{
  "schemaVersion": 1,
  "fictional": true,
  "asOf": "2027-06-21",
  "scenario": "Technical RFC with delivery guarantees, payload, failure handling, tests and rollout",
  "generation": "Deterministic authored fixtures; no client or external personal data",
  "delivery": {
    "firstAttempt": 960,
    "retriedSuccess": 35,
    "held": 5,
    "total": 1000
  },
  "document": [
    {
      "title": "Order status webhook delivery",
      "blocks": [
        {
          "type": "p",
          "text": "Owner: Alex Rivera    Reviewers: API + Reliability    Updated: 18 June 2027"
        },
        {
          "type": "metrics",
          "values": [
            [
              "6",
              "attempt maximum"
            ],
            [
              "10 sec",
              "request timeout"
            ],
            [
              "24 hr",
              "retry window"
            ]
          ]
        },
        {
          "type": "callout",
          "label": "DESIGN DECISION",
          "text": "Deliver order status events asynchronously with at-least-once delivery. Consumers deduplicate on event_id; the service does not promise exactly-once processing."
        },
        {
          "type": "h",
          "text": "Context and boundaries"
        },
        {
          "type": "p",
          "text": "Partners currently poll for order updates. This design adds signed event delivery to registered HTTPS endpoints. It excludes partner endpoint provisioning, historical backfills and delivery to arbitrary customer-supplied URLs."
        },
        {
          "type": "h",
          "text": "Delivery path"
        },
        {
          "type": "p",
          "text": "Order transaction \u2192 transactional outbox \u2192 delivery queue \u2192 worker \u2192 registered partner endpoint. A delivery record stores each attempt and its result."
        },
        {
          "type": "table",
          "headers": [
            "Requirement",
            "Design response"
          ],
          "rows": [
            [
              "No lost committed events",
              "Write the outbox record in the order transaction"
            ],
            [
              "Duplicate-safe processing",
              "Keep event_id stable across retries"
            ],
            [
              "Endpoint authenticity",
              "Sign the raw request body with the partner secret"
            ],
            [
              "Failure isolation",
              "Separate per-partner concurrency and delivery limits"
            ]
          ],
          "widths": [
            34,
            66
          ]
        },
        {
          "type": "h",
          "text": "Event example"
        },
        {
          "type": "code",
          "text": "{\n  \"event_id\": \"evt_demo_0042\",\n  \"type\": \"order.shipped\",\n  \"occurred_at\": \"2027-06-18T14:05:00Z\",\n  \"data\": {\"order_id\": \"ord_demo_108\", \"status\": \"shipped\"}\n}"
        },
        {
          "type": "p",
          "text": "The identifiers and payload are illustrative. No credentials or customer information are included."
        }
      ],
      "kicker": null
    },
    {
      "title": "Failures and release plan",
      "blocks": [
        {
          "type": "chart",
          "label": "Synthetic delivery outcomes",
          "rows": [
            [
              "First try",
              960
            ],
            [
              "Retry",
              35
            ],
            [
              "Held",
              5
            ]
          ],
          "kind": "bar",
          "unit": "events",
          "asset": "technical-1"
        },
        {
          "type": "table",
          "headers": [
            "Fixture",
            "Expected behavior",
            "Sample outcome"
          ],
          "rows": [
            [
              "Duplicate event",
              "Consumer deduplicates stable event_id",
              "1 business action"
            ],
            [
              "HTTP 429",
              "Respect bounded retry schedule",
              "Delivered on attempt 3"
            ],
            [
              "HTTP 400",
              "Stop and request configuration review",
              "Held"
            ],
            [
              "Private destination",
              "Reject before dispatch",
              "Blocked"
            ],
            [
              "Worker restart",
              "Replay durable outbox",
              "No missing event"
            ]
          ],
          "widths": [
            25,
            48,
            27
          ]
        },
        {
          "type": "h",
          "text": "Release gate"
        },
        {
          "type": "p",
          "text": "Replay 1,000 synthetic events. 960 succeed first time, 35 after retry and 5 remain held for review: 99.5% eventually delivered in this fixture, not a production SLO."
        },
        {
          "type": "callout",
          "label": "ROLL BACK SAFELY",
          "text": "Pause new dispatch and retain the outbox and attempt history. Never log signing secrets. Expand only after a measured pilot and operational review."
        }
      ],
      "kicker": null
    }
  ],
  "design": {
    "accent": "#075D83",
    "secondary": "#B33D21",
    "bright": "#BAE9EA",
    "paper": "#F1F8FB",
    "headingFont": "Office Code Pro",
    "voice": "Engineering field guide / ink and cyan"
  },
  "capabilities": "Monospace hierarchy, event data and failure-path design"
}
