Resources · Claude connector

Claude incident.io connectorWhat Claude can do in your incident.io account.

The Claude incident.io connector exposes 35 tools. 27 read alerts, incidents, on-call and catalog data, 6 create or change something, and 2 have no established read or write verdict. Here is what Claude can declare for you and what depends on your incident.io products.

Verified Trustpilot reviews · AI, automation & growth agency

Overview

Why connect incident.io to Claude

incident.io is where your alerts, incidents and on-call rotations live. Connected to Claude, it answers in plain English: who is on call for the platform team, how many high-severity incidents hit this quarter, which alerts turn into real incidents and which are just noise. Claude gathers the numbers, cross-checks them and hands you a summary, with no dashboard to open.

Measure instead of guessing. incident_stats rolls up incident counts and workload across more than ten dimensions, and alert_stats counts alerts alongside the workload of the incidents linked to them.

Run a response without leaving the chat. incident_create declares an incident, incident_update moves its status or severity along, and escalation_respond acknowledges or declines a page.

Prep an ops review that holds up. analysis_start loads guided playbooks, your organization's configuration and a report template, for a structured operational analysis.

What Claude does not do here: it never receives alerts on its own. No tool fires when a page goes out at 3am; you are the one asking. It acts with the permissions of whoever approved the connection, no more. And several tools on the sheet only work if your account runs the matching incident.io product. For an automatic reaction to an event, you need an automation tool, a different trade; the Integrations hub covers that side. For a project management connector, see the Claude asana connector.

Vocabulary

Vocabulary in one minute

Five words so the rest reads without friction.

Connector
The link you set up once between Claude and your incident.io account, so Claude can work in it while it answers you.
Tool
One named action the connector opens to Claude. Claude decides which to call by itself, and the directory sheet lists each one by name.
Authorization
incident.io's own sign-in screen, where you give Claude the access it will use afterwards. Granted once per person, withdrawn the same way.
Approval
The confirmation Claude waits for before it completes an action that would change your account, shown in the chat when it matters.
MCP
The shared standard behind connectors, which is what lets an assistant like Claude talk to an outside service such as incident.io.
Connect

Connect incident.io to Claude

  1. 01

    Find incident.io in the list

    In Claude's settings, open Customize, then Connectors, and search for incident.io. On a Team or Enterprise workspace, an Owner or Primary Owner enables the connector for the organization first; each member then connects on their own.

  2. 02

    Sign in to incident.io

    Click Connect on the incident.io row and sign in through the window incident.io opens itself. Pick the account carefully: Claude will see and act under that name.

  3. 03

    Approve the authorization screen

    Read incident.io's authorization screen before accepting: it sets what the access covers, not Claude. If the link breaks, use Disconnect and connect again; you can also revoke access from incident.io.

Tools

The 35 tools of the Claude incident.io connector

incident.io gives Claude 35 tools: 27 that read your account, 6 that change something in it, and 2 no official source describes.

Twenty-seven lookup tools, six that act, and two AI agents whose effect is unclear. Names stay exactly as Claude shows them.

  • 27 read
  • 6 write
  • 2 not documented

What Claude reads (27)

27 tools

Twenty-seven tools that look at alerts, incidents, on-call, teams and the catalog without touching them.

alert_list

Browses and filters the alerts incident.io has received. Claude uses it to isolate a burst of alerts or find the one that came right before an incident.

When it helps
you want every alert from last night on the payments service.
Watch out
for counts and trends, the stats tool fits better than a list.

Sourcedocs.incident.io · September 23, 2026 ↗

alert_show

Opens one alert in full, along with the incidents linked to it. It is the zoom that follows a list.

When it helps
an alert fires every week and you want to know whether it ever led to a declared incident.
Watch out
you need to spot the alert first, usually through the list.

Sourcedocs.incident.io · September 23, 2026 ↗

alert_source_list

Lists the alert sources configured in your account: the monitoring tools that feed incident.io.

When it helps
before tackling alert noise, you want to know which sources actually produce alerts in your setup.
Watch out
this is a configuration list, not an alert volume.

Sourcedocs.incident.io · September 23, 2026 ↗

alert_stats

Counts alerts and attaches the workload of the incidents they triggered. Claude can then tell alerts with real incident work behind them from the ones that led nowhere.

When it helps
finding the alerts that wake people up without ever turning into a real incident.

Sourcedocs.incident.io · September 23, 2026 ↗

analysis_start

Loads a full analysis workspace: playbooks, your organization's configuration and a report template, the base for a structured operational analysis.

