All templates
For security engineers, cloud security teams & DevSecOps

Check every cloud account is still reporting in

Every night, WebRun opens Lacework, lists the connected cloud accounts and integrations, checks which ones have sent nothing recently, posts the accounts that have gone quiet to Slack, and briefs the security channel in Microsoft Teams so a blind spot is never mistaken for a clean night.

  • No credit card
  • Under $0.01 per run
  • Cancel anytime
14,115 templates Safe automation No code
Every night at 11:00 PM WebRun
1 Lacework find accounts that stopped reporting
2 Slack post tonight's coverage gaps
3 Microsoft Teams brief the security channel
Run a sample
In short

How do I know if a cloud account stopped reporting into my security tool?

WebRun checks Lacework coverage every night. It reads every connected cloud account and integration, finds the ones that have sent no data within your window, and posts the gaps with their last seen times to Slack and Microsoft Teams, so a silent connector is fixed rather than mistaken for calm.

  • A broken connector is caught overnight, not at the next audit
  • Every silent account carries its last seen time and gap length
  • A quiet night is proven clean rather than assumed

Built for security engineers · cloud security teams · DevSecOps · compliance leads

Step by step

What does WebRun do on every run?

The exact actions WebRun takes, in order - in plain language, so you can adjust anything.

  1. WebRun signs in and gets to work

    Opens www.lacework.com in a real browser with your saved login - no setup, no API keys.

  2. 1
    Lacework - find accounts that stopped reporting
    lacework.com
    WebRun in Lacework: find accounts that stopped reporting
    WebRun opens Lacework to find accounts that stopped reporting.
    • Sign in to Lacework and open the list of connected cloud accounts and integrations
    • Read each one's connection state and when it last sent data
    • Flag every account or integration that has reported nothing within the window you set
    • Note any policy or compliance report that could not run because its source went quiet

    Done when Every connected account is marked reporting or silent with a last seen time.

  3. 2
    Slack - post tonight's coverage gaps
    slack.com How to Automate Slack
    WebRun in Slack: post tonight's coverage gaps
    WebRun opens Slack to post tonight's coverage gaps.
    • Post the silent accounts and integrations to the security channel
    • Show each one's last seen time and how long the gap has run
    • Put the longest running gaps first, since those are the coverage holes nobody has noticed

    Done when The security channel has tonight's coverage gaps.

  4. 3
    Microsoft Teams - brief the security channel
    microsoft.com How to Automate Microsoft Teams
    WebRun in Microsoft Teams: brief the security channel
    WebRun opens Microsoft Teams to brief the security channel.
    • Post the same summary to the security operations channel in Microsoft Teams
    • Add the count of accounts still reporting normally so the gap has context
    • Leave every fix to an engineer. WebRun never edits an integration, a policy, or an account setting

    Done when The wider security team has the coverage picture in Teams.

Run settings

How is each run configured?

Starting pageWhere Chrome opens at the start of each run
www.lacework.com
ScheduleRuns automatically on this cadence
Every night at 11:00 PM
DeliveryHow each run's result reaches you
Coverage gap list · Slack
OutputWhat each run produces - A nightly list of cloud accounts and integrations that have stopped reporting, with each one's last seen time and gap length.
Text
Setup & safety

Secure by default

Connect once, stays signed in

WebRun signs in once and keeps each session in a persistent environment, so every run picks up right where it left off.

Your credentials stay in your own private environment - WebRun never stores your passwords.
Strict Lockdown

Every action is checked against this policy before it runs.

Domains ALLOWLIST
Typed input ALLOW
Shell command BLOCK
File uploads BLOCK
Runs in a contained environment More on policies
Good to know

Questions, answered

Will it reconnect a broken integration?

No. WebRun reads the connection state and reports the gap. Reconnecting an account or changing an integration touches production credentials, so an engineer does that step by hand.

Why report silence rather than alerts?

Because a quiet account usually means the data stopped, not that the risk stopped. WebRun checks that every connected account is still sending, so a broken connector is not read as a clean night.

Does it post every night even when nothing is wrong?

Yes, briefly. A short all clear line each night proves the check itself ran, and a missing message is then a signal in its own right.

Put this on autopilot.

Turn it on in minutes - or have our team set it up for you.