Incident Labs

Practice investigating production-style incidents from evidence.

Start from an incident report, inspect logs, metrics, traces, and config, then choose the safest first action. Each incident is a curated scenario — you read the evidence, build a timeline, and commit to a diagnosis. No live systems, no dashboards to babysit.

crisis_alert3 incidentsschedule~25 min totalscoreboardScored out of 100saveProgress saved on this device
Curated incident scenarios. No live systems. No real customer data. Not official, and not affiliated with any monitoring vendor or company — the reports, logs, metrics, and config are fictional, pattern-based snapshots.

Open incidents

scoreboard

How a diagnosis is scored

Each incident is graded objectively out of 100: name the primary symptom (20), the likely cause category (20) and the likely cause (20), choose the safest first action (20), mark the key evidence (10), and reference a real signal in your note (10). After you submit, the expected diagnosis, the key evidence, and a Buglyst reference diagnosis are revealed so you can compare your read.