erp-crm-cutover-protocol
Use this skill when a Dynamics 365 ERP or CRM implementation is approaching go-live and must progress through mock migration, data reconciliation, cutover runbook execution, rollback testing, and the Success by Design go-live gate before production switchover. Orchestrates d365-d
Install
npx skills add https://github.com/VincentChuWaiChow/vanguard-frontier-agentic/tree/master/skills/cross-functional/erp-crm-cutover-protocol
claude plugin marketplace add https://llmmart.ai/marketplace.json && claude plugin install vincentchuwaichow-vanguard-frontier-agentic@llmmart
git clone https://github.com/VincentChuWaiChow/vanguard-frontier-agentic.git
The skills CLI installs just this skill, for any of its supported agents. Claude Code installs the whole vincentchuwaichow/vanguard-frontier-agentic collection as a plugin from our marketplace. Git is the plain clone.
Skill manifest
ERP / CRM Cutover Protocol
Purpose
This skill defines the controlled sequence for taking a Dynamics 365 ERP or CRM implementation from pre-production readiness through mock migration, data reconciliation, runbook execution, rollback validation, and the Success by Design (SbD) go-live gate to production go-live. It exists so that no cutover proceeds without tested rollback paths, reconciled data, and explicit stakeholder sign-off at each gate. It does not execute migration scripts or production deployments; it structures the process so human owners can make well-informed go/no-go decisions.
When to use
- A Dynamics 365 Finance, Supply Chain Management, Customer Engagement, or Business Central implementation is entering the Prepare phase and a cutover plan must be validated.
- A mock cutover has been completed and reconciliation findings must be reviewed before the real cutover is authorised.
- An organisation needs to confirm SbD go-live gate criteria before requesting Microsoft FastTrack go-live readiness review.
- An existing production environment must be refreshed or migrated to a new release and cutover risk must be assessed.
When NOT to use
- The go-live has already completed and this is post-go-live hypercare support — use the hypercare support runbook instead.
- The migration involves a third-party ERP not on the Dynamics 365 platform — this protocol is scoped to Dynamics 365.
- You need live production database or environment access to execute migration scripts — that requires the infrastructure owner; this protocol is recommendation-only.
Participating agents
d365-data-migration-cutover-agent(primary — mock migration, data reconciliation, cutover runbook, rollback plan)d365-success-by-design-governance-agent(SbD gate review, go-live readiness sign-off)d365-security-sod-governance-agent(separation of duties validation, security role sign-off)
Inputs required
- Cutover plan document (task list, owners, timing, rollback steps)
- Data migration strategy and scripts (for review, not execution)
- Mock cutover results from sandbox environment (including error log)
- Go-live checklist status from the SbD Prepare phase
- Security role assignments and SoD analysis for go-live users
- Integration test results and external dependency sign-off
Evidence required
- At least one successful mock cutover has been completed in a sandbox environment that mirrors production
- UAT has been completed and signed off by business stakeholders
- Performance testing is complete and SLAs are met
- Production environment is provisioned and matches the version in development/test environments
- Rollback plan has been tested and timing confirmed
Workflow
- Mock cutover review — Review mock cutover results. Identify all errors, timing overruns, and unresolved issues. Confirm the mock was run with production-representative data and all integration steps.
- Data reconciliation — Validate that migrated data matches source records within agreed tolerance thresholds. Identify exceptions and require sign-off from the data owner on accepted variances.
- Gate 1 — Reconciliation sign-off — Data owner and project lead must formally sign off that reconciliation thresholds are met. d365-data-migration- cutover-agent produces the reconciliation report. Do not proceed without this sign-off.
- Rollback plan validation — Confirm the rollback plan is documented, tested, and timed. Confirm who has authority to invoke rollback and the criteria that trigger it.
- Gate 2 — Rollback tested — Confirm rollback has been rehearsed in the sandbox. d365-data-migration-cutover-agent attests rollback is feasible within the cutover window. Do not proceed without this confirmation.
- SoD validation — d365-security-sod-governance-agent reviews production security role assignments for separation-of-duties violations. Flag any violations for remediation before go-live.
