incident-runbook-templates

Generate incident response runbooks from templates for structured workflows.

4|Updated Mar 3, 2026
One-click install
npx skills add https://github.com/AI-Foundry-Core/ril-agents --skill incident-runbook-templates-ai-foundry-core
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: incident-runbook-templates
Source: https://github.com/AI-Foundry-Core/ril-agents/tree/main/plugins/incident-response/skills/incident-runbook-templates
Command: npx skills add https://github.com/AI-Foundry-Core/ril-agents --skill incident-runbook-templates-ai-foundry-core

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Create ready-to-use, structured incident response runbooks from templates to standardize detection, triage, mitigation, and communication across teams.

Core Features & Use Cases

  • Template-driven runbooks for service outages, data incidents, and security events with predefined sections and escalation paths.
  • On-call enablement: quick generation of runnable playbooks for new on-call engineers and incident drills.
  • Live documentation: templates that guide incident response through detection, escalation, recovery, verification, and postmortem steps.

Quick Start

Generate a complete runbook for a service outage using the included templates.

Frequently Asked Questions about incident-runbook-templates

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I create an incident response runbook for a service outage?

You can create an incident response runbook by applying predefined templates that structure workflows for service outages, including detection, triage, mitigation, and resolution steps. The template provides a standardized format with fields for severity levels and ownership.

What sections should be included in a production incident runbook?

A production incident runbook should include overview, detection, triage, mitigation, root cause investigation, resolution, verification, escalation, and templates. These defined sections ensure structured incident response across services and teams.

How do I standardize incident communication and escalation paths for on-call engineers?

You can standardize incident communication and escalation paths by using template-driven runbooks for security events and data incidents. These templates provide predefined sections and escalation paths to enable new on-call engineers during incident drills.

Can I use incident runbook templates for live documentation during an active incident?

Yes, incident runbook templates serve as live documentation that guides response through detection, escalation, recovery, verification, and postmortem steps. They provide a structured workflow for active production incidents.

What is the best way to build a runbook for security events and data incidents?

The best way to build a runbook for security events and data incidents is using template-driven structures with predefined sections and escalation paths. This standardizes triage, mitigation, and communication across teams.

How do I update and test existing incident response runbooks for production services?

You can update and test existing incident response runbooks by applying the template structure to building, updating, and testing workflows. This ensures runbooks remain ready-to-use for production incidents across services and teams.