Skip to content
Notis

Start an IP reputation check from an interactive reply

When a contact selects a WhatsApp reply option, check the relevant IP in Abuselpdb and capture the result in a run report.

Trigger

Interactive Reply Received

Triggered when a customer taps a quick-reply button or selects an option from an interactive list message you sent.

Action

Check IP Reputation

Tool to check the reputation of an ip address. use when you need to determine if an ip address has been reported for abusive activity within a specified look-back period. example: checkip(ipaddress='8.8.8.8', maxageindays=90).

Why this helps

A quick reply can signal that an address needs attention, but the investigation often still has to be started manually.

  • Turn an interactive selection into a follow-up lookup.
  • Use the conversation context to find the relevant address.
  • Keep the check result available in your chosen report channel.

Setup

Build it in a few focused steps.

  • 1Connect WhatsApp and Abuselpdb once in the Notis portal.
  • 2Create an automation in the portal or tell Notis from any channel to create one.
  • 3In one instruction, ask Notis to check the reputation of the IP referenced by the interactive reply and its conversation context.
  • 4Pick the Interactive Reply Received trigger and choose where run reports should go.
  • 5Test with one real interactive reply in a conversation that includes an IP.

Questions about this workflow

Can a quick reply include the IP automatically?

The trigger occurs when a customer selects a reply option. Ask Notis to use the reply context, which must identify the IP to check.

Which lookback period is used?

Specify a look-back period in your instruction if you need one. The action checks reputation within a specified period.

When this happens · Trigger

Do this · Action

Supported Triggers and Actions

Notis builds workflows that link Whatsapp to Abuselpdb. A trigger fires from one place; an action lands in another.

Whatsapp triggers

Abuselpdb actions

Recurring trigger

Notis starts this workflow on a schedule, such as daily, weekly, or during business hours.

TriggerScheduled

Retrieve IP Blacklist

Tool to retrieve a list of the most reported ip addresses. use when building dynamic blocklists or threat intelligence feeds.

ActionInstant

Webhook trigger

Notis starts this workflow when an external tool or custom backend sends an HTTP request.

TriggerInstant

Bulk Report

Tool to submit multiple ip abuse reports in bulk. use when you need to report a large set of ips at once by uploading a csv file with required headers. csv must include columns: ip, categories, reportdate, comment.

ActionInstant

Message Status Updated

Triggers when a WhatsApp message status changes. IMPORTANT LIMITATION: WhatsApp Cloud API does not provide a native polling endpoint for message status. Status updates are ONLY delivered via webhooks in real-time. This trigger cannot directly poll the WhatsApp API for status updates. This trigger will return empty results as WhatsApp does not support this operation. To track message status updates, you must: 1. Set up a webhook endpoint to receive status notifications from WhatsApp 2. Store the webhook data in your own database 3. Use a different mechanism to query your stored webhook data For more information, see: - https://developers.facebook.com/docs/whatsapp/cloud-api/webhooks

TriggerPolling

Check Block

Tool to check the reputation of all ip addresses in a cidr range. use when you need aggregated abuse data for a network block.

ActionInstant

New Message Received

Triggered in real time when your WhatsApp Business number receives an inbound message from a customer (text, media, location, or contact). Delivered via the Cloud API webhook.

TriggerInstant

Check IP Reputation

Tool to check the reputation of an ip address. use when you need to determine if an ip address has been reported for abusive activity within a specified look-back period. example: checkip(ipaddress='8.8.8.8', maxageindays=90).

ActionInstant

Interactive Reply Received

Triggered when a customer taps a quick-reply button or selects an option from an interactive list message you sent.

TriggerInstant

Clear Address Reports

Tool to remove all reports associated with a specific ip address. use when you need to purge your own abuse records after verifying control of the ip.

ActionInstant

Message Template Status Update

Triggered when the review status of a WhatsApp message template changes — for example approved, rejected, or flagged — on your WhatsApp Business Account.

TriggerInstant

Get Abuse Reports

Tool to retrieve a list of abuse reports for a specific ip address. use when you need to fetch historic reports with optional filtering by status, date range, reporter, and pagination.

ActionInstant

Connect any two apps with Notis in the middle.

Whatsapp and Abuselpdb, or any other combination from 1,000+ integrations.

When this happens · Trigger

Do this · Action

Save your first hour today.

7-day trial of any paid plan, with 20$ of usage included.
No card. Works with personal or business Abuselpdb.