Granola Ci IntegrationSAFE
Model-agnostic agent-skills platform with a harness-free canonical layer, verified adapters, and the ccpi package manager. Explore at tonsofskills.com.
Overview
Model-agnostic agent-skills platform with a harness-free canonical layer, verified adapters, and the ccpi package manager. Explore at tonsofskills.com.
4f83675ca38aOBSERVED · 2026-10-08Host compatibility
What the documentation claims. We have not run a compatibility test.
| Host | Status | Notes |
|---|---|---|
| claude-code | mentioned |
What it tells the agent
The instruction file, verbatim from the audited commit — this is the text the model reads, and the surface the audit's instruction layer examines. Quoted here so you can judge it without cloning anything.
--- name: granola-ci-integration description: 'Build automated pipelines from Granola meeting notes to GitHub Issues, Linear tasks, Slack notifications, and documentation updates using Zapier and GitHub Actions. Trigger: "granola CI", "granola automation pipeline", "granola to github", "granola to linear", "meeting notes automation". ' allowed-tools: Read, Write, Edit, Bash(gh:*), Bash(curl:*) version: 1.13.0 license: MIT author: Jeremy Longshore <[email protected]> tags: - saas - granola - ci-cd - automation compatibility: Designed for Claude Code --- # Granola CI Integration ## Overview Build automated pipelines that process Granola meeting notes into development artifacts: GitHub Issues from action items, Linear tasks with team routing, Slack digests for stakeholders, and meeting logs in your repository. Uses Zapier as the middleware between Granola and dev tools. ## Prerequisites - Granola Business plan (for Zapier access) - Zapier account (Free for basic, Paid for multi-step Zaps) - GitHub repository with Actions enabled - Optional: Linear account, Slack workspace ## Instructions ### Step 1 — Set Up the Zapier Pipeline ```yaml # Pipeline: Granola → Zapier → GitHub + Slack + Linear Trigger: App: Granola Event: Note Added to Granola Folder Folder: "Engineering" # Only process engineering meetings ``` ### Step 2 — Parse Action Items with Zapier Code Add a Code by Zapier step (JavaScript) to extract action items: ```javascript // Zapier Code Step — Extract action items from Granola note const noteContent = inputData.note_content || ''; const meetingTitle = inputData.title || 'Untitled Meeting'; const meetingDate = inputData.calendar_event_datetime || new Date().toISOString(); // Extract action items: matches "- [ ] @person: task" or "- [ ] task" const actionRegex = /- \[ \] @?(\w+):?\s+(.+)/g; const actions = []; let match; while ((match = actionRegex.exec(noteContent)) !== null) { actions.push({ assignee: match[1], task: match[2].trim(), meeting: meetingTitle, date: meetingDate.split('T')[0], }); } // Extract decisions: lines starting with "- " under "## Decisions" or "## Key Decisions" const decisionSection = noteContent.match(/## (?:Key )?Decisions\n([\s\S]*?)(?=\n##|$)/); const decisions = decisionSection ? decisionSection[1].split('\n').filter(l => l.startsWith('- ')).map(l => l.replace('- ', '')) : []; output = [{ action_count: actions.length, actions: JSON.stringify(actions), decisions: decisions.join('; '), meeting_title: meetingTitle, meeting_date: meetingDate, }]; ``` ### Step 3 — Create GitHub Issues from Action Items ```yaml # For each action item, create a GitHub issue Action: App: GitHub Event: Create Issue Repository: "your-org/your-repo" Title: "Meeting Action: {{task}} [{{date}}]" Body: | ## Context From meeting: **{{meeting}}** on {{date}} ## Task {{task}} ## Assigned To @{{assignee}} --- *Auto-created from Granola meeting notes* Labels: "meeting-action" Assignee: "{{assignee}}" # Must match GitHub username ``` ### Step 4 — GitHub Actions Workflow for Meeting Logs Create a workflow triggered by Zapier via `repository_dispatch`: ```yaml # .github/workflows/meeting-log.yml name: Update Meeting Log on: repository_dispatch: types: [granola-meeting] jobs: update-log: runs-on: ubuntu-latest steps: - uses: actions/checkout@v4 - name: Append to meeting log run: | MEETING_TITLE="${{ github.event.client_payload.title }}" MEETING_DATE="${{ github.event.client_payload.date }}" DECISIONS="${{ github.event.client_payload.decisions }}" ACTION_COUNT="${{ github.event.client_payload.action_count }}" mkdir -p docs/meetings cat >> docs/meetings/log.md << EOF ## ${MEETING_DATE} — ${MEETING_TITLE} - **Decisions:** ${DECISIONS} - **Action items created:** ${ACTION_COUNT} - **Source:** Granola AI EOF - name: Commit and push run: | git config user.name "Granola Bot" git config user.email "[email protected]" git add docs/meetings/log.md git commit -m "docs: meeting log — ${MEETING_DATE}" || echo "No changes" git push ``` Trigger from Zapier using the Webhooks action: ```yaml Action: App: Webhooks by Zapier Event: POST URL: https://api.github.com/repos/your-org/your-repo/dispatches Headers: Authorization: "Bearer {{github_pat}}" Accept: "application/vnd.github.v3+json" Body: event_type: "granola-meeting" client_payload: title: "{{meeting_title}}" date: "{{meeting_date}}" decisions: "{{decisions}}" action_count: "{{action_count}}" ``` ### Step 5 — Linear Task Creation ```yaml Action: App: Linear Event: Create Issue Team: Engineering Title: "{{task}}" Description: "From meeting: {{meeting}} ({{date}})\n\nAssigned: @{{assignee}}" Label: "meeting-action" Priority: "Medium" ``` ### Step 6 — Slack Notification ```yaml Action: App: Slack Event: Send Channel Message Channel: "#engineering-meetings" Message: | :memo: *Meeting Notes Ready:* {{meeting_title}} :calendar: {{meeting_date}} *Decisions:* {{decisions}} *Action Items Created:* {{action_count}} :point_right: Check Linear/GitHub for assigned tasks [View full notes in Granola] ``` ## Complete Pipeline Flow ``` Meeting ends → Granola enhances notes → Note added to "Engineering" folder → Zapier triggers ├→ Parse action items (Code step) ├→ Create GitHub Issues (per action item) ├→ Trigger GitHub Actions (update meeting log) ├→ Create Linear tasks (per action item) └→ Post Slack summary (#engineering-meetings) ``` ## Output - Action items automatically created as GitHub Issues and Linear tasks - Meeting log updated in repository via GitHub Actions - Slack summary posted to tea
Trust audit
SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | PASS |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- pinned
- Secrets in source
- none-found
Findings (0)
No findings outside the package's declared scope.
Gates applied: no_behavioural_pass.
4f83675ca38afull audit observations/trust-audit/skill/jeremylongshore__granola-ci-integration.json · Report an issue / request a re-scanAudit history
Every audit this skill has had.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-08 | 4f83675ca38a | SAFE | B | 89 | first audit |
Questions
What does the Granola Ci Integration skill do?
Model-agnostic agent-skills platform with a harness-free canonical layer, verified adapters, and the ccpi package manager. Explore at tonsofskills.com.
Is Granola Ci Integration safe to install?
The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean skill reads B.
What can Granola Ci Integration access on my machine?
The audit observed no filesystem, network or shell use at all in its source.
Which assistants does Granola Ci Integration work with?
Its documentation mentions claude-code. That is what the text claims, not a compatibility test we ran.
How current is this page?
The grade is for one exact copy of the source (4f83675ca38a), read on 2026-10-08. The repository is watched, and a new audit runs when it changes — this is the first audit.