Build pillar · crisis-ops agent
How to build post-crisis SEO + reputation repair across thousands of location pages
Google Search Console reconsideration + Ahrefs + SEMrush + Moz + Sistrix backlink + Sitebulb + Screaming Frog + OnCrawl + Botify crawler + BirdEye + Podium + ReviewTrackers + Reputation.com review + Cloudflare + Akamai + Fastly + AWS CloudFront CDN + GitHub + GitHub Actions + GitLab CI + CircleCI + Buildkite + Jenkins CI ship per-account flat crisis-response primitives. The Triage + Remediate + Disclose + Audit skill bundle on the crisis-ops agent sits above the crawler + schema-audit + backlink + CDN + review + signature + CI + Wayback Machine + archive.org + Common Crawl substrate and writes a per-page + per-disclosure canonical record with named regulatory anchors covering SEC Form 8-K Item 1.05 cybersecurity disclosure (4-business-day) + Securities Exchange Act 1934 Section 10(b) + Rule 10b-5 + CIRCIA 72-hour + NIS2 + GDPR Article 33 + HIPAA Breach Notification 60-day + PCI DSS v4.0 + 50-state breach + NYDFS Part 500 + FTC Safeguards Rule 30-day + Google Search Essentials manual action recovery + Wayback Machine preservation.
Published December 23, 2026 · 3,200 words
The 4-skill bundle on the crisis-ops agent
One agent. Four coordinated skills. The Triage + Remediate + Disclose + Audit bundle runs above the crawler + schema-audit + backlink + CDN + review + signature + CI + Wayback Machine + archive.org + Common Crawl substrate and writes one canonical per-page + per-disclosure record.
Triage
Per-page severity classification P0-P4 (SEC 8-K Item 1.05 + GDPR Article 33 + HIPAA + PCI DSS + Google manual action + negative review). Per-page Wayback Machine + archive.org + Common Crawl snapshot for evidentiary preservation under Lanham + litigation hold. Per-page regulatory-clock applicability.
Remediate
Per-page noindex/robots-meta/X-Robots-Tag + 301/410 status + cache invalidation (Cloudflare + Akamai + Fastly + AWS CloudFront) + robots.txt + Google Removals + Bing URL Removal + Yandex Deletion + backlink toxicity audit + GSC Disavow + schema fix + CMS auto-PR via GitHub Actions + GitLab CI + CircleCI with SLSA Level 3+ provenance + Sigstore signing + SBOM. Per-page review-response via BirdEye + Podium + ReviewTrackers + Reputation.com + Trustpilot + Yotpo + Bazaarvoice. Per-page Google reconsideration request when manual action.
Disclose
Per-regulatory-clock timed disclosure: SEC 8-K Item 1.05 (4-business-day) + CIRCIA (72-hour cyber + 24-hour ransom) + NIS2 (24/72-hour + 1-month final) + GDPR Article 33 (72-hour) + Article 34 + HIPAA (60-day) + PCI DSS v4.0 + 50-state breach + NYDFS Part 500 (72-hour) + FTC Safeguards (30-day) + FinCEN SAR (30-day) + FCC CPNI + FERPA + FCRA + BIPA + MHMDA. Per-disclosure routing: regulator + customer + investor + employee + vendor + media. SEC EDGAR filing when 8-K.
Audit
Per-page + per-disclosure WORM record: triage + Wayback Machine hash + remediation evidence + disclosure timing + per-regulatory-clock countdown adherence + per-anchor gate-pass + SEC EDGAR receipt + per-jurisdiction regulator acknowledgment + AI-ML provenance + EU AI Act FRIA. Retention: 7-year FTC + 7-year IRS + 7-year SOX + 6-year SEC + 3-year FINRA + 7-year HIPAA + 7-year PCI DSS + 7- year FTC Safeguards + GDPR Article 30 + EU AI Act Article 12 + SOC 2 CC7/CC8.
The real ecosystem this sits above
Triage + Remediate + Disclose + Audit does not replace the crawlers, backlink vendors, CDN, review platforms, signature tools, CI, or archival services. It sits above them, coordinates them under regulatory-clock discipline, and writes one canonical per-page + per-disclosure record.