- SbD go-live gate — d365-success-by-design-governance-agent runs the SbD go-live readiness review against the full go-live checklist: solution scope, UAT sign-off, performance, integrations, data migration, change management, support readiness. Produce a go/conditional-go/no-go recommendation.
- Gate 3 — SbD go-live gate sign-off — Project steering committee and Microsoft FastTrack (where applicable) must confirm the go-live gate. This protocol never issues the final go/no-go autonomously.
- Cutover execution readiness — Confirm all people, environments, and communication plans are in place. Verify the cutover window is realistic given mock timing plus buffer.
- Post-cutover validation — After go-live, confirm data accuracy in production, integration health, and user access. Invoke hypercare plan.
Decision gates
| Gate | Condition | Action |
|---|---|---|
| Reconciliation sign-off | Data variances exceed agreed thresholds | Stop cutover; require data owner resolution |
| Rollback tested | Rollback not rehearsed or timing exceeds window | Stop cutover; require rollback rehearsal |
| SoD violations | Production roles contain SoD conflicts | Escalate to d365-security-sod-governance-agent; remediate before go-live |
| SbD go-live gate | Any SbD blocking issues unresolved | Stop cutover; require issue owner sign-off |
| Mock cutover errors | Critical errors unresolved from mock | Stop cutover; require second mock |
Refusal triggers
- Stop if no successful mock cutover has been completed — do not recommend production go-live without at least one successful rehearsal.
- Stop if reconciliation sign-off has not been obtained from the data owner.
- Stop if the rollback plan is untested or the rollback window exceeds what the business can tolerate.
- Stop if SbD blocking issues are unresolved — do not substitute judgement for the SbD gate process.
- Stop if credentials, production org IDs, or customer data are requested as inputs to this protocol — refuse and escalate.
Handoff rules
- All handoffs carry: project_id, skill_id, skill_version, invoked_by, gate_status, open_issues, rollback_status, sbd_verdict, do_not_do_list.
- Human go/no-go decisions are always documented with decision-maker name, date, and statement of accepted risk.
- SbD gate sign-off from d365-success-by-design-governance-agent is the minimum required before any production cutover recommendation.
KPIs
- Mock cutover success rate (errors per rehearsal)
- Data reconciliation pass rate (% within tolerance)
- Rollback rehearsal completion (yes/no with timing)
- SbD go-live gate outcome (go / conditional-go / no-go)
- Actual vs. planned cutover window duration
References
- https://learn.microsoft.com/dynamics365/guidance/implementation-guide/prepare-to-go-live
- https://learn.microsoft.com/dynamics365/guidance/implementation-guide/prepare-go-live-checklist
- https://learn.microsoft.com/dynamics365/guidance/implementation-guide/prepare-go-live-cutover-strategy
- https://learn.microsoft.com/dynamics365/guidance/fasttrack/go-live-workshops
- https://learn.microsoft.com/dynamics365/guidance/implementation-guide/success-by-design
Files (vanguard-frontier-agentic)
-
references
-
workflow-and-output.md 11 KB
# ERP / CRM Cutover Protocol — Workflow and Output Contract ## Detailed Workflow ### Phase 1: Mock Cutover Review **Trigger** The Dynamics 365 implementation project has reached the Prepare phase. At least one mock cutover has been completed in a sandbox environment. **Step 1.1 — Mock cutover results intake** Review the mock cutover results: - Task completion status (each task in the cutover plan: completed / failed / skipped) - Timing: actual duration vs. planned duration per task and total - Errors and issues: critical (blocks go-live), major (requires resolution), minor (can be resolved post go-live) - Integration cutover steps: all external systems tested in the mock **Step 1.2 — Issue triage** For each critical or major issue identified in the mock: - Document the root cause - Assign an owner and resolution target date - Determine whether a second mock cutover is required If critical unresolved issues remain and a second mock is not planned: stop. Require the project lead to schedule a second mock before the real cutover is authorised. **Step 1.3 — Timing assessment** Confirm that the mock cutover completed