Agent skill

Post Mortem

by borghei in borghei/Claude-Skills

Blameless post-mortem expert for incidents, outages, regressions, customer escalations, missed launches, and failed experiments.

MITAuto-check passedDevOps & Cloud

Install Post Mortem

skills CLI
$ npx skills add borghei/Claude-Skills --skill post-mortem -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install borghei/Claude-Skills post-mortem --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/borghei/Claude-Skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/project-management/execution/post-mortem .claude/skills/post-mortem && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
post-mortem
GitHub stars
874
Token cost
~2.1k tokens
SKILL.md length
966 words
Files
10 (incl. references, assets)
Skills in repo
364
Repo updated
First seen
Licence
MIT

At a glance

Blameless post-mortem expert for incidents, outages, regressions, customer escalations, missed launches, and failed experiments.

  • Works in 4 steps: At incident close, the incident… → Scaffold Header, Summary, Impact, and… → Within the SLA window (Sev 1: 5 business… → …
  • Tasks that involve Runbooks and postmortems
  • SKILL.md covers Overview, Core Capabilities, When to Use and Clarify First, plus 4 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Post Mortem is an agent skill from borghei/Claude-Skills. Blameless post-mortem expert for incidents, outages, regressions, customer escalations, missed launches, and failed experiments. Pairs Google SRE practice with Allspaw / Dekker / Perrow systems thinking.

Its SKILL.md is about 2.1k tokens, which your agent loads only when the skill is triggered. The skill folder holds 12 other files, including reference files and assets (for example `assets/action_item_tracker.md`, `assets/incident_timeline_worksheet.md` and `assets/post_mortem_template.md`).

It sits in DevOps & Cloud, covering Runbooks and postmortems. The repository describes itself as: 385 AI skills, 77 expert agents, and 900 stdlib Python tools for every team: engineering, PM, marketing, C-level, compliance, business ops, research, and a LinkedIn toolkit… The licence is MIT.

When your agent uses it

  • Tasks that involve Runbooks and postmortems

Example prompts

  • “/post-mortem”

Workflow steps

4 steps, taken from the first numbered list in SKILL.md.

  1. At incident close, the incident commander assigns an author who opens assets/post_mortem_template.md.
  2. Scaffold Header, Summary, Impact, and Timeline from the incident chat transcript.
  3. Within the SLA window (Sev 1: 5 business days, Sev 2: 7), draft the remaining sections, run the chosen root-cause method, and hold a 60-90…
  4. Apply the Allspaw test, file every action item as a real ticket with an owner and due date, then publish to the searchable archive.

What it can do on your machine

Read from SKILL.md and the folder at commit c9a1487. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Post Mortem loads about 2.1k tokens when it runs, and up to ~15k if it reads all its reference files. Until then it costs about 54 tokens; SKILL.md has 966 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~54
When it runs · the whole SKILL.md, loaded when a task matches
~2.1k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~15k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from borghei/Claude-Skills at commit c9a1487, republished under its MIT licence (© borghei). 966 words, ~2,125 tokens.

Download SKILL.mdSave it as .claude/skills/post-mortem/SKILL.md (or your agent's skills folder). This skill also uses 9 other files; get the full folder from GitHub.
name
post-mortem
description
Blameless post-mortem expert for incidents, outages, regressions, customer escalations, missed launches, and failed experiments. Pairs Google SRE practice with Allspaw / Dekker / Perrow systems thinking.
license
MIT + Commons Clause
metadata.version
1.0.1
metadata.author
borghei
metadata.category
project-management
metadata.domain
pm-execution
metadata.updated
2026-06-15
metadata.tech-stack
post-mortem, incident-management, rca, blameless, 5-whys
metadata.tags
post-mortem, rca, blameless, incident, sre, five-whys, causal-tree

Post-Mortem (Blameless Incident Review)

Overview

A post-mortem is a structured, blameless review held after an incident, outage, regression, missed launch, or failed experiment. The goal is not to assign fault but to learn how the system (people, process, code, and organization) produced the outcome, and to commit to durable changes that reduce the chance of recurrence.

This skill operationalizes the Google SRE blameless post-mortem template, the Etsy "morgue" tradition, John Allspaw's "How Complex Systems Fail" reading, Charles Perrow's Normal Accident Theory, and Sidney Dekker's Field Guide to Understanding "Human Error". Where the companion discovery/pre-mortem/ skill imagines failure before it happens, post-mortem learns from failure that already did.

