Academy → Messaging ChannelsOfficial documentation · Arabic guidance

Teams Meetings

اجتماعات Teams

Intermediate to advanced5 min readLesson 95 questions✓ 2026-08-18
Before you read

What this page is, and what it holds.

This page covers Teams Meetings. It carries a source warning and takes about 5 minutes to read. Open the channel to yourself first with an allowlist. An open channel means anyone can message your agent.

11sections
12code examples
1tables
6commands
869source words
The official one-line description

Set up the Microsoft Teams meeting summary pipeline with Microsoft Graph webhooks

What you will be able to do

Outcomes taken from this page, not a template.

  • Understand what بوابة المراسلة is and when you need it.
  • Run hermes teams-pipeline subscribe and hermes gateway run and understand what happens next.
  • Read the table and take only the row that applies to you.
  • Set MSGRAPH_TENANT_ID in the right place.
Identifiers you will meet

Exactly as they appear in Hermes.

Commands
  • hermes teams-pipeline subscribe
  • hermes gateway run
  • hermes gateway setup
  • hermes teams-pipeline validate
  • hermes plugins enable teams_pipeline
  • hermes teams-pipeline maintain-subscriptions
Environment variables
  • MSGRAPH_TENANT_ID
  • MSGRAPH_CLIENT_ID
  • MSGRAPH_CLIENT_SECRET
  • MSGRAPH_WEBHOOK_ENABLED
  • MSGRAPH_WEBHOOK_PORT
  • MSGRAPH_WEBHOOK_CLIENT_STATE
  • MSGRAPH_WEBHOOK_ACCEPTED_RESOURCES
  • MSGRAPH_WEBHOOK_HOST
Page map

Jump to the part you need.

  1. 01What This Feature Does
  2. 02Prerequisites
  3. 03Step 1: Add Microsoft Graph Credentials
  4. 04Step 2: Enable the Graph Webhook Listener
  5. 05Step 3: Configure Teams Delivery and Pipeline Behavior
  6. 06Teams Delivery Modes
  7. 07Step 4: Start the Gateway
  8. 08Step 5: Create Graph Subscriptions
  9. 09Validation
  10. 10Troubleshooting
  11. 11Related Docs
The full official page

Nothing summarised away.

The documentation body below is reproduced from the official source so commands and identifiers stay exact. Each section carries a short note describing what it contains.

Use the Teams meeting pipeline when you want Hermes to ingest Microsoft Graph meeting events, fetch transcripts first, fall back to recordings plus STT when needed, and deliver a structured summary to downstream sinks.

Prerequisites: see Microsoft Teams for the underlying bot/credential setup.

Run hermes gateway setup and pick Teams Meetings for a guided walk-through.

This page focuses on setup and enablement:

  • Graph credentials
  • webhook listener configuration
  • Teams delivery modes
  • pipeline config shape

For day-2 operations, go-live checks, and the operator worksheet, use the dedicated guide: Operate the Teams Meeting Pipeline.

What This Feature Does

Commands you type in a terminal. Understand what one does before copying it. Commands here: hermes plugins enable teams_pipeline.

The pipeline:

  1. receives Microsoft Graph webhook events
  2. resolves the meeting and prefers transcript artifacts first
  3. falls back to recording download plus STT when no usable transcript is available
  4. stores durable job state and sink records locally
  5. can write summaries to Notion, Linear, and Microsoft Teams

Operator actions stay in the CLI (the teams-pipeline subcommand is registered by the teams_pipeline plugin — enable it via hermes plugins enable teams_pipeline or set plugins.enabled: [teams_pipeline] in config.yaml):

Shell3 lines
hermes teams-pipeline validate
hermes teams-pipeline list
hermes teams-pipeline maintain-subscriptions

Prerequisites

Explains the idea itself. Read it slowly; the later sections build on it.

Before enabling the meetings pipeline, make sure you have:

  • a working Hermes install
  • the existing Microsoft Teams bot setup if you want Teams outbound delivery
  • Microsoft Graph application credentials with the permissions required for the meeting resources you plan to subscribe to
  • a public HTTPS URL that Microsoft Graph can call for webhook delivery
  • ffmpeg installed if you want recording-plus-STT fallback

Step 1: Add Microsoft Graph Credentials

Ordered, practical steps. Run one and confirm it worked before moving on.

Add Graph app-only credentials to ~/.hermes/.env:

Shell3 lines
MSGRAPH_TENANT_ID=<tenant-id>
MSGRAPH_CLIENT_ID=<client-id>
MSGRAPH_CLIENT_SECRET=<client-secret>

These credentials are used by:

  • the Graph client foundation
  • subscription maintenance commands
  • meeting resolution and artifact fetches
  • Graph-based Teams outbound delivery when you do not provide a dedicated Teams access token

Step 2: Enable the Graph Webhook Listener

Ordered, practical steps. Run one and confirm it worked before moving on.

The webhook listener is a gateway platform named msgraph_webhook. At minimum, enable it and set a client state value:

Shell4 lines
MSGRAPH_WEBHOOK_ENABLED=true
MSGRAPH_WEBHOOK_PORT=8646
MSGRAPH_WEBHOOK_CLIENT_STATE=<random-shared-secret>
MSGRAPH_WEBHOOK_ACCEPTED_RESOURCES=communications/onlineMeetings

The bind host is read from the platform's extra.host in config.yaml (there is no MSGRAPH_WEBHOOK_HOST env var — see the webhook listener reference).

