Skip to main content
By the end of this guide, you’ll know how to create manual incidents, post updates, and resolve them — covering the full workflow for issues that automated monitors don’t catch.
For conceptual background, see Manual incidents.

When to create a manual incident

  • A customer reports an issue that your monitors haven’t detected
  • A deployment caused problems visible to users but not to health checks
  • You’re proactively tracking a known degradation
  • An internal system is down but not covered by monitoring yet

Full workflow

1

Create the incident

Manual incidents are immediately set to CONFIRMED — no waiting for trigger rules or confirmation.
2

Investigate and post updates

Keep your team informed as you investigate. Timeline updates are posted via the API:
Setting notifySubscribers to true sends the update through matched notification policies.
3

Associate with a monitor (optional)

If you find a related monitor, associate it for Dashboard visibility:
4

Resolve the incident

Severity selection

Alerting for manual incidents

Manual incidents flow through notification policies just like automated ones. If the incident is associated with a monitor, policies matching that monitor’s tags, type, or ID apply. Otherwise, only catch-all policies (empty matchRules) and policies with incident_status rules match.

Next steps

Incident timeline

Review the full event history for an incident.

Incidents guide

Day-to-day incident management workflow.

Alerting guide

Configure how manual incident alerts are routed.