Core Capabilities

  • Severity classification — Sev 0-4 + near-miss thresholds, with post-mortem requirement and SLA per level
  • Blameless facilitation — five ground rules, the Dekker New View, hindsight/counterfactual removal, the Allspaw test
  • 10-section authoring — header → summary → impact → timeline → what went well/wrong → factors → RCA → actions → lessons
  • Root-cause analysis — 5 Whys for clear chains, Causal Tree for multi-factor Sev 0/1/2; root-cause vs contributing-factor
  • Action-item discipline — single owner, real ticket, testable acceptance criteria, recurring completion audit
  • Distribution & archive — audience-appropriate formats; searchable, service-tagged archive

When to Use

  • Sev 1 / Sev 2 incident — customer-facing outage, data loss, security event, payments failure, or significant regression.
  • Sev 3 with novelty — worth a post-mortem if it surfaced a failure class the team has not seen before.
  • Missed launch or rolled-back release — the launch itself is the incident.
  • Failed experiment with a negative business outcome — e.g. a pricing test that depressed revenue.
  • Customer escalation — an exec customer call where the product was the proximate cause.
  • Near miss — the deploy that "almost" took the site down; some of the highest-leverage learning a team gets.

If the incident is below the severity threshold and the team has seen the same class of failure recently, document the recurrence in the existing post-mortem rather than producing a new one.

Clarify First

Before authoring the post-mortem, confirm these inputs. If any is unknown or vague, ASK — do not assume:

  • Severity level — Sev 0-4 / near-miss sets the template depth, the SLA window, and whether 5 Whys or a Causal Tree is required
  • Incident timeline / chat transcript — the source for the Timeline and Impact sections; without it the reconstruction is guesswork
  • Customer / business impact — scope, duration, and who was affected drives both the Impact section and the severity itself
  • Root-cause method — 5 Whys for a clear single chain vs Causal Tree for multi-factor Sev 0/1/2; drives the RCA section

Stop rule: ask only the 2-3 that most change the output. If the user says "just draft it," proceed and list your assumptions at the top of the artifact.

Quick Start

  1. At incident close, the incident commander assigns an author who opens assets/post_mortem_template.md.
  2. Scaffold Header, Summary, Impact, and Timeline from the incident chat transcript.
  3. Within the SLA window (Sev 1: 5 business days, Sev 2: 7), draft the remaining sections, run the chosen root-cause method, and hold a 60-90 min blameless review.
  4. Apply the Allspaw test, file every action item as a real ticket with an owner and due date, then publish to the searchable archive.

The blameless principles, severity thresholds, full template, workflow, and root-cause methods all live in the references below.

Show full SKILL.md (432 more words)Show less

References

  • references/post-mortem-process.md — severity thresholds, the 10-section template, the Day 0 → Day 30 workflow, action-item follow-through, distribution/archive practice, and the assets inventory. Read when running a post-mortem end to end.
  • references/blameless-culture-guide.md — what blameless means, the Dekker reframe, blameful vs blameless phrasing, hindsight bias, counterfactuals, establishing the culture, plus the five ground rules and the Allspaw test. Read when facilitating or when a draft feels blameful.
  • references/5-whys-vs-causal-tree.md — both root-cause methods with worked examples, the choose-between table, and the root-cause vs contributing-factors distinction. Read before the root-cause section of the meeting.
  • references/red-flags.md — 12 anti-patterns (blame language, ownerless action items, single root cause, second-mortems...), plus the troubleshooting table and success criteria. Read before publishing or signing off.
  • assets — post_mortem_template.md (SRE 10-section template), incident_timeline_worksheet.md (timeline prompts), action_item_tracker.md (cross-incident tracker), what_went_well_prompts.md (positive-observation prompts).
  • Foundational reading: Google SRE "Postmortem Culture"; Allspaw "Blameless PostMortems and a Just Culture" (2012); Cook "How Complex Systems Fail" (1998); Perrow Normal Accidents (1984); Dekker Field Guide (2014) and Just Culture (2017).

Scope & Limitations

In Scope: Post-mortem authoring for incidents, outages, regressions, missed launches, failed experiments, customer escalations, and near misses. Severity classification, blameless facilitation, 5 Whys, Causal Tree analysis, action-item tracking, distribution and archival practice.

