Related errors share an investigation; a later occurrence can resume it.
- A Cloud Logging sink forwards entries that match your selected sources and severity.
- Corvo stores each new entry and collects incoming alerts for a short window.
- The orchestrator compares the collected alerts with existing investigations. It groups alerts by likely cause and assigns every alert to a new or continuing investigation.
- Each investigation has an agent session that can resume when related alerts arrive later. The agent reads available logs, other selected Google Cloud data, repository code, and approved workspace memory.
- The investigation records its findings and may open a draft PR. Its result and links appear in Investigations and in the connected notification channel.