Agent skill

Pp Granola

by mvanhorn in mvanhorn/printing-press-library

Granola notes, transcripts, audit events, and webhooks — plus offline SQLite cross-meeting search, attendee timelines, and a MEMO pipeline runner.

Apache-2.0Auto-check: notesBackend & APIs

Install Pp Granola

skills CLI
$ npx skills add mvanhorn/printing-press-library --skill pp-granola -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install mvanhorn/printing-press-library pp-granola --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/mvanhorn/printing-press-library.git skills-src && mkdir -p .claude/skills && cp -r skills-src/cli-skills/pp-granola .claude/skills/pp-granola && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
pp-granola
GitHub stars
2.1k
Token cost
~8.1k tokens
SKILL.md length
3,837 words
Files
1
Skills in repo
506
Repo updated
First seen
Licence
Apache-2.0

At a glance

Granola notes, transcripts, audit events, and webhooks — plus offline SQLite cross-meeting search, attendee timelines, and a MEMO pipeline runner.

  • Works in 3 steps: Get an API key — needed only to fetch… → Hydrate once → Read with no key
  • Phrases: memo run for todays meetings
  • SKILL.md covers Prerequisites: Install the CLI, Two Data Paths — Read This…, When to Use This CLI and When Not to Use This CLI, plus 5 more sections
  • Calls claude, npx and go; reaches public-api.granola.ai; needs GRANOLA_API_KEY and GRANOLA_AUDIT_API_KEY

What it does

Pp Granola is an agent skill from mvanhorn/printing-press-library. Granola notes, transcripts, audit events, and webhooks — plus offline SQLite cross-meeting search, attendee timelines, and a MEMO pipeline runner. Trigger phrases: memo run for today's meetings, what's in granola but not yet memo'd, every meeting we had with trevin, verify granola webhook, list granola audit events, talk time in last week's meetings, extract granola meeting, use granola, run granola.

Its SKILL.md is about 8.1k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Backend & APIs, covering Webhooks. It works with SQLite. The repository describes itself as: Official library of CLIs generated by the CLI Printing Press. Endorsed, tested, and community-contributed. The licence is Apache-2.0.

When your agent uses it

  • Phrases: memo run for todays meetings
  • Whats in granola but not yet memod
  • Every meeting we had with trevin
  • Verify granola webhook

Example prompts

  • “s meetings, what”
  • “/pp-granola”

Requirements

  • Node.js
  • A credential in GRANOLA_API_KEY
  • Pre-approved tools (allowed-tools): Read, Bash

Workflow steps

3 steps, taken from the step headings in SKILL.md.

  1. Get an API key — needed only to fetch new data
  2. Hydrate once
  3. Read with no key

What it can do on your machine

Read from SKILL.md and the folder at commit d9a1696. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves these tools, so the agent can use them without asking each time:

    • Read
    • Bash

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • claude
    • npx
    • go
    • sqlite3

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • public-api.granola.ai

    Also links to:

    • github.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • GRANOLA_API_KEY
    • GRANOLA_AUDIT_API_KEY
    • GRANOLA_WEBHOOK_SECRET

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Pp Granola loads about 8.1k tokens when it runs. Until then it costs about 108 tokens; SKILL.md has 3,837 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~108
When it runs · the whole SKILL.md, loaded when a task matches
~8.1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: notes

The automated check noted patterns worth knowing about, such as sudo or a known installer.

  • NotePre-approves every shell command (allowed-tools: Bash)SKILL.md
    allowed-tools: Read, Bash

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from mvanhorn/printing-press-library at commit d9a1696, republished under its Apache-2.0 licence (© mvanhorn). 3,837 words, ~8,075 tokens.

Download SKILL.mdSave it as .claude/skills/pp-granola/SKILL.md (or your agent's skills folder).
name
pp-granola
description
Granola notes, transcripts, audit events, and webhooks — plus offline SQLite cross-meeting search, attendee timelines, and a MEMO pipeline runner. Trigger phrases: `memo run for today's meetings`, `what's in granola but not yet memo'd`, `every meeting we had with trevin`, `verify granola webhook`, `list granola audit events`, `talk time in last week's meetings`, `extract granola meeting`, `use granola`, `run granola`.
allowed-tools
Read, Bash
author
Damien Stevens
license
Apache-2.0
argument-hint
<command> [args] | install cli|mcp
<!-- GENERATED FILE — DO NOT EDIT.
     This file is a verbatim mirror of library/productivity/granola/SKILL.md,
     regenerated post-merge by tools/generate-skills/. Hand-edits here are
     silently overwritten on the next regen. Edit the library/ source instead.
     See the repository agent guide, section "Generated artifacts: registry.json, cli-skills/". -->
<!-- // PATCH(dual-path-store-read): the Data Paths, Auth Setup, Auto-Refresh,
     and Troubleshooting sections describe the two-path reality after Granola
     desktop moved its data-encryption key into an entitlement-gated macOS
     keychain group. See library/productivity/granola/.printing-press-patches/
     dual-path-store-read.json and dek-migration-classified-from-state-not-version.json. -->

Granola — Printing Press CLI

Created by @dstevens (Damien Stevens). Contributors: @jeffreydebolt (Jeff DeBolt), @mvanhorn (Matt Van Horn), @giuseppebisemi (Giuseppe Bisemi), @cathrynlavery (Cathryn Lavery).

