惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

月光博客
月光博客
罗磊的独立博客
The GitHub Blog
The GitHub Blog
V
V2EX
Last Week in AI
Last Week in AI
博客园 - 聂微东
MyScale Blog
MyScale Blog
美团技术团队
L
LangChain Blog
博客园 - Franky
腾讯CDC
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
博客园_首页
S
SegmentFault 最新的问题
爱范儿
爱范儿
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
Stack Overflow Blog
Stack Overflow Blog
量子位
小众软件
小众软件
宝玉的分享
宝玉的分享
J
Java Code Geeks
Google DeepMind News
Google DeepMind News
D
Docker
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报

Datadog | The Monitor blog

Introducing our open source AI-native SAST Instrument and monitor Boomi integration flows with OpenTelemetry and Datadog Not all index scans are equal: How we cut query latency by over 99% Platform engineering metrics: What to measure and what to ignore Integrate Recorded Future threat intelligence with Datadog Cloud SIEM CI/CD security: threat modeling using a MITRE-style threat matrix CI/CD security: How to secure your GitHub ecosystem Ingress NGINX is EOL: A practical guide for migrating to Kubernetes Gateway API Operating agentic AI with Amazon Bedrock AgentCore and Datadog LLM Observability: Lessons from NTT DATA Introducing the Datadog Code Security MCP Capture and analyze custom heatmaps in Session Replay Understand session replays faster with AI summaries and smart chapters Monitor ClickHouse query performance with Datadog Database Monitoring How we designed empathetic alert sounds for on-call engineers Search and act across Datadog to resolve issues faster with Bits Assistant Measure the business impact of every product change with Datadog Experiments Analyzing round trip query latency Configuring JavaScript caches for better performance Introducing Bits AI Dev Agent for Code Security Datadog achieves ISO 42001 certification for responsible AI Monitor Nutanix clusters, hosts, and VMs with Datadog Monitor Juniper Mist in Datadog A new Host Map for modern infrastructure Annotate traces to improve LLM quality with Datadog LLM Observability What’s new in Cloud SIEM: AI-powered investigations, enhanced threat intelligence, and scalable security operations Explore Kubernetes with native OpenTelemetry data Monitor Oracle Fusion Cloud Applications with Datadog Announcing the Datadog Terraform provider v4.0.0 Scaling Kubernetes workloads on custom metrics How to design cloud environments for AI-powered threat analysis
Create actionable postmortems automatically with Datadog
2025-04-24 · via Datadog | The Monitor blog
Brianne Bujnowski

Brianne Bujnowski

Postmortems are a key part of incident management: They drive system reliability improvements and provide crucial insights for preventing and mitigating future incidents. But creating a postmortem is often a slow and inefficient process. Responders need to piece together its narrative by manually collating data from across incident management timelines, graphs, monitors, and collaboration tools. This fragmented, labor-intensive process can lead to a postmortem that’s incomplete and inaccurate, hindering your team’s ability to effectively learn from the incident. Datadog Incident Management drafts postmortems automatically, eliminating toil and quickly delivering valuable insights. You can create and share comprehensive, accurate postmortems that include rich incident data such as monitor events, changes in severity, and communication among responders. By speeding up the creation of postmortems, Datadog enables you to quickly apply what you’ve learned to resolving post-incident tasks, improving the reliability of your services, and strengthening your incident response process.

In this post, we’ll show you how Datadog Incident Management helps you:

Draft postmortems with one click

From within Incident Management, you can generate a postmortem with a single click. Datadog drafts the report by automatically drawing relevant data from the incident timeline, potentially saving your team many hours of work reconstructing what happened. The postmortem reflects the sequence and timing of relevant events, beginning with the initial page that triggered the incident, such as one sent automatically by On-Call when a monitor is triggered. It also includes relevant Slack or Microsoft Teams messages from incident responders and changes to the incident’s status or severity.

To define the content and format of your report, Datadog combines incident timeline data with a postmortem template that you select. You can choose to base your report on a default template, or you can create one or more custom templates that produce postmortems with varying levels of detail. You can define which template will be applied based on an incident’s severity. For example, you can create a template for high-severity incidents that includes more detail than you would include for low-severity incidents.

Template variables specify the incident-specific data—such as severity, start time, impact, and root cause—that will be included in the report. You can use AI incident variables to automatically bring AI-generated insights into your postmortem. AI incident variables help ensure that your postmortem realizes its full value by clearly presenting critical incident information including an incident summary, lessons learned, and customer impact.

The following screenshot shows a postmortem template that lays out the data to be included in the report. It places template variables into the report and formats it using Markdown. Note that the template includes the AI incident variables {{incident.ai_customer_impact}} and {{incident.ai_summary}} to automatically provide this critical information for readers.

Template variables define the incident information in the report, including explanations and summaries synthesized by AI.
Screenshot of Datadog's 'New Postmortem Template' form, showing a custom template named 'Low-severity template' being edited, featuring sections like 'Impact on Customers', 'Root Cause', and incident variables such as 'incident.ai_summary' and 'incident.ai_customer_impact'.
Template variables define the incident information in the report, including explanations and summaries synthesized by AI.

Provide deep context with interactive Notebooks

When postmortems are published as static documents, they represent a snapshot of the incident’s history. But these artifacts can fail to capture the rich technical context needed for thorough investigations. For example, screenshots in a static postmortem quickly become outdated and lack the interactive depth necessary to gain a full understanding of the incident.

Datadog solves this problem by building each postmortem as a Notebook, which enables you to include dynamic data in the document. The logs, traces, and interactive graphs your responders share in Slack or Teams are automatically embedded in the postmortem, enabling readers to actively explore metrics that show performance trends and anomalies from relevant services. Readers can filter the data and reveal further context, change the timeframe to visualize system behavior leading up to the incident, and pivot to view other relevant data within the Datadog platform.

Notebooks' deep data integration creates a dynamic workspace for collaborative learning.
The screenshot presents a Datadog Notebook with two main sections: 'Customer Impact,' containing bullet points with timestamps describing user impact, and a graph titled 'Errors on service web-store in env prod,' displaying a time series of errors with a highlighted peak.
Notebooks' deep data integration creates a dynamic workspace for collaborative learning.

Collaborate to build actionable knowledge

Incident management is a collaborative activity, and it’s essential that your postmortem process gathers the combined perspective and experience of the many responders who participate. You can easily share your postmortem and work together to assemble a complete and accurate record of the incident’s events, causes, mitigations, and resolution. After you’ve refined and enriched the report to capture the complete story of the incident, you can share it for a wider audience or export it to common formats such as PDF and Markdown.

The knowledge contained in your organization’s collection of postmortems is a key resource for teams to apply against future incidents, and it’s critical that they can quickly find relevant information when the need arises. Effectively tagging your postmortems with relevant metadata is essential to ensuring that teams can unlock their full value for speeding up troubleshooting and minimizing downtime. Tags enable responders to easily find postmortems that describe relevant incidents based on, for example, the errors presented, services affected, or successful resolution steps. This helps responders more effectively analyze recurring failures, evaluate the effectiveness of past remediations, and improve both system reliability and incident response.

Get started with actionable, automated postmortems

Datadog brings efficiency to your incident management process by helping you quickly create postmortems that deliver lasting and actionable insights. By automating the drafting process and embedding deep technical context, you empower your teams to save time, learn quickly, and drive meaningful improvements. See our documentation to learn more about how Datadog can support your on-call and incident management processes, and how Notebooks help you explore and share stories with your data. And if you’re not yet using Datadog, get started today with a free 14-day trial.