Service Itsm Agentic Setup Cmdb Coordinate

by forcedotcome5164d94d751No license1K starsListed Oct 8, 2026Updated Oct 8, 2026Repository updated yesterday

Orchestrator skill for enabling CMDB (Configuration Management Database) end-to-end in Service Cloud ITSM against a production or sandbox org. Use when the user asks to set up CMDB, enable Configuration Management Database, configure the ITSM CMDB, onboard CMDB from scratch, wants a guided walkthrough of CMDB enablement, or asks what CMDB setup steps are available. Triggers on: set up CMDB, enable CMDB, configure CMDB, CMDB onboarding, Configuration Management Database setup, ITSM CMDB walkthrough. DO NOT TRIGGER when: the user asks about a specific CMDB sub-step directly (e.g. only installing a bundle, only assigning permission sets), CMDB record CRUD (creating CIs, relationships), Discovery/Service Graph Connector configuration, or general ITSM queries without CMDB setup intent.

AI-generated overview

Orchestrates end-to-end CMDB setup in Service Cloud ITSM by sequencing child skills through ordered enablement layers.

What it does
This skill acts as a top-level coordinator for enabling the Configuration Management Database in Service Cloud ITSM. It presents an ordered menu of setup layers, delegates each layer to a specialized child skill, verifies success before advancing, and tracks progress until CMDB is usable. It produces a guided walkthrough with status tables and a final completion summary.
When to use it
Use when a user asks to set up, enable, configure, or onboard CMDB in Service Cloud ITSM, or wants a guided walkthrough of CMDB enablement steps. Not intended for individual sub-steps, CMDB record operations, or Discovery connector configuration.
Requirements
Runs against a Salesforce org through the Salesforce-hosted Headless-360 MCP server; requires a target org and the CMDB org permission. Instructions only, with no scripts; ships an output-templates reference file.

CMDB Setup Orchestrator (Service Cloud ITSM)

Guide the user through enabling the Configuration Management Database (CMDB) in Service Cloud ITSM by presenting the ordered setup layers, delegating each to a specialized child skill, and tracking progress until CMDB is usable end-to-end. Each child skill runs through the Salesforce-hosted Headless-360 MCP server, so the same flow works against production and sandbox — the org is bound to the current MCP session, with no per-user MCP install.

Goal

Act as the top-level coordinator for CMDB enablement. Present the user with the ordered layers, invoke the appropriate child skill for each, verify the layer succeeded before moving on, and after each layer completes return to the menu with updated progress until CMDB is ready or the user stops.

The CMDB prerequisite stack (why order matters)

CMDB is gated by a 4-layer stack. Every CMDB Connect API checks orgHasCMDBEnabled, which is orgHasCMDBPermission && OrgPreferences.CMDBEnabled. Failing the gate returns 403 FUNCTIONALITY_NOT_ENABLED. The layers must be satisfied in order:

text
Layer 0  Org SKU / license      Org perm ITSrvcsCnfgMgmnt must already be granted (edition/                                license/template). NOT settable by any API — verify only.Layer 1  Tenant provisioning    CMDB tenant must reach status PROVISIONED (async).Layer 2  Feature enable         Enable feature service-cloud-itsm-cmdb-integration. This is                                what internally sets CMDBEnabled and lifts the 403 gate.Layer 3  User access            Assign the PSL + CMDB permission sets to the user(s).Layer 4  Content bundles        Install the CMDB Foundation (base) content bundle.Layer 5  Asset Discovery        Enable feature service-cloud-itsm-discovery-integration and grant                                Discovery page access (IT Service Discovery Manager permission set).                                Recommended last, but a direct enable CASCADE-ENABLES the base CMDB                                feature — it needs only Layer 0 (license) + Layer 1 (provisioned                                tenant), NOT Layers 2–4 done first. Never claim a direct enable                                "will fail"; only a genuine blocker (e.g. tenant not provisioned) stops it.