Prerequisites: Install the CLI

This skill drives the granola-pp-cli binary. You must verify the CLI is installed before invoking any command from this skill. If it is missing, install it first:

  1. Install via the Printing Press installer. It defaults binaries to $HOME/.local/bin on macOS/Linux and %LOCALAPPDATA%\Programs\PrintingPress\bin on Windows:
    bash
    npx -y @mvanhorn/printing-press-library install granola --cli-only
  2. Verify: granola-pp-cli --version
  3. Ensure the reported install directory is on $PATH for the agent/runtime that will invoke this skill.

If the npx install fails (no Node, offline, etc.), fall back to a direct Go install (requires Go 1.26.6 or newer):

bash
go install github.com/mvanhorn/printing-press-library/library/productivity/granola/cmd/granola-pp-cli@latest

If --version reports "command not found" after install, the runtime cannot see the binary directory on $PATH. Do not proceed with skill commands until verification succeeds.

Two Data Paths — Read This Before Running Anything

Granola desktop keeps its data-encryption key in a macOS data-protection keychain group gated by an entitlement bound to Granola's own Apple Team ID. No third-party binary can read that key, so the encrypted desktop cache (cache-v6.json.enc), the SQLCipher store granola.db, and supabase.json.enc are all unreadable by this CLI on a current install.

That does not leave the CLI without data. Run granola-pp-cli auth login once: the CLI signs in to Granola with its own session and syncs meetings over the API, no key and no paid workspace required. You approve one browser page; after that the session refreshes silently on every command. It never touches the Granola desktop app's session or your browser's.

Three paths fill the local SQLite store:

PathHydrate withWorks on a current install?
CLI-owned session → local storeauth login, then syncYes. The default answer. Meetings, titles, timestamps, attendees.
Granola public REST API → local storesync-apiYes, but only with a GRANOLA_API_KEY, which needs a Business or Enterprise workspace.
Desktop encrypted cache → local storesyncOnly on pre-migration builds, or on a machine holding a pre-migration storage.dek supplied through GRANOLA_SAFESTORAGE_KEY_OVERRIDE. Otherwise sync runs degraded and reports so.

Reading already-synced data needs no credential at all. Every read command serves from the local store first and falls back to the desktop cache only when the store has no row and a cache is actually readable. Neither step makes a network call or consults a key. Credentials are only needed to fetch new data.

Capability split

Read this before telling a user their data is missing. An empty result on a migrated install usually means "not synced on this tier", not "you have none".

With a CLI-owned session (auth login), hydrated by sync:

  • meetings, titles, timestamps
  • attendees
  • calendar events
  • transcripts (full segment list)

Transcripts backfill incrementally. There is no bulk transcript endpoint, so sync fetches them one meeting at a time, newest first, up to --transcript-budget (default 250) per run. When work remains the command says so on stderr and records how many; re-run sync to continue, or pass --transcript-budget -1 to fetch all remaining in one go. Meetings that genuinely have no recording are asked about once and then skipped forever.

This matters when answering questions. Before telling a user a meeting has no transcript, check whether the backfill has reached it. sync reports transcripts_remaining in its summary; a non-zero value means "not fetched yet", not "no transcript exists". Commands that depend on transcripts (talktime, memo run, attendee brief, collect) will be thin until the backfill completes.

  • recipes and panel templates — recipes list, recipes describe
  • folders and folder membership — folder list, folder stream

Live on the same session, no sync needed:

  • AI panels — panel get, and the --panel inlining in attendee brief and folder stream
  • workspaces — workspaces list

Both read straight from the API on each call, so they need no store rows. The tradeoff is that panel get is the one read command with no local fallback at all: if the session lapses it fails hard where everything else degrades to stored data.

With a GRANOLA_API_KEY, hydrated by sync-api: public-API notes, generated summaries, owner-only private notes when returned, folder membership, speaker attribution, and full transcripts. Long transcripts are retrieved through the paginated transcript endpoint when note detail returns HTTP 413.

Frozen but still readable — AI chat threads (chat list, chat get):

Chats are the one surface that cannot advance. Granola's internal API exposes no chat endpoint (seven namings probed on 7.465.0, 2026-08-03, all 404), so the threads in the store are whatever the last desktop-cache sync captured and no re-sync will add more. chat list says so in both its human and JSON output.