Out of Scope: Live incident command and on-call coordination (see delivery-manager/). Sprint retrospectives on team practice (see sprint-retrospective/). Risk surfacing before launch (see discovery/pre-mortem/). Quantitative reliability engineering and error-budget policy (see engineering/ skills if present).

Important Caveats: Blameless culture is a prerequisite, not an output — if management uses post-mortems as a performance signal, the documents become sanitized; establish the separation in writing. Regulated industries (medical devices, aviation, financial services) that require named accountability should run a parallel internal blameless post-mortem alongside the regulator-facing report. A post-mortem is a learning artifact, not a fixing artifact: the fix lives in the action items and their follow-through, so one with zero completed action items is a failed post-mortem. (Cook's 4-page "How Complex Systems Fail" is worth reading before facilitating a complex Sev 0/1 — linked in the blameless culture guide.)

Integration Points

IntegrationDirectionWhat flows
discovery/pre-mortem/BidirectionalPost-mortem findings update next launch's pre-mortem risk register; pre-mortem mitigations become post-mortem-checked controls
delivery-manager/Receives fromIncident response context, severity classification, on-call handoffs
sprint-retrospective/BidirectionalTeam-practice retros surface incident patterns; post-mortems feed retro themes
daci-framework/Feeds intoAction items use DACI to assign owner (D), accountable (A), consulted, informed
execution/dependency-map/Receives fromCross-team contributing factors map to dependency-graph nodes
execution/status-update-generator/Feeds intoSev 0/1 incidents surface in weekly executive status updates
senior-pm/Feeds intoRepeated incident classes feed portfolio risk register via risk_matrix_analyzer.py
scrum-master/Feeds intoAction items become sprint backlog items with mitigation-focused stories

© borghei, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 9 other files (references, assets) in project-management/execution/post-mortem of borghei/Claude-Skills.

  • SKILL.md
  • assets/action_item_tracker.md
  • assets/incident_timeline_worksheet.md
  • assets/post_mortem_template.md
  • assets/what_went_well_prompts.md
  • examples/payment-processing-outage.md
  • references/5-whys-vs-causal-tree.md
  • references/blameless-culture-guide.md
  • references/post-mortem-process.md
  • references/red-flags.md

Open the folder on GitHubat commit c9a1487

Compare with similar skills

Post Mortem next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Post Mortem compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Post Mortem this skillborghei/Claude-Skills874—~2.1kAutomated safety check: PassMIT
Trader Memory Coretradermonty/claude-trading-skills3k2 repos~4.3kAutomated safety check: PassMIT
Author Migrationnrwl/nx29k—~12kAutomated safety check: NotesMIT
Write Notes Like Deepseekczm15053/write-notes-like-deepseek477—~1.9kAutomated safety check: PassNone
OpenRig Upgrade Proceduremvschwarz/openrig5.5k—~2.9kAutomated safety check: PassApache-2.0
GreptimeDB Release RunbookGreptimeTeam/greptimedb6.7k—~1.4kAutomated safety check: PassApache-2.0

Similar skills

  • Trader Memory Core

    tradermonty/claude-trading-skills

    Track investment theses across their lifecycle — from screening idea to closed position with postmortem.

    3k GitHub starsUsed in 2 repos~4.3k tokens
    DevOps & CloudAuto-check passed
  • Author or scope a first-party Nx migration. An agent skill from nrwl/nx.

    29k GitHub stars~12k tokensUpdated today
    DevOps & CloudAuto-check: notes
  • Write Notes Like Deepseek

    czm15053/write-notes-like-deepseek

    A skill your agent uses when a change is non-trivial by DSH standards (behavior, architecture, cross-file contracts, process/tooling, testing strategy, or on-disk/wire/config formats), when choosing…

    477 GitHub stars~1.9k tokensUpdated 15 days ago
    DevOps & CloudAuto-check passed
  • OpenRig Upgrade Procedure

    mvschwarz/openrig

    Walks an agent through upgrading the OpenRig CLI and daemon one observed step at a time, keeping live seats alive and reconciling managed plugin files.

    5.5k GitHub stars~2.9k tokensUpdated today
    DevOps & CloudAuto-check passed
  • GreptimeDB Release Runbook

    GreptimeTeam/greptimedb

    Runbook for publishing a GreptimeDB version: pick the release branch, verify the Cargo version, then tag, create the GitHub release and open the docs note PR.

