penumbra
penumbra copied to clipboard
enumerate safety and liveness properties
Our circuit breakers can be categorized into different classes of failure modes, namely safety and liveness failures. While our codebase describes the safety properties, it lacks detailed descriptions of the liveness properties. I believe we should concretely outline all the safety and liveness failure modes, possibly in a detailed ADR, to better describe the resilience of our system. cc @erwanor