Github deploy_key Event Notification to Slack & Email
Learn how to listen to the deploy_key webhook event from Github to trigger a notification workflow in MagicBell.
Event payload
Sample payload for the deploy_key event.
{
"action": "created",
"key": {
"added_by": "john-dev",
"created_at": "2025-01-16T18:00:00Z",
"id": 123456789,
"key": "ssh-rsa AAAAB3NzaC1yc2EAAAADAQABAAABgQC...",
"last_used": null,
"read_only": true,
"title": "production-deploy-key",
"url": "https://api.github.com/repos/acme/project/keys/123456789",
"verified": true
},
"organization": {
"avatar_url": "https://avatars.githubusercontent.com/u/111111?v=4",
"description": "Building great software",
"id": 111111,
"login": "acme",
"node_id": "MDEyOk9yZ2FuaXphdGlvbjExMTExMQ==",
"url": "https://api.github.com/orgs/acme"
},
"repository": {
"created_at": "2023-01-01T00:00:00Z",
"default_branch": "main",
"description": "Main project repository",
"fork": false,
"full_name": "acme/project",
"html_url": "https://github.com/acme/project",
"id": 987654321,
"name": "project",
"node_id": "MDEwOlJlcG9zaXRvcnk5ODc2NTQzMjE=",
"owner": {
"avatar_url": "https://avatars.githubusercontent.com/u/111111?v=4",
"gravatar_id": "",
"html_url": "https://github.com/acme",
"id": 111111,
"login": "acme",
"node_id": "MDEyOk9yZ2FuaXphdGlvbjExMTExMQ==",
"site_admin": false,
"type": "Organization",
"url": "https://api.github.com/users/acme"
},
"private": true,
"pushed_at": "2025-01-16T17:00:00Z",
"updated_at": "2025-01-16T18:00:00Z",
"url": "https://api.github.com/repos/acme/project",
"visibility": "private"
},
"sender": {
"avatar_url": "https://avatars.githubusercontent.com/u/234567?v=4",
"gravatar_id": "",
"html_url": "https://github.com/john-dev",
"id": 234567,
"login": "john-dev",
"node_id": "MDQ6VXNlcjIzNDU2Nw==",
"site_admin": false,
"type": "User",
"url": "https://api.github.com/users/john-dev"
}
}Connect Github to MagicBell to receive events and trigger workflows. This guide uses the MagicBell CLI.
Add the Github integration
Save your Github webhook signing secret in MagicBell. See GitHub webhooks.
magicbell integration save_github \
--data '{"webhook_signing_secret":"your_secret_here"}'Copy the ID from the response and use it to build your webhook URL:
https://api.magicbell.com/v2/integrations/github/webhooks/incoming/{id}Setup the webhook
- Setup a webhook in Github with the URL from the last step.
- Select the deploy_key event.
- If you already have a webhook configured, make sure it includes this event.
Add a workflow
Create a workflow that triggers automatically when Github sends this event. Use liquid templates to access fields in your workflow.
Workflow key
Use this key to trigger the workflow when Github sends a deploy_key event:
integration.github.deploy_keyFilter by action: GitHub sends the event type in the header and the action in the payload body. Use an if condition to filter for the created action:
"if": "payload.action == 'created'"Example workflow
Notify when deploy keys are added to repositories for security awareness.
{
"key": "integration.github.deploy_key.created",
"steps": [
{
"command": "broadcast",
"input": {
"action_url": "{{payload.repository.html_url}}/settings/keys",
"content": "{{payload.sender.login}} added deploy key '{{payload.key.title}}' to {{payload.repository.full_name}}. Read-only: {{payload.key.read_only}}",
"overrides": {
"providers": {
"slack": {}
}
},
"recipients": [
{
"external_id": "security-team"
}
],
"title": "Deploy key added to {{payload.repository.name}}"
}
}
]
}Save with the CLI
Use the MagicBell CLI to save this workflow to your project. You can also use the Workflows API endpoint instead.
magicbell workflow save \
--data '{"key":"integration.github.deploy_key.created","steps":[{"command":"broadcast","input":{"action_url":"{{payload.repository.html_url}}/settings/keys","content":"{{payload.sender.login}} added deploy key '{{payload.key.title}}' to {{payload.repository.full_name}}. Read-only: {{payload.key.read_only}}","overrides":{"providers":{"slack":{}}},"recipients":[{"external_id":"security-team"}],"title":"Deploy key added to {{payload.repository.name}}"}}]}'Test the workflow
Use the Github CLI to trigger test events and verify your workflow executes correctly.
1. Trigger a test event
Use the GitHub CLI to forward webhook events from your repository to MagicBell:
gh webhook forward \
--events=deploy_key \
--url=https://api.magicbell.com/v2/integrations/github/webhooks/incoming/{id}2. Verify the workflow ran
Check that MagicBell received the event and executed the workflow:
magicbell workflow list_runs --workflow_key integration.github.deploy_key.created3. Debug issues
If the workflow failed or you need more details, fetch the run to see step-by-step execution:
magicbell workflow fetch_run --run_id {run_id}