{"product_id":"n8n-npm-cve-audit-webhook-apify-html-report-to-gmail-slack","title":"N8N NPM CVE Audit Webhook: Apify HTML Report to Gmail \u0026 Slack","description":"\u003ch3\u003eAutomatically audit NPM CVEs from Apify and deliver an HTML report to Gmail (with Slack alerts on failures)\u003c\/h3\u003e\n\u003cp\u003eThis n8n workflow receives an \u003cstrong\u003eApify webhook\u003c\/strong\u003e from the \u003cstrong\u003eNPM CVE Monitor\u003c\/strong\u003e actor, pulls the run’s dataset, generates an \u003cstrong\u003eHTML dependency security audit report\u003c\/strong\u003e, and emails it via \u003cstrong\u003eGmail\u003c\/strong\u003e. If the dataset fetch fails, it posts a clear \u003cstrong\u003eSlack\u003c\/strong\u003e message so you’re not left guessing.\u003c\/p\u003e\n\n\u003ch3\u003eWhat this workflow does\u003c\/h3\u003e\n\u003cul\u003e\n  \u003cli\u003e\n\u003cstrong\u003eReceives\u003c\/strong\u003e an HTTP \u003cstrong\u003ePOST webhook\u003c\/strong\u003e from Apify when an \u003cstrong\u003eNPM CVE Monitor\u003c\/strong\u003e run completes.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eImmediately responds “OK”\u003c\/strong\u003e to Apify to acknowledge the webhook without retries.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eFetches results from the Apify API\u003c\/strong\u003e, retrieving up to \u003cstrong\u003e500 items\u003c\/strong\u003e from the actor’s default dataset.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eBuilds an HTML audit report\u003c\/strong\u003e that groups findings into \u003cstrong\u003eCritical\u003c\/strong\u003e, \u003cstrong\u003eHigh\u003c\/strong\u003e, \u003cstrong\u003eMedium\u003c\/strong\u003e, and \u003cstrong\u003eSuspicious\u003c\/strong\u003e sections, including summary counts and a status-based email subject.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eSends the HTML report via Gmail\u003c\/strong\u003e on every run to your configured recipient.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eHandles errors\u003c\/strong\u003e: if the dataset fetch fails, formats an error message and \u003cstrong\u003eposts it to Slack\u003c\/strong\u003e for visibility.\u003c\/li\u003e\n\u003c\/ul\u003e\n\n\u003ch3\u003eUse cases\u003c\/h3\u003e\n\u003cul\u003e\n  \u003cli\u003eSecurity monitoring for SaaS operators who want automated NPM CVE reporting without manually checking dashboards.\u003c\/li\u003e\n  \u003cli\u003eDependency risk triage: route critical findings to email recipients while notifying teams in Slack when data collection fails.\u003c\/li\u003e\n  \u003cli\u003eRun-at-scale visibility for automation engineers managing periodic security audits through Apify and n8n.\u003c\/li\u003e\n\u003c\/ul\u003e\n\n\u003ch3\u003eTechnical details\u003c\/h3\u003e\n\u003cul\u003e\n  \u003cli\u003e\n\u003cstrong\u003eIntegrations\/Nodes:\u003c\/strong\u003e Webhook, HTTP Request (Apify API), Code (report generation), Gmail, Slack, Sticky Note.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eSetup highlights:\u003c\/strong\u003e create an Apify webhook pointing to the path \u003ccode\u003eapify-cve-monitor-report\u003c\/code\u003e, add \u003ccode\u003eYOUR_APIFY_API_TOKEN\u003c\/code\u003e, set \u003ccode\u003eYOUR_PROJECT_NAME\u003c\/code\u003e, configure the Gmail recipient (replace \u003ccode\u003eYOUR_CLIENT_EMAIL@domain.com\u003c\/code\u003e), and set \u003ccode\u003eYOUR_SLACK_CREDENTIAL_ID\u003c\/code\u003e with your target channel (e.g., \u003ccode\u003e#actor-alerts\u003c\/code\u003e).\u003c\/li\u003e\n\u003c\/ul\u003e","brand":"N8N Commerce","offers":[{"title":"Default Title","offer_id":45962070884531,"sku":"N8N-19205","price":74.99,"currency_code":"GBP","in_stock":true}],"thumbnail_url":"\/\/cdn.shopify.com\/s\/files\/1\/0749\/6279\/6723\/files\/wMCsvmueC262xdH4jjhOn_1tUpAcWk.png?v=1788599659","url":"https:\/\/buyflowscripts.com\/products\/n8n-npm-cve-audit-webhook-apify-html-report-to-gmail-slack","provider":"N8N Commerce","version":"1.0","type":"link"}