fireflies-incident-runbook
Respond to Fireflies.ai integration outages with standardized triage, mitigation, and postmortem steps.
Install
mkdir -p .claude/skills/fireflies-incident-runbook && curl -L -o skill.zip "https://agentskills.codes/api/skills/download/7276" && unzip -o skill.zip -d .claude/skills/fireflies-incident-runbook && rm skill.zipInstalls to .claude/skills/fireflies-incident-runbook
Activation
This is the description your AI agent reads to decide when to run this skill — the better it matches your request, the more reliably it fires.
Execute Fireflies.ai incident response with triage, remediation, andKey capabilities
- →Triage Fireflies.ai API connectivity and authentication
- →Identify and remediate API error codes like 401 and 429
- →Verify webhook registration and signature validity
- →Execute post-incident reviews using structured templates
- →Notify stakeholders via standardized Slack communication templates
How it works
The runbook provides a decision tree and triage scripts to diagnose API and webhook failures, followed by specific remediation steps for common error codes.
Inputs & outputs
When to use fireflies-incident-runbook
- →Triage Fireflies.ai API connectivity
- →Investigate service outages
- →Perform post-incident reviews
- →Automate checks for service health
About this skill
Fireflies Integration Incident Runbook
Overview
Triage Fireflies auth, privacy, webhook, quota, data exposure, processing, and privileged-mutation incidents with containment and evidence boundaries.
Prerequisites
- The target repository or integration path and the requested operator outcome.
- The Fireflies principal, team, environment, and data classification for the work.
- Current Fireflies documentation, credentials only when needed, and an accountable approver.
Current Contract
Classify incidents by confidentiality, integrity, availability, and destructive impact. Containment may mean disabling a consumer, revoking a key, pausing a queue, rejecting webhooks, or blocking mutations; preserve content-free evidence and coordinate destructive actions.
Authentication
For authenticated operations, inject FIREFLIES_API_KEY from an approved secret manager and send it only as Authorization: Bearer REDACTED_KEY to https://api.fireflies.ai/graphql. Never print, commit, place in a URL, forward to a browser, or include the key in evidence. Webhook signing secrets are separate credentials and must not be reused as API keys.
Instructions
- Declare an owner, severity, affected environment, timeline, and known operation or event family.
- Contain the smallest boundary: caller, key, webhook endpoint, queue, worker, or mutation feature.
- Preserve redacted logs, request IDs, GraphQL codes, signature results, deployments, and configuration revisions.
- Determine whether meeting data, bearer keys, signing secrets, roles, privacy, shares, channels, or deletions were affected.
- Rotate secrets or disable access only through the accountable owner and record the action.
- Recover with synthetic or metadata-only probes and bounded traffic.
- Document root cause, affected records through an approved channel, corrective actions, and follow-up tests.
Tool Discipline
Use Read, Glob, and Grep to inspect code, configuration, tests, and evidence. Use Write/Edit only for approved implementation or documentation changes. Do not query Fireflies, retrieve meeting content, create an AskFred thread, upload media, change account state, replay an event, or deploy merely because this skill was invoked.
Approval Boundaries
Require approval before revoking production access, replaying events, restoring data, changing privacy or roles, notifying external parties, or deleting evidence.
Output
Return the exact operation or event surface, environment, authorization class, selected field groups, validation results, content-free metrics, decisions, and a concise pass/fail receipt. Keep secrets and meeting-derived content out of general output.
Validation
Before reporting success, rerun the smallest relevant deterministic check, compare actual state with the requested outcome and current contract, verify no secret or meeting-derived content entered logs or artifacts, and record unresolved uncertainty explicitly.
Error Handling
- Potential secret exposure: prioritize containment and audit over routine debugging.
- Unknown mutation outcome: reconcile state before replay.
- Meeting content appears in a general incident channel: move to the approved restricted process.
Examples
- "Review fireflies integration incident runbook" produces a bounded plan and redacted receipt.
- A request that widens access or mutates production is paused at the approval boundary.
Resources
Read official Fireflies.ai evidence before relying on a field, filter, event, permission, plan limit, mutation, or processing state.
When not to use it
- →Handling data compliance tasks
- →General Fireflies.ai platform troubleshooting outside of integration failures
Prerequisites
Limitations
- →Intermittent failures require 15 minutes of monitoring before escalation
- →Webhooks only function for meetings owned by the authenticated user
How it compares
This approach uses automated triage scripts and standardized incident templates rather than manual investigation of API logs.
Compared to similar skills
fireflies-incident-runbook side by side with the closest alternatives in the catalog.
| Skill | Installs | Updated | Safety | Difficulty |
|---|---|---|---|---|
| fireflies-incident-runbook (this skill) | 1 | 2mo | Review | Intermediate |
| qa-tester | 29 | 10mo | No flags | Intermediate |
| qa-expert | 14 | 10mo | Review | Intermediate |
| sentry-multi-env-setup | 2 | 2mo | Review | Intermediate |
Try saying
Example prompts that trigger this skill in your AI assistant.
More by jeremylongshore
View all by jeremylongshore →You might also like
qa-tester
svilupp
Browser automation QA testing skill. Systematically tests web applications for functionality, security, and usability issues. Reports findings by severity (CRITICAL/HIGH/MEDIUM/LOW) with immediate alerts for critical failures.
qa-expert
daymade
This skill should be used when establishing comprehensive QA testing processes for any software project. Use when creating test strategies, writing test cases following Google Testing Standards, executing test plans, tracking bugs with P0-P4 classification, calculating quality metrics, or generating progress reports. Includes autonomous execution capability via master prompts and complete documentation templates for third-party QA team handoffs. Implements OWASP security testing and achieves 90% coverage targets.
sentry-multi-env-setup
jeremylongshore
Configure Sentry across multiple environments. Use when setting up Sentry for dev/staging/production, managing environment-specific configurations, or isolating data. Trigger with phrases like "sentry environments", "sentry staging setup", "multi-environment sentry", "sentry dev vs prod".
openrouter-prod-checklist
jeremylongshore
Execute pre-launch production readiness checklist for OpenRouter. Use when preparing to deploy to production. Trigger with phrases like 'openrouter production', 'openrouter go-live', 'openrouter launch checklist', 'deploy openrouter'.
speak-prod-checklist
jeremylongshore
Execute Speak production deployment checklist and rollback procedures. Use when deploying Speak integrations to production, preparing for launch, or implementing go-live procedures for language learning features. Trigger with phrases like "speak production", "deploy speak", "speak go-live", "speak launch checklist".
deps
matteocervelli
Audit dependency freshness — scan outdated deps and CVEs, classify severity, record update/defer/skip decisions in Atrium, gate PASS/WARN/FAIL. Use when checking for outdated packages or deciding whether to upgrade. Trigger on "outdated dependencies", "dependency audit", "are my deps up to date", "s