Refresh case context when Telegram details change
When an update changes, bring the related case context back into view.
Trigger
Message Edited
Triggered when a message in a chat your bot can see is edited by its sender.
Action
Get Cases
Tool to retrieve a list of cases in kibana. use when you need to find or list existing security or operational cases, potentially filtering by various attributes like status, assignee, or severity.
Why this helps
A corrected message can leave people acting on old assumptions if nobody rechecks the case context.
- Prompt a fresh case lookup when incident details change.
- Keep revised context tied to the relevant investigation.
- Reduce manual reminders to revisit case status.
Setup
Build it in a few focused steps.
- 1Connect Telegram and Kibana to Notis once through the portal.
- 2Create an automation in the portal or ask Notis to look up related Kibana cases when a Telegram message is edited.
- 3Describe in one plain-language instruction how the edited text should guide the case search and summary.
- 4Pick the Telegram edited-message trigger, choose a channel for run reports, and test by editing a relevant update.
Questions about this workflow
Does every edit trigger a case lookup?
The workflow runs when the configured bot can see a message edit. Use the prompt to make the intended kinds of updates clear.
Does it update the case with the edited message?
No. It retrieves related cases for review and does not write the Telegram text into Kibana.
When this happens · Trigger
Do this · Action
Supported Triggers and Actions
Notis builds workflows that link Telegram to Kibana. A trigger fires from one place; an action lands in another.
Telegram triggers
Kibana actions
Recurring trigger
Notis starts this workflow on a schedule, such as daily, weekly, or during business hours.
Delete Action
Tool to delete an action in kibana. use when you need to remove a specific action by its id, optionally within a specific space.
Webhook trigger
Notis starts this workflow when an external tool or custom backend sends an HTTP request.
Delete Alerting Rule
Tool to delete an alerting rule in kibana. use when you need to remove a specific alerting rule by its id.
New Message Received
Triggered when your bot receives a new message in a private chat, group, or supergroup. To receive every message in a group, Privacy Mode must be disabled for the bot in BotFather.
Delete Connector
Tool to delete a connector in kibana. use when you need to remove an existing connector.
New Channel Post
Triggered when a new post is published to a channel where your bot is an administrator.
Delete Fleet Output
Tool to delete a specific output configuration in kibana fleet. use when you need to remove an existing output by its id.
Callback Query Received
Triggered when a user taps an inline keyboard button attached to one of your bot's messages.
Delete Fleet Proxy
Tool to delete a specific fleet proxy configuration by its id. use when you need to remove an existing proxy setup.
Message Edited
Triggered when a message in a chat your bot can see is edited by its sender.
Delete List
Deletes a list. use when you want to delete a list by its id.
New Chat Member
Triggered when a new member joins a group or supergroup the bot belongs to, including when the bot itself is added.
Delete Osquery Saved Query
Tool to delete a saved osquery query by its id. use when you need to remove a specific osquery saved query.
Delete Saved Object
Tool to delete a saved object in kibana. use when you need to remove a specific saved object like a visualization or dashboard.
Connect any two apps with Notis in the middle.
Telegram and Kibana, or any other combination from 1,000+ integrations.
When this happens · Trigger
Do this · Action
Save your first hour today.
7-day trial of any paid plan, with 20$ of usage included.
No card. Works with personal or business Kibana.