When it helps
preparing the quarterly incident review with a structured method.
Watch out
it prepares the ground for the analysis; according to the source, it does not change anything in your account.

Sourcedocs.incident.io · September 23, 2026 ↗

ask_telemetry

Hands your question to an AI agent that queries logs, metrics, traces and dashboards, then brings the answer back into the conversation.

When it helps
getting the payments service error rate for the past hour without writing a query.
Watch out
it requires incident.io's Investigations product.

Sourcedocs.incident.io · September 23, 2026 ↗

catalog_entry_list

Walks through the entries of one catalog type, for example every service or every team described in incident.io.

When it helps
you want the list of registered services to make sure none was missed before an on-call review.
Watch out
start with the catalog types if you do not know their names.

Sourcedocs.incident.io · September 23, 2026 ↗

catalog_entry_show

Shows one catalog entry with all its attributes. Claude finds the owner, dependencies or any other detail your team keeps there.

When it helps
knowing which team owns a service the moment it goes down.
Watch out
answers are only as good as the catalog upkeep.

Sourcedocs.incident.io · September 23, 2026 ↗

catalog_type_list

Lists the catalog types defined in your account, such as Service or Team. It is the entry point before browsing the entries themselves.

When it helps
you just joined a company and want to understand how its incident.io workspace is organized.

Sourcedocs.incident.io · September 23, 2026 ↗

escalation_list

Searches escalations, meaning the pages sent to on-call responders. Reserved for accounts on the On-call product.

When it helps
you want every page triggered over the weekend to prepare Monday's debrief.
Watch out
without On-call, the tool returns an error explaining what is missing.

Sourcedocs.incident.io · September 23, 2026 ↗

escalation_path_list

Lists the configured escalation paths: the sequences that decide who gets paged, and in what order.

When it helps
checking that no critical team was left without an escalation path after a reorg.
Watch out
part of the On-call product, and the call fails with an error without it.

Sourcedocs.incident.io · September 23, 2026 ↗

escalation_path_show

Shows, level by level, who would be paged if this escalation path fired right now.

When it helps
before a sensitive release, you want to know who gets woken up if something breaks.
Watch out
the answer reflects this moment, not next week's schedule.

Sourcedocs.incident.io · September 23, 2026 ↗

escalation_show

Details one escalation with its transition history: who was paged, when, and what happened next.

When it helps
understanding why a page went unanswered for so long during the last incident.
Watch out
an On-call product tool, unavailable on accounts without it.

Sourcedocs.incident.io · September 23, 2026 ↗

escalation_stats

Counts pages by escalation path, priority and time of day. A way to measure how heavy on-call really is.

When it helps
knowing what share of pages lands overnight before renegotiating the rotation.
Watch out
reserved for accounts that use the On-call product.

Sourcedocs.incident.io · September 23, 2026 ↗

follow_up_list

Lists the follow-ups opened after incidents, the tasks agreed in a post-mortem to stop a repeat.

When it helps
taking stock of what is still outstanding from last week's incidents.
Watch out
a tool from incident.io's Response product, so it errors out without it.

Sourcedocs.incident.io · September 23, 2026 ↗

follow_up_stats

Totals follow-ups by owner, status and other criteria. Useful to see where things get stuck.

When it helps
spotting the team with the biggest pile of unfinished post-incident actions before a steering meeting.
Watch out
reserved for the Response product.

Sourcedocs.incident.io · September 23, 2026 ↗

incident_list

Searches and filters incidents, with an option to sort by workload. It sits between the stats and the detail of a single incident.

When it helps
surfacing the ten incidents that cost the team the most hours this month.
Watch out
it returns incidents in bulk; the full record of one of them comes from another tool.

Sourcedocs.incident.io · September 23, 2026 ↗

incident_show

Displays one incident in full and, on request, the investigation findings, the post-mortem and the history of status posts.

When it helps
finding the root cause of the last major incident before a leadership review.
Watch out
the investigation, post-mortem and status history are optional extras, so ask for them explicitly.

Sourcedocs.incident.io · September 23, 2026 ↗

incident_stats

Aggregates incident counts and workload across more than ten dimensions. Claude turns those totals into a readable summary instead of handing you a raw table of numbers.

When it helps
seeing which teams took the hardest hits from high-severity incidents this quarter.

Sourcedocs.incident.io · September 23, 2026 ↗

incident_update_list

Retraces the full history of status posts published during an incident, in chronological order.

When it helps
rebuilding an outage timeline for the post-mortem, with what was announced at each step.
Watch out
it covers one incident at a time.

