Platform requirements
SophMate expects a modern WordPress installation, a supported PHP version, OpenSSL, and outbound HTTPS connectivity for provider requests and update checks. Managed hosting, firewall rules, DNS restrictions, or missing PHP extensions can affect provider tests and design-reference fetches. Use diagnostics and support to capture the exact environment state.
WordPress permissions
The initial setup should be performed by a trusted administrator. Do not grant broad SophMate access to editors, contractors, support agents, or marketing users until roles and permissions have been reviewed. High-risk modules such as approvals, tools, workflow execution, and provider settings should stay restricted.
Production readiness
For live stores, confirm backups, staging access, mail handling, queue behavior, cache behavior, and WooCommerce compatibility before using write-capable workflows. The production readiness tutorial gives the operational checklist for launch review.
Quick reference
- Use this page when setting up SophMate, validating the first run, training operators, or deciding whether the site is ready for broader access.
- Do not use this page as approval for production writes, customer-facing sends, or workflow execution without the related approval and rollback checks.
Scope limits
- This page does not approve production writes, customer-facing sends, or workflow execution by itself.
- Use it to prepare rollout evidence, then hand high-risk changes to the relevant approval, governance, or support workflow.
Owner and cadence
- Primary owner: site administrator or agency implementation lead.
- Review cadence: during initial setup, after hosting changes, and before adding new SophMate users.
- Escalate when setup cannot be repeated, diagnostics are unclear, or the team cannot identify rollback and support owners.
Access and data boundary
- Limit setup, installation, provider testing, diagnostics, and first rollout decisions to administrators or implementation leads until the first-run checklist is complete.
- Use staging, demo records, redacted screenshots, and aggregate notes where possible; avoid exposing real customer data during onboarding and training.
Production checklist
- Confirm WordPress, PHP, OpenSSL, outbound HTTPS, REST behavior, cron, cache, and WooCommerce status before production use.
- Review host-level restrictions if provider tests, diagnostics, or design-reference fetches fail.
- Record the setup owner, production site URL, staging site URL, SophMate version, WordPress version, PHP version, and active theme before rollout.
- Confirm the team can reach diagnostics and support and knows where to pause high-risk activity.
Acceptance checks
- The environment can support provider calls and admin workflows without avoidable host-level failures.
- Minimum requirements are documented for future update and support decisions.
- A trusted administrator can repeat the setup path without relying on private notes or one person's memory.
- The team has a documented rollback or support path before any write-capable workflow is enabled.
Failure modes to test
- Test missing requirements, failed provider connection, blocked role, incomplete diagnostics, unclear staging separation, and missing support owner.
- Confirm the rollout stops before non-administrator users receive access when setup evidence is incomplete.
Evidence to capture
- Record SophMate version, WordPress version, WooCommerce state, PHP version, hosting owner, and first setup owner.
- Capture diagnostics status, provider test result, first-run checklist result, and any onboarding blockers before inviting more users.
Decision record
- Decision field to include: whether the site is ready for broader SophMate access or should remain administrator-only.
- Record the setup decision, implementation owner, site URL, staging URL, requirement status, provider-test status, and the next user group allowed into SophMate.
- Include the blocker that would stop rollout, the support route, and the date this setup evidence should be reviewed again.
Stop or rollback path
Stop rollout when requirements, staging separation, diagnostics, provider tests, role ownership, or operator training are incomplete. Resume only after the owner records the missing evidence and reruns the relevant first-run checks.
Monitoring window
- Monitor the first week of user access for provider failures, permission confusion, budget blocks, and unresolved diagnostics.
- Review setup notes after the first real task, first approval, and first support question.
Expansion criteria
- Expand access only after diagnostics, provider tests, budgets, roles, support route, and first-run evidence are complete.
- A second administrator or operator can repeat the setup path from the notes.
Common mistakes
- Inviting the wider team before provider, diagnostics, permissions, and rollback ownership have been verified.
- Treating a successful admin page load as proof that hosting, outbound HTTPS, backups, and support routing are ready.
Common questions
What is the main decision this page supports?
The page helps the team decide whether ownership, evidence, access, failure handling, monitoring, and rollback are clear enough for production use.
Who should own this decision?
The setup owner or agency implementation lead should own the first pass, with the site administrator approving broader access.
What should stop the rollout?
Stop when requirements, provider tests, diagnostics, staging separation, permissions, or support ownership are incomplete.
Related operations
- Review Environment and Hosting Checklist.
- Use First-Run Checklist before inviting non-administrator users.
- Use Copilot Prompting and Context before team members rely on chat output.
- Use Staging Test Data and Demo Hygiene before testing with production-like records.
- Use Operator Training and SOP Rollout before broad team adoption.