Crawler + schema + backlink
- Sitebulb + Screaming Frog + OnCrawl + Botify
- Schema App + Yoast + RankMath + Schema Pro + Schema Ninja
- Ahrefs + SEMrush + Moz + Sistrix + LinkResearchTools
- STAT + AccuRanker rank + GSC + Bing Webmaster
- WordPress + Drupal + Shopify CMS + headless CMS
CDN + review + signature + CI
- Cloudflare + Akamai + Fastly + AWS CloudFront CDN
- BirdEye + Podium + ReviewTrackers + Reputation.com
- Trustpilot + Yotpo + Bazaarvoice review
- DocuSign + HelloSign + Adobe Sign + SEC EDGAR filing
- GitHub Actions + GitLab CI + CircleCI + Buildkite + Jenkins
Archive + supply-chain attestation
- Wayback Machine + archive.org + Common Crawl + WebArchive
- SLSA v1.0 Level 3+ + in-toto + Sigstore Fulcio + Rekor
- cosign + gitsign + GUAC + Software Heritage
- SBOM CycloneDX + SPDX + Syft + Grype + Trivy
- AWS S3 Object Lock + Azure Blob immutable + GCS + Wasabi
Compliance overlay
Five anchors run per-page + per-disclosure before any commitment. The first anchor is operationally distinctive: SEC Form 8-K Item 1.05 + Securities Exchange Act Section 10(b) + Rule 10b-5 + securities-fraud exposure when public-company conceals material crisis intersect Google manual action recovery + Wayback Machine preservation under Lanham.
Anchor 1: SEC 8-K Item 1.05 + Securities Exchange Act Section 10(b) + Google manual action (operationally distinctive)
SEC Form 8-K Item 1.05 cybersecurity disclosure (SEC final rule July 2023 effective December 2023; 4-business- day disclosure when material cybersecurity incident). Securities fraud exposure under Securities Exchange Act 1934 Section 10(b) + Rule 10b-5 + Rule 10b5-1 when public-company conceals material crisis. SOX 302/404/906 + COSO + Securities Exchange Act 1934 Section 13(b)(2) + FASB ASC 350 intangible-asset impairment when reputation damage + SEC Reg S-K Item 303 + SEC Form 10-K + Auditing Standard 2201. Google Search Essentials + Google Search Quality Rater Guidelines + Google Helpful Content Update + Google Site Reputation Abuse Policy (May 2024) + Google E-E-A-T + Google manual action recovery + Google reconsideration request + Bing URL Removal + Yandex Webmaster URL Deletion. Wayback Machine + archive.org + Common Crawl preservation under Lanham Act for evidence + litigation hold. USPTO trademark + Lanham 15 USC 1051 + 1125(a).
Anchor 2: Cybersecurity incident disclosure clocks
CIRCIA Cyber Incident Reporting for Critical Infrastructure Act 72-hour cyber incident + 24-hour ransom payment + CISA implementing regulations. NIS2 Directive 24-hour early warning + 72-hour notification + 1-month final report. GDPR Article 33 72-hour breach + Article 34 data subject notification. HIPAA Security Rule 45 CFR 164.308 + 164.312 + HIPAA Breach Notification Rule 60-day. PCI DSS v4.0 Requirement 12.10 incident response. CCPA + CPRA breach notification + 50-state breach matrix + NYDFS Part 500 72-hour + FTC Safeguards Rule 30-day + FinCEN SAR 30-day + FCC CPNI + FERPA + FCRA + Illinois BIPA breach + Washington MHMDA breach.
Anchor 3: FTC + per-vertical
FTC Endorsement Guides + FTC Fake Review Rule + Section 5 + Pfizer 1972 + MARS + Health Products + CFPB UDAAP + state UDTPA + FDD Item 12 + 15-state franchise. HIPAA when MedicalBusiness + ABA Model Rule 7.1-7.5 when LegalService + FINRA Rule 2210 + SEC Regulation FD + state medical board + FDA OPDP + DEA + alcohol + .
Anchor 4: EU AI Act + privacy
EU AI Act Article 22 + 26 + 50 + Article 13/14/15 + Annex III when AI-ML crisis-response drives content prioritization + Article 6/27 FRIA. DSA Article 30 + DMA. GDPR Article 6/7/17/22 + Article 28/30. LGPD + DPDP + PIPEDA + Quebec Law 25 + CCPA + CPRA + COPPA + 18-state.