Sourcedocs.incident.io · September 23, 2026 ↗

investigation_sync

Downloads a complete investigation as a single file, which incident.io intends for analysis by a language model. Claude can then work through the whole investigation in one go rather than piece by piece.

When it helps
cross-referencing an investigation's findings with recent code commits.
Watch out
it requires the Investigations product.

Sourcedocs.incident.io · September 23, 2026 ↗

resource_list

Shows everything available to read: organization configuration, analysis playbooks and telemetry data sources.

When it helps
you are new to the connector and want to know what Claude can draw on before an analysis.
Watch out
it is an inventory, and the content is read with the neighboring tool.

Sourcedocs.incident.io · September 23, 2026 ↗

resource_show

Reads one resource: organization configuration, an analysis playbook or a telemetry data source. It is the step after the inventory of resources, once Claude knows what exists.

When it helps
checking how your organization is set up in incident.io before an analysis.

Sourcedocs.incident.io · September 23, 2026 ↗

schedule_list

Lists your account's on-call schedules. Claude uses it to know which rotation to query next.

When it helps
a new engineering manager wants every existing rotation before reshaping the team's on-call.
Watch out
part of the On-call product, like the other schedule tools.

Sourcedocs.incident.io · September 23, 2026 ↗

schedule_show

Details one on-call schedule with its current and upcoming shifts.

When it helps
finding out who is on call for the platform team right now, and who takes over tonight.
Watch out
it only displays the schedule; overrides go through other tools that are not on the sheet.

Sourcedocs.incident.io · September 23, 2026 ↗

team_list

Returns the list of teams incident.io knows about. It is the starting point for scoping an analysis to a clear perimeter.

When it helps
you want to compare incident load across all product teams over the half year.
Watch out
each team's details come from the neighboring tool.

Sourcedocs.incident.io · September 23, 2026 ↗

team_show

Presents one team with the escalation paths, alert sources and schedules it owns.

When it helps
knowing which alerts and rotations belong to the platform team ahead of an audit.
Watch out
it all depends on how your organization registered its teams.

Sourcedocs.incident.io · September 23, 2026 ↗

What Claude changes (6)

6 tools

Six tools that act on your account. No source describes a specific confirmation, so the general rule below applies.

escalation_respond

Approval: see the rule

Acknowledges or declines an on-call page from the conversation, without opening the incident.io app.

What Claude asks for
no confirmation specific to this tool is described, so the general approvals rule is what applies.
When it helps
you are already on the problem and want to acknowledge the page for the live incident.
Watch out
reserved for the On-call product.

Sourcedocs.incident.io · September 23, 2026 ↗

feedback

Approval: see the rule

Sends incident.io feedback about its tools. According to the publisher, the assistant offers this feedback after a task, and it only goes out once you approve it.

What Claude asks for
beyond that publisher note, Claude's default behavior applies.
When it helps
flagging that a tool filtered a search badly.

Sourcedocs.incident.io · September 23, 2026 ↗

follow_up_create

Approval: see the rule

Creates a follow-up attached to an incident, so a fix agreed in a debrief does not get lost.

What Claude asks for
nothing tool-specific is documented, so see the general approvals rule.
When it helps
right after a post-mortem, logging the three workstreams the team agreed on.
Watch out
part of the Response product.

Sourcedocs.incident.io · September 23, 2026 ↗

follow_up_update

Approval: see the rule

Edits a follow-up that already exists on an incident, so the task list stays in line with what the team actually did.

What Claude asks for
the docs describe no dedicated confirmation, and the approvals section is the reference.
When it helps
marking a follow-up done once it shipped during the sprint.
Watch out
like the follow-up list, it returns an error on accounts without the Response product.

Sourcedocs.incident.io · September 23, 2026 ↗

incident_create

Approval: see the rule

Declares a new incident in incident.io, straight from the conversation.

What Claude asks for
no source describes a specific confirmation; by default, Claude's general rule applies.
When it helps
opening a medium-severity incident for a degraded payments API.
Watch out
a declared incident mobilizes people according to your configuration.

Sourcedocs.incident.io · September 23, 2026 ↗

incident_update

Approval: see the rule

Changes an incident's fields: status, severity, roles or custom fields.

What Claude asks for
no dedicated rule is documented; see the general approvals rule.
When it helps
moving an incident to resolved once the fix is deployed.
Watch out
the change is made under the name of the account that approved the connection.

Sourcedocs.incident.io · September 23, 2026 ↗

Effect not established (2)

2 tools

incident.io describes these two AI agents, but no source says whether they only read or also change your account.

ask

incident.io presents this tool as an AI agent for on-call questions, schedule management and general queries. No source says, however, whether it only reads or also acts on your account.

