When a Spreadsheet Stops Being Enough
Five honest signals a process has outgrown spreadsheets and email — and why a spreadsheet is often still the right answer.
The case for the spreadsheet, stated fairly
A spreadsheet is not a symptom of anything. Most businesses in Malaysia run large parts of their operations on Excel or Google Sheets, and for a wide range of jobs that is genuinely the right tool: a one-off budget, a small supplier list, a personal task tracker, a first pass at anything before anyone knows what the real requirements are. It's free or near-free, everyone already knows how to use it, and it can be reshaped in minutes without asking anyone's permission. None of that stops being true just because a business grows.
The useful question isn't "should we replace our spreadsheets" — that's usually the wrong question, and it's the one a software vendor wants you to ask. The narrower, more honest question is whether this particular spreadsheet, doing this particular job, has quietly become something it was never built to do. There are a handful of signals that answer that without guessing, and none of them are really about spreadsheets being old-fashioned. They're about what a shared file full of formulas can and can't structurally support.
Five signals worth taking seriously
Concurrent editing conflicts
When two people have the same Excel file open from a shared network drive, whoever saves last wins — the other person's changes are gone, silently, usually with nothing more than a generic "file changed" prompt to mark that anything happened at all. Google Sheets and Excel's newer co-authoring mode avoid that specific failure by locking at the cell or keystroke level instead of the whole file, so two people can type into the same sheet at once. But that moves the conflict rather than removing it: two people editing the same cell, or one person deleting a row that another person's formula depends on, still produces a result nobody intended, and nothing flags that it happened. If your team's actual workaround is a WhatsApp message asking "is anyone in the sheet right now" before anyone dares touch it, that's the tell.
No audit trail
A spreadsheet doesn't, by default, know who changed which cell and when in any way a person can easily interrogate later. Version history in Google Sheets or Excel Online records that something changed and can roll back to an earlier state, but reconstructing why a number changed, who approved it, and what it said immediately beforehand — the kind of trail a dispute or a simple "that doesn't look right, what happened here" question needs — isn't something a spreadsheet is built to preserve. Formula edits are often the least visible change of all: a cell that used to read =SUM(B2:B40) and now reads =SUM(B2:B39) silently drops a row from every report built on it, and nothing about the sheet points a finger at when or why.
Copy-paste error rate
Anyone who has moved data between tabs or systems by hand knows the mechanism: it isn't that people are careless, it's that copy-and-paste has no concept of what it's copying. Paste a formula meant for column B into column C and every relative reference in it shifts. Paste values over formulas and the formulas are gone without warning. Sort a range without including every column that belongs with it, and every row's data is now attached to the wrong record. None of this requires a lapse in judgement — it's a structural property of doing organised work inside an unstructured grid, and the error rate scales with how many hands touch the sheet and how often.
Access control that can't actually be enforced
A spreadsheet can be password-protected or shared as view-only, but "view-only" usually applies to the whole file, not a slice of it. Letting a supervisor see costs while general staff see only quantities typically means keeping two versions of the same sheet, or trusting people not to open tabs they weren't meant to see. There's no equivalent, inside a spreadsheet, of "this person can approve a transaction over a certain value, this person can't" — that has to be built and enforced by a system. A spreadsheet can only ask nicely.
Reporting that takes a person a day
This is usually the signal that gets noticed first, because it has a cost that's easy to see: someone spends a full working day, every week or every month, pulling numbers out of several sheets, reconciling them by hand, and formatting the result into something a manager can read. That isn't really a spreadsheet problem — it's a sign that the same manual reconciliation is happening on a fixed schedule, which is exactly the kind of repeated, rules-based work that software is suited to and a person, redoing it every cycle, is not.
When a spreadsheet is still the right answer
None of the five signals above is, on its own, proof that a business has outgrown spreadsheets. A file with one owner, updated by one person, used for planning rather than as a system of record, isn't exposed to concurrent-edit risk, because there's no concurrency to conflict. A short supplier list with a handful of rows doesn't need role-based access, because there's no genuinely sensitive column to hide from anyone. A report that takes twenty minutes once a quarter isn't the same problem as one that takes a day every week.
The real test isn't the size of the spreadsheet or how many tabs it has. It's whether more than one person needs to change the same data independently, whether the data drives a decision with real consequences attached — money, a compliance obligation, a customer commitment — and whether the manual work around it has become a permanent, recurring cost rather than an occasional one. A five-tab spreadsheet one person uses to plan a project timeline may never need to grow up. A three-tab spreadsheet six people use to track live orders, with money moving against it, usually already has.
It's also worth being honest that the step up from a spreadsheet isn't always a custom build. Built-in features can resolve one or two of the five signals without anyone commissioning software: Excel's Power Query for repeatable, auditable data cleaning; Google Sheets' protected ranges for partial (if imperfect) access control; a lightweight hosted database for the cases where the real problem is structure rather than logic. The point of separating the five signals rather than treating "we've outgrown our spreadsheet" as one problem is that they call for different fixes at different sizes. Treating all five the same way, and reaching for the same size of project regardless, is how a small process gap turns into an oversized solution — or how a genuinely serious gap gets patched with a workaround that was never going to hold.
Where this actually gets decided
If it's genuinely unclear which side of that line a particular process sits on, that's a diagnostic question before it's a build question. JagaWeb's Essential System Review (RM1,500, reduced to RM999 until 16 September 2026, excluding SST) is a fixed-scope look at one system or process — up to 25 pages or an equivalent workflow — that ends in a decision-ready report rather than a recommendation to build something before anyone has checked whether building is the right call at all. Where a review does confirm that custom software is justified, that work sits under a Fixed-Scope Project, from RM30,000.
Ready to verify who owns your website?
Replace uncertainty with a decision-ready ownership and access report. The fixed Ownership & Access Review is RM1,500 before SST and includes a 30-day action plan.