The listener exposes:

  • /msgraph/webhook for Graph notifications
  • /health for a simple health check

You need to route your public HTTPS endpoint to that listener. For example, if your public domain is https://ops.example.com, your Graph notification URL would typically be:

Text1 line
https://ops.example.com/msgraph/webhook

Step 3: Configure Teams Delivery and Pipeline Behavior

Ordered, practical steps. Run one and confirm it worked before moving on.

The meeting pipeline reads its runtime config from the existing teams platform entry. Pipeline-specific knobs live under teams.extra.meeting_pipeline. Teams outbound delivery stays on the normal Teams platform config surface.

Example ~/.hermes/config.yaml:

YAML32 lines
platforms:
  msgraph_webhook:
    enabled: true
    extra:
      host: 127.0.0.1
      port: 8646
      client_state: "replace-me"
      accepted_resources:
        - "communications/onlineMeetings"

  teams:
    enabled: true
    extra:
      client_id: "your-teams-client-id"
      client_secret: "your-teams-client-secret"
      tenant_id: "your-teams-tenant-id"

      # outbound summary delivery
      delivery_mode: "graph" # or incoming_webhook
      team_id: "team-id"
      channel_id: "channel-id"
      # incoming_webhook_url: "https://..."

      meeting_pipeline:
        transcript_min_chars: 80
        transcript_required: false
        transcription_fallback: true
        ffmpeg_extract_audio: true
        notion:
          enabled: false
        linear:
          enabled: false

If you bind the listener to a non-loopback host such as 0.0.0.0, you must also set allowed_source_cidrs to Microsoft's webhook egress ranges. Loopback binds (127.0.0.1 / ::1) are the intended dev-tunnel and local reverse-proxy setup.

Teams Delivery Modes

Settings you configure once. Change one at a time so you can see what each does.

The pipeline supports two Teams summary-delivery modes inside the existing Teams plugin.

incomingwebhook

Use this when you want a simple webhook post into Teams without channel-message creation through Graph.

Required config:

YAML6 lines
platforms:
  teams:
    enabled: true
    extra:
      delivery_mode: "incoming_webhook"
      incoming_webhook_url: "https://..."

graph

Use this when you want Hermes to post the summary through Microsoft Graph into a Teams chat or channel.

Supported targets:

  • chat_id
  • team_id + channel_id
  • team_id + home_channel fallback for the existing Teams platform

Example:

YAML7 lines
platforms:
  teams:
    enabled: true
    extra:
      delivery_mode: "graph"
      team_id: "team-id"
      channel_id: "channel-id"

Step 4: Start the Gateway

Ordered, practical steps. Run one and confirm it worked before moving on. Commands here: hermes gateway run.

Start Hermes normally after updating config:

Shell1 line
hermes gateway run

Or, if you run Hermes in Docker, start the gateway the same way you already do for your deployment.

Check the listener:

Shell1 line
curl http://localhost:8646/health

Step 5: Create Graph Subscriptions

Carries a warning. Read it before running anything here. Commands here: hermes teams-pipeline subscribe, hermes teams-pipeline maintain-subscriptions. The upstream warning appears below.

Use the plugin CLI to create and inspect subscriptions.

Examples:

Shell9 lines
hermes teams-pipeline subscribe \
  --resource communications/onlineMeetings/getAllTranscripts \
  --notification-url https://ops.example.com/msgraph/webhook \
  --client-state "$MSGRAPH_WEBHOOK_CLIENT_STATE"

hermes teams-pipeline subscribe \
  --resource communications/onlineMeetings/getAllRecordings \
  --notification-url https://ops.example.com/msgraph/webhook \
  --client-state "$MSGRAPH_WEBHOOK_CLIENT_STATE"

For subscription maintenance and day-2 operator flows, continue with the guide: Operate the Teams Meeting Pipeline.

Validation

Commands you type in a terminal. Understand what one does before copying it. Commands here: hermes teams-pipeline validate.

Run the built-in validation snapshot:

Shell1 line
hermes teams-pipeline validate

Useful companion checks:

Shell2 lines
hermes teams-pipeline token-health
hermes teams-pipeline subscriptions

Troubleshooting

A troubleshooting section. Find the symptom that matches yours rather than reading it end to end.

ProblemWhat to check
Graph webhook validation failsConfirm the public URL is correct and reachable, and that Graph is calling the exact /msgraph/webhook path
Jobs do not appear in hermes teams-pipeline listConfirm msgraph_webhook is enabled and that subscriptions point at the right notification URL
Transcript-first never succeedsCheck Graph permissions for transcript resources and whether the transcript artifact exists for that meeting
Recording fallback failsConfirm ffmpeg is installed and the Graph app can access recording artifacts
Teams summary delivery failsRe-check delivery_mode, target IDs, and Teams auth config
Knowledge check

5 questions answered by this page alone.

Every option is a real identifier from the Hermes documentation. The wrong ones are real too, just from other pages.

1. In this lesson's table, what is the “What to check” for “Transcript-first never succeeds”?
2. Which of these environment variables actually appears in this lesson?
3. Which warning does the source state in this lesson?
4. Which of these headings does not appear in this lesson?
5. Which configuration key appears in this lesson's examples?