Make private security tips easier to act on
When someone sends a security tip privately, gather location context so the detail is easier to pass along.
Trigger
Direct Message Received
Triggered when a new direct message (DM) is sent to a user in Slack. Catches all DMs across all DM channels.
Action
Bulk IP Geolocation
Tool to retrieve geolocation information for multiple IP addresses in bulk. Use when processing up to 1000 IPs at once.
Why this helps
Useful tips in DMs can become untracked personal follow-up, especially when they require another tool.
- Adds context to a privately shared lead
- Lowers the effort to prepare a handoff
- Keeps lookup details in the run report
Setup
Build it in a few focused steps.
- 1Connect Slack and Ip2location io once in Notis.
- 2Create an automation in the portal or ask Notis conversationally for the outcome.
- 3Write one instruction asking Notis to identify IP addresses in security-tip DMs and summarize their geolocation details.
- 4Select Direct Message Received and a channel for run reports.
- 5Test with a real security-tip DM that includes an IP.
Questions about this workflow
Will a DM trigger this automation?
Yes. Direct Message Received catches DMs across DM channels.
Can Notis skip DMs without IPs?
State in the instruction that a lookup should happen only when an IP address is present.
When this happens · Trigger
Do this · Action
Supported Triggers and Actions
Notis builds workflows that link Slack to Ip2location io. A trigger fires from one place; an action lands in another.
Slack triggers
Ip2location io actions
Recurring trigger
Notis starts this workflow on a schedule, such as daily, weekly, or during business hours.
Bulk IP Geolocation
Tool to retrieve geolocation information for multiple IP addresses in bulk. Use when processing up to 1000 IPs at once.
Webhook trigger
Notis starts this workflow when an external tool or custom backend sends an HTTP request.
Domain WHOIS Lookup
Tool to retrieve WHOIS information for a given domain. Use when you need domain registration and contact details via IP2WHOIS API.
New Channel Created Trigger
Triggered when a new channel is created in Slack.
Get API Key
Tool to retrieve the configured API key. Use when authentication is needed for IP2Location.io requests.
Channel Message Received
Triggered when a message is posted in a Slack channel (public, private, or multi-party IM). Does NOT match direct messages.
IP2WHOIS Hosted Domain
Tool to retrieve hosted domain names by IP address. Use when you need to list domains hosted on a given IP. Call after confirming the IP.
Direct Message Received
Triggered when a new direct message (DM) is sent to a user in Slack. Catches all DMs across all DM channels.
Message Reaction Added
Triggered when a reaction is added to a message in Slack. Supports optional filtering by channel and emoji name.
Message Reaction Removed
Triggered when a reaction is removed from a message in Slack. Supports optional filtering by channel and emoji name.
Reaction Added Trigger
DEPRECATED: use `SLACK_MESSAGE_REACTION_ADDED` instead. Triggered when a reaction is added to a message in Slack.
Connect any two apps with Notis in the middle.
Slack and Ip2location io, or any other combination from 1,000+ integrations.
When this happens · Trigger
Do this · Action
Save your first hour today.
7-day trial of any paid plan, with 20$ of usage included.
No card. Works with personal or business Ip2location io.