    6.7k GitHub stars~1.4k tokensUpdated 2 days ago
    DevOps & CloudAuto-check passed
  • Statem

    henryqin1997/statem

    A skill your agent uses when a long coding or research task should be managed with statem state-machine runbooks, including creating specs, starting or resuming runs, checking current state…

    1.3k GitHub stars~1.2k tokensUpdated 1 mo ago
    DevOps & CloudAuto-check passed

More from borghei/Claude-Skills

All 364 skills in this repo
  • Agents In The Team

    borghei/Claude-Skills

    Run delivery when AI coding and ops agents take tickets. An agent skill from borghei/Claude-Skills.

    874 GitHub stars~4.2k tokensUpdated today
    Auto-check passed
  • AI Content Disclosure

    borghei/Claude-Skills

    Check AI-generated marketing content and reviews for required disclosures under the EU AI Act, FTC rules and platform AI-label policies.

    874 GitHub stars~3.4k tokensUpdated today
    Auto-check passed
  • AI Prototyping

    borghei/Claude-Skills

    Idea to AI-generated prototype to customer validation to engineering handoff.

    874 GitHub stars~3.6k tokensUpdated today
    Auto-check passed
  • Analytics Engineer

    borghei/Claude-Skills

    Analytics engineering across data modeling, dbt, transformation, and semantic layers.

    874 GitHub stars~3.4k tokensUpdated today
    Auto-check passed
  • Ansoff Matrix

    borghei/Claude-Skills

    Ansoff Matrix — 4-quadrant framework for growth options: market penetration, market/product development, and diversification.

    874 GitHub stars~2.2k tokensUpdated today
    Auto-check passed
  • Brainstorm Okrs

    borghei/Claude-Skills

    OKR brainstorming and validation using the Radical Focus framework — outcome objectives, measurable key results, counter-metrics.

    874 GitHub stars~1.4k tokensUpdated today
    Auto-check passed

Categories

Questions about Post Mortem

What does Post Mortem do?

Blameless post-mortem expert for incidents, outages, regressions, customer escalations, missed launches, and failed experiments. Post Mortem is an agent skill from borghei/Claude-Skills. Blameless post-mortem expert for incidents, outages, regressions, customer escalations, missed launches, and failed experiments.

When should I use Post Mortem?

Post Mortem fits situations like: tasks that involve Runbooks and postmortems.

How do I install Post Mortem in Claude Code?

Run `npx skills add borghei/Claude-Skills --skill post-mortem -a claude-code`. Or copy the skill folder (project-management/execution/post-mortem in borghei/Claude-Skills) into .claude/skills/post-mortem in your project. Claude Code loads it when a task matches its description.

How do I install Post Mortem in Codex?

Run `npx skills add borghei/Claude-Skills --skill post-mortem -a codex`. Or copy the skill folder (project-management/execution/post-mortem in borghei/Claude-Skills) into .agents/skills/post-mortem in your project. Codex loads it when a task matches its description.

Can I use Post Mortem in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add borghei/Claude-Skills --skill post-mortem -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/post-mortem, .gemini/skills/post-mortem, .github/skills/post-mortem and .opencode/skills/post-mortem in your project.

What does Post Mortem need to run?

SKILL.md names no scripts, command-line tools or credentials: Post Mortem is instructions for the agent only.

Does Post Mortem access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Post Mortem safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Post Mortem use?

Post Mortem is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Post Mortem use?

About 2.1k tokens (SKILL.md is roughly 8.5k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 12k tokens, read only when the agent opens those files.

What are the alternatives to Post Mortem?

Skills that share tags, products or a category with Post Mortem: Trader Memory Core (tradermonty/claude-trading-skills, 3k stars), Author Migration (nrwl/nx, 29k stars), Write Notes Like Deepseek (czm15053/write-notes-like-deepseek, 477 stars) and OpenRig Upgrade Procedure (mvschwarz/openrig, 5.5k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Post Mortem?

borghei (a GitHub user) maintains it in borghei/Claude-Skills, which has 874 GitHub stars. The repository holds 364 skills in this directory. The repository was last updated on October 7, 2026.

Source: borghei/Claude-Skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.