within the planned cutover window (with buffer). If the mock exceeded the window: the real cutover plan must be revised before proceeding. --- ### Phase 2: Data Reconciliation **Step 2.1 — Reconciliation methodology** Confirm the data reconciliation methodology is documented: - What data sets are being validated (customers, vendors, items, open transactions, balances, etc.) - What tolerance thresholds are accepted for each data set - Who is the data owner for each data set **Step 2.2 — Reconciliation execution (review)** Review the reconciliation results from the mock cutover: - Records migrated vs. records in source system (count) - Financial balances: trial balance match (if applicable) - Open transactions: all open orders, cases, or projects reconciled - Exceptions: document and classify (acceptable variance / data quality issue / migration script error) **Step 2.3 — Exception resolution** For each exception beyond the tolerance threshold: - Require the data owner to either resolve the exception or formally accept the variance with a documented rationale. --- ### Phase 3: Gate 1 — Reconciliation Sign-off **Required sign-off:** - Named data owner confirms that reconciliation thresholds are met for all critical data sets, or formally accepts documented variances with rationale. - d365-data-migration-cutover-agent produces the reconciliation report. - Project lead countersigns. If sign-off cannot be obtained: stop. Do not proceed to rollback validation without reconciliation sign-off. --- ### Phase 4: Rollback Plan Validation **Step 4.1 — Rollback plan document review** Confirm the rollback plan is documented and includes: - Trigger criteria (what conditions invoke rollback) - Who has authority to invoke rollback (named individual, not just a role) - Step-by-step rollback sequence - Estimated rollback duration - Data integrity approach during rollback (snapshot, backup, point-in-time restore) **Step 4.2 — Rollback rehearsal confirmation** Confirm that the rollback has been rehearsed in the sandbox. d365-data-migration- cutover-agent attests: - Rollback was executed in the sandbox - Rollback completed within the estimated duration - System was returned to a known good state after rollback If the rollback has not been rehearsed: stop. Require rehearsal before the real cutover is authorised. --- ### Phase 5: Gate 2 — Rollback Tested **Required confirmation:** - d365-data-migration-cutover-agent confirms rollback rehearsal completed within the cutover window. - Project lead confirms rollback authority is assigned to a named individual who is available during the cutover window. --- ### Phase 6: Separation of Duties Validation **Step 6.1 — Production security role review** d365-security-sod-governance-agent reviews all security role assignments planned for production go-live: - Identify any SoD conflicts (e.g. a user who can both create and approve purchase orders, or both post and reconcile financial transactions) - Flag conflicts to the security and business owners - Require remediation or compensating controls before go-live **Step 6.2 — SoD sign-off** Security owner and business process owner confirm that SoD conflicts are remediated or compensating controls are documented and accepted. --- ### Phase 7: SbD Go-live Gate **Step 7.1 — Success by Design go-live readiness review** d365-success-by-design-governance-agent runs the SbD go-live readiness review against the full go-live checklist: | Checklist area | Status | |---|---| | Solution scope aligned with stakeholders | signed-off / not-signed-off | | UAT complete and signed off | signed-off / not-signed-off | | System integration testing complete | signed-off / not-signed-off | | Performance testing complete | signed-off / not-signed-off | | Data migration readiness (mock + reconciliation) | signed-off / not-signed-off | | External dependencies aligned | signed-off / not-signed-off | | Change management complete | signed-off / not-signed-off | | Production environment ready | signed-off / not-signed-off | | Cutover plan complete | signed-off / not-signed-off | | Rollback plan tested | signed-off / not-signed-off | | Operational support plan ready | signed-off / not-signed-off | | Security and SoD validated | signed-off / not-signed-off | **Step 7.2 — SbD verdict** - **Go**: all checklist items signed