Anchor 5: Accessibility + security + WORM retention
WCAG 2.2 AA + ADA Title III + Section 508. NIST AI RMF + NIST CSF 2.0 + NIST SP 800-30 + NIST SP 800-53 + ISO 42001 + ISO 27001 + ISO 27701 + SOC 2 Type II. Per- vendor LLM zero-retention + per-source DPA. Policy-as- code via OPA Rego + AWS Cedar + Casbin + Cerbos + Oso + Styra DAS + Permit.io. Storage: AWS S3 Object Lock + Azure Blob immutable + GCS + Wasabi WORM. Retention: 7-year FTC + 7-year IRS + 7-year SOX + 6-year SEC + 3- year FINRA + 7-year HIPAA + 7-year PCI DSS + 7-year FTC Safeguards + GDPR Article 30 + EU AI Act Article 12 + SOC 2 CC7/CC8.
6-workstream reporting cycle
Every two weeks during a Tier 3 Fractional CMO engagement, six workstreams report against the pre-engagement baseline. No forecast accuracy claims. Process commitments only.
- 1. Per-portfolio crisis-substrate coverage. Crawlers + schema-audit + backlink + CDN + review + signature + CI + Wayback Machine + archive.org + Common Crawl preservation.
- 2. Triage per-page severity-tier distribution. P0-P4 + per-regulatory-clock applicability + Wayback Machine preservation hash.
- 3. Remediate per-page restoration flow. Per-page noindex/robots-meta/X-Robots-Tag + 301/410 + cache invalidation + Google Removals + backlink disavow + schema fix + CMS auto-PR with SLSA Level 3+ + review-response.
- 4. Disclose per-regulatory-clock timing. SEC 8-K Item 1.05 + CIRCIA + NIS2 + GDPR Article 33 + HIPAA + PCI DSS + 50-state + NYDFS + FTC Safeguards + EDGAR filing receipt.
- 5. Regulatory-defense audit coverage. SEC 8-K Item 1.05 + Securities Exchange Act Section 10(b) + Rule 10b-5 + SOX + CIRCIA + GDPR Article 33 + HIPAA + PCI DSS + 50-state + FTC Safeguards + Google manual action + Wayback Machine.
- 6. FBC feedback-loop pattern-learning. Per-crisis realized-vs-predicted remediation + per-regulator enforcement-update + per-vendor recalibration.
FAQ
- What is post-crisis SEO + reputation repair — and what is the SEC-Form-8-K-Item-1.05-times-Google-manual-action problem distinctive to this skill?
- A multi-location operator with 80-300 stores experiences a crisis: cybersecurity incident + data breach + PR scandal + Google manual action + algorithm-update demotion + product recall + regulatory enforcement + viral negative review. The crisis affects thousands of location pages simultaneously. The four-skill bundle on the crisis-ops agent — Triage, Remediate, Disclose, Audit — sits above the crawler (Sitebulb + Screaming Frog + OnCrawl + Botify) + schema-audit (Schema App + Yoast + RankMath) + backlink (Ahrefs + SEMrush + Moz + Sistrix) + CDN (Cloudflare + Akamai + Fastly + AWS CloudFront) + review (BirdEye + Podium + ReviewTrackers + Reputation.com) + signature (DocuSign + HelloSign) + CI (GitHub Actions + GitLab CI + CircleCI + Buildkite + Jenkins) substrate and writes a per-page + per-disclosure canonical record. The operationally distinctive anchor: SEC Form 8-K Item 1.05 cybersecurity disclosure (SEC final rule July 2023 effective December 2023; 4-business-day disclosure when material cybersecurity incident) + securities fraud exposure under Securities Exchange Act 1934 Section 10(b) + Rule 10b-5 + Rule 10b5-1 when public-company conceals material crisis + CIRCIA 72-hour + NIS2 24/72-hour + GDPR Article 33 72-hour + HIPAA Breach Notification 60-day + PCI DSS v4.0 Requirement 12.10 + 50-state breach matrix + NYDFS Part 500 72-hour + FTC Safeguards Rule 30-day all start counting from detection. Plus Google Search Essentials + manual action recovery + reconsideration request + Wayback Machine preservation under Lanham Act for evidence.
- Why do Google Search Console + Ahrefs + Sitebulb + Cloudflare + BirdEye + Reputation.com break at thousands-of-page-times-multi-regulatory-clock crisis-response scale?
