{"product_id":"kubernetes-incident-triage-with-claude-slack-approval-workflow","title":"Kubernetes Incident Triage with Claude + Slack Approval Workflow","description":"\u003ch3\u003eAutomate Kubernetes incident triage with Claude + Slack approvals\u003c\/h3\u003e\n\u003cp\u003eThis n8n workflow turns incoming Kubernetes failure alerts into structured diagnostics, asks \u003cstrong\u003eAnthropic Claude\u003c\/strong\u003e for a remediation proposal, and—when risk requires it—routes the action to \u003cstrong\u003eSlack for approval\u003c\/strong\u003e before executing. It then verifies recovery and closes or escalates the incident.\u003c\/p\u003e\n\n\u003ch3\u003eWhat this workflow does\u003c\/h3\u003e\n\u003cul\u003e\n  \u003cli\u003e\n\u003cstrong\u003eReceives Kubernetes failure alerts\u003c\/strong\u003e via a \u003cstrong\u003ewebhook\u003c\/strong\u003e (or supports manual runs for testing). It normalizes the target \u003cem\u003ecluster\u003c\/em\u003e, \u003cem\u003enamespace\u003c\/em\u003e, and \u003cem\u003eresource\u003c\/em\u003e details.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eCollects diagnostics\u003c\/strong\u003e using a \u003cstrong\u003ekubectl wrapper API\u003c\/strong\u003e, including recent events, logs, resource usage, and workload state for the affected resource.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eUses Claude to propose remediation\u003c\/strong\u003e by sending the diagnostic snapshot to \u003cstrong\u003eAnthropic Claude\u003c\/strong\u003e, which returns a root-cause hypothesis and \u003cstrong\u003ea single proposed remediation action\u003c\/strong\u003e with a \u003cstrong\u003eSafe vs NeedsApproval\u003c\/strong\u003e risk level.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eExecutes or seeks approval\u003c\/strong\u003e: if the remediation is marked \u003cstrong\u003eSafe\u003c\/strong\u003e and is on the allowlist, the workflow executes it via a \u003cstrong\u003eKubernetes action wrapper API\u003c\/strong\u003e. Otherwise, it posts the proposal to \u003cstrong\u003eSlack\u003c\/strong\u003e and waits for an approval response.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eVerifies stabilization\u003c\/strong\u003e after execution by waiting, re-collecting diagnostics, and asking Claude to confirm whether the original symptoms are resolved.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eCloses or escalates\u003c\/strong\u003e: logs resolution to an \u003cstrong\u003eincident log API\u003c\/strong\u003e when the cluster is healthy, or escalates the full context to a \u003cstrong\u003eSlack escalation channel\u003c\/strong\u003e when it isn’t.\u003c\/li\u003e\n\u003c\/ul\u003e\n\n\u003ch3\u003eUse cases\u003c\/h3\u003e\n\u003cul\u003e\n  \u003cli\u003eReduce MTTR by converting \u003cstrong\u003eAlertmanager\/Kubernetes alerts\u003c\/strong\u003e into actionable remediation steps with guardrails.\u003c\/li\u003e\n  \u003cli\u003eRequire human approval for \u003cstrong\u003eNeedsApproval\u003c\/strong\u003e actions to prevent unsafe cluster changes.\u003c\/li\u003e\n  \u003cli\u003eProvide consistent incident closure by re-checking health and symptom resolution after remediation.\u003c\/li\u003e\n\u003c\/ul\u003e\n\n\u003ch3\u003eTechnical details\u003c\/h3\u003e\n\u003cul\u003e\n  \u003cli\u003e\n\u003cstrong\u003en8n nodes:\u003c\/strong\u003e \u003ccode\u003eif\u003c\/code\u003e, \u003ccode\u003eset\u003c\/code\u003e, \u003ccode\u003ecode\u003c\/code\u003e, \u003ccode\u003ewait\u003c\/code\u003e, \u003ccode\u003eslack\u003c\/code\u003e, \u003ccode\u003ewebhook\u003c\/code\u003e\n\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eIntegrations:\u003c\/strong\u003e \u003cstrong\u003eSlack\u003c\/strong\u003e for approval and escalation, \u003cstrong\u003ekubectl wrapper API\u003c\/strong\u003e for diagnostics, \u003cstrong\u003eKubernetes action wrapper API\u003c\/strong\u003e for remediation execution, \u003cstrong\u003eincident log API\u003c\/strong\u003e for closure\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eAI:\u003c\/strong\u003e \u003cstrong\u003eAnthropic Claude\u003c\/strong\u003e (configure the Claude credential and model selection if needed)\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eAuth:\u003c\/strong\u003e create \u003cstrong\u003eHTTP Header Auth\u003c\/strong\u003e as required\u003c\/li\u003e\n\u003c\/ul\u003e","brand":"N8N Commerce","offers":[{"title":"Default Title","offer_id":45950020976819,"sku":"N8N-19173","price":43.99,"currency_code":"GBP","in_stock":true}],"thumbnail_url":"\/\/cdn.shopify.com\/s\/files\/1\/0749\/6279\/6723\/files\/98t8fwCJfQHIroil9eVsY_gUUyTk4f.png?v=1788512919","url":"https:\/\/buyflowscripts.com\/products\/kubernetes-incident-triage-with-claude-slack-approval-workflow","provider":"N8N Commerce","version":"1.0","type":"link"}