ProductOperate and verify
Incidents and postmortemspreview
Incidents read on the monitor that saw them, with the impact measured.
An incident names the monitors it touched. Its monitor's page draws it over the chart and shows the whole postmortem under it, and the impact beside the text is computed from that monitor's own runs. Every save is a version, a stale save is refused, and only an owner or admin publishes. You acknowledge it from your phone.
Early access: partners get in by request and a signed NDA. No SLA while it lasts.
From the product tour, started at this product's chapter. The narration is an AI voice.
Watch it
Chapters
Space play or pause · ← → 5 s · 1 to 9 chapters · C captions · F full screen
Chapter 3 of the tour: Respond · 0:22Watch the whole tourRead the transcript
Each line says how far it is built today. Live means anyone with access uses it; preview means it runs for admins and partners or as a pre-release; coming means it is written down and not built yet.
What it does today
- preview
On the monitor that saw it
The monitor's page draws the incident as a band over its chart, with the postmortem under it. The Incidents list filters by status, severity, monitor, category and tags.
- preview
Impact measured, never typed
Runs, failed runs and the error rate between start and resolution, computed from the monitors' own runs. A number in the text is the author's; the figures beside it are the platform's.
- preview
A postmortem kept like code
Summary, root cause, timeline, action items with owners and typed evidence links. Every save is a version you can read, compare and restore; a save on a stale version is refused, never merged.
- preview
Acknowledged from the phone
An opened incident pages the phone app; Acknowledge from the incident's page or the lock screen. The timeline names who has it, and the time to acknowledge becomes a figure.
- coming
Opened by an alert, shown on a status page
Incidents that open by themselves when a monitor goes down, review with named reviewers, and your own status page are written down and not built yet.
The incident is the step between the signal and the record: it starts from a monitor's measurement and ends as a postmortem whose figures anyone can check against the runs.
How it works
An incident as the console shows it: the band over the monitor's chart, the measured impact and the timeline with the acknowledgement.
In the console
orders-api live
13:3014:12 · 14:4415:20
Measured: 31 of 64 runs failed between 14:12 and 14:44, error rate 48%, 32 minutes
INC-0142 · SEV2 preview
- Monitor down: 2 failures in a row
- Incident opened on the monitor, SEV2; the phone pages
- Acknowledged by Ana, from the lock screen
- Roll back of pull request #482
- Monitor recovered at the first success
- Resolved; postmortem draft, version 3
Example data
Drawn from the console's own layout. The services, times and numbers are made up for the example.
Every claim on this page has its evidence: the documents that define it, the docs that say how to use it, and the API it runs on.
Proof and links
Documents
API
- RESTpreviewThe console's routes (list, read, open, save, versions, restore, acknowledge) run for admins and partners. They are not in the public reference yet.
- Keys and scopescoming
incidents:readandincidents:writefor keys and tokens open at launch. - MCPcomingNot an MCP tool yet: an assistant cannot read or write incidents today.
The evidence rule: a model saying it succeeded is never evidence. What counts is what was measured, by what, and when.
Your data, your call
Evidence is linked by type (a pull request, a run, a record), never pasted log content. Erasing an account erases its incidents, and a person's export includes the incidents that name them.
Logs record who did what and the outcome, never content. Self-hosted models by default; a third-party model provider needs a data processing agreement before it sees anything of yours. InOrbit is not certified: no auditor has attested its controls yet, and the known gaps are listed.
Questions, answered plainly
Does it replace our incident tool?
For incidents seen by your InOrbit monitors, it can. It does not open incidents from alerts by itself yet, and it has no on-call schedules of its own; incident.io as a connection is in development.
Who can see and edit a postmortem?
The account's members read. The owner, an admin or a named responder edits a draft. Only an owner or admin publishes, edits a published postmortem or deletes.
Can we import the postmortems we already have?
Records in our Markdown format load unchanged, with every section kept; that is how our own incidents got in. Other formats are not supported yet.
Why preview?
It runs in production for admins and partners. Keys, scopes and the public API come at launch, and the page will say live only then.