incident-review

Analyzes incidents to produce structured, blameless postmortems with actionable recommendations.

2|Updated Apr 30, 2026
One-click install
npx skills add https://github.com/NlightNFotis/skills --skill incident-review-nlightnfotis
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: incident-review
Source: https://github.com/NlightNFotis/skills/tree/main/incident-review
Command: npx skills add https://github.com/NlightNFotis/skills --skill incident-review-nlightnfotis

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This Skill helps teams run blameless postmortems after outages, security events, data issues, or serious near-misses. It turns scattered facts and emotional reactions into a structured analysis focused on contributing factors, failed safeguards, and concrete actions that reduce recurrence.

Core Features & Use Cases

  • Blameless incident analysis: Separates trigger events from deeper latent and active contributing factors so teams improve systems instead of blaming individuals.
  • Structured postmortem workflow: Guides impact definition, timeline reconstruction, defense analysis, detection and response review, and hindsight-bias checks.
  • Action-oriented output: Produces prevention, detection, mitigation, and response follow-ups with owners, due dates, and verification criteria.
  • Use cases: Useful after production outages, security incidents, data corruption, CI failures, and near-misses that need formal organizational learning.

Quick Start

Use the incident-review skill to analyze a production incident by reconstructing the timeline, identifying contributing factors and failed safeguards, and drafting blameless action items with owners and due dates.

Frequently Asked Questions about incident-review

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I run a blameless postmortem after a production outage?

Run a blameless postmortem by reconstructing the incident timeline, separating triggers from deeper contributing factors, and evaluating failed safeguards to produce prevention plans. This structure focuses on system improvements rather than assigning individual blame.

What is hindsight bias control in incident analysis?

Hindsight bias control in incident analysis prevents reviewers from judging past decisions with outcome knowledge. Structured postmortems apply this by objectively reviewing detection and response actions within the context experienced during the event.

How do I structure action items for recurrence prevention?

Structure action items for recurrence prevention by defining SMART tasks with specific owners, due dates, and verification criteria. Categorize follow-ups into prevention, detection, mitigation, and response to ensure comprehensive system hardening.

Can I use this incident review process for security events and data corruption?

Yes, you can use this incident review process for security events and data corruption. The blameless analysis methodology applies to any outage, security event, data issue, or serious near-miss requiring formal organizational learning and timeline reconstruction.

How do I separate trigger events from contributing factors in a postmortem?

Separate trigger events from contributing factors by analyzing how the system allowed the incident to occur. Distinguish the immediate active trigger from latent system conditions and failed safeguards that enabled the outage to materialize.