Read the staleness block before answering from any of this. Store-served reads carry one when the desktop cache is unreadable: refreshable tells you whether the surface can advance, last_catalog_sync_at dates refreshable surfaces like recipes, and last_cache_sync_at dates frozen ones like chats. A chat set can sit weeks behind the meetings it discusses — quote the date rather than presenting it as current.

When something in the first group is asked for on a migrated install, say the data is not reachable. Do not synthesize a panel, a recipe result, or a chat thread from transcript text.

Why auth login when Granola desktop is already signed in

Because the desktop's session is not shareable. Its token lives behind the entitlement-gated key, and the refresh tokens the desktop and your browser hold are single-use — refreshing one signs that client out. So the CLI holds a chain of its own instead of borrowing. auth login stores it under the CLI's own data directory, readable only by you; auth logout removes it. Deleting it locally does not revoke it upstream.

When to Use This CLI

Reach for granola-pp-cli when you need to answer cross-meeting questions Granola.ai’s web app and the GUI cannot — attendee timelines, MEMO pipeline state, recipes coverage gaps, calendar overlay, talk-time aggregation. It is the right tool for an agent processing transcripts in a loop, a CSM doing pre-call prep, or a consultant running a weekly retro. Pair the --json default with --select dotted paths to keep agent context lean.

When Not to Use This CLI

Do not change remote state unless the user explicitly asks. The narrow remote mutation surface is webhooks create / update / delete and meetings delete / restore; webhook deletion requires --yes. Inspection, export, sync, audit reads, and offline webhook verification are safe read paths.

Platform Notes

warm <id> <query> drives the Granola desktop GUI via AppleScript and is macOS-only. It prints what it would do by default; pass --launch to actually activate the app. On non-macOS hosts the command exits 0 with a "not supported" message. All other commands are cross-platform.

Unique Capabilities

These capabilities aren't available in any other tool for this API.

MEMO pipeline
  • memo run — Run the preflight → extract pipeline on one meeting or every new meeting since a timestamp, emitting the MEMO three-file artifact and an ndjson run-state ledger.

    Replaces the per-meeting shell loop that drives the MEMO pipeline — one call, one ndjson stream, agent-readable.

    bash
    granola-pp-cli memo run --since 24h --to ~/Documents/Dev/meeting-transcripts --json
  • memo queue — List every meeting whose transcript is in the cache but whose MEMO triple is not yet on disk.

    Answers the daily question “what’s still un-MEMO’d?” without the user opening Granola at all.

    bash
    granola-pp-cli memo queue --since 7d --json
Attendee intelligence
  • attendee timeline — Every meeting with a given attendee, ordered oldest→newest, with title, date, folder, and recipe-applied flag per row.

    Pre-call prep in one command; surfaces the conversation arc with a single person across months of meetings.

    bash
    granola-pp-cli attendee timeline alice@example.com --since 60d --json --select id,title,started_at,folder,recipes
  • attendee brief — Pulls the last N meetings with an attendee and stitches together their real cached notes plus real AI panel summaries — no synthesis.

    Eliminates the click-each-meeting copy-paste that account leads do before every external call.

    bash
    granola-pp-cli attendee brief alice@example.com --last 3 --panel action-items --json
Folders + recipes
  • folder stream — ndjson stream of every meeting in a Granola folder (resolved via documentLists + listRules) with notes and a named panel inlined.

    Replaces the weekly retro workflow of opening a folder and copy-pasting each meeting’s summary into a spreadsheet.

    bash
    granola-pp-cli folder stream client-foo --panel summary --json
  • recipes coverage — Surface meetings that did NOT have a named panel template/recipe applied within a date range.

    Friday retro question “did I run the Discovery recipe on every new-prospect call?” answered in one row per gap.

    bash
    granola-pp-cli recipes coverage discovery --since 14d --json
Transcript analytics
  • talktime — Per-segment-source talk-time for one meeting — microphone (you) vs system (everyone else) in minutes.

    Confidence column lets you grade transcript accuracy; mic vs system split is the input to “am I talking too much” retros.

    bash
    granola-pp-cli talktime 196037d9 --json
  • talktime — Lifts the per-source talk-time aggregation across N meetings since a date — who-talked-most over time.

    Time-defrag retro input that no per-meeting tool can produce.

    bash
    granola-pp-cli talktime --by participant --since 7d --json
Cache-native data

Both of these originate in Granola desktop's own cache. chat list reads the threads a cache sync already hydrated into the local store, so it keeps answering on a migrated install — but nothing can advance that set, and the output says so along with the last-sync timestamp. calendar overlay reads calendar events, which sync-api hydrates, so it keeps working.

  • chat list — List and dump Granola’s AI chat threads anchored to a meeting (entities.chat_thread + entities.chat_message in the cache).