off. - **Conditional-go**: minor open items with owner-committed resolution dates and business acceptance. - **No-go**: one or more blocking issues remain. --- ### Phase 8: Gate 3 — SbD Go-live Gate Sign-off **Required sign-off:** - d365-success-by-design-governance-agent issues the SbD verdict. - Project steering committee formally confirms the go/no-go decision. - Microsoft FastTrack (where applicable) confirms go-live readiness. This protocol never issues the final go/no-go decision. That decision belongs to the human project steering committee. --- ### Phase 9: Cutover Execution Readiness **Step 9.1 — People readiness** Confirm that all required personnel are available during the cutover window: - Data migration owner - Integration owner - Rollback authority - Production environment owner - Business process lead - Support team lead **Step 9.2 — Communication plan** Confirm the communication plan is active: stakeholders are notified, cutover start/stop messages are drafted, escalation contacts are confirmed. **Step 9.3 — Final production environment check** Confirm production environment version matches development/test. Confirm no in-flight platform updates are scheduled during the cutover window. --- ### Phase 10: Post-Cutover Validation After go-live: - Confirm data accuracy in production (spot-check reconciliation) - Confirm integration health (all integration endpoints responding) - Confirm user access is functional (security roles are assigned and working) - Invoke hypercare plan --- ## Decision Tree ``` Cutover requested └── Mock cutover completed? ├── No → Stop; require mock cutover └── Yes → Critical issues resolved? ├── No → Require second mock; stop └── Yes → Mock completed within cutover window? ├── No → Revise cutover plan; stop └── Yes → Reconciliation thresholds met? ├── No → Resolve exceptions; stop └── Yes → Gate 1 sign-off obtained? ├── No → Stop └── Yes → Rollback rehearsed? ├── No → Require rehearsal; stop └── Yes → Gate 2 sign-off obtained? ├── No → Stop └── Yes → SoD conflicts resolved? ├── No → Require remediation; stop └── Yes → SbD checklist complete? ├── No → Resolve blocking items; stop └── Yes → Gate 3 steering committee sign-off └── Human go/no-go decision ``` --- ## Output Contract ### Cutover readiness record | Field | Type | Description | |---|---|---| | project_id | string | Dynamics 365 implementation project identifier | | skill_id | string | `erp-crm-cutover-protocol` | | skill_version | string | `0.1.0` | | invoked_by | string | Agent or human who invoked this protocol | | mock_cutover_status | enum | pass / fail / not-run | | mock_timing_within_window | boolean | Whether mock completed within planned window | | gate_1_reconciliation | enum | signed-off / not-signed-off | | gate_2_rollback_tested | enum | confirmed / not-confirmed | | sod_validation_status | enum | pass / conflicts-open / remediated | | sbd_verdict | enum | go / conditional-go / no-go | | gate_3_steering_committee | enum | signed-off / not-signed-off | | open_issues | array | Unresolved issues with owners and target dates | | do_not_do_list | array | Actions excluded from this protocol's scope | | rollback_status | enum | tested / not-tested / authority-assigned | | timestamp | ISO 8601 | Protocol execution timestamp | ### Gate verdicts | Gate | Verdict options | |---|---| | Reconciliation sign-off (Gate 1) | signed-off / not-signed-off | | Rollback tested (Gate 2) | confirmed / not-confirmed | | SbD go-live gate (Gate 3) | signed-off / not-signed-off | ### Refusal record (when triggered) | Field | Description | |---|---| | refusal_reason | Which refusal trigger was hit | | escalation_target | Data owner / security owner / project lead / FastTrack | | timestamp | ISO 8601 | --- ## Quality Assurance Notes - This protocol never executes migration scripts, production deployments, or environment configurations. All execution steps require the infrastructure or project owner. - The go/no-go decision is always made by the human project steering committee. d365-success-by-design-governance-agent issues a recommendation, not a decision. - All gate sign-offs must include the named decision-maker, the date, and a statement of accepted residual risk. - Rollback plans that have not been rehearsed in a sandbox are a hard block on the cutover recommendation with no exceptions.
