Incident management
Review incident details
Use the incident detail page to understand impact, ownership, status, service context, and the response timeline. It explains how incidents are created, assigned, discussed, updated, and closed so responders can keep the timeline clear from detection through recovery.
Open an incident
- 1.
Open Incidents
Find the incident in the list or use filters to narrow the results.
- 2.
Select the incident
Open the incident detail page from the incident card or report link.
- 3.
Review the header
Check the current status, severity, trigger type, title, and description.
- 4.
Read the summary
Review service URL, creator, resolved time, detected time, trigger, duration, and assigned users.
Use the incident timeline
The timeline shows automatic monitor events, status changes, and user comments in time order. Automatic entries are labeled Auto, while user-created entries show the responder name.
- Use the timeline to understand what happened before adding a new comment.
- Keep comments factual and action-oriented.
- Use the share action to generate a short link when you need to send the incident to another responder or stakeholder.
Move the incident forward
Incident status changes follow the response flow. The page enables the next valid action, such as Mark as Investigating, Mark as Identified, Mark as Monitoring, Mark as Resolved, and Mark as Closed.
Do not skip context
Before resolving or closing an incident, add a short timeline note explaining the fix or follow-up so the record is useful later.