plan_investigation
Plan an investigation from a bare session, request, or trace ID by classifying its shape, listing vendor spellings, identifying which sources can answer, and suggesting a search window.
Instructions
START HERE when the user hands you a bare identifier — a session id, request id, trace id, or correlation id — with no logs yet. Classifies the identifier's shape, returns every vendor spelling it may appear under, names which configured sources and coverage surfaces can answer for it, and suggests a time window (widened when the id looks async). Use correlate_ids instead once you already have log snippets in hand.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| identifier | Yes | ||
| environment | No |