Layer 0 is a hard prerequisite: if the org was not born with the CMDB SKU, no API can grant it and setup cannot proceed. The orchestrator surfaces this clearly and stops.

Behavior

1. Extract context from conversation

Before presenting options, scan chat history for:

  • The target org (alias/username) — required by every child skill
  • Which layers are already done (skip or mark as done)
  • Any constraints the user mentioned (e.g. "just enable it, we'll assign users later")

Derive layer status from the most recent layer activity in the transcript. On a long or resumed conversation (e.g. a headless session continued later), do not treat an earlier-highlighted layer as still current — re-derive which layer is active from the latest child-skill result, and if it is ambiguous, re-confirm with the user before re-presenting the menu.

2. Confirm the target org

CMDB enablement performs writes against a real org (tenant provisioning, feature enable, permission-set assignment, bundle install). Before doing anything, confirm the target org with the user and state plainly that this org will be modified. Never assume production is safe to change — ask for explicit confirmation of the org.

3. Present the CMDB setup menu

Show the ordered layers and their status:

text
CMDB Setup (via service-itsm-agentic-setup-cmdb-coordinate)
Target org: <org>   (all steps below run against this org)
CMDB is set up in ordered layers, each building on the earlier ones (Asset Discovery is theexception — see its note below):
#LayerWhat it doesStatus
0License checkConfirm this org is licensed for CMDB (set by edition/license — can't be turned on)Pending
1–2Provision & enable CMDBSet up the CMDB tenant, then turn on the CMDB feature so it's available to usePending
3Assign user accessGrant CMDB access to the chosen usersPending
4Install content bundleInstall the CMDB Foundation (base) contentPending
5Enable Asset DiscoveryTurn on asset discovery and grant Discovery page access (recommended last; enabling it directly turns the base CMDB feature on too — needs only the license and a provisioned tenant, not the other layers first)Pending
text
I recommend running these in order. Where would you like to start (or shall I run 1 → 5)?

Render one row per layer with a single-line cell — do not split a layer across stacked rows or wrap a cell onto a second line. Present the combined provision-and-enable step as the single row 1–2. Only show layers that have a corresponding, working child skill. Do NOT show placeholder layers.

4. Delegate to child skills

LayerChild skill
0 (org SKU check) + 1 (tenant provisioning) + 2 (feature enable)service-itsm-agentic-setup-cmdb-configure
3 (user access)service-itsm-agentic-setup-cmdb-access-assign
4 (content bundle)service-itsm-agentic-setup-cmdb-bundle-deploy
5 (asset discovery)service-itsm-agentic-setup-cmdb-discovery-configure

service-itsm-agentic-setup-cmdb-configure owns the Layer 0 gate. If it reports the org is not licensed for CMDB (the ITSrvcsCnfgMgmnt org permission — an internal detail; do not surface the developer name to the user), STOP the whole flow — later layers cannot succeed. Relay its plain-language message and do not attempt Layers 3 or 4.

5. After each layer completes

  1. Verify the child skill reported success (feature ENABLED, tenant PROVISIONED, assignment confirmed, bundle install initiated). If it failed, stop and surface the failure — do not advance.
  2. Update status — mark the completed layer as "Done".
  3. Suggest the next step in dependency order.
  4. Re-present the menu with updated status.

6. Completion summary

When all available layers are done (or the user stops), present a final summary:

text
CMDB Setup — Complete (via service-itsm-agentic-setup-cmdb-coordinate)
Target org: <org>
#LayerStatus
0License checkDone
1–2Provision & enable CMDBDone
3User accessDone
4Content bundle (base)Done
5Asset Discovery + accessDone
text
CMDB is enabled and ready. Users with the assigned permission sets can now work withConfiguration Items. Next, you can model CIs, identification rules, and relationships.

