incident-investigator

Official

Evidence-based IcM incident investigations.

AuthorAzureAD
Version1.0.0
Installs0

System Documentation

What problem does it solve?

Systematically investigate IcM incidents and customer-reported authentication issues for Android Broker/MSAL, providing evidence-based diagnosis and structured recommendations.

Core Features & Use Cases

  • Context gathering: Collects affected apps, user accounts, devices, symptoms, and repro steps from IcM or logs.
  • Evidence-driven analysis: Extracts and correlates logs (eSTS, broker) to form a timeline and hypotheses.
  • Guided remediation: Outputs actionable recommendations and verification steps for remediation and follow-up.
  • Use Case: Given an IcM ticket about an authentication failure, compile context, identify likely root causes, and propose validation steps.

Quick Start

Begin the investigation by gathering IcM context and relevant logs to establish the incident scope.

Dependency Matrix

Required Modules

None required

Components

references

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: incident-investigator
Download link: https://github.com/AzureAD/android-complete/archive/main.zip#incident-investigator

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 223,000+ vetted skills library on demand.