For SRE, platform, and engineering teams
Every incident gets
an AI investigator.
WHAWIT connects read-only to Datadog, CloudWatch, Sentry, and 20+ tools you already run. Its Radar agent investigates root cause across your logs, metrics, and code while your team coordinates the response in Slack, Teams, and the IDE.
Read-only access · 20+ integrations · No rip-and-replace

Works on top of the stack you already run


Root cause, with the evidence attached.
When an alert fires, Radar runs a multi-step investigation across your logs, metrics, and repository. It comes back with a root-cause hypothesis, a confidence level, and the evidence behind it, so your team reviews a conclusion instead of starting from a blank dashboard.
Ask follow-up questions in plain English. Radar keeps context for the whole incident.


Declare, coordinate, and learn in one place.
On-call AI agents watch your signals, deduplicate noise, and open incidents automatically, or pull them in from OpsGenie and PagerDuty. Declare an incident and WHAWIT spins up the channel in Slack or Microsoft Teams, assigns roles, keeps the timeline, and drafts status updates and the postmortem, so responders respond instead of narrating.
IDE & MCP
The only incident responder that lives in your editor
Fixes happen in the editor, so WHAWIT meets engineers there. Query the incident, read the evidence, and draft the fix without leaving the file you're editing.





Integrations
Reads from everything you already run
Read-only connections. Connect one provider or all of them.
Observability & logs
AWS CloudWatch
GCP Cloud LoggingCode & tickets
Response & paging
How it works
Live in an afternoon, not a quarter
WHAWIT layers onto the tools you already run. Connecting a provider takes minutes; the first investigation follows on your next alert.
Connect
Add read-only keys for any of your 20+ providers. No agents to install, no data migration, nothing to rip out.
Radar investigates
On-call AI agents watch your signals, deduplicate noise, open incidents, and run root-cause investigations with the evidence attached.
Your team resolves
Coordinate in Slack or Teams, fix in the IDE, and close the loop with synced tickets and a postmortem draft.
Pilot it with the person who built it

Jose Escrich has spent more than 25 years building and operating enterprise systems where downtime, noise, and slow incident response carry real cost.
He runs every pilot personally: onboarding, architecture and security review, and evaluation against your real incidents before a broader rollout.
Start a pilot conversation- Founder-led onboarding for every pilot
- Security and architecture conversations up front
- Evaluate on real incidents before any rollout
Reference conversations, deployment guidance, and security review materials are available during the pilot process.
Security & Compliance
Built to pass your security review
Your data stays yours. WHAWIT is built so security, privacy, and deployment questions can be answered early, not after rollout.
SOC 2 Ready
Enterprise-grade security controls and compliance standards built into every layer.
Encrypted at Rest & Transit
AES-256 encryption for all data. TLS 1.3 for every connection. Your logs are never used to train AI models.
Read-Only Access
WHAWIT connects to your providers with read-only API keys. We never modify your infrastructure.
Dedicated Instances
Enterprise customers get isolated infrastructure with dedicated databases and custom domains.
Security review materials and architecture walkthroughs are part of every pilot.
See Radar investigate your incidents
Run a pilot against your real stack. Connect a provider read-only and watch Radar work your next incident, from first alert to root-cause hypothesis, before any rollout decision.

