Community stories

What will you build?

Discover what builders across industries and teams create using Tines. These submissions come from outside of Tines and are shared here for inspiration.

Spring 2026 winners

You did with Tines?

YDWWT is our semi-annual community competition to find the most creative applications of Tines.

Learn more

jiratinesconfluence

Manage incident lifecycle in Google Chat with Jira Service Management (O.R.B.I.T.)

Orchestrate the full incident lifecycle across Google Chat, Jira Service Management, and JSM Ops — from alert triage and Major Incident war rooms to AI-assisted retrospective scheduling — using four interconnected workflows.

View story

Loading story...

📝gitlabslack

GitLab handover with response teams via a Slackbot

Encourage response teams to handover GitLab cases via a Slack Bot. An example version of the GitLab winning entry into the YDWWT Winter Wonderland Edition competition. This handles a slackbot named "Hando" which encourages Security Incident Response teams to regularly handover cases between regions. This Story was created by GitLab.

Import

Loading story...

Submit your story

We’d love to hear your ideas or see what you’ve created.

Freshly baked

Latest stories

See more

crowdstrikejira🔒Contain or release hosts in CrowdStrike from JiraReceive containment or lift-containment requests from Jira, isolate or release the host in CrowdStrike, and post the outcome back to the ticket, with an AI-reviewed RTR command option for advanced remediation.Tools: CrowdStrike, Jira Software
virustotalslackmicrosoft-azureTriage Azure Sentinel incidents with AI AgentMonitor new Azure Sentinel incidents, triage them with the Tines Stories AI Agent action using VirusTotal and Log Analytics context, then update the incident, post a comment, and alert Slack.Tools: Microsoft, Microsoft Azure, Slack
googlejira⚠️Create Jira issues from Google Threat Intelligence DTM alertsMonitor Google Threat Intelligence DTM alerts on a schedule and automatically create Jira issues for HIGH and MEDIUM severity alerts to accelerate incident response.Tools: Google, Jira Software
microsoft_sentinelmicrosoft_sentinelsocketislandMonitor browser extensions with Island and Socket.dev in Azure SentinelMonitor enterprise browser extensions from Island, check them against Socket.dev threat intelligence, and create Azure Sentinel incidents for any malicious extensions detected.Tools: Island, Microsoft
tinestines🚨✨Select AI model in Tines by usage costMonitor Tines AI usage costs each month and automatically select the most cost-appropriate model, alerting the team by email when credits run low.
slacknotiontinestinesTriage threat intel with an AI Agent and log results to Notion and SlackMonitor RSS threat intelligence feeds, use an AI agent to assess relevance against your environment, then log matches to Notion and alert your team in Slack.Tools: Notion, Slack
oktaoktadatadogslackAutomate offboarding with Okta, Slack, and Datadog observability pipelinesSuspend Okta accounts, revoke sessions, and unenroll devices on employee termination, then tag their logs in Datadog Observability Pipelines for 30 days to flag post-termination activity.Tools: DataDog, Okta, Slack
datadogtinestines🔎Tag and investigate users with Datadog observability pipelinesTag a user's logs in Datadog Observability Pipelines when an analyst submits an investigation, then automatically remove the tag when the case is closed.Tools: DataDog
datadogslackservicenowSuppress alert storms with ServiceNow CMDB and Datadog Observability PipelinesInvestigate Datadog brute-force alerts against the ServiceNow CMDB to automatically suppress known scanners or escalate unrecognized IPs to Slack for analyst review.Tools: DataDog, ServiceNow, Slack