Review Cloudflare firewall rules when a Notion security page changes
Let an update to your security page prompt a fresh firewall rule review while the change is top of mind.
Trigger
Page Content Updated
Triggers when the body content of a Notion page is updated. Customer optionally scopes with at most one of: - data_source_id: any row in this data source - page_id: this specific page - parent_page_id: any page whose immediate parent is this page With none set, fires for any page content edit in the workspace the integration has access to. Notion aggregates content edits within a short window (~60s typical).
Action
List Firewall Rules
Tool to list firewall rules for a specific zone. use after confirming the zone id to retrieve and audit current firewall rules.
Why this helps
Security guidance can change without anyone remembering to revisit the related Cloudflare rules.
- Pair security documentation updates with a rule review prompt.
- Keep the relevant zone and rationale in the page context.
- Reduce manual follow-up after policy changes.
Setup
Build it in a few focused steps.
- 1Connect Notion and Cloudflare to Notis once in the portal.
- 2Create an automation in the portal, or ask Notis to list firewall rules when the specified security page changes.
- 3Describe which page updates qualify and how to identify the zone; select Page Content Updated and a report channel.
- 4Test with one meaningful update to the security page.
Questions about this workflow
Will this edit firewall rules automatically?
No. It retrieves firewall rules for review.
Can this watch a particular page?
Yes. Select the appropriate page scope when choosing the trigger.
When this happens · Trigger
Do this · Action
Supported Triggers and Actions
Notis builds workflows that link Notion to Cloudflare. A trigger fires from one place; an action lands in another.
Notion triggers
Cloudflare actions
Recurring trigger
Notis starts this workflow on a schedule, such as daily, weekly, or during business hours.
Create DNS record
Tool to create a new dns record within a specific zone. use after obtaining the zone id to programmatically add dns entries.
Webhook trigger
Notis starts this workflow when an external tool or custom backend sends an HTTP request.
Create WAF List
Tool to create a new empty waf list for the account. use after confirming the account id. example: create list(account id="<id>", kind="ip", name="blocklist")
All Page Events
Triggers when any Notion page is created or updated across the workspace.
Create Zone
Tool to create a new zone. use after confirming account id when adding a domain to cloudflare.
Comment Created
Triggers when a new comment is created in Notion. Optional `page_id` filter scopes to comments on a specific page. When omitted, fires for any new comment in the workspace the integration has access to. Requires the 'Read comments' capability on the Notion integration. If a connection was authorized before that capability was enabled, the user must re-authorize the connection for comment events to flow.
Delete DNS Record
Tool to delete a dns record within a specific zone. use after confirming zone and record ids. example: "delete dns record 372e6795... from zone 023e105f4ecef..."
New Comment
Triggers when a new comment is added to a specified Notion block or page.
Delete WAF List
Tool to delete a waf list. use when you need to remove a list after verifying no filters reference it. example: delete list(account id="<account id>", list id="<list id>")
Database Created
Triggers when a new Notion database (the container) is created. A database is the post-2025-09-03 container that holds one or more data sources. This trigger fires for the container's creation event (`database.created`), distinct from `NOTION_DATASOURCE_CREATED` which fires when a new data source is added to an existing database. Most customers calling Notion's `POST /v1/databases` (the legacy API) or creating a database via the Notion UI will see this event. Adding a new data source to an existing database fires `data_source.created` instead — use `NOTION_DATASOURCE_CREATED` for that. Notion's payload puts `entity.type: "block"` (the container is a `child_database` block in the content tree) and `entity.id` is the database id.
Delete Zone
Tool to delete a zone. use after confirming the zone identifier to permanently remove a dns zone from your cloudflare account. example: delete zone(zone identifier="023e105f4ecef8ad9ca31a8372d0c353")
Data Source Created
Triggers when a new Notion data source is created. Fires workspace-wide. The payload's `data.parent` carries the data source's tree parent (typically the teamspace) for downstream filtering. A single template-based database creation can fire multiple `data_source.created` events at once — one per data source the template instantiates.
List WAF Lists
Tool to fetch all waf lists (no items) for an account. use after confirming account id.
Data Source Schema Updated
Triggers when a Notion data source's schema is updated. Fires on column add / remove / rename. Payload includes `data.updated_properties: [{id, name, action}]` so consumers can discriminate the kind of change downstream. Optional `data_source_id` filter scopes to schema changes on a single data source. When omitted, fires for any schema change in the workspace the integration has access to. Note: adding a column also fires `page.properties_updated` once per existing row in the data source. Customers wanting a single structural-change signal should use this trigger.
List Account Members
Tool to list members of a given cloudflare account. use after confirming the account id.
Connect any two apps with Notis in the middle.
Notion and Cloudflare, or any other combination from 1,000+ integrations.
When this happens · Trigger
Do this · Action
Save your first hour today.
7-day trial of any paid plan, with 20$ of usage included.
No card. Works with personal or business Cloudflare.