    Recovers the AI Q&A history a user has accumulated against a meeting — useful when chasing what you asked about an account weeks ago.

    bash
    granola-pp-cli chat list 196037d9 --json
  • calendar overlay — Left-anti-join meetingsMetadata calendar events with documents.google_calendar_event to find calendared-but-not-recorded meetings.

    Sarah’s Friday retro and Damien’s “what did I miss” sweep both reduce to this row-level diff.

    bash
    granola-pp-cli calendar overlay --week 2026-05-11 --missed-only --json
Direct SQL against the local store

The local store is plain SQLite at ~/.local/share/granola-pp-cli/data.db, and querying it directly is a supported pattern for questions the commands don't cover. Read the schema first instead of guessing column names — the two classic wrong guesses are meetings.source (the real column is row_source) and folders.name (the real column is title):

bash
# Path, tables, and columns — the contract your SQL runs against.
# Reads the CLI's own store, WAL-current and without writing to it.
granola-pp-cli db schema

# Machine-readable, for scripts
granola-pp-cli db schema --json

# Then query with confidence
sqlite3 ~/.local/share/granola-pp-cli/data.db \
  "select row_source, count(*) from meetings group by row_source;"

The main tables: meetings, attendees, transcript_segments, folders + folder_memberships, panel_templates, recipes + recipes_usage, chat_threads + chat_messages, and sync_state. Since schema v4, row_source (= cache|api) marks provenance on the catalog tables too — folders, panel templates, recipes — not just meetings, and folders carry description and is_favourited. db schema is the authoritative list; this paragraph is the orientation. Treat the store as read-only from SQL — writes belong to sync and sync-api.

Pipeline hygiene
  • duplicates scan — Hash (title, date-bucket, attendee-email-set) across the cache and a meeting-transcripts repo to surface duplicates at scale.

    Repos accumulate near-duplicate files when meetings are re-extracted; this returns the dupe groups for cleanup.

    bash
    granola-pp-cli duplicates scan --root ~/Documents/Dev/meeting-transcripts --json
  • tiptap extract — Render documents[id].notes (TipTap JSON: headings, bullet_list, list_item, bold marks, paragraph_break) to canonical markdown instead of falling back to notes_plain.

    The MEMO summary file’s quality is bounded by extractor fidelity; granola.py loses sub-list hierarchy and bold runs.

    bash
    granola-pp-cli tiptap extract 196037d9 --as markdown

Command Reference

This CLI exposes 35+ commands. The full tree is too long to inline; ask the CLI for the canonical list:

bash
granola-pp-cli --help                              # top-level commands
granola-pp-cli <command> --help                    # subcommands + flags
granola-pp-cli agent-context --json                # machine-readable command tree for agents

Quick orientation by group:

GroupCommandsPurpose
MEMO pipelinememo run, memo queue, preflight, extractComposed three-stream pipeline; reads cache + writes MEMO triple
Meetingsmeetings list, meetings get, meetings fetch-batch, meetings delete, meetings restore, showList/inspect/mutate meetings (delete/restore mutate via internal API)
Streamsnotes-show, panel get, transcript get, tiptap extractThe three streams — human notes, AI panels, transcript — addressable separately
Exportexport, export-allCombined three-stream markdown export, single or bulk
Cross-meeting analyticsattendee timeline, attendee brief, folder stream, recipes coverage, talktime, calendar overlay, stats frequency, stats duration, stats attendees, stats calendar, collect, duplicates scan, chat list, chat getQueries no per-meeting tool can answer
Folders / recipes / workspacesfolders (public-API), folder list, folder stream, recipes list, recipes describe, recipes coverage, workspaces listGranola organizational entities
Public-API mirrorsnotes list, notes get, foldersTyped Bearer-key endpoints
Public-API administrationaudit list, webhooks list, webhooks create, webhooks update, webhooks delete, webhooks verifyAudit reads with a dedicated key; webhook lifecycle management; offline delivery verification
Sync / systemsync, sync-api, doctor, auth setup, auth status, auth set-token, auth logout, which, agent-context, version, importLocal store hydration (sync-api is the working path on current installs), auth, capability discovery, batch import
GUI bridgewarm (macOS only)Drives Granola desktop app via AppleScript
Finding the right command

When you know what you want to do but not which command does it, ask the CLI directly:

bash
granola-pp-cli which "<capability in your own words>"

which resolves a natural-language capability query to the best matching command from this CLI's curated feature index. Exit code 0 means at least one match; exit code 2 means no confident match — fall back to --help or use a narrower query.

Recipes

Daily MEMO loop
bash
granola-pp-cli memo run --since 24h --to ~/Documents/Dev/meeting-transcripts --json

Process every new meeting since yesterday into the MEMO triple format and yield only the new artifacts.

