Gamma Deploy IntegrationSAFE
Model-agnostic agent-skills platform with a harness-free canonical layer, verified adapters, and the ccpi package manager. Explore at tonsofskills.com.
Overview
Model-agnostic agent-skills platform with a harness-free canonical layer, verified adapters, and the ccpi package manager. Explore at tonsofskills.com.
4f83675ca38aOBSERVED · 2026-10-08Install
Commands as the repository documents them. They are shown, not run.
npm i -g vercel
Host compatibility
What the documentation claims. We have not run a compatibility test.
| Host | Status | Notes |
|---|---|---|
| claude-code | mentioned |
What it tells the agent
The instruction file, verbatim from the audited commit — this is the text the model reads, and the surface the audit's instruction layer examines. Quoted here so you can judge it without cloning anything.
--- name: gamma-deploy-integration description: 'Deploy Gamma-integrated applications to production environments. Use when deploying to Vercel, AWS, GCP, or other cloud platforms with proper secret management and configuration. Trigger with phrases like "gamma deploy", "gamma production", "gamma vercel", "gamma AWS", "gamma cloud deployment". ' allowed-tools: Read, Write, Edit, Bash(vercel:*), Bash(aws:*), Bash(gcloud:*) version: 1.13.0 license: MIT author: Jeremy Longshore <[email protected]> tags: - saas - gamma - deployment compatibility: Designed for Claude Code --- # Gamma Deploy Integration ## Examples Deploy a fictional staging presentation integration with a scoped credential, verify its canary reaches only the approved audience, then simulate a failed check and roll back before production sharing. ## Overview Deploy Gamma-integrated applications to various cloud platforms with proper configuration and secret management. ## Prerequisites - Completed CI integration - Cloud platform account (Vercel, AWS, or GCP) - Production Gamma API key ## Instructions ### Vercel Deployment #### Step 1: Configure Vercel Project ```bash set -euo pipefail # Install Vercel CLI npm i -g vercel # Link project vercel link # Set environment variable vercel env add GAMMA_API_KEY production ``` #### Step 2: Create vercel.json ```json { "framework": "nextjs", "buildCommand": "npm run build", "env": { "GAMMA_API_KEY": "@gamma_api_key" }, "functions": { "api/**/*.ts": { "maxDuration": 30 } } } ``` #### Step 3: Deploy ```bash # Preview deployment vercel # Production deployment vercel --prod ``` ### AWS Lambda Deployment #### Step 1: Store Secret in AWS Secrets Manager ```bash aws secretsmanager create-secret \ --name gamma/api-key \ --secret-string '{"apiKey":"your-gamma-api-key"}' ``` #### Step 2: Lambda Configuration ```typescript // lambda/gamma-handler.ts import { SecretsManager } from '@aws-sdk/client-secrets-manager'; import { GammaClient } from '@gamma/sdk'; const secretsManager = new SecretsManager({ region: 'us-east-1' }); let gamma: GammaClient; async function getGammaClient() { if (!gamma) { const secret = await secretsManager.getSecretValue({ SecretId: 'gamma/api-key', }); const { apiKey } = JSON.parse(secret.SecretString!); gamma = new GammaClient({ apiKey }); } return gamma; } export async function handler(event: any) { const client = await getGammaClient(); const result = await client.presentations.create({ title: event.title, prompt: event.prompt, }); return { statusCode: 200, body: JSON.stringify(result) }; # HTTP 200 OK } ``` #### Step 3: SAM Template ```yaml # template.yaml AWSTemplateFormatVersion: '2010-09-09' # 2010 = configured value Transform: AWS::Serverless-2016-10-31 # 2016 = configured value Resources: GammaFunction: Type: AWS::Serverless::Function Properties: Handler: dist/gamma-handler.handler Runtime: nodejs20.x Timeout: 30 MemorySize: 256 # 256 bytes Policies: - SecretsManagerReadWrite Environment: Variables: NODE_ENV: production ``` ### Google Cloud Run Deployment #### Step 1: Store Secret ```bash echo -n "your-gamma-api-key" | \ gcloud secrets create gamma-api-key --data-file=- ``` #### Step 2: Dockerfile ```dockerfile FROM node:20-alpine WORKDIR /app COPY package*.json ./ RUN npm ci --only=production COPY dist ./dist CMD ["node", "dist/server.js"] ``` #### Step 3: Deploy ```bash set -euo pipefail gcloud run deploy gamma-service \ --image gcr.io/$PROJECT_ID/gamma-service \ --platform managed \ --region us-central1 \ --set-secrets GAMMA_API_KEY=gamma-api-key:latest \ --allow-unauthenticated ``` ### GitHub Actions Deployment ```yaml # .github/workflows/deploy.yml name: Deploy on: push: branches: [main] jobs: deploy: runs-on: ubuntu-latest steps: - uses: actions/checkout@v4 - name: Build run: npm ci && npm run build - name: Deploy to Vercel uses: amondnet/vercel-action@v25 with: vercel-token: ${{ secrets.VERCEL_TOKEN }} vercel-org-id: ${{ secrets.VERCEL_ORG_ID }} vercel-project-id: ${{ secrets.VERCEL_PROJECT_ID }} vercel-args: '--prod' ``` ## Output - Production deployment on chosen platform - Secrets securely stored - Environment variables configured - Automated deployment pipeline ## Error Handling | Error | Cause | Solution | |-------|-------|----------| | Secret not found | Missing secret | Create secret in platform | | Timeout | Function too slow | Increase timeout limit | | Cold start | Lambda initialization | Use provisioned concurrency | | Permission denied | IAM misconfigured | Update IAM policies | ## Resources - [Vercel Documentation](https://vercel.com/docs) - [AWS Lambda Documentation](https://docs.aws.amazon.com/lambda/) - [Google Cloud Run](https://cloud.google.com/run/docs) ## Next Steps Proceed to `gamma-webhooks-events` for event handling.
Trust audit
SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | PASS |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- pinned
- Secrets in source
- none-found
Findings (0)
No findings outside the package's declared scope.
Gates applied: no_behavioural_pass.
4f83675ca38afull audit observations/trust-audit/skill/jeremylongshore__gamma-deploy-integration.json · Report an issue / request a re-scanAudit history
Every audit this skill has had.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-08 | 4f83675ca38a | SAFE | B | 89 | first audit |
Questions
What does the Gamma Deploy Integration skill do?
Model-agnostic agent-skills platform with a harness-free canonical layer, verified adapters, and the ccpi package manager. Explore at tonsofskills.com.
Is Gamma Deploy Integration safe to install?
The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean skill reads B.
What can Gamma Deploy Integration access on my machine?
The audit observed no filesystem, network or shell use at all in its source.
Which assistants does Gamma Deploy Integration work with?
Its documentation mentions claude-code. That is what the text claims, not a compatibility test we ran.
How current is this page?
The grade is for one exact copy of the source (4f83675ca38a), read on 2026-10-08. The repository is watched, and a new audit runs when it changes — this is the first audit.