Results for “incident-report”
76 skillsincident-report
Incident Report (Blameless RCA)
2 · bundle
internal-comms
Writes internal communications using company-specific formats for status reports, leadership updates, newsletters, FAQs, incident reports, and project updates.
158k · bundle
internal-comms
Writes internal communications such as status reports, leadership updates, 3P updates, company newsletters, FAQs, and incident reports using company-specific formats.
2 · bundle
internal-comms
Writes internal communications using company-specific formats and templates for status reports, leadership updates, newsletters, FAQs, incident reports, and project updates.
66.9k · bundle
internal-comms
Writes internal communications such as status reports, leadership updates, 3P updates, company newsletters, FAQs, and incident reports using company-preferred formats.
1 · bundle
internal-comms
Writes internal company communications—status reports, leadership updates, 3P updates, newsletters, FAQs, and incident reports—following company-specific formats and guidelines.
559 · bundle
More results
internal-comms
Writes internal communications such as status reports, leadership updates, 3P updates, company newsletters, FAQs, incident reports, and project updates, following company-specific formats.
253 · bundle
vss-generate-video-report
Generates video analysis reports by routing to a VLM backend for per-clip analysis or an analytics backend for incident-range reports, with deployment profile verification and URL rewriting.
2.2k · bundle
conducting-phishing-incident-response
Responds to phishing incidents by analyzing reported emails, extracting indicators, assessing credential compromise, quarantining malicious messages, and remediating affected accounts.
24.6k · bundle
internal-comms
Write consistent, high-quality internal communications (status reports, 3P updates, newsletters, FAQs, incident reports). Use company standards and formats for all internal messaging.
16 · bundle
report-writing
Write business reports including executive summaries, status updates, postmortems, competitive analyses, data analyses, and quarterly reviews. Use when communicating findings, decisions, or status to stakeholders. Also trigger for 'executive summary', 'status report', 'postmortem', 'incident report', 'competitive analysis', 'quarterly review', 'business report', or 'data analysis report'.
0
dora-digital-operational-resilience-act
Applies the DORA framework to manage ICT risk and operational resilience for EU financial entities, covering governance, incident reporting, resilience testing, third-party risk, and threat intelligence sharing.
2
performing-ransomware-tabletop-exercise
Plans and facilitates tabletop exercises simulating ransomware incidents to test organizational readiness, decision-making, and communication procedures.
24.6k · bundle
report-generation
Generate professional reports — sprint retrospectives, financial summaries, analytics dashboards, and incident postmortems — from structured data with templates, charts, and multi-format output. Use when the user requests report generation or provides relevant inputs for this workflow.
159
detecting-sql-injection-via-waf-logs
Analyze WAF logs from ModSecurity, AWS WAF, or Cloudflare to detect SQL injection attack campaigns, classify injection types, and generate incident reports with OWASP classification.
24.6k · bundle
incident-postmortem
Guide a team through writing a structured, blameless post-mortem after a production incident, covering timeline reconstruction, root cause analysis, impact quantification, and action item generation.
36.2k
incident-responder
Runbook skill for failures: cron error, PA failure, cascade, gateway disconnect, semantic DB stale. Walks: detect → classify → diagnose → notify → log. Replaces ad-hoc failure handling. Triggers: "cron failed", "X is broken", "cascade", "incident", "gateway down", "PA failure".
6
incident-response
Conduz investigação de incidentes com método: triagem, hipóteses, mitigação, RCA e postmortem, priorizando evidências e confirmação humana.
2
conducting-post-incident-lessons-learned
Facilitate structured post-incident reviews to identify root causes, document what worked and failed, and produce actionable recommendations to improve future incident response.
24.6k · bundle
incident-response
Use when detecting, responding to, or recovering from system failures, outages, security breaches, or critical errors. This skill provides a structured incident response process for any type of failure, ensuring consistent handling, communication, and post-incident learning.
0
session-report
Capture delivery evidence, commands, changed files, blockers, and standards feedback after a work session.
542
incident-response
Classify, triage, and manage declared security incidents from initial triage through forensic evidence collection and escalation routing.
20.4k · bundle
spike-consumer-inline
OI-3 spike harness — heavy consumer skill, INLINE arm. Builds an incident post-mortem and sources the readability standard mid-workflow via an inline (non-forked) guidance skill. Use only when explicitly invoked by the spike harness with a TRIAL_ID and data path.
218
spike-consumer-adversarial
Incident Post-Mortem Builder
218
ciso-advisor
Security leadership for growth-stage companies. Risk quantification in dollars, compliance roadmap (SOC 2/ISO 27001/HIPAA/GDPR), security architecture strategy, incident response leadership, and board-level security reporting. Use when building security programs, justifying security budget, selecting compliance frameworks, managing incidents, assessing vendor risk, or when user mentions CISO, security strategy, compliance roadmap, zero trust, or board security reporting.
0 · bundle
investigating-phishing-email-incident
Investigate phishing email incidents from initial user report through header analysis, URL/attachment detonation, impacted user identification, and containment actions using SOC tools like Splunk, Microsoft Defender, and sandbox analysis platforms.
24.6k · bundle
incident
Incident response mode — diagnose a production issue, write a postmortem, add follow-up tasks to TODO.md. Use when user says "/incident [description]".
8
incident-timeline-creation
**Server Logs:**
2
spike-consumer-baseline
OI-3 spike harness — heavy consumer skill, BASELINE arm. Builds an incident post-mortem and sources the readability standard mid-workflow by reading a file directly, with NO Skill-tool call. Use only when explicitly invoked by the spike harness with a TRIAL_ID and data path.
218
issue-reporting
Helps users report issues with GTM skills — incorrect advice, broken activation, missing context, or unexpected behavior. Guides through gathering the right details (skill name, prompt used, actual vs expected output, context files present) and generates a properly formatted GitHub issue. Use when users say: 'this skill gave wrong advice', 'report a bug', 'file an issue', 'skill isn't working', 'wrong output', 'skill didn't activate', 'bad recommendation', 'incorrect behavior', or 'something is broken'.
88
pagerduty-alert
Trigger or resolve a PagerDuty incident for on-call escalation
118 · bundle
alerting-incident-management
Designs effective alerting and incident management for production services, covering alert rules, on-call rotations, runbooks, and incident response workflows.
4
event-log
Append-only event log — the probabilistic record of everything that happened in the project. Use whenever something notable happens that the project should remember — work items created/transitioned, decisions recorded, bindings changed, incidents occurred, releases shipped.
0 · bundle
building-incident-timeline-with-timesketch
Build collaborative forensic incident timelines using Timesketch to ingest, normalize, and analyze multi-source event data for attack chain reconstruction and investigation documentation.
24.6k · bundle
deck-safety-alert
Creates safety alert decks with hazard stripes, tiered cards, and policy code blocks for incident reviews and risk communication.
· bundle
managing-allma
Manages and analyzes incidents, post-incident reviews, and collaboration workflows in Allma via its REST API, covering incident discovery, timeline tracking, stakeholder communication, and retrospective analysis.
7