Pre-call attendee brief
bash
granola-pp-cli attendee brief alice@example.com --last 3 --panel action-items --json --select meetings.title,meetings.started_at,panels.action_items

Pull the last three meetings with Trevin and only the title, date, and action-items panel content per meeting.

Friday retro — missing recipes
bash
granola-pp-cli recipes coverage discovery --since 14d --json

Surface every new-prospect call in the last fortnight that did not have the Discovery panel applied. Omit the slug to list coverage gaps across every panel template.

Repo-wide duplicate scrub
bash
granola-pp-cli duplicates scan --root ~/Documents/Dev/meeting-transcripts --json

Find duplicate-meeting clusters across the MEMO output repo for cleanup.

Calendar-overlay missed-meeting sweep
bash
granola-pp-cli calendar overlay --week 2026-05-11 --missed-only --json

Calendared meetings with no Granola recording — weekly accountability check.

Auth Setup

1. Get an API key — needed only to fetch new data

API keys are created in Granola desktop → Settings → Connectors → API keys. Creating one requires a Business or Enterprise Granola workspace; personal and free workspaces cannot issue keys. Two scopes exist, personal-notes and public-notes — pick the narrowest one that covers the notes the user actually needs, which for a user reading their own meetings is personal-notes.

Export it as an environment variable:

bash
export GRANOLA_API_KEY="grn_your_key_here"

Prefer the env var over persisting the key into ~/.config/granola-pp-cli/config.toml. Backup and dotfile-sync tooling does not reliably preserve file modes, so a key written to a config file can end up world-readable inside a synced folder.

The base URL is https://public-api.granola.ai. The list endpoints cap page_size at 30 and reject any temporal filter that is not a UTC Z timestamp; the CLI handles both, but keep it in mind if you script against the API directly.

Audit logs require a separate GRANOLA_AUDIT_API_KEY; do not substitute the regular key. Webhook creation returns signing_secret once. Store it as GRANOLA_WEBHOOK_SECRET, then verify captured raw bodies with webhooks verify before parsing or processing them.

Use audit list --action <prefix> --occurred-after <date> --all for a serial full-window read. Webhook receivers must deduplicate on event_id: Granola retries failures for four days with the same ID. Paused endpoints do not receive or later replay events that occur while paused.

Show full SKILL.md (1,511 more words)Show less
2. Hydrate once

Run granola-pp-cli sync-api. It pages the notes list, then fetches each note's detail with its transcript and writes meetings, attendees, calendar events, summaries, folder membership, and transcript segments into the local store — the tables every read command queries. On repeat runs narrow the window with --since 7d.

The two sync paths do not clobber each other. Each clears only the rows it owns, so running sync and sync-api against the same store is safe in either order.

Transcripts get one extra guard. Granola applies transcript retention upstream, so an older meeting can come back from the API pruned to a handful of segments while this store still holds the full recording from the cache path. A sync never replaces a transcript with a smaller copy from the other source — it keeps what is stored, skips that meeting, and reports it as preserved_transcripts in the sync summary plus a warning: line naming the meetings. A path rewriting its own earlier transcript is unaffected, whatever the size change.

3. Read with no key

Once hydrated, every read command works offline with no credentials. granola-pp-cli transcript get <id> --json returns byte-identical output with and without GRANOLA_API_KEY set. Its top-level source field is one of store (SQLite), cache (legacy desktop cache), or live (public or internal API).

Legacy and pre-migration installs

On Granola desktop builds from before the key migration, the top-level sync command still reads the encrypted desktop cache. The first run triggers a macOS Keychain prompt for Granola Safe Storage — click "Always Allow" so later runs are silent.

The CLI is read-only against every desktop-owned token. It never rotates a refresh token it found in Granola's own storage — supabase.json, supabase.json.enc, or the stored-accounts.json fallback — because those tokens are single-use and rotating one signs the user out of Granola desktop. If a request fails with "token expired", open Granola desktop briefly to refresh, then re-run.

If you kept a copy of storage.dek from before the migration, base64-encode its 32-byte key into GRANOLA_SAFESTORAGE_KEY_OVERRIDE. The migration imported the existing key rather than generating a new one, so the old one still decrypts today's files.

Run granola-pp-cli doctor to see which paths resolve on this machine.

Troubleshooting
doctor says...What to do
INFO no Granola install detectedInstall Granola desktop from granola.ai and sign in, or skip the desktop entirely and use the API path.
INFO not in use (Granola pre-encryption)A pre-encryption Granola wrote plaintext files; the CLI reads them directly.
INFO present; run sync to authorize Keychain accessPre-migration install: run granola-pp-cli sync and click "Always Allow" on the macOS prompt.
OK okLast successful cache sync recorded. Token source and document-fetch count are in the --json output.
ERROR last sync failed to decrypt (key_unavailable)Read the encrypted_store_error field in the --json output. If it names an entitlement-gated keychain group, this is the upstream key migration and no Keychain approval or re-sync can fix it — switch to sync-api with an API key. Only if the message does not mention the migration is signing back into Granola desktop the right move.
ERROR last sync failed to decrypt (decrypt_failed)Encryption scheme may have drifted with a Granola update. File an issue with the doctor output.
Reads return empty after a successful sync-apiCheck the capability split above — panels and workspaces are cache-only and have no API source. Recipes and chat threads come from the last desktop-cache sync; if that never ran, there is nothing stored to serve.

