We have been analyzing the NCR Retail Online (NRO) business and our NCR Industry Solutions Board, an internal team that helps set strategy, has decided to set the NRO product to End of Life on March 31, 2018 . The CPOnline Product was also recently announced with an end of life date of September 30th, 2017 . The End of Life terms indicate that all current customers will need to be transitioned off their respective product and the servers turned off by 9/30/17 (CPO) & 3/31/18 (NRO) . Your NCR Counterpoint business partner has been notified of this decision in advance and has started taking steps to help you transition your eCommerce solution.

Next Steps

As of today, we are encouraging all customers to reach out to your current NCR Counterpoint Partner to begin the transition to a new eCommerce platform. Your partner will be your best resource in planning and transitioning to a new eCommerce solution.

NCR has worked with several partners to create options for your new eCommerce solution. Please refer to the below chart for information about these options. Your partner can provide you with further documentation about these solutions to assist you with the decision process. You can also view a list of FAQ’s about moving from NRO to one of the below options by clicking here .

We will be discussing this transition directly with the users that attend our Synergy User Conference at the end of June. We will be offering a presentation on eCommerce and we will have representatives at the exhibit booth to handle your questions. In the meantime, please reach out to your partner to help determine your next steps.

We appreciate your business and look forward to taking this next, innovative step together.

Recommended eCommerce Solutions

Solution Cost Platform Additional Notes
Commerce5
  • Upfront: Starts at $2500**
  • Monthly: Starts at $495.00 plus hosting
Magento Most tightly integrated with Counterpoint and offers the most advanced features
CP Magento
  • Upfront: Starts at $2,500**
  • Monthly: Starts at $200.00 including hosting
Magento Integrated with Counterpoint and offers features similar to NRO
CP Shop
  • Upfront: Starts at $999**
  • Monthly: Starts at $125.00 plus hosting
Woo Commerce Catalog, Inventory, and Orders are integrated with Counterpoint

Replicating NCR Retail Online’s Role-Based Access in Magento

NCR Retail Online helped retailers connect ecommerce activity with Counterpoint inventory, customer records and business operations. Its role-based access model was part of that wider operating framework, allowing staff to use the information and tools relevant to their responsibilities without exposing every administrative function. Learn more about Bed Bath.html.

With NCR Retail Online discontinued, Australian retailers moving to Magento need to rebuild that access structure rather than simply copy usernames and passwords. Magento, now commonly delivered as Adobe Commerce or Magento Open Source, provides the foundations for permissions, user roles, websites, stores and administrative restrictions, but the setup must reflect the retailer’s actual workflow.

A careful migration protects stock data, customer privacy and order processing while preserving the convenience of online retail. This matters for businesses serving Sydney and Melbourne customers, managing click-and-collect in Brisbane, or shipping products across long distances to regional Queensland and Western Australia.

Why Access Needs Rebuilding

In a connected retail environment, employees rarely need the same level of visibility. A sales assistant may need to view orders and update fulfilment status, while a merchandising manager changes product descriptions, pricing and promotions. A finance user may require invoices and refunds but should not be able to edit catalogue content or customer passwords.

NCR Retail Online users may have relied on permissions inherited from Counterpoint roles, store assignments or operational groups. Magento does not automatically understand those previous relationships. The migration team must translate business responsibilities into Magento administrator roles, resource permissions and website or store views.

This is also a security exercise. Excessive permissions can lead to accidental price changes, unauthorised refunds or exposure of customer information. The Australian Privacy Act and its Australian Privacy Principles make sensible access controls particularly important when staff handle names, addresses, phone numbers and purchase histories.

Map Counterpoint Responsibilities To Magento Roles

Start with a role matrix that records each job function, the systems used and the actions permitted. Useful categories may include ecommerce administrator, catalogue editor, order fulfilment operator, customer service agent, warehouse coordinator, finance officer and integration manager. Record whether each person needs view, create, edit, delete, export or approval rights.

Magento permits administrators to receive role-based resource access through the Admin panel. A catalogue editor can be limited to products, categories and content, while a fulfilment role can focus on sales orders, shipments and returns. A finance role may access invoices and credit memos without receiving permission to edit product attributes.