Watch out
without that detail, the general approvals rule covers it.

ask_incident

According to incident.io, this is an AI agent for incident investigation and management actions. No official text specifies whether it only reads or takes action in your account.

Watch out
until that is documented, the general approvals rule is what applies.
Approvals

What Claude checks with you first

By default, Claude stops and asks before any action it takes on an account on your behalf. With incident.io that concerns six tools, and possibly two AI agents.

On a Team or Enterprise workspace, owners decide whether members can let some actions through without being asked again. They can also cap what a connector does for the whole organization, for instance keep reading open and block writing, and nobody overrides that from their own account. On the incident.io side, the connection acts as the person who approved it: it sees and does only what that person can. The publisher even recommends connecting a dedicated service account.

Plans

Which Claude plans include incident.io

None of the 819 directory sheets shows plan availability. Connector by connector, that information is not published anywhere.

The general rule is public: remote connectors are open to all users on Claude, Cowork, Claude Desktop and mobile. On Team and Enterprise, an Owner or Primary Owner enables the connector for the organization before members connect. For incident.io's current status on your account, check its sheet in the official directory. incident.io also limits its server to some of its own tiers, which is settled on their side.

Limits

Where the incident.io connector stops

A connector is not an automation. Claude calls these tools while it answers you, so nothing fires when an alert comes in.

Only the publisher documents this connector: neither Claude's help center nor Anthropic's developer docs have a page on it, and the limits below come from incident.io's documentation. The tool list is an observed floor, since an admin can open actions no public sheet shows. The partner badge is not a security audit, and Anthropic notes on every sheet that it does not choose a publisher's tools or vouch for how they behave. incident.io in fact documents far more tools than the 35 on the sheet.

Need help

Need help connecting incident.io to Claude?

A person reads every message.

FAQ

Claude incident.io connector FAQ

01What can Claude do with the incident.io connector?
Claude can inspect and operate your incident.io account from the conversation. Twenty-seven tools read alerts, incidents, escalations, on-call schedules, teams, the catalog and statistics, start a guided analysis or query telemetry. Six tools act: declare or edit an incident, acknowledge a page, create or edit a follow-up, send feedback to the publisher. Two AI agents round out the list, with no source saying whether they only read or also act. Everything stays within the connected account's permissions.
02Can Claude declare or change an incident in incident.io?
Yes. incident_create declares a new incident, incident_update edits its status, severity, roles or custom fields, and escalation_respond acknowledges or declines a page. Claude can also create and edit follow-ups. No tool on the sheet deletes anything, and some tools only answer if your account runs the matching incident.io product, such as On-call or Response. Every action is attributed to the account that approved the connection, which matters for your audit trail.
03Does Claude ask before declaring an incident?
By default, yes: Claude stops and asks before any action it takes on an account on your behalf. No source describes a confirmation specific to an incident.io tool, so that general rule applies to all six write tools. On a Team or Enterprise workspace, owners decide whether members can let certain actions through without a fresh prompt, and they can close writing for the whole organization. You stay in control of every declaration.
04Which Claude plans is the incident.io connector available on?
No official source publishes plan availability connector by connector, and none of the 819 directory sheets shows it. The general rule is that remote connectors are open to all users on Claude, Cowork, Claude Desktop and mobile, with an Owner enabling the connector first on Team and Enterprise. On the incident.io side, the publisher limits its server to some of its own tiers. The directory sheet remains the up-to-date reference for your account.
05Does Claude see my whole incident.io workspace?
No. The connection acts as the person who approved it and sees exactly what that person sees in incident.io, no more and no less. Actions Claude takes are also attributed to that account. That is why the publisher recommends connecting a dedicated service account. On the Claude side, an owner of a Team or Enterprise workspace can further restrict what the connector does for everyone. Choose the connected account with that in mind.
06Why do some incident.io tools return an error?
Because several tools depend on a specific incident.io product. According to the publisher, a tool tied to On-call, Response or Investigations still shows up in Claude's list, but calling it returns an error explaining what your account is missing. Another possible cause: a connection approved in the browser lasts 28 days, and you then have to approve it again in the browser. Check both before assuming the connector itself is broken.
07Claude or an automation tool for incident.io?
They do different jobs, so it depends on the use. Claude is for asking or acting once in plain English: analyze alert noise, declare an incident, find out who is on call. An automation tool chains steps without you, for example on every new alert. The connector never reacts to an event on its own, so for automatic reactions pick an automation tool, and keep Claude for analysis and decisions that need a human in the loop.