The most expensive DNS mistake is changing a record that still has yesterday's 24-hour TTL. Lower first, wait, change, watch, then raise.
Inventory the records that must move
Apex, www, API, asset and CDN hostnames. Leave MX and verification TXT alone unless they are actually moving.
Lower, then wait a full old TTL
If the record was 86400, wait at least a day after you publish the low TTL before you change the target. Otherwise both answers are in the wild.
Cut over on a still-low TTL
Point at Cloud CDN or the new origin. Rollback is the same record with the same low TTL. Do not raise TTL in the same change.
Raise when it is boring
Static records can go back up. Failover targets may stay low forever. Cloud DNS can absorb that query volume on Anycast.