Store boundaries require additional thought. A retailer with separate Sydney, Melbourne and Adelaide operations might use websites or store views for different catalogues, currencies or customer experiences, although Australian GST generally keeps pricing in Australian dollars. If all branches share one catalogue, access can instead be divided through operational procedures and integration rules rather than creating unnecessary Magento storefronts.

Build A Least-Privilege Magento Model

Least privilege means granting the minimum access required to perform a task, then adding exceptions only when there is a documented reason. Magento’s default administrator account should not become the everyday login for a whole team. Each employee needs an individual account, with a named owner responsible for reviewing it.

A practical structure could include a product role for catalogue maintenance, an order role for fulfilment, a customer care role for service enquiries and a reporting role for sales analysis. A senior operations role may combine several permissions, but it should still exclude sensitive configuration, extension management and user administration unless those functions are genuinely required.

For retailers selling varied ranges, catalogue access should match commercial duties. A sporting goods team might manage apparel and footwear while a homewares team maintains sportswear products or bedding-related categories. Separate responsibilities reduce the risk of an employee changing products outside their remit and make audit trails easier to interpret.

Protect Customer, Payment And Stock Data

Customer service teams often need to search orders, update delivery details or record a support note. They should not automatically have access to payment tokens, full administrative configuration or bulk customer exports. In Magento, permissions should be paired with payment-provider controls so that card data remains outside the ecommerce database wherever possible.

Inventory permissions require similar care. A warehouse worker may need to view available quantities and process shipments, but manual stock adjustments should be restricted to authorised inventory staff. Magento’s source and stock management capabilities can support multiple locations, although the final design must match the inventory system and integration method used by the retailer.

Australian businesses should also account for the Notifiable Data Breaches scheme. Strong passwords, multi-factor authentication where available, secure administrator connections and prompt removal of departing staff reduce the likelihood and impact of an incident. Access logs should be retained long enough to investigate suspicious changes, especially refunds, bulk exports and stock overrides.

Test Permissions Before Going Live

Permission testing should use realistic user accounts rather than an all-powerful administrator account. Create test personas for a store assistant, warehouse operator, customer service agent, marketing editor and finance manager. Log in as each persona and check both what the user can do and what the user cannot see.

A staging environment is valuable because role settings, extensions and Counterpoint synchronisation can interact in unexpected ways. Before moving production data, test order imports, stock updates, refunds, customer edits and catalogue changes with representative records. Guidance on staging integration tests is especially relevant when Magento must coexist with a retail management system during transition.

Include Australian trading conditions in the test plan. Check click-and-collect workflows for metropolitan stores, delivery rules for remote postcodes, GST display and Australian Consumer Law processes for returns and refunds. Test high-volume periods such as Boxing Day promotions or end-of-financial-year sales, when temporary staff may require limited access without receiving permanent privileges.

Recommendations For A Controlled Rollout

A staged launch makes it easier to identify permission gaps without disrupting daily retail operations. Begin with a small internal group, compare Magento results with Counterpoint records, and keep a documented fallback process for orders or stock changes that fail synchronisation.

Use the following controls as a practical baseline:

  • Create individual Magento administrator accounts with role-specific permissions.
  • Require multi-factor authentication and strong password policies for privileged users.
  • Separate catalogue, fulfilment, customer service, finance and integration responsibilities.
  • Review role assignments quarterly and immediately after staff changes.
  • Test exports, refunds, stock adjustments and customer-data access in staging before release.

Keep a change register that records who approved each role, which resources it covers and when it was last reviewed. This creates an evidence trail for internal governance and helps a Magento partner diagnose problems without granting broad emergency access.

The migration should also distinguish between ecommerce permissions and external systems. A Magento user may be allowed to manage an order, while the Counterpoint integration account separately controls synchronisation. These service credentials should be stored securely, restricted to required endpoints and never shared with ordinary administrators.

A role-based Magento build works best when it mirrors how the business actually operates rather than how the old platform happened to display its menus. Start by documenting responsibilities, then map those responsibilities to Magento resources, store boundaries and integration controls. This approach preserves operational familiarity while removing inherited access that no longer has a clear purpose.

For an Australian retailer, the practical measure of success is simple: the right employee can complete the right task quickly, customer and payment information remains protected, and every sensitive change can be traced to an accountable user. That is the working standard to carry from NCR Retail Online into Magento.

After you have completed your move to a new eCommerce platform, don’t forget to submit the Store Closure Request form to close your NRO site and cancel your billing subscription.