All templates

Automated Tenable Critical Finding Alerts

Every morning, WebRun opens Tenable, pulls the critical and high findings that appeared since yesterday, creates a remediation row for each in Notion with the affected asset and severity, and posts your security channel in Microsoft Teams a short list of what is new and what needs an owner.

Runs on WebRun · Strict Lockdown policy
Every day at 8:00 AM WebRunorchestrates each step
1 Tenable pull new critical findings
2 Notion log remediation items
3 Microsoft Teams alert the security channel
In short

How do I get alerted about new critical Tenable findings each day?

WebRun opens Tenable every morning and pulls the critical and high findings detected in the last 24 hours. It logs each one as a remediation row in Notion with the affected asset and severity, then alerts your security channel in Microsoft Teams, so new exposures get an owner the same day.

  • New critical findings reach the security channel the same day
  • Every finding lands on a tracked remediation board
  • No duplicate rows, because existing items are checked first

Built for security teams · IT operations · compliance managers · managed service providers

Step by step

What does WebRun do on every run?

The exact actions WebRun takes, in order - in plain language, so you can adjust anything.

  1. WebRun signs in and gets to work

    Opens www.tenable.com in a real browser with your saved login - no setup, no API keys.

  2. 1
    Tenable - pull new critical findings
    tenable.com
    WebRun in Tenable: pull new critical findings
    WebRun opens Tenable to pull new critical findings.
    • Open Tenable and filter findings to critical and high severity
    • Keep only findings first detected in the last 24 hours
    • Capture the affected asset, the plugin or vulnerability name, and the severity
    • Note whether a fix or patch is already available

    Done when Every newly detected critical and high finding is listed with its asset.

  3. 2
    Notion - log remediation items
    notion.so
    WebRun in Notion: log remediation items
    WebRun opens Notion to log remediation items.
    • Open your remediation database in Notion
    • Add a row for each new finding with asset, severity, and first-detected date
    • Set the status to Needs owner and leave the assignee blank for a human to fill
    • Skip any finding already tracked so the board never duplicates

    Done when Every new finding has a remediation row in Notion.

  4. 3
    Microsoft Teams - alert the security channel
    microsoft.com
    WebRun in Microsoft Teams: alert the security channel
    WebRun opens Microsoft Teams to alert the security channel.
    • Post today's new critical and high findings to your security channel
    • Put criticals first with the affected asset named
    • Link the Notion board so an engineer can claim each item
    • Say plainly when nothing new was found

    Done when The security channel has today's new-findings alert in Microsoft Teams.

Run settings

How is each run configured?

Starting pageWhere Chrome opens at the start of each run
www.tenable.com
ScheduleRuns automatically on this cadence
Every day at 8:00 AM
DeliveryHow each run's result reaches you
New critical findings · Microsoft Teams
OutputWhat each run produces - A daily list of newly detected critical and high Tenable findings with the affected asset, severity, and its Notion remediation row.
Text
Setup & safety

Secure by default

Connect once, stays signed in

WebRun signs in once and keeps each session in a persistent environment, so every run picks up right where it left off.

Your credentials stay in your own private environment - WebRun never stores your passwords.
Strict Lockdown

Every action is checked against this policy before it runs.

Domains ALLOWLIST
Typed input ALLOW
Shell command BLOCK
File uploads BLOCK
Runs in a contained environment More on policies
Good to know

Questions, answered

Will it change anything in Tenable or patch a system?

No. WebRun only reads findings in Tenable. It never edits a scan, accepts a risk, marks a finding fixed, or touches an affected system. All it writes is a Notion row and a Teams message.

Does it repost the same vulnerability every day?

No. It only reports findings first detected in the last 24 hours, and it checks the Notion board before adding a row so an existing item is never duplicated.

Who gets assigned the remediation work?

Nobody automatically. Each Notion row is created with an empty assignee and a Needs owner status, so a human decides who picks it up.

Put this on autopilot.

Turn it on in minutes - or have our team set it up for you.