MU campus · 3 locations below baseline · no user reports yet
Monsters University WyeBot + Meraki
07:46 56m
FOLLOW-UPBACKUP
Two Microsoft 365 mailbox snapshots need confirmation
Protection completed after a transient API retry.
Monsters, Inc. Datto SaaS
07:21 81m
RESOLVEDNETWORK
AP channel contention remediated overnight
Room 325 utilization returned to expected range.
Monsters University Meraki
Automation timeline
The bridge has been working
LAST 12 HOURS
05:30
Captain brief
Prepared
06:00
Makee digest
Published
07:15
Backup check
Passed
08:04
Performance
Watching
08:30
Identity
Review
JR
PERSONAL OPERATOR SPACE
James’s workbench
A focused surface for the decisions, threads, and work only you should carry.
MONDAY · AUG 2408:42 PT
01
Your focus
Turn lockout signals into a safe, attended workflow.
Today
Your work queue
Cora’s note to you
Morning brief
C
Good morning, Captain. The operation is stable enough to make the account-lockout rail your first deliberate decision today.
3 decisions are waiting, none are urgent.
MU’s wired O365 degradation is real but contained; the evidence points to a firewall path.
Two customers share a repeat lockout host pattern; I recommend attended ticketing before automation.
Delivery runway
What is moving
AD lockout railDesign complete · pending Captain decisions
28%
Customer security postureClient inventory and read-only sources
62%
Portal refreshInformation architecture and front door
16%
Scratchpad
Captain’s notes
SAVED
JAMES'S ACTIVE BOOK
Tickets, in context.
Work is organized around the handoff, customer impact, and next decision—not just age or priority.
MY ACTIVE BOOK11 across 7 clients
NEEDS A REPLY4 oldest: 47 min
WAITING ON CUSTOMER3 with a clear next step
RESOLVED THIS WEEK18 median: 1h 42m
11 active ticketsLAST REFRESHED 08:42
Queue intelligence
Four tickets can move with one decision each.
They are not blocked by technical work; they are waiting for a customer, owner, or policy call.
1 needs a captain decision2 need customer replies1 is ready to close
CORA + MAKEE / ANALYST LAYER
Intelligence with receipts.
Every conclusion is traceable to live evidence. Every recommendation stays a recommendation until you decide.
76 tool surfaces onlineLAST ANALYST RUN 08:31 PTDATA WINDOW LAST 24 HOURS
PRIORITY ANALYSIS · 08:04
Wired Microsoft 365 degradation is real—but it is contained.
HIGH CONFIDENCE
Three Monsters University locations fell below their normal Microsoft 365 experience baseline. Wireless is clean, which narrows the path to wired egress rather than a campus-wide service issue.
01
What changed WyeBot pass rate dropped from 98.7% to 91.3% across Room 325, Admin, and Facilities.
02
Why it matters Staff on wired connections may experience slow Teams, OneDrive, and Outlook before they report an issue.
03
What I don’t know Whether the firewall policy change at 06:42 is causal; no matching error signature is present yet.
Evidence trail
How the conclusion was reached
ALL TIMES PACIFIC
WWYEBOT · 07:58Experience test degradationOBSERVED
Wired M365 pass rates dropped at three locations. Wireless comparison remained inside baseline.
This inquiry was opened from the Monsters University performance signal. Cora can use the attached evidence and selected read-only tools.
IN CONTEXTMU Monsters University⌁ Wired M365 degradation3 Evidence sources□ 1 library record
C
CORA · ANALYST
Grounded answer
ANSWERED FROM 3 SOURCES
JR
JAMES · 08:42
Why did wired Microsoft 365 performance decline at Monsters University, and what should I do next?
C
CORA · 08:43 · HIGH CONFIDENCE
The degradation is real and currently isolated to the wired egress path. WyeBot shows a sustained pass-rate decline at three locations; Meraki shows no corresponding switch or uplink fault. Wireless remains inside its normal range.
The best current explanation is a policy change at 06:42 that touches the affected outbound class. It is a temporal correlation, not proof of causation. I have not found an error signature that confirms the policy is responsible.
WHAT I RECOMMEND
Run a read-only comparison between the 06:42 policy diff and the affected egress path. That should reduce uncertainty without changing production state.
?
What I still don’t know
Whether a change rollback is necessary, and whether the issue is visible to users outside the three observed wired locations.
⌕
SAFE NEXT STEPS
Choose how to proceed
These are proposals. Nothing has been run or changed.
MANAGED CLIENT PORTFOLIO
See the whole customer picture.
Health, active work, and operational context in one place—so attention follows the customer, not the tool.
MANAGED CLIENTS21 in active scope
OPERATING NORMALLY18 no action needed
WATCHING2 evidence is collecting
NEEDS JUDGMENT1 captain decision
PORTFOLIO HEALTH97.8%
CLIENTOPERATIONAL POSTUREOPEN WORKLAST MATERIAL CHANGE
Portfolio intelligence
Three clients deserve your attention—not because they are unhealthy, but because the next move needs judgment.