Fail Safe

Kind: principle

Layer: Correctness Core

Record: architecture:fail-safe

Severity: mandatory

Scope: runtime, operation, security

Canonical: Ontology

A design rule that a failing operation leaves the system in the state that causes the least harm.

Listed in Architecture principles, after Fail Fast and before Fail Secure.

Requires

Reinforces

Enables

Conflicts with

In tension with

Tensions

Violated by

Refactored by

Severity

Category

Linked from