Create a Kibana case from an incident webhook
Give incoming incident context a clear place for investigation and follow-up.
Trigger
Webhook received
Notis starts this workflow when an external tool or custom backend sends an HTTP request.
Action
Create Case
Tool to create a new case in kibana. use when you need to open and track issues, incidents, or investigations. you can assign users, set severity levels, add tags, and configure external connectors for integration with itsm systems.
Why this helps
Incident details can arrive in one system and still need manual re-entry before anyone can track the work.
- Create a trackable Kibana case from an incoming incident.
- Reduce manual copying between systems.
- Give follow-up a consistent starting point.
Setup
Build it in a few focused steps.
- 1Connect Telegram and Kibana to Notis once through the portal.
- 2Create a webhook-triggered automation in the portal and configure the external incident system to send its request to Notis.
- 3Describe the case-creation outcome and how to use the incoming incident context in one plain-language instruction.
- 4Choose a channel for run reports and test with one representative incident webhook.
Questions about this workflow
Can the webhook come from a system other than Telegram?
Yes. Notis webhook triggers start when an external tool or custom backend sends an HTTP request.
Can the case be assigned or tagged?
Describe the desired case details in the prompt and confirm the result with a real example.
When this happens · Trigger
Do this · Action
Supported Triggers and Actions
Notis builds workflows that link Telegram to Kibana. A trigger fires from one place; an action lands in another.
Telegram triggers
Kibana actions
Recurring trigger
Notis starts this workflow on a schedule, such as daily, weekly, or during business hours.
Delete Action
Tool to delete an action in kibana. use when you need to remove a specific action by its id, optionally within a specific space.
Webhook trigger
Notis starts this workflow when an external tool or custom backend sends an HTTP request.
Delete Alerting Rule
Tool to delete an alerting rule in kibana. use when you need to remove a specific alerting rule by its id.
New Message Received
Triggered when your bot receives a new message in a private chat, group, or supergroup. To receive every message in a group, Privacy Mode must be disabled for the bot in BotFather.
Delete Connector
Tool to delete a connector in kibana. use when you need to remove an existing connector.
New Channel Post
Triggered when a new post is published to a channel where your bot is an administrator.
Delete Fleet Output
Tool to delete a specific output configuration in kibana fleet. use when you need to remove an existing output by its id.
Callback Query Received
Triggered when a user taps an inline keyboard button attached to one of your bot's messages.
Delete Fleet Proxy
Tool to delete a specific fleet proxy configuration by its id. use when you need to remove an existing proxy setup.
Message Edited
Triggered when a message in a chat your bot can see is edited by its sender.
Delete List
Deletes a list. use when you want to delete a list by its id.
New Chat Member
Triggered when a new member joins a group or supergroup the bot belongs to, including when the bot itself is added.
Delete Osquery Saved Query
Tool to delete a saved osquery query by its id. use when you need to remove a specific osquery saved query.
Delete Saved Object
Tool to delete a saved object in kibana. use when you need to remove a specific saved object like a visualization or dashboard.
Connect any two apps with Notis in the middle.
Telegram and Kibana, or any other combination from 1,000+ integrations.
When this happens · Trigger
Do this · Action
Save your first hour today.
7-day trial of any paid plan, with 20$ of usage included.
No card. Works with personal or business Kibana.