-
-
metadata.json 2.3 KB
{ "id": "erp-crm-cutover-protocol", "name": "ERP / CRM Cutover Protocol", "type": "skill", "provider": "generic", "harnesses": ["codex", "claude-code", "cursor", "gemini", "kiro", "other"], "summary": "Controlled go-live protocol for Dynamics 365 ERP and CRM implementations. Sequences mock migration, data reconciliation sign-off, cutover runbook validation, rollback rehearsal, Success by Design (SbD) go-live gate, and separation-of-duties review before the production switchover recommendation is produced. No cutover proceeds without reconciliation sign-off, a tested rollback plan, and SbD gate approval. The go/no-go decision is always made by the human project steering committee; this protocol never authorises a production go-live autonomously.", "source_type": "original", "official_docs": [ "https://learn.microsoft.com/dynamics365/guidance/implementation-guide/prepare-to-go-live", "https://learn.microsoft.com/dynamics365/guidance/implementation-guide/prepare-go-live-checklist", "https://learn.microsoft.com/dynamics365/guidance/implementation-guide/prepare-go-live-cutover-strategy", "https://learn.microsoft.com/dynamics365/guidance/fasttrack/go-live-workshops", "https://learn.microsoft.com/dynamics365/guidance/implementation-guide/success-by-design" ], "security_notes": "This protocol is a recommendation and orchestration aid only; it is never an authorisation to execute a production migration, cutover, or go-live. It never requests production environment credentials, database connection strings, org IDs, or customer data as protocol inputs. The go/no-go decision requires explicit sign-off from the human project steering committee and Microsoft FastTrack (where applicable). Reconciliation sign-off must come from the named data owner; estimated or assumed sign-off is refused. Rollback plans that have not been rehearsed in a sandbox block the cutover recommendation unconditionally. Separation-of-duties violations in production security roles must be remediated before go-live is recommended. All SbD blocking issues require the named issue owner to confirm resolution before the SbD gate is cleared.", "last_verified": "2026-06-16", "path": "skills/cross-functional/erp-crm-cutover-protocol", "author": "github: VincentChuWaiChow", "version": "0.1.0" } -
SKILL.md 8 KB
--- name: erp-crm-cutover-protocol description: Use this skill when a Dynamics 365 ERP or CRM implementation is approaching go-live and must progress through mock migration, data reconciliation, cutover runbook execution, rollback testing, and the Success by Design go-live gate before production switchover. Orchestrates d365-data-migration-cutover-agent as primary, d365-success-by-design-governance-agent for SbD gate sign-off, and d365-security-sod-governance-agent for separation-of-duties validation. Gates include reconciliation sign-off, rollback readiness, and SbD go-live gate. Never makes the go/no-go decision autonomously; all production-impacting steps require human owner and Microsoft FastTrack confirmation where applicable. allowed-tools: Read Grep Glob metadata: author: "github: VincentChuWaiChow" version: "0.1.0" updated: "2026-06-16" category: data lifecycle: experimental --- # ERP / CRM Cutover Protocol ## Purpose This skill defines the controlled sequence for taking a Dynamics 365 ERP or CRM implementation from pre-production readiness through mock migration, data reconciliation, runbook execution, rollback validation, and the Success by Design (SbD) go-live gate to production go-live. It exists so that no cutover proceeds without tested rollback paths, reconciled data, and explicit stakeholder sign-off at each gate. It does not execute migration scripts or production deployments; it structures the process so human owners can make well-informed go/no-go decisions. ## When to use - A Dynamics 365 Finance, Supply Chain Management, Customer Engagement, or Business Central implementation is entering the Prepare phase and a cutover plan must be validated. - A mock cutover has been completed and reconciliation findings must be reviewed before the real cutover is authorised. - An organisation needs to confirm SbD go-live gate criteria before requesting Microsoft FastTrack go-live readiness review. - An existing production environment must be refreshed or migrated to a new release and cutover risk must be assessed. ## When NOT to use - The go-live has already completed and this is post-go-live hypercare support — use the hypercare support runbook instead. - The migration involves a third-party ERP not on the Dynamics 365 platform — this protocol is scoped to Dynamics 365. - You need live production database or environment access to execute migration scripts — that requires the infrastructure owner; this protocol is recommendation-only. ## Participating agents - `d365-data-migration-cutover-agent` (primary — mock migration, data reconciliation, cutover runbook, rollback plan) - `d365-success-by-design-governance-agent` (SbD gate review, go-live readiness sign-off) - `d365-security-sod-governance-agent` (separation of duties validation, security role sign-off) ## Inputs required - Cutover plan document (task list, owners, timing, rollback