Skip to content

Report and update incidents

An incident is a team-scoped disruption record. Members report incidents; they do not create, trigger, or delete them. Incidents are not deletable. Status is derived from the latest response.

Crystade reports some incidents from monitoring after assertion hysteresis. Members can also report incidents that probes cannot see.

  • Any member can report a manual incident and add responses.
  • Only owners can publish or unpublish an incident.
  • Free response length is 2000 characters; Starter and Standard allow 10000. System-generated responses are not limited by that cap.

Open Incidents to see reported disruptions. Use Report Incident.

Incidents empty state with Report Incident

  1. Open Incidents and choose Report Incident.

    Report Incident form with title, severity, and initial Investigating update

  2. Set a title (5 to 200 characters) and severity: minor, major, or critical.

  3. Write the first response. The first response must be type investigating. That response cannot be deleted. For a manual incident, the reporter is the author of this first response.

  4. Save. The incident receives a team-scoped incident number starting at 1, and an incident ID.

Monitor-reported incidents get a system-generated first response that includes monitor name, failure reason, and check locations. You cannot mutate system-generated responses.

Responses form a chronological stack (newest on top). Each response has content, type, and timestamp. Content is written in a sanitized WYSIWYG editor.

Forward-only types:

investigatingidentifiedmonitoringresolvedpostmortem

You may skip identified and monitoring. postmortem requires a prior resolved response. You can add responses after the incident is resolved.

The incident status is always the type of the latest (topmost) response. Title, severity, and publish state can change at any time.

Only the original author of a response may update or delete it. You cannot delete the first (bottommost) response. Response content and type are versioned; versions are not independently deletable.

Owners publish or unpublish an incident. Unpublished incidents stay inside the team. A status page displays only published incidents that are linked to that page.

  • The incident appears in the team’s incident list with a number and derived status.
  • Adding a resolved response changes the incident status to resolved.
  • After an owner publishes, the incident is eligible to appear on linked status pages.
SymptomWhat to check
Cannot delete the incidentIncidents are not deletable. Resolve it and, if needed, unpublish it.
Cannot edit a responseOnly the original author can update or delete a response. System-generated responses cannot be mutated.
Cannot add postmortemAdd a resolved response first.
Status page still emptyThe incident must be published, and the status page must be allowed to show that incident.