We have been analyzing the NCR Retail Online (NRO) business and our NCR Industry Solutions Board, an internal team that helps set strategy, has decided to set the NRO product to End of Life on March 31, 2018 . The CPOnline Product was also recently announced with an end of life date of September 30th, 2017 . The End of Life terms indicate that all current customers will need to be transitioned off their respective product and the servers turned off by 9/30/17 (CPO) & 3/31/18 (NRO) . Your NCR Counterpoint business partner has been notified of this decision in advance and has started taking steps to help you transition your eCommerce solution.
Next Steps
As of today, we are encouraging all customers to reach out to your current NCR Counterpoint Partner to begin the transition to a new eCommerce platform. Your partner will be your best resource in planning and transitioning to a new eCommerce solution.
NCR has worked with several partners to create options for your new eCommerce solution. Please refer to the below chart for information about these options. Your partner can provide you with further documentation about these solutions to assist you with the decision process. You can also view a list of FAQ’s about moving from NRO to one of the below options by clicking here .
We will be discussing this transition directly with the users that attend our Synergy User Conference at the end of June. We will be offering a presentation on eCommerce and we will have representatives at the exhibit booth to handle your questions. In the meantime, please reach out to your partner to help determine your next steps.
We appreciate your business and look forward to taking this next, innovative step together.
Recommended eCommerce Solutions
| Solution | Cost | Platform | Additional Notes | |||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Commerce5 |
|
Magento | Most tightly integrated with Counterpoint and offers the most advanced features | |||||||||||||||||||||||||||
| CP Magento |
|
Magento | Integrated with Counterpoint and offers features similar to NRO | |||||||||||||||||||||||||||
| CP Shop |
|
Woo Commerce | Catalog, Inventory, and Orders are integrated with Counterpoint | |||||||||||||||||||||||||||
How to Migrate User Accounts and Passwords from NCR Retail OnlineNCR Retail Online was built to connect ecommerce selling with retail inventory, order processing, and business management tools. Since the product has been discontinued, merchants moving to Magento, WooCommerce, or another platform must protect customer identity data while preserving a usable shopping experience. How to migrate user accounts and passwords from NCR Retail Online depends on the export options available through the former system, the NCR Counterpoint partner supporting the store, and the capabilities of the destination platform. Customer profiles, addresses, order references, consent records, and password credentials should be treated as separate data sets rather than one simple export. The safest approach is to create a controlled account migration plan, test it with a small sample, and use a password reset process when existing credentials cannot be transferred securely. A successful move preserves useful customer information without exposing passwords or importing damaged records. Confirm Access And Define The Migration ScopeBegin by identifying who controls the NCR Retail Online data. The retailer may have access to administrative exports, while a Counterpoint partner or former implementation provider may hold database backups and technical documentation. Request a complete description of available files, fields, encoding, export dates, and any restrictions on customer data. Separate the migration into customer accounts, authentication credentials, addresses, marketing preferences, account status, and historical transactions. Order history should follow its own process; guidance on migrating order history can help distinguish transactional records from profile information. Decide which customers qualify for migration. Remove test accounts, duplicate profiles, internal users, abandoned records retained beyond the business’s policy, and accounts lacking a lawful business purpose. Retain a secure, read-only copy of the original export so that disputed records can be investigated without repeatedly altering the working data. Export And Protect Customer RecordsUse an encrypted export whenever the legacy system supports one. Store the source file in a restricted location, limit access to the migration team, and record who downloaded, transformed, and uploaded each file. Do not send customer exports through ordinary email or place them in an unrestricted shared folder. Common account fields include a unique customer ID, email address, name, telephone number, billing address, shipping address, account status, creation date, last activity date, and consent history. Preserve the original customer ID in a separate legacy-reference field. This makes it easier to match support requests, loyalty records, and imported orders after the new store opens. Review the live storefront before mapping catalog-related references. For example, a retailer may need to preserve links between customer preferences and departments such as the men’s collection, while product categories themselves are usually migrated separately from customer accounts. Avoid importing obsolete URLs or assuming that an old category structure belongs in the new account database. Treat Passwords As Sensitive CredentialsPasswords should never be exported as readable text. If NCR Retail Online provides only plaintext passwords, do not copy them into a spreadsheet, send them to staff, or upload them to a new platform. The correct response is to invalidate those credentials and require every customer to create a new password. A password hash may be transferable in some circumstances, but only when the destination platform supports the same hashing algorithm, salt format, cost factor, and credential structure. Even then, the receiving system should confirm that the import method is documented and secure. A hash is not a password, yet a stolen or weak hash can still create risk. If compatible password hashes are unavailable, import the account profile without an active login credential. Mark the account for a forced reset, send a carefully worded reactivation email, and provide a time-limited reset link generated by the new platform. Never include a temporary password in the email. Customers should choose their own credentials through the destination system’s secure reset page. Map Fields Before ImportingBuild a field map before loading any records. It should show the NCR field, its destination equivalent, the required transformation, validation rule, and treatment of missing values. Normalize email addresses carefully, but do not silently merge accounts merely because two records appear similar.