Feature dependencies & recommended order

text
0. Org SKU check          (prerequisite — hard stop if missing; no API can grant it)1. Tenant provisioning    (async infra; must reach PROVISIONED)2. CMDB feature enable     (sets CMDBEnabled; lifts the 403 gate — bundles/CI APIs stay 403 until this)3. User access             (PSL + permission sets; without these users can't see CMDB)4. Content bundle          (CMDB Foundation base; requires Layer 2 — bundle APIs 403 until enabled)5. Asset Discovery         (enable service-cloud-itsm-discovery-integration and grant Discovery page                           access via the IT Service Discovery Manager permission set; recommended                           last, but a direct enable CASCADE-ENABLES the base CMDB feature — needs                           only Layer 0 license + Layer 1 provisioned tenant, not Layers 2–4; never                           tell the user a direct enable "will fail")

Layers 1 and 2 are handled together by service-itsm-agentic-setup-cmdb-configure because Layer 2 cannot succeed until Layer 1 reaches PROVISIONED. Present them as one step.


Rules

  • ALWAYS show "(via service-itsm-agentic-setup-cmdb-coordinate)" in the header so the user knows this skill is active
  • ALWAYS confirm the target org before any layer runs, and state that the org will be modified
  • ALWAYS present the menu before acting — do not assume which layer the user wants
  • NEVER run a layer without the user selecting it (or confirming "run all")
  • NEVER advance past a failed layer — stop, explain in plain language, and offer next steps
  • If Layer 0 fails (org lacks ITSrvcsCnfgMgmnt), STOP entirely and explain that this is a license/edition prerequisite that no API can grant
  • If a child skill reports a prerequisite gap or a failure, relay it to the user in friendly, actionable terms — do not bury the error
  • When the user asks to run Layer 5 (Asset Discovery) directly, do NOT warn that it "will fail" or "error out" without the earlier layers, and do NOT push "run the full flow" as a precondition. Enabling Discovery cascade-enables the base CMDB feature; it needs only Layer 0 (license) and a Layer 1 provisioned tenant. Delegate straight to service-itsm-agentic-setup-cmdb-discovery-configure, which reads the feature status first and stops only on a genuine blocker (e.g. tenant not provisioned)
  • Track progress across the conversation — do not re-present completed layers as "Pending". Re-derive the current layer from the latest child-skill activity, not from a previously rendered highlight; on a resumed or long conversation, do not assume the last-highlighted layer is still current — if ambiguous, re-confirm with the user
  • Do NOT expose internal technical jargon in user-facing output. This includes Salesforce record IDs and org IDs, raw HTTP status codes (403, 500, …), API error codes (FUNCTIONALITY_NOT_ENABLED, DUPLICATE_VALUE, …), internal endpoint/API names (bundleListView, tenantProvisioningStatus, …), developer names (ITSrvcsCnfgMgmnt, ItSrvcCnfgItmReadPsl, …), and MCP/tooling internals (dispatch, headless-360). Translate everything to plain, human-readable language — e.g. say "this org isn't licensed for CMDB" rather than "ITSrvcsCnfgMgmnt is false / 403". Child-skill names shown as next-step pointers are fine. Keep all such technical detail in your own reasoning, not on screen.

Adding new layers

When new CMDB child skills are created (e.g. optional add-on bundles, Discovery, identification rules), add them to: (1) the menu table in Step 3, (2) the delegation table in Step 4, and (3) the dependency order above, preserving the ordered-layer model.

Source and attribution

Source:forcedotcom/sf-skillsinskills/service-itsm-agentic-setup-cmdb-coordinateat commite5164d9

License: No license

Content belongs to its original authors. SourceWeft indexes it from a public repository.

