core-incident-management

Structure incident response with severity classification, role assignment, and post-incident review.

2|Updated Jun 30, 2026
One-click install
npx skills add https://github.com/Canhada-Labs/ceo-orchestration --skill core-incident-management
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: core-incident-management
Source: https://github.com/Canhada-Labs/ceo-orchestration/tree/main/.claude/skills/core/incident-management
Command: npx skills add https://github.com/Canhada-Labs/ceo-orchestration --skill core-incident-management

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) components.

What problem does it solve?

This Skill provides a comprehensive framework for incident management, ensuring that incidents are handled efficiently and effectively, with a focus on operational doctrine, severity classification, role assignment, and communication.

Core Features & Use Cases

  • Incident Severity Classification: Offers a clear schema for classifying incidents based on impact and severity.
  • Role Assignment: Defines roles such as Incident Commander, Communications Lead, Technical Lead, and Scribe, ensuring structured incident response.
  • Communication Cadence: Establishes a standardized communication protocol for internal and external stakeholders.
  • Mitigation Bias: Encourages a rollback-first approach to incident mitigation.
  • Post-Incident Review: Facilitates a blame-free review process to learn from and improve incident response.

Quick Start

Use the core-incident-management skill to handle a production incident by first declaring the severity and assigning the appropriate roles.

Frequently Asked Questions about core-incident-management

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I structure incident management roles for a production outage?

Incident management roles for a production outage are structured by assigning specific responsibilities such as Incident Commander, Communications Lead, Technical Lead, and Scribe to ensure an organized response.

What is the best way to classify incident severity in production environments?

Incident severity in production environments is classified using a clear schema that evaluates impact and severity, ensuring the incident response matches the scale of the problem.

How does communication cadence work during an operational incident?

Communication cadence during an operational incident establishes a standardized protocol for updating internal and external stakeholders at regular intervals throughout the response.

Can I use a rollback-first approach for incident mitigation?

Yes, a rollback-first approach is explicitly encouraged for incident mitigation, prioritizing immediate stability and operational recovery over investigating new deployments during an active incident.

What is a blameless post-incident review and when do I need it?

A blameless post-incident review is a structured evaluation process needed after any incident resolution to learn from the event, improve future response, and update operational doctrine.

Do I need specific monitoring tools to follow this incident management doctrine?

No specific monitoring tools are required as dependencies, allowing you to apply this operational doctrine and severity classification framework alongside your existing production environment stack.