ir_get_template
Get Lenny Zeltser's structured incident response template. Covers all critical IR sections with field-by-field guidance. Pass kind: "report" (default — full incident-response report) or "brief" (one-page executive brief, IR 1.5.0+). This server never requests your incident notes and instructs your AI to keep them local—guidelines flow to your AI for local analysis.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| kind | No | Which artifact to return: 'report' (full incident-response report — default for backward compatibility) or 'brief' (one-page executive brief). |