Report or request removal

More from forcedotcom/sf-skills

Service Itsm Teams Itservice Configure

forcedotcom

Configure the "Set Up Salesforce IT Service" checklist for Microsoft Teams Employee Service (ITSM) — the employee side, covering app enablement, marketplace install guidance, user access assignment, and Digital Experience Site selection. Use this for: 'turn on Salesforce IT Service', 'set up IT Service on Teams', 'assign Teams for Employee permission set', 'give employees access to Teams for Employee Service', 'manage user access for Teams ITSM', 'grant users the permission sets needed for Teams Employee Service', 'select a digital experience site for Teams', 'install Salesforce IT Service app on Teams', or any request to complete the IT Service half of the Teams ITSM Go page checklist (including the Manage User Access step). DO NOT TRIGGER for the base Teams Salesforce Go page toggle or Azure/Entra app setup (service-itsm-teams-configure) or for the IT Desk/fulfiller half of the checklist (service-itsm-teams-itdesk-configure).

Awaiting classification1Kupdated yesterday

Service Itsm Teams Coordinate

forcedotcom

End-to-end autopilot orchestrator for setting up Microsoft Teams integration in Salesforce Service Cloud ITSM — runs the whole flow (enable the Teams for Employee Service Go feature, register the Microsoft Entra app, populate Named Credentials, configure the IT Desk and IT Service checklists, turn on Swarming, and optionally embed the Agentforce agent) in one continuous pass, stopping only at the points a human must act. Use when the user asks to set up Microsoft Teams for ITSM end to end, 'set up teams for it service', 'do the whole teams itsm setup', 'configure microsoft teams for employee service', or wants a guided Teams ITSM walkthrough. Delegates each stage to a specialized child skill while driving the sequence itself. DO NOT TRIGGER when the user asks to enable Teams alone, configure just the IT Desk or IT Service checklist alone, or enable Swarming alone — delegate directly to the specific child skill in those cases.

Awaiting classification1Kupdated yesterday

Service Itsm Teams Itdesk Configure

forcedotcom

Configure the "Set Up Salesforce IT Desk" checklist for Microsoft Teams Employee Service (ITSM) — the fulfiller/agent side, covering app enablement, marketplace install guidance, user access assignment, and Swarming collaboration-tool setup. Use this for: 'turn on Salesforce IT Desk', 'set up IT Desk on Teams', 'assign Teams for IT Desk permission set', 'set Teams as collaboration tool for swarming', 'install Salesforce IT Desk app on Teams', or any request to complete the IT Desk half of the Teams ITSM Go page checklist. DO NOT TRIGGER for the base Teams Salesforce Go page toggle or Azure/Entra app setup (service-itsm-teams-configure) or for the IT Service/employee half of the checklist (service-itsm-teams-itservice-configure).

Awaiting classification1Kupdated yesterday

Service Itsm Teams Debug

forcedotcom

Diagnoses failing Microsoft Teams for Employee Service (ITSM) setups by running pass/fail configuration checklists against a Salesforce org.

DevOps & Cloud1Kupdated yesterday

Service Itsm Teams Employee Agent Configure

forcedotcom

Configure the embedded Agentforce Employee Agent so it replies inside the Microsoft Teams ITSM custom client ('Salesforce Employee Assist' / 'Ask AI Agent'). Use this for: 'set up employee agent in Teams', 'embed Agentforce agent in Teams', 'make the IT Service Employee Agent reply in Teams', 'Teams Ask AI Agent not responding', 'agent joins then leaves without replying', 'configure MIAW deployment for Teams employee agent', 'Teams embedded messaging agent setup'. Builds the whole stack headlessly (zero Setup-UI clicks): the Web messaging channel with User Verification ON, the Enhanced Chat User Verification Key Set (JWKS_URL) it requires, the Teams_AgentForce custom-client deployment, the routing flow to the agent, and the Agent Access permission set that lets the portal user reach the agent. DO NOT TRIGGER for enabling the Teams feature Salesforce Go page toggle (service-itsm-teams-configure) or for configuring notification preferences.

Awaiting classification1Kupdated yesterday

Service Itsm Swarming Configure

forcedotcom

Enables the Salesforce Swarming ITSM feature and sets the collaboration tool to Teams via Connect API calls.

DevOps & Cloud1Kupdated yesterday