Workflows are made up of blocks that you add to a canvas and connect together in the workflow editor. To get there, go to Automation > Workflows, then create a new workflow or open an existing one. The Blocks panel on the left shows every block you can add. See Titan AI workflow editor for more details on the editor itself and the full set of standard blocks.
Some blocks call an AI agent instead of a fixed API call. They're grouped under AI in the Blocks panel. An agent block doesn't take any action or change anything on its own: it reads the values you give it and returns an answer, the same way a Decision Switch or a Get block does. If you want that answer sent as an email, you still connect it to a Send Email (or Send Questionnaire) block yourself. Because an agent generates its output, expect a considered answer rather than a fixed calculation: the exact wording, and in some cases the decision itself, can vary slightly between runs even with the same input.
Assess Vendor Relationship
Weighs a breach against a specific vendor relationship (the vendor's risk level, business impact, the kind of data you share with them, and how they access your systems) against the breach's severity, what was leaked, and how many records were affected.
Use it when: a breach's impact on a vendor isn't already clear-cut, and you don't want to review every case by hand. For example, in a Security Event Outreach workflow, a single confirmed breach can touch hundreds of indirectly connected vendors, and only some of them are worth an outreach email.
What you get: a decision on whether the connection is close enough to warrant reaching out, along with a one-sentence explanation of why.
Generate Micro Summary
Turns a completed vendor outreach run's tallies (how many vendors were evaluated, how many were actually contacted) into a short, plain-language status line.
Use it when: you want an on-demand, readable line to drop into a notification instead of raw numbers. For example, in a Security Event Outreach workflow, bind it into a Send Email block so a stakeholder gets a plain-language status update at any point after outreach has started, without waiting for everything to finish.
What you get: a short status summary, along with a confidence flag for when the underlying counts look inconsistent.
Continuous Monitoring Summary
Pulls together everything that happened across your monitored vendor portfolio over a reporting window (findings flagged, vendors in scope, and outreach conversations already sent) into an executive-summary narrative you can read at a glance.
Use it when: you're running a Continuous Monitoring workflow. Run it on a recurring schedule, after your workflow has already flagged findings and sent remediation requests, then feed its output into a Send Email block so your weekly review arrives as a written recap instead of raw counts you have to interpret yourself.
What you get: an executive-summary narrative. If it can't produce one confidently, it marks the summary as degraded instead of returning an empty one, so your workflow can route to a fallback notification instead of sending nothing.