Create deterministic rules for duplicate emails, blank addresses, old phone formats, and multiple shipping addresses. A duplicate email may represent two legitimate household accounts, so automatic consolidation can destroy purchase history or consent evidence. Send ambiguous records to a review queue instead of forcing a match. Test custom fields as well. Loyalty numbers, tax exemptions, wholesale pricing groups, saved preferences, and customer service notes may have no direct destination equivalent. Decide whether each field should be transformed, stored as metadata, moved to a CRM, or excluded under the retailer’s retention policy. Test Authentication And Customer ExperienceRun a pilot import using a representative sample of accounts. Include active users, inactive users, duplicate-looking records, international addresses, accounts with multiple saved addresses, and profiles that must be reset. Test registration, login, password reset, email verification, account editing, checkout, and unsubscribe behavior. Compare source and destination counts after the pilot. Check that every imported account has the expected email, name, status, consent value, and legacy reference. Attempt login only with approved test credentials. For accounts using forced resets, confirm that reset links expire, cannot be reused, and do not reveal whether an email exists. Review customer-facing messages before sending them. Explain that the store has moved, state why a password reset is required, provide the official destination domain, and offer a support route for customers who no longer control their former email address. Avoid creating urgency that resembles phishing. The new site should also preserve useful service information; for stores offering optional services, details such as gift wrapping options should be easy to find after migration. Launch With A Controlled Account ProcessSchedule the final export close to the cutover, then pause account changes if the old system permits it. Record the export timestamp and identify new registrations or profile updates created after the initial test. A second incremental import may be safer than asking staff to recreate those changes manually. Keep the old platform or a protected data archive available for a defined support period, subject to legal and security requirements. Do not leave an obsolete login endpoint exposed indefinitely. Redirect customers to the new account area where practical, monitor failed logins and reset requests, and investigate unusual spikes that could indicate confusion or abuse. Use these operational safeguards during the move:
Monitor The New Store After CutoverAccount migration does not end when the import job reports success. Monitor activation rates, reset completion, duplicate-account creation, support tickets, failed payments, and requests to change personal information. Compare these signals with normal store activity to identify problems that a technical validation would miss. Pay close attention to consent and communication preferences. A customer who agreed to order updates may not have agreed to promotional email, and a preference captured years ago may require review under current law. Preserve the original consent source and date where permitted, but apply the destination platform’s current rules before sending campaigns. After the stabilization period, remove temporary credentials, scripts, staging data, and unnecessary exports. Document the final account count, password-reset percentage, unresolved exceptions, and archive location. This record gives the retailer a defensible audit trail and makes future platform changes less disruptive. Move forward with a staged migration rather than a rushed bulk upload. Export the available account data, verify its provenance, map fields deliberately, and choose secure password resets whenever a compatible credential transfer cannot be demonstrated. Working with an experienced NCR Counterpoint partner or destination-platform specialist can help complete the transition while keeping customer access, privacy, and store operations under control. |
||||||||||||||||||||||||||||||
After you have completed your move to a new eCommerce platform, don’t forget to submit the Store Closure Request form to close your NRO site and cancel your billing subscription.