Blog

An incident triage agent for engineering teams

Errors, recent changes, open tickets and what the team already said, gathered for the engineer on call. Read-only, on purpose.

2 min read

A grid of dim dome lights with one glowing green

When something breaks, the first fifteen minutes go to gathering: which errors spiked, what was deployed, who touched that service, whether anyone has already said something in chat. An agent can do that gathering for the engineer on call. Here is the shape of one.

What the agent answers

  • What is failing, since when, and how often?
  • What changed recently in the affected code?
  • Is there an open issue or ticket about it?
  • What has the team already said?

The services

From the developer tools category of the catalog:

  • Errors and metrics: Sentry or Datadog.
  • Code and changes: GitHub, GitLab or Bitbucket.
  • Tickets: Jira or Linear.
  • Conversation: the team’s chat.

Each is reached through a connector, on the engineer’s own authorized account.

Read-only, on purpose

A triage agent needs to look, not to act. Enable only read endpoints: search issues, list recent commits, read errors, search messages. Nothing that merges, closes or deploys becomes a tool. When the engineer decides what to do, they do it.

Code host       ✓ list commits   ✓ read pull requests   ✗ merge
Tickets         ✓ search         ✓ read                 ✗ close
Errors          ✓ read issues    ✓ read events          ✗ resolve

The request

Conceptual example.

const triage = await agent200
  .user(engineer.id)
  .run({
    model: "openai/gpt-5.6-sol",
    instructions: `
      You help an on-call engineer triage an incident.
      Gather facts first. Report: what is failing, likely related changes,
      related tickets, and what the team has said. Link every source.
      Do not guess a root cause without evidence.
    `,
    input: alert.summary,
    tools: ["errors_search", "recent_changes", "ticket_search", "chat_search"],
  });

Make the answer usable at 3 a.m.

  • Facts before theories. Ask for evidence first and a hypothesis last, clearly labelled.
  • Links everywhere. Every claim should take one click to verify.
  • Short. A list of findings beats paragraphs.

Turn repeat steps into a workflow

If every triage starts by pulling the same error details and the same recent changes, configure that as one capability. The model makes one call for the routine part and saves its decisions for the unusual part.

Trigger it from your alerts

Your alerting already knows when something breaks. Have it call your app, and your app call Agent200, so the summary is waiting in the incident channel when the engineer opens it.

See more examples on the Use Cases page.

Stacks of envelopes being organised into an index card cabinet with green tabs
Product

iGPT: your agent’s email context in one request

iGPT is a premium connector on Agent200. It indexes your users' email, threads and attachments, and answers your agent with cited, structured context in…

1 min read

Five frosted glass lenses of different shapes in a row, one with a green edge
Guides

Choosing a web search API for your agent

Tavily, Exa, Brave Search, Perplexity and Firecrawl each lean toward a different part of search. How to pick for your agent, and why you…

2 min read

200 OK

Build the agent.
Access everything it needs.

Bring the agent you already have. Agent200 provides and executes its external capabilities.

Book a demo.
See it in action.

Tell us who you are, then pick a time for a 1:1 session with an expert from our team.

We use your details only to email you about Agent200. See the Privacy Policy.

Pick a time. We'll take it from there.

A 1:1 session with an expert from our team, about what you are building.

Open in Calendly (opens in a new tab)