canva-core-workflow-a

v2026.09.24

Create an authorized Canva design and export it through a reconciled asynchronous job. Use when performing design creation, supported-format selection, export polling, and safe result handling. Trigger with: "create Canva design", "export Canva design", "poll Canva export".

GitHub
安装命令
npx skhub add jeremylongshore/canva-core-workflow-a
Markdown
SKILL.md

Canva Design and Export Workflow

Overview

Keep design creation, user editing, export submission, job reconciliation, and result delivery as separate recorded operations. Query current supported export formats instead of hard-coding a universal list.

Prerequisites

  • Approved design purpose, owner, input rights, and destination
  • Explicit design scopes and resource authorization
  • Pinned endpoint contract and result-data retention decision

Instructions

Step 1: Authorize the request

Resolve tenant, user, design purpose, required explicit scopes, content rights, and whether a new design is permitted.

Step 2: Create once

Persist an application operation key before submitting the design request. Store only the returned opaque design reference and approved URLs under policy.

Step 3: Confirm user handoff

Present the correct view or edit surface only to the authorized user. Do not treat creation as evidence that downstream export is allowed.

Step 4: Discover formats

Query the design export-formats endpoint when available and validate the requested format/options against that response and current OpenAPI.

Step 5: Submit and poll export

Persist the export job ID, poll the existing job with bounded exponential backoff, and stop on success, failed, or the local timeout budget.

Step 6: Deliver and expire

Validate content type and destination, keep result URLs out of logs, honor response/provider expiry evidence, and record cleanup or retention.

Authentication

Canva Connect calls use Bearer access tokens obtained by a backend through OAuth 2.0 Authorization Code with SHA-256 PKCE. Request explicit least-privilege scopes, keep client secrets and tokens out of browser-visible state, and serialize refresh so the replacement single-use refresh token is stored atomically.

Tool Discipline

Use Read and Grep for discovery and evidence. Use Write or Edit only for the approved artifact, code, configuration, test, or receipt described by this workflow; do not make an unapproved Canva-side change.

Output

  • Scoped decision or implementation artifact
  • Redacted operation and validation receipt
  • Failure, rollback, and follow-up ownership record

Examples

A user creates an approved presentation, edits it in Canva, then requests PDF export. The service checks available formats, submits one job, reconciles its ID, and delivers the result through an access-controlled application route.

Error Handling

FailureResponse
Format unavailableReturn the current supported choices without submitting
Export remains in progressStop at the local budget and continue reconciliation asynchronously
Design ownership changedFail closed and require a new authorization decision
Result URL reaches logsRevoke access where possible and remediate redaction

Resources

发现
标签

此技能尚未发布标签。

版本
最新版本元数据

版本

v2026.09.24

发布时间

Sep 24, 2026

分类

未分类

许可证

MIT

源路径

skills/.curated/canva-core-workflow-a

默认分支

main

最新提交

e5a6c3b

Tree SHA

c2dc8e8