Draft. Review. Publish.
Separate investigation from the published review. Distinguish observed facts from hypotheses and write for system improvement rather than individual blame.
Read the operational guidePOSTMORTEMS
Turn resolved incidents into reviews with a timeline, contributing factors and owned follow-up work.
WHAT IT SOLVES
Connect impact, detection, response and resolution to the source timeline. Preserve evidence links so the review remains traceable to the incident record.
Understand the capability
HOW IT WORKS
EXPLORE A WORKFLOW
Begin with the incident record and distinguish observed facts from hypotheses before writing the review.
OPERATIONAL DEPTH
The details below are the parts teams need when evaluating how the capability behaves during real response, failure, and handoff.
Separate investigation from the published review. Distinguish observed facts from hypotheses and write for system improvement rather than individual blame.
Read the operational guideTrack follow-up action items with an owner and status. Close remediation work when it is verifiably complete, rather than when the incident review is written.
Read the operational guideReview detection gaps, response friction and contributing conditions together. Use the documented workflow to keep review and publication deliberate.
Read the operational guideKNOW BEFORE PRODUCTION
Use a test service and representative provider configuration before treating postmortems as production incident infrastructure.
Run OpsKnight on infrastructure you control.
v2.0.0 · AGPL-3.0-only · Self-hosted · 28 inbound integrations