incident-responder

Guide incident response with command roles, observability analysis, and post-incident reviews.

10|Updated May 20, 2026
One-click install
npx skills add https://github.com/AI-Safeter/antigravity-cli-plugin --skill incident-responder-ai-safeter
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: incident-responder
Source: https://github.com/AI-Safeter/antigravity-cli-plugin/tree/main/plugins/incident-responder
Command: npx skills add https://github.com/AI-Safeter/antigravity-cli-plugin --skill incident-responder-ai-safeter

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Expert incident response guidance and playbooks designed to accelerate detection, containment, and recovery, enabling rapid restoration with clear coordination and timely communications.

Core Features & Use Cases

  • Immediate incident command setup with defined roles (Incident Commander, Communications Lead, Technical Lead) to streamline decision-making.
  • Observability-driven investigation techniques using distributed tracing, metrics, and centralized logs to identify root causes and blast radius.
  • Structured communication strategy for internal teams and external stakeholders, plus comprehensive post-incident reporting and learning.
  • Post-incident processes including blameless post-mortems, root cause analysis, and continuous improvements to resilience.

Quick Start

Initiate this skill during an active incident to guide response and stabilize services.

Frequently Asked Questions about incident-responder

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I set up incident command roles during a production outage?

Incident command setup requires defining roles like Incident Commander, Communications Lead, and Technical Lead to streamline decision-making and establish clear coordination during a production outage. This structure enables rapid stabilization and effective recovery.

What is a blameless post-mortem and when do I need one for incident response?

A blameless post-mortem is a post-incident process focusing on root cause analysis and continuous improvements to resilience rather than assigning fault. You need one after active security incidents, outages, or degraded services to document learnings and prevent recurrence.

How do I use observability data to find the root cause of a degraded service?

Observability-driven investigation uses distributed tracing, metrics, and centralized logs to identify the root cause and blast radius of a degraded service. Analyzing these telemetry sources guides rapid detection and containment during active incident response.

What is the best way to manage stakeholder communications during an active incident?

The best way to manage stakeholder communications is using a structured communication strategy for internal teams and external stakeholders. This ensures timely, coordinated updates while the incident commander and technical leads handle stabilization and recovery.

Can I use this incident response guidance for security incidents as well as system outages?

Yes, the incident response guidance applies to active security incidents, outages, and degraded services across production environments. It enforces command-and-control procedures, real-time observability analysis, and escalation regardless of the incident type.

Why does my incident response process fail to stabilize services quickly?

Incident response processes fail to stabilize services quickly when lacking defined command roles, structured communication, and observability-driven investigation techniques. Without enforced procedures for escalation and real-time log analysis, identifying root causes and blast radius is delayed.