POSTMORTEMS

Make the next incident easier.

Turn resolved incidents into reviews with a timeline, contributing factors and owned follow-up work.

WHAT IT SOLVES

Start from the incident evidence.

Connect impact, detection, response and resolution to the source timeline. Preserve evidence links so the review remains traceable to the incident record.

Understand the capability
01Incident timeline
02Interactive 5 Whys
03Action items with owners and due dates
OPSKNIGHT / PRODUCT VIEW Northstar Systems · v2.0.0
OpsKnight postmortems product view
OpsKnight postmortems product view

HOW IT WORKS

A concrete operational path, not a feature list.

LEARNING LOOPMove from evidence to an owned, verifiable operational change.
01Timeline
02Draft review
035 Whys
04Action items
05Verify
Facts before hypothesesOwner + due dateCompletion evidence

EXPLORE A WORKFLOW

  1. 01Resolved incident
  2. 02Timeline
  3. 03Impact & detection
  4. 04Contributing factors

Begin with the incident record and distinguish observed facts from hypotheses before writing the review.

OPERATIONAL DEPTH

Postmortems, beyond the happy path.

The details below are the parts teams need when evaluating how the capability behaves during real response, failure, and handoff.

01

Draft. Review. Publish.

Separate investigation from the published review. Distinguish observed facts from hypotheses and write for system improvement rather than individual blame.

Read the operational guide
02

Learning needs an owner.

Track follow-up action items with an owner and status. Close remediation work when it is verifiably complete, rather than when the incident review is written.

Read the operational guide
03

Carry the change into the next response.

Review detection gaps, response friction and contributing conditions together. Use the documented workflow to keep review and publication deliberate.

Read the operational guide

KNOW BEFORE PRODUCTION

Validate the boundary, not just the happy path.

Use a test service and representative provider configuration before treating postmortems as production incident infrastructure.

  1. 01Preserve incident evidence links and distinguish observed facts from hypotheses.
  2. 02Give every follow-up action a clear owner and due date.
  3. 03Verify remediation is complete rather than treating publication as the finish line.
DOCUMENTATIONSetup, authorization, limits, and troubleshooting.
Explore postmortems documentation

Your incidents should belong to you.

Run OpsKnight on infrastructure you control.

v2.0.0 · AGPL-3.0-only · Self-hosted · 28 inbound integrations