Agent Mode

Add --agent to any command. Expands to: --json --compact --no-input --no-color --yes.

  • Pipeable — JSON on stdout, errors on stderr

  • Filterable — --select keeps a subset of fields. Dotted paths descend into nested structures; arrays traverse element-wise. Critical for keeping context small on verbose APIs:

    bash
    granola-pp-cli folders --agent --select id,name,status
  • Previewable — --dry-run shows the request without sending

  • Offline-friendly data reads — once hydrated by sync or sync-api, meeting and analytics reads serve from SQLite; audit and webhook management are live-only

  • Non-interactive — never prompts, every input is a flag

  • Mostly read-only — webhooks create / update / delete, meetings delete / restore, import, and warm --launch mutate state; deletion requires explicit confirmation where supported

Response envelope

Commands that read from the local store or the API wrap output in a provenance envelope:

json
{
  "meta": {"source": "live" | "local", "synced_at": "...", "reason": "..."},
  "results": <data>
}

Parse .results for data and .meta.source to know whether it's live or local. A human-readable N results (live) summary is printed to stderr only when stdout is a terminal — piped/agent consumers get pure JSON on stdout.

Auto-Refresh

Every command auto-refreshes the local store as its first action. You do not need to run granola-pp-cli sync before meetings list, panel get, or any other read — the CLI handles that for you on every invocation.

Two auth surfaces refresh independently:

SurfaceWhat runsWhen it fires
Desktop encrypted cachesync (cache → SQLite)When ~/Library/Application Support/Granola/cache-v6.json.enc (or pre-encryption cache-v6.json) is present
Public REST APIsync-api (public-api.granola.ai → SQLite)When GRANOLA_API_KEY is set or an access token is saved in the config file

When both are available, both refresh routines fire (cache first, then api). When neither is configured, auto-refresh is a silent no-op and your underlying command produces its own auth error.

On a migrated install the cache leg always fails — the file is present, so the leg fires, and it reports cache=failed: <migrated-scheme reason> on stderr. That is expected, not a misconfiguration. The api leg is the one that does the work. The read itself proceeds against the store either way, because refresh failures are non-fatal.

Freshness ceiling. Neither leg pokes Granola desktop into pulling from Granola servers. The cache leg is bounded by whatever the desktop has already pulled; the api leg is bounded by what Granola's servers have already published for the note. If a meeting just ended, give it a moment before expecting a transcript.

Refresh scope. The api leg runs both stages the sync-api command runs — the note list, then the per-note detail that populates meetings, attendees, transcript_segments, and folder_memberships — but it is bounded so it can run ahead of every command: one page of notes changed since its last successful refresh, not your whole account. Run granola-pp-cli sync-api once on a new install to backfill history; auto-refresh keeps it current from there.

Provenance line. When stderr is a TTY and you are not in --agent / --json / --compact / --quiet mode, a one-liner like auto-refresh: cache=ok (1.2s, 47 rows) api=ok (820ms, 12 rows) lands on stderr after the refresh. Agent and JSON consumers see no chatter on stdout.

Failures are non-fatal. A refresh that fails prints cache=failed: <short reason> on stderr and the command proceeds against whatever data is already in the store. Run granola-pp-cli doctor to investigate persistent refresh failures.

Opt out (precedence: flag wins over env):

bash
# Single command:
granola-pp-cli meetings list --no-refresh

# For a shell session / CI job:
export GRANOLA_NO_AUTO_REFRESH=1

# Saved per-profile via the existing profile mechanism:
granola-pp-cli profile save fast --no-refresh
granola-pp-cli --profile fast meetings list

Skipped commands. Auto-refresh never fires for sync, sync-api, auth*, doctor, help, version, completion, agent-context, profile*, feedback*, which, audit, or webhooks. These either do not read meeting data or cannot operate before auth is established. agent-context --json exposes the full skip list under auto_refresh.skip_list for introspecting agents.

Agent Feedback

When you (or the agent) notice something off about this CLI, record it:

granola-pp-cli feedback "the --since flag is inclusive but docs say exclusive"
granola-pp-cli feedback --stdin < notes.txt
granola-pp-cli feedback list --json --limit 10

Entries are stored locally at ~/.granola-pp-cli/feedback.jsonl. They are never POSTed unless GRANOLA_FEEDBACK_ENDPOINT is set AND either --send is passed or GRANOLA_FEEDBACK_AUTO_SEND=true. Default behavior is local-only.

