Run Incident Response

Coordinate a production incident from declaration through mitigation, recovery, and learning. Use for live outages, elevated errors, security events, or material data-integrity risk.

SylphxAI Updated

File contents

Run Incident Response

Stabilize first. Communicate observed facts, actions underway, and the next update time. Keep estimates labeled as estimates. Keep security-sensitive and personal data in authorized incident channels. A timeline of inferences is not a timeline of observations. Do not wait for root cause before stopping active harm.

Use maintain-product once harm is stable and the owning repair remains. Use write-high-signal-update for the customer or internal update text.

SylphxAI/skills/tree/main/skills/run-incident-response commit d8aa1480f1

Frequently asked questions

npx skillmds@latest add sylphxai/run-incident-response