audit trail shows who rotated what and when
  • Lower risk of missed or misconfigured credentials

Setup

Build it in a few focused steps.

  • 1Connect Linear and Codemagic to Notis.
  • 2Tell Notis: 'When an issue is marked secret-rotation, update the specified variables in Codemagic with the new values from the issue.'
  • 3Pick the trigger: 'Issue Updated in Linear' (for secret-rotation label/status).
  • 4Specify which variable group and which variables to update.
  • 5Test by creating a rotation issue with new values and verify variables are updated in Codemagic.

Questions about this workflow

How do I pass the new secret values from Linear to Notis securely?

Store them in a restricted-access issue comment, or use Notis's encrypted comment feature. Values are never logged.

Can I rotate multiple variables at once?

Yes. List them in the issue: 'DATABASE_URL, API_KEY, SESSION_SECRET' and Notis updates all of them.

Does this create an audit trail of rotations?

Yes. The issue and Codemagic logs both show the rotation. Full traceability for compliance.

When this happens · Trigger

Do this · Action

Supported Triggers and Actions

Notis builds workflows that link Linear to Codemagic. A trigger fires from one place; an action lands in another.

Linear triggers

Codemagic actions

Recurring trigger

Notis starts this workflow on a schedule, such as daily, weekly, or during business hours.

TriggerScheduled

Add Application from Private Repository

Tool to create an application from a private repository using SSH key authentication. Use when you need to add a new private repository to Codemagic with SSH credentials.

ActionInstant

Webhook trigger

Notis starts this workflow when an external tool or custom backend sends an HTTP request.

TriggerInstant

Add New Application

Tool to add a Git repository to the applications list in Codemagic. Use when you need to add a new application to Codemagic from a repository URL.

ActionInstant

Comment Received Trigger

Triggered when a comment is received.

TriggerInstant

Get Meta Information

Tool to get metadata about Codemagic including public IP addresses in use (in CIDR notation). Use when you need to retrieve IP blocks for whitelisting build machines or simulator network requests.

ActionInstant

Issue Created Trigger

Triggered when a new issue is created.

TriggerInstant

Get Variable Group Information

Tool to retrieve information about a specific variable group including its name and configuration settings. Use when you need to get details for a variable group by its ID.

ActionInstant

Issue Updated Trigger

Triggered when an issue is updated. For example labels are changed, issue status is changed, etc.

TriggerInstant

Update Variable Group

Tool to change a variable group's name and security settings. Use when you need to update an existing variable group by its ID. Returns success confirmation on 204 No Content response.

ActionInstant

Private Team Comment Created

Fires when a new comment is posted on an issue in a private Linear team (polled with the connected user's token).

TriggerPolling

Delete All Application Caches

Tool to delete all caches for a specific application. Use when clearing all cached data for an app. The deletion process is asynchronous and will complete after the API response is returned.

ActionInstant

Private Team Issue Created

Fires when a new issue appears in a private Linear team (polled with the connected user's token).

TriggerPolling

Delete Specific Cache

Tool to delete a specific cache from an application. Use when a cached build artifact needs to be removed. The deletion is performed asynchronously and returns immediately with a 202 Accepted status.

ActionInstant

Private Team Issue Properties Updated

Fires when properties on an issue change in a private Linear team (polled with the connected user's token).

TriggerPolling

Get Account Info for Over-the-Air Updates

Tool to retrieve account information for over-the-air updates. Use when you need to check the account status (enabled/disabled/pending) and associated team identifier.

ActionInstant

Connect any two apps with Notis in the middle.

Linear and Codemagic, or any other combination from 1,000+ integrations.

When this happens · Trigger

Do this · Action

Save your first hour today.

7-day trial of any paid plan, with 20$ of usage included.
No card. Works with personal or business Codemagic.