Write what surprised you, not a bug report. Short, specific, one line: that is the part that compounds.

Output Delivery

Every command accepts --deliver <sink>. The output goes to the named sink in addition to (or instead of) stdout, so agents can route command results without hand-piping. Three sinks are supported:

SinkEffect
stdoutDefault; write to stdout only
file:<path>Atomically write output to <path> (tmp + rename)
webhook:<url>POST the output body to the URL (application/json or application/x-ndjson when --compact)

Unknown schemes are refused with a structured error naming the supported set. Webhook failures return non-zero and log the URL + HTTP status on stderr.

Named Profiles

A profile is a saved set of flag values, reused across invocations. Use it when a scheduled agent calls the same command every run with the same configuration - HeyGen's "Beacon" pattern.

granola-pp-cli profile save briefing --json
granola-pp-cli --profile briefing folders
granola-pp-cli profile list --json
granola-pp-cli profile show briefing
granola-pp-cli profile delete briefing --yes

Explicit flags always win over profile values; profile values win over defaults. agent-context lists all available profiles under available_profiles so introspecting agents discover them at runtime.

Exit Codes

CodeMeaning
0Success
2Usage error (wrong arguments)
3Resource not found
4Authentication required
5API error (upstream issue)
7Rate limited (wait and retry)
10Config error

Argument Parsing

Parse $ARGUMENTS:

  1. Empty, help, or --help → show granola-pp-cli --help output
  2. Starts with install → ends with mcp → MCP installation; otherwise → see Prerequisites above
  3. Anything else → Direct Use (execute as CLI command with --agent)

MCP Server Installation

Install the MCP binary from this CLI's published public-library entry or pre-built release, then register it:

bash
claude mcp add granola-pp-mcp -- granola-pp-mcp

Verify: claude mcp list

Direct Use

  1. Check if installed: which granola-pp-cli If not found, offer to install (see Prerequisites at the top of this skill).
  2. Match the user query to the best command from the Unique Capabilities and Command Reference above.
  3. Execute with the --agent flag:
    bash
    granola-pp-cli <command> [subcommand] [args] --agent
  4. If ambiguous, drill into subcommand help: granola-pp-cli <command> --help.

© mvanhorn, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in cli-skills/pp-granola of mvanhorn/printing-press-library.

Open the folder on GitHubat commit d9a1696

Compare with similar skills

Pp Granola next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Pp Granola compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Pp Granola this skillmvanhorn/printing-press-library2.1k—~8.1kAutomated safety check: NotesApache-2.0
Ar Io Gateway Operatorar-io/ar-io-node127—~7.7kAutomated safety check: NotesAGPL-3.0
Track17sundial-org/awesome-openclaw-skills663—~877Automated safety check: PassNone
Novu Design Workflownovuhq/novu40k—~2.6kAutomated safety check: PassCustom licence
Golivemikehasa/golive-skill1.3k—~13kAutomated safety check: NotesMIT
Stripe Appsfossasia/eventyay1.7k1 repos~3.6kAutomated safety check: PassApache-2.0

Similar skills

  • Ar Io Gateway Operator

    ar-io/ar-io-node

    Operate any AR.IO node deployment — architecture, daily ops, diagnostics, and recurring pitfalls that apply to every operator.

    127 GitHub stars~7.7k tokensUpdated today
    Backend & APIsAuto-check: notes
  • Track17

    sundial-org/awesome-openclaw-skills

    Track parcels via the 17TRACK API (local SQLite DB, polling + optional webhook ingestion)

    663 GitHub stars~877 tokensUpdated 7 mo ago
    Backend & APIsAuto-check passed
  • Design notification workflows the Novu way — choose channels, set severity, decide when a workflow is critical, configure digests, and route based on subscriber state.

    40k GitHub stars~2.6k tokensUpdated yesterday
    Backend & APIsAuto-check passed
  • Golive

    mikehasa/golive-skill

    Take an agent-written app from repo to live production on the user's OWN accounts, with providers they choose (hosting, database, auth, payments, email, domain/DNS).

    1.3k GitHub stars~13k tokensUpdated 7 days ago
    Backend & APIsAuto-check: notes
  • Stripe Apps

    fossasia/eventyay

    A skill your agent uses when building, modifying, or reviewing a Stripe App — or when the user describes something that implies one (e.g.

    1.7k GitHub starsUsed in 1 repo~3.6k tokens
    Backend & APIsAuto-check passed
  • Dingtalk Message

    agentscope-ai/ReMe

    钉钉消息发送技能。支持企业内部机器人(批量单聊/群聊)和 Webhook 自定义机器人两种接入方式,支持多机器人管理,支持文本、Markdown、链接、ActionCard、FeedCard等多种消息类型。

    3.6k GitHub stars~1.6k tokensUpdated 2 days ago
    Backend & APIsAuto-check passed

More from mvanhorn/printing-press-library

All 506 skills in this repo
  • Agent Desktop

    mvanhorn/printing-press-library

    Desktop automation through the real Rust agent-desktop CLI, published in Printing Press through a small bridge.

