incident-response

Automate incident response workflows from detection to postmortem analysis.

1|Updated Mar 30, 2026
One-click install
npx skills add https://github.com/ilove323/comlan-skills --skill incident-response-ilove323
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: incident-response
Source: https://github.com/ilove323/comlan-skills/tree/main/engineering/skills/incident-response
Command: npx skills add https://github.com/ilove323/comlan-skills --skill incident-response-ilove323

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

从发现到复盘,全流程管理线上事故。

Core Features & Use Cases

  • 新建事故、更新状态、撰写内部状态更新、客户通知及复盘输出,覆盖从发现到复盘的全流程。
  • 分级严重等级、分配角色(事故指挥官、沟通负责人、响应者)、建立作战室与节奏更新。
  • 生成状态更新、复盘报告、时间线、根本原因分析以及行动项等产出,方便事后审阅与学习。

Quick Start

Start a new incident workflow with /incident-response new [description].

Frequently Asked Questions about incident-response

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I manage an incident response workflow from detection to postmortem?

Incident response workflows are automated end-to-end from initial fault detection to postmortem analysis. The process covers severity assessment, role assignment, stakeholder communications, timeline tracking, and root-cause analysis generation.

What is the best way to structure stakeholder communication during a live outage?

Stakeholder communication during a live outage is structured through automated status updates, customer notifications, and rhythm-based updates. The workflow assigns a dedicated communication lead to coordinate internal and external messaging.

Can I assign specific roles like incident commander and responder during an outage?

Yes, specific roles including incident commander, communication lead, and responder are assigned during an active outage. The workflow establishes a war room and coordinates structured escalations based on severity assessment.

How do I generate a postmortem report with root-cause analysis after resolving an incident?

Postmortem reports with root-cause analysis are generated automatically after incident resolution. The artifacts include incident timelines, action items, and structured reviews to facilitate post-event learning and auditing.

Does this incident response workflow handle severity assessment and alarm escalation?

Yes, severity assessment and alarm escalation are core components of the incident response workflow. The system evaluates incident severity and applies structured escalation protocols to coordinate fault response effectively.

How do I start a new incident workflow for a live outage?

A new incident workflow is started by providing a description of the live outage. The system then automates fault response coordination, assigns roles, and initiates stakeholder communication protocols.