用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
直接命令不会经过审查 Prompt;运行前请先检查来源。
npx skills add https://github.com/Arvo-AI/aurora --skill postmortem命令会保持在同一行。复制前请横向滚动并检查完整内容。
想先保存到本地?可下载 SkillsMP 当前能够提供的文件。
正在显示 SKILL.md
| name | postmortem |
| id | postmortem |
| description | Postmortem generation and management tools for writing, reading, and versioning incident postmortems |
| category | core |
| connection_check | {"method":"always"} |
| tools | ["get_postmortem"] |
| index | Incident postmortem management -- read, write, version postmortem documents |
| rca_priority | 90 |
| metadata | {"author":"aurora","version":"1.0"} |
Core tools for reading postmortem documents during investigation, and writing them during the dedicated "Generate Postmortem" action. get_postmortem is available in all sessions. save_postmortem is only available during the "Generate Postmortem" action — not during RCA.
get_postmortem(incident_id)Read the current postmortem for an incident. Returns markdown content, generated_at, and updated_at timestamps. Returns status: "not_found" if no postmortem exists yet. Only the latest version is returned; historical versions are browsable in the UI but not via this tool.
save_postmortem(incident_id, content)Write or update a postmortem. Only available during the "Generate Postmortem" action — not during RCA. Each save automatically snapshots the previous content as a version for history tracking. Content must be complete markdown — partial updates are not supported. Max 100,000 characters.
get_postmortem — if a prior version exists, use it as a baseline to preserve structure and confirmed factssave_postmortemAlways generate postmortems with these sections in order:
# Postmortem: <Incident Title>
**Date:** YYYY-MM-DD HH:MM UTC
**Duration:** Xh Ym
**Severity:** critical/high/medium/low
**Service:** <service name>
## Summary
2-3 sentences describing what happened.
## Timeline
- **HH:MM UTC** - Event description
- **HH:MM UTC** - Event description
## Root Cause
Technical explanation of what failed and why.
## Impact
Services, users, SLAs, and data affected.
Human/process factors: deployment pressure, alert fatigue, communication gaps, handoff confusion.
Only include if evidence exists from conversations.
How the incident was resolved or mitigated.
[ ] Concrete follow-up item
[ ] Another follow-up item
What can prevent similar incidents in the future.
基于 SOC 职业分类