Toolkit

Incident Report Template

Copy/paste this. Keep it boring. Boring wins.

Template

Title:
Date/Time (timezone):
System/Domain:
Summary (2-3 sentences):

What happened (chronological):
1)
2)
3)

Evidence:
- filename + hash:
- filename + hash:
- links:

Impact:
- what broke
- who was affected
- duration

Actions taken:
- steps performed
- support tickets filed (IDs)

Current status:
- resolved / ongoing / unknown

Notes:
- anything uncertain labeled clearly as uncertain