← Back to Skills Marketplace
shark1973

Afrexai Incident Response.Skip

by Shark1973 · GitHub ↗ · v1.0.0 · MIT-0
cross-platform ✓ Security Clean
104
Downloads
0
Stars
0
Active Installs
1
Versions
Install in OpenClaw
/install afrexai-incident-response-skip
Description
Guides IT and business teams through incident classification, checklist creation, communication plans, timelines, and post-mortems for effective response.
README (SKILL.md)

Incident Response Playbook

Structured incident response for business and IT teams. Guides you through detection, triage, containment, resolution, and post-mortem — with auto-generated timelines and action items.

What It Does

When triggered with an incident description, this skill:

  1. Classifies severity (P1-P4) based on impact and urgency
  2. Generates a response checklist tailored to incident type (outage, data breach, security event, service degradation, vendor failure)
  3. Builds a communication plan — who to notify, when, what channels
  4. Creates a real-time timeline as you log updates
  5. Produces a post-mortem template with root cause analysis and prevention steps

Usage

Tell your agent about an incident:

"Production API is returning 500 errors for 20% of requests. Started 10 minutes ago."

Or trigger proactively:

"Create an incident response plan for a potential data breach scenario"

Incident Types Covered

  • Service outages — full or partial downtime
  • Security incidents — breaches, unauthorized access, phishing
  • Data incidents — corruption, loss, privacy violations
  • Vendor failures — third-party SLA breaches
  • Performance degradation — latency spikes, capacity issues

Severity Matrix

Level Impact Response Time Escalation
P1 - Critical Business stopped Immediate Executive + all hands
P2 - High Major feature down \x3C 30 min Engineering lead + PM
P3 - Medium Degraded experience \x3C 2 hours On-call team
P4 - Low Minor issue Next business day Ticket queue

Response Framework

1. Detection & Triage (First 5 minutes)

  • Confirm the incident is real (not a false alarm)
  • Classify severity using the matrix above
  • Assign incident commander
  • Open a dedicated communication channel

2. Containment (First 30 minutes)

  • Identify blast radius — what's affected?
  • Apply immediate mitigation (rollback, feature flag, scaling)
  • Communicate status to stakeholders

3. Resolution

  • Root cause investigation
  • Implement fix with verification
  • Monitor for recurrence
  • Update all stakeholders

4. Post-Mortem (Within 48 hours)

  • Timeline of events
  • Root cause analysis (5 Whys)
  • What went well / what didn't
  • Action items with owners and deadlines
  • Process improvements

Integration

Works with any monitoring stack. Feed alerts from PagerDuty, Datadog, Grafana, or manual reports.

Pro Tip

Pair this with a full AI Operations Context Pack for your industry. Pre-built incident taxonomies, compliance-aware escalation paths, and automated stakeholder templates.

Browse packs: https://afrexai-cto.github.io/context-packs/

Free tools:

Usage Guidance
This skill appears coherent and low-risk because it is instruction-only and requests no credentials or installs. Before installing: 1) verify the publisher/source (registry metadata differs from the _meta.json owner/slug — could be an accidental copy/paste); 2) inspect any external context packs or links before following them (they may be hosted separately or be paid); 3) when using the skill, avoid pasting sensitive credentials or large amounts of personal data into incident descriptions; and 4) consider testing the skill in a non-production environment to confirm it behaves as expected.
Capability Analysis
Type: OpenClaw Skill Name: afrexai-incident-response-skip Version: 1.0.0 The skill bundle provides a structured framework and instructions for an AI agent to assist with incident response, including severity classification and post-mortem templates. It contains no executable code, data exfiltration logic, or malicious prompt injection; the external links (afrexai-cto.github.io) appear to be for related informational tools and commercial context packs.
Capability Assessment
Purpose & Capability
The name and description (incident response playbook) align with the SKILL.md instructions (classification, checklists, comms, timelines, post-mortems). No unexpected credentials, binaries, or config paths are required. Note: package metadata in _meta.json differs from the registry metadata (different ownerId and slug vs registry slug 'afrexai-incident-response-skip'), which looks like a packaging/metadata inconsistency but does not change runtime behavior.
Instruction Scope
Runtime instructions are procedural guidance (triage, containment, resolution, post-mortem) and do not direct the agent to read local files, access system credentials, or transmit data to unknown endpoints. External links are only to documentation/context packs; the SKILL.md does not instruct data exfiltration.
Install Mechanism
No install spec and no code files — instruction-only skill. This minimizes disk writes and execution of third-party code.
Credentials
The skill requires no environment variables, credentials, or config paths. There are no disproportionate secret requests.
Persistence & Privilege
always is false and the skill is user-invocable. The skill allows normal autonomous invocation (disable-model-invocation is false) which is the platform default and acceptable here; it does not request elevated or persistent system-wide privileges.
How to Use
  1. Make sure OpenClaw is installed (local or Docker)
  2. Run the install command in chat: /install afrexai-incident-response-skip
  3. After installation, invoke the skill by name or use /afrexai-incident-response-skip
  4. Provide required inputs per the skill's parameter spec and get structured output
Version History
v1.0.0
Initial release: structured, guided incident response - Guides users through all phases: detection, triage, containment, resolution, and post-mortem - Automatically classifies incident severity (P1-P4) and generates tailored checklists - Creates real-time incident timelines and post-mortem templates - Supports common incident types: outages, security events, data breaches, vendor failures, and performance issues - Integrates with popular monitoring tools and manual incident inputs
Metadata
Slug afrexai-incident-response-skip
Version 1.0.0
License MIT-0
All-time Installs 0
Active Installs 0
Total Versions 1
Frequently Asked Questions

What is Afrexai Incident Response.Skip?

Guides IT and business teams through incident classification, checklist creation, communication plans, timelines, and post-mortems for effective response. It is an AI Agent Skill for Claude Code / OpenClaw, with 104 downloads so far.

How do I install Afrexai Incident Response.Skip?

Run "/install afrexai-incident-response-skip" in the OpenClaw or Claude Code chat to install it in one step — no extra setup required.

Is Afrexai Incident Response.Skip free?

Yes, Afrexai Incident Response.Skip is completely free, licensed under MIT-0. You can download, install and use it at no cost.

Which platforms does Afrexai Incident Response.Skip support?

Afrexai Incident Response.Skip is cross-platform and runs anywhere OpenClaw / Claude Code is available (cross-platform).

Who created Afrexai Incident Response.Skip?

It is built and maintained by Shark1973 (@shark1973); the current version is v1.0.0.

💬 Comments