steps) - Data migration strategy and scripts (for review, not execution) - Mock cutover results from sandbox environment (including error log) - Go-live checklist status from the SbD Prepare phase - Security role assignments and SoD analysis for go-live users - Integration test results and external dependency sign-off ## Evidence required - At least one successful mock cutover has been completed in a sandbox environment that mirrors production - UAT has been completed and signed off by business stakeholders - Performance testing is complete and SLAs are met - Production environment is provisioned and matches the version in development/test environments - Rollback plan has been tested and timing confirmed ## Workflow 1. **Mock cutover review** — Review mock cutover results. Identify all errors, timing overruns, and unresolved issues. Confirm the mock was run with production-representative data and all integration steps. 2. **Data reconciliation** — Validate that migrated data matches source records within agreed tolerance thresholds. Identify exceptions and require sign-off from the data owner on accepted variances. 3. **Gate 1 — Reconciliation sign-off** — Data owner and project lead must formally sign off that reconciliation thresholds are met. d365-data-migration- cutover-agent produces the reconciliation report. Do not proceed without this sign-off. 4. **Rollback plan validation** — Confirm the rollback plan is documented, tested, and timed. Confirm who has authority to invoke rollback and the criteria that trigger it. 5. **Gate 2 — Rollback tested** — Confirm rollback has been rehearsed in the sandbox. d365-data-migration-cutover-agent attests rollback is feasible within the cutover window. Do not proceed without this confirmation. 6. **SoD validation** — d365-security-sod-governance-agent reviews production security role assignments for separation-of-duties violations. Flag any violations for remediation before go-live. 7. **SbD go-live gate** — d365-success-by-design-governance-agent runs the SbD go-live readiness review against the full go-live checklist: solution scope, UAT sign-off, performance, integrations, data migration, change management, support readiness. Produce a go/conditional-go/no-go recommendation. 8. **Gate 3 — SbD go-live gate sign-off** — Project steering committee and Microsoft FastTrack (where applicable) must confirm the go-live gate. This protocol never issues the final go/no-go autonomously. 9. **Cutover execution readiness** — Confirm all people, environments, and communication plans are in place. Verify the cutover window is realistic given mock timing plus buffer. 10. **Post-cutover validation** — After go-live, confirm data accuracy in production, integration health, and user access. Invoke hypercare plan. ## Decision gates | Gate | Condition | Action | |---|---|---| | Reconciliation sign-off | Data variances exceed agreed thresholds | Stop cutover; require data owner resolution | | Rollback tested | Rollback not rehearsed or timing exceeds window | Stop cutover; require rollback rehearsal | | SoD violations | Production roles contain SoD conflicts | Escalate to d365-security-sod-governance-agent; remediate before go-live | | SbD go-live gate | Any SbD blocking issues unresolved | Stop cutover; require issue owner sign-off | | Mock cutover errors | Critical errors unresolved from mock | Stop cutover; require second mock | ## Refusal triggers - Stop if no successful mock cutover has been completed — do not recommend production go-live without at least one successful rehearsal. - Stop if reconciliation sign-off has not been obtained from the data owner. - Stop if the rollback plan is untested or the rollback window exceeds what the business can tolerate. - Stop if SbD blocking issues are unresolved — do not substitute judgement for the SbD gate process. - Stop if credentials, production org IDs, or customer data are requested as inputs to this protocol — refuse and escalate. ## Handoff rules - All handoffs carry: project_id, skill_id, skill_version, invoked_by, gate_status, open_issues, rollback_status, sbd_verdict, do_not_do_list. - Human go/no-go decisions are always documented with decision-maker name, date, and statement of accepted risk. - SbD gate sign-off from d365-success-by-design-governance-agent is the minimum required before any production cutover recommendation. ## KPIs - Mock cutover success rate (errors per rehearsal) - Data reconciliation pass rate (% within tolerance) - Rollback rehearsal completion (yes/no with timing) - SbD go-live gate outcome (go / conditional-go / no-go) - Actual vs. planned cutover window duration ## References - https://learn.microsoft.com/dynamics365/guidance/implementation-guide/prepare-to-go-live - https://learn.microsoft.com/dynamics365/guidance/implementation-guide/prepare-go-live-checklist - https://learn.microsoft.com/dynamics365/guidance/implementation-guide/prepare-go-live-cutover-strategy - https://learn.microsoft.com/dynamics365/guidance/fasttrack/go-live-workshops - https://learn.microsoft.com/dynamics365/guidance/implementation-guide/success-by-design
Comments (0)
Sign in to join the conversation.
Reviews (0)
No reviews yet.
No comments yet.