- Each crawler ships per-account flat crawl. Each backlink vendor ships flat backlink + disavow upload. Each CDN ships flat cache invalidation. Each review-management vendor ships flat reply. Each CI tool ships flat workflow. None coordinates per-page triage + per-page remediation + per-disclosure regulatory-clock tracking (SEC 8-K Item 1.05 4-business-day + CIRCIA 72-hour + GDPR Article 33 + HIPAA 60-day + PCI DSS 12.10 + FTC Safeguards 30-day). None gates against Securities Exchange Act 1934 Section 10(b) + Rule 10b-5 when public-company conceals material crisis + Sarbanes-Oxley 302/404/906 + FASB ASC 350 intangible-asset impairment when reputation damage. None coordinates Google manual action recovery + reconsideration request + Wayback Machine preservation under Lanham Act for evidence + per-page noindex/410/301 status management. None writes a per-page + per-disclosure audit trail with regulatory-defense retention. The four-skill bundle Triage + Remediate + Disclose + Audit sits above the crawler + schema-audit + backlink + CDN + review + signature + CI substrate — it does not replace it.
- How does Triage + Remediate work across thousands of pages?
- Triage runs per-portfolio per-banner per-location per-page severity classification: P0 imminent SEC 8-K Item 1.05 trigger (material cybersecurity incident) + P1 GDPR Article 33 72-hour + HIPAA 60-day breach + P2 PCI DSS v4.0 12.10 incident + P3 Google manual action + algorithm demotion + P4 negative review surge. Per-page Wayback Machine + archive.org + Common Crawl snapshot capture for evidentiary preservation under Lanham Act and litigation hold. Per-page severity-tier + per-page regulatory-clock applicability. Remediate runs per-page restoration: per-page noindex directive control + per-page robots-meta + per-page X-Robots-Tag + per-page 301/410 status management when content removed + per-page cache invalidation via Cloudflare + Akamai + Fastly + AWS CloudFront + per-page robots.txt management + Google Removals + Bing URL Removal + Yandex URL Deletion + per-page backlink toxicity audit (Ahrefs + SEMrush + Moz + LinkResearchTools) + GSC Disavow file generation + per-page schema fix (Schema App + Yoast + RankMath) + per-page CMS edit (WordPress + Drupal + Shopify) via GitHub Actions + GitLab CI + CircleCI auto-PR with SLSA Level 3+ provenance + Sigstore signing + SBOM. Per-page review-response coordination via BirdEye + Podium + ReviewTrackers + Reputation.com + Trustpilot + Yotpo + Bazaarvoice with per-vendor brand-voice canonical from #549 + per-vendor LLM zero-retention. Per-page Google reconsideration request when manual action.
- What does Disclose + Audit do?
- Disclose runs per-regulatory-clock timed disclosure across SEC Form 8-K Item 1.05 (4-business-day) + CIRCIA (72-hour cyber incident + 24-hour ransom payment) + NIS2 (24-hour early warning + 72-hour notification + 1-month final report) + GDPR Article 33 (72-hour breach to supervisory authority) + Article 34 (data subject notification) + HIPAA Breach Notification Rule (60-day) + PCI DSS v4.0 Requirement 12.10 + 50-state breach matrix + NYDFS Part 500 (72-hour) + FTC Safeguards Rule (30-day) + FinCEN SAR (30-day) + FCC CPNI + FERPA + FCRA + Illinois BIPA + Washington MHMDA. Per-disclosure routing: regulator + customer + investor + employee + vendor + media. Per-disclosure template per-jurisdiction + per-data-class. Per-disclosure SEC EDGAR filing when 8-K + SOX 302/404/906 attestation. Gate runs 5 anchors per-page + per-disclosure before commit. (1) SEC 8-K Item 1.05 + Securities Exchange Act Section 10(b) + Rule 10b-5 + SOX 302/404/906 + COSO + Exchange Act 13(b)(2) + FASB ASC 350 intangible-asset impairment + SEC Reg S-K. (2) CIRCIA + NIS2 + GDPR Article 33/34 + HIPAA Security Rule + Breach Notification + PCI DSS v4.0 + 50-state breach + NYDFS Part 500 + FTC Safeguards + FinCEN SAR + FCC CPNI + FERPA + FCRA + Illinois BIPA + Washington MHMDA. (3) Google Search Essentials + Helpful Content + Site Reputation Abuse + E-E-A-T + manual action recovery + reconsideration + USPTO trademark + Lanham + FTC Endorsement Guides + Fake Review Rule + Section 5 + Pfizer 1972 + MARS + Health Products + CFPB UDAAP + state UDTPA + FDD Item 12. (4) HIPAA + ABA Model Rule + FINRA + SEC Reg FD + state medical board + FDA OPDP + DEA + alcohol + . (5) EU AI Act Article 22 + 26 + 50 + Article 13/14/15 + Annex III + FRIA + DSA + DMA + GDPR Article 6/7/17/22 + Article 28/30 + LGPD + DPDP + PIPEDA + Quebec Law 25 + CCPA + CPRA + 18-state + WCAG 2.2 AA + ADA Title III. Audit writes a per-page + per-disclosure WORM canonical record: triage + Wayback Machine preservation hash + per-page remediation evidence + per-disclosure timing + per-regulatory-clock countdown adherence + per-anchor gate-pass + SEC EDGAR filing receipt + per-jurisdiction regulator acknowledgment + AI-ML provenance + EU AI Act FRIA. Storage: AWS S3 Object Lock + Azure Blob immutable + GCS + Wasabi WORM. Retention: 7-year FTC + 7-year IRS + 7-year SOX + 6-year SEC + 3-year FINRA + 7-year HIPAA + 7-year PCI DSS + 7-year FTC Safeguards + GDPR Article 30 + EU AI Act Article 12 + SOC 2 CC7/CC8.
