incident-commander

Automate incident response with severity classification, timeline reconstruction, and PIR generation.

Updated Apr 16, 2026
One-click install
npx skills add https://github.com/devCharuzu/philfida-taskmanage --skill incident-commander-devcharuzu
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: incident-commander
Source: https://github.com/devCharuzu/philfida-taskmanage/tree/main/.windsurf/skills/incident-commander
Command: npx skills add https://github.com/devCharuzu/philfida-taskmanage --skill incident-commander-devcharuzu

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) components.

What problem does it solve?

The Incident Commander Skill provides a structured, scalable framework to lead technology incident responses, ensuring timely decisions, clear roles, and consistent communications during outages or major incidents.

Core Features & Use Cases

  • Severity-driven coordination: classifies incident severity, assigns roles, and orchestrates cross-team collaboration.
  • Timeline reconstruction: aggregates events from multiple sources to build a coherent incident narrative for rapid root cause analysis.
  • Post-incident review generation: produces PIRs with actionable insights and learnings using multiple RCA frameworks.
  • Runbook integration & templates: pre-built playbooks, templates, and runbooks that guide responders through common failure modes.

Quick Start

Initiate an incident by declaring an incident, appointing an Incident Commander, and engaging the war room to begin the runbook.

Frequently Asked Questions about incident-commander

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I coordinate an incident response when a major outage occurs?

Coordinate incident response by declaring an incident, appointing an Incident Commander, and engaging a war room. This framework ensures timely decisions, clear role assignment, and consistent cross-team communication during outages.

What is the best way to classify incident severity during triage?

Classify incident severity using an automated severity-driven coordination framework. It assigns roles and orchestrates cross-team collaboration based on the classified severity level to ensure appropriate response efforts.

How does timeline reconstruction work for root cause analysis after an incident?

Timeline reconstruction aggregates events from multiple sources to build a coherent incident narrative. This structured timeline accelerates root cause analysis by providing a chronological view of the outage.

Can I generate a post-incident review automatically after mitigation?

Generate a post-incident review automatically using the PIR generator. It produces actionable insights and learnings by applying multiple root cause analysis frameworks to the reconstructed incident data.

Do I need pre-built runbooks to guide responders through common failure modes?

Pre-built runbooks and templates guide responders through common failure modes during an incident. They provide structured playbooks that accelerate response handling and ensure consistent mitigation steps.

What tools are included for automating incident response management?

Automation tools include incident_classifier for severity classification, timeline_reconstructor for event aggregation, and pir_generator for post-incident review creation. These scripts accelerate detection, triage, and mitigation workflows.