    2.1k GitHub stars~2.3k tokensUpdated today
    Auto-check: notes
  • Gfonts

    mvanhorn/printing-press-library

    Search, browse, and download Google Fonts from the terminal via the gfonts CLI.

    2.1k GitHub stars~574 tokensUpdated today
    Auto-check passed
  • Pp 1688

    mvanhorn/printing-press-library

    The free, offline Trigger phrases: search 1688 for, find a factory on 1688 for, wholesale price on 1688 for, who is the cheapest supplier on 1688 for, compare 1688 suppliers for, use 1688, run 1688.

    2.1k GitHub stars~3k tokensUpdated today
    Auto-check: notes
  • Pp Activity Japan

    mvanhorn/printing-press-library

    Inspect known Activity Japan plan IDs or URLs, compare dated prices and sessions, check language-sitemap coverage, and hand off to canonical booking pages.

    2.1k GitHub stars~2k tokensUpdated today
    Auto-check: notes
  • Pp Adminbyrequest

    mvanhorn/printing-press-library

    Every Admin By Request portal action, plus a local SQLite mirror of audit, events, inventory and requests for ad-hoc...

    2.1k GitHub stars~3.3k tokensUpdated today
    Auto-check: notes
  • Pp Agent Capture

    mvanhorn/printing-press-library

    macOS screen capture, window recording, GIF conversion, and agent evidence bundles from the terminal.

    2.1k GitHub stars~1.6k tokensUpdated today
    Auto-check: notes

Works with

Categories

Questions about Pp Granola

What does Pp Granola do?

Granola notes, transcripts, audit events, and webhooks — plus offline SQLite cross-meeting search, attendee timelines, and a MEMO pipeline runner. Pp Granola is an agent skill from mvanhorn/printing-press-library. Granola notes, transcripts, audit events, and webhooks — plus offline SQLite cross-meeting search, attendee timelines, and a MEMO pipeline runner.

When should I use Pp Granola?

Pp Granola fits situations like: phrases: memo run for todays meetings; whats in granola but not yet memod; every meeting we had with trevin; verify granola webhook.

How do I install Pp Granola in Claude Code?

Run `npx skills add mvanhorn/printing-press-library --skill pp-granola -a claude-code`. Or copy the skill folder (cli-skills/pp-granola in mvanhorn/printing-press-library) into .claude/skills/pp-granola in your project. Claude Code loads it when a task matches its description.

How do I install Pp Granola in Codex?

Run `npx skills add mvanhorn/printing-press-library --skill pp-granola -a codex`. Or copy the skill folder (cli-skills/pp-granola in mvanhorn/printing-press-library) into .agents/skills/pp-granola in your project. Codex loads it when a task matches its description.

Can I use Pp Granola in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add mvanhorn/printing-press-library --skill pp-granola -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/pp-granola, .gemini/skills/pp-granola, .github/skills/pp-granola and .opencode/skills/pp-granola in your project.

What does Pp Granola need to run?

Going by SKILL.md and its folder, Pp Granola needs the command-line tools its instructions call (claude, npx, go and sqlite3) and credentials named GRANOLA_API_KEY, GRANOLA_AUDIT_API_KEY and GRANOLA_WEBHOOK_SECRET. Our summary lists: Node.js; A credential in GRANOLA_API_KEY. Its frontmatter pre-approves these tools: Read, Bash.

Does Pp Granola access the network?

SKILL.md names 2 domains. In commands or code: public-api.granola.ai; the agent is likely to contact it when it follows the instructions. As links in the text: github.com. This is read from the text; nothing was executed.

Is Pp Granola safe to install?

Our automated static check of SKILL.md found notes only (pre-approves every shell command (allowed-tools: bash)), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.

What licence does Pp Granola use?

Pp Granola is published under the Apache-2.0 licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Pp Granola use?

About 8.1k tokens (SKILL.md is roughly 32k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Pp Granola?

Skills that share tags, products or a category with Pp Granola: Ar Io Gateway Operator (ar-io/ar-io-node, 127 stars), Track17 (sundial-org/awesome-openclaw-skills, 663 stars), Novu Design Workflow (novuhq/novu, 40k stars) and Golive (mikehasa/golive-skill, 1.3k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Pp Granola?

mvanhorn (a GitHub user) maintains it in mvanhorn/printing-press-library, which has 2,056 GitHub stars. The repository holds 506 skills in this directory. The repository was last updated on October 9, 2026.

Source: mvanhorn/printing-press-library on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.