- What does this skill connect to on the crisis-ops agent and across the swarm?
- On the crisis-ops agent: crisis-ops (parent commercial pillar) + multi-stream severity routing for anomaly detection + compliance ops (#578 sibling build-pillar — same regulatory-clock substrate) + per-location AI review-response drafting (#565 same per-vertical compliance overlay) + per-platform compliance gating for social posts (#564 same EU AI Act substrate). Across the swarm: schema auto-remediation across 1500+ location pages (#582 same SLSA + Sigstore substrate) + auto-PR generation (#570 same SLSA substrate) + response-shape drift detection (#562 same SEC 8-K Item 1.05 substrate) + versioned customer history for DSAR (#584 same GDPR + identity substrate) + governance-decision-router five-destination routing + master-record. Build-pillar siblings: tiered pre-filter deterministic gates for AI content compliance + marketing AI autonomy profile configuration + per-vertical compliance overlay. Commercial-pillar parent: /crisis-response.
- What does the 6-workstream pre-engagement-baseline reporting cycle look like for this skill?
- Every two weeks during the Tier 3 Fractional CMO with AI Swarm engagement, six workstreams report against the pre-engagement baseline. Workstream 1: per-portfolio crisis-substrate coverage — crawlers + schema-audit + backlink + CDN + review + signature + CI + Wayback Machine + archive.org + Common Crawl preservation. Workstream 2: Triage per-page severity-tier distribution — P0/P1/P2/P3/P4 + per-regulatory-clock applicability + Wayback Machine preservation hash. Workstream 3: Remediate per-page restoration flow — per-page noindex/robots-meta/X-Robots-Tag + 301/410 + cache invalidation + Google Removals + backlink disavow + schema fix + CMS auto-PR with SLSA Level 3+ + review-response. Workstream 4: Disclose per-regulatory-clock timing — SEC 8-K Item 1.05 (4-business-day) + CIRCIA (72-hour) + NIS2 (24/72-hour) + GDPR Article 33 (72-hour) + HIPAA (60-day) + PCI DSS 12.10 + 50-state + NYDFS + FTC Safeguards (30-day) + EDGAR filing receipt. Workstream 5: Regulatory-defense audit coverage — SEC 8-K Item 1.05 + Securities Exchange Act Section 10(b) + Rule 10b-5 + SOX + CIRCIA + GDPR Article 33 + HIPAA + PCI DSS + 50-state + FTC Safeguards + Google manual action + Wayback Machine. Workstream 6: FBC feedback-loop pattern-learning — per-crisis realized-vs-predicted remediation + per-regulatory enforcement-update + per-vendor recalibration.
Engage Completions
Two ways to engage. The Tier 1 AI Readiness Assessment maps the crawler + schema-audit + backlink + CDN + review + signature + CI + archival substrate + per-regulatory-clock surface against the Triage + Remediate + Disclose + Audit bundle. The Tier 3 Fractional CMO with AI Swarm embeds 1-2 days per week for 6+ months and runs the bundle end-to-end against the crisis-ops agent across the swarm.
Related reading
- Parent commercial pillar: crisis response
- Sibling build-pillar: multi-stream severity routing (#578 same regulatory-clock substrate)
- Sibling build-pillar: response-shape drift detection (#562 same SEC 8-K Item 1.05 substrate)
- Sibling build-pillar: schema auto-remediation (#582 same SLSA + Sigstore substrate)
- Fractional CMO with AI Swarm
- AI Readiness Assessment