Skip to content
Notis

Give Slack incident reports useful history

A new incident is easier to triage when the team can find similar past cases without launching a separate search.

Trigger

Channel Message Received

Triggered when a message is posted in a Slack channel (public, private, or multi-party IM). Does NOT match direct messages.

Action

Query Index

Tool to query an elasticsearch index with various filters, time ranges, and pagination support. use when you need to search for documents in an index with complex filtering criteria.

Why this helps

Responders lose time searching old incident records while coordination is already demanding attention.

  • Bring earlier incident records into the response flow.
  • Help teams spot recurring issues sooner.
  • Limit context switching during time-sensitive work.

Setup

Build it in a few focused steps.

  • 1Connect Slack and Elasticsearch to Notis once through the portal.
  • 2Create an automation in the portal, or tell Notis the incident lookup you want.
  • 3Use one plain-language prompt to ask for an Elasticsearch search when a channel message reports an incident.
  • 4Select the channel-message trigger and where run reports should go, then try one real incident example.

Questions about this workflow

Does this open an incident or change its status?

No. The Elasticsearch action searches records for related incident history.

How should the prompt identify incidents?

Describe the phrases, signals, or reporting convention your team uses in the single automation prompt.

When this happens · Trigger

Do this · Action

Supported Triggers and Actions

Notis builds workflows that link Slack to Elasticsearch. A trigger fires from one place; an action lands in another.

Slack triggers

Elasticsearch actions

Recurring trigger

Notis starts this workflow on a schedule, such as daily, weekly, or during business hours.

TriggerScheduled

Get Index Schema

Tool to get the complete schema/mapping of a specific elasticsearch index. use when you need to understand the structure, field types, and mappings of an index.

ActionInstant

Webhook trigger

Notis starts this workflow when an external tool or custom backend sends an HTTP request.

TriggerInstant

List Indices

Tool to list all available elasticsearch indices. use when you need to get a list of indices in your elasticsearch cluster, optionally filtering by pattern, health status, or other criteria.

ActionInstant

New Channel Created Trigger

Triggered when a new channel is created in Slack.

TriggerInstant

Query Index

Tool to query an elasticsearch index with various filters, time ranges, and pagination support. use when you need to search for documents in an index with complex filtering criteria.

ActionInstant

Channel Message Received

Triggered when a message is posted in a Slack channel (public, private, or multi-party IM). Does NOT match direct messages.

TriggerInstant

Direct Message Received

Triggered when a new direct message (DM) is sent to a user in Slack. Catches all DMs across all DM channels.

TriggerInstant

Message Reaction Added

Triggered when a reaction is added to a message in Slack. Supports optional filtering by channel and emoji name.

TriggerInstant

Message Reaction Removed

Triggered when a reaction is removed from a message in Slack. Supports optional filtering by channel and emoji name.

TriggerInstant

Reaction Added Trigger

DEPRECATED: use `SLACK_MESSAGE_REACTION_ADDED` instead. Triggered when a reaction is added to a message in Slack.

TriggerInstant

Connect any two apps with Notis in the middle.

Slack and Elasticsearch, or any other combination from 1,000+ integrations.

When this happens · Trigger

Do this · Action

Save your first hour today.

7-day trial of any paid plan, with 20$ of usage included.
No card. Works with personal or business Elasticsearch.