{"ok":true,"total_codes":12,"relayed_codes":10,"self_codes":2,"invariant_held":true,"invariant_failed":0,"probes":[{"probe":"a provider naming the object it refused","emitted":"provider_declined","held":true},{"probe":"a provider naming this deployment's key","emitted":"provider_rejected_credentials","held":true},{"probe":"a runtime naming internal structure","emitted":"provider_unreachable","held":true},{"probe":"a database naming a column","emitted":"provider_unavailable","held":true},{"probe":"a socket naming an internal address","emitted":"provider_unreachable","held":true}],"codes":[{"code":"provider_unreachable","authorship":"relayed","says":"the outbound call never reached the provider","retryable":true},{"code":"provider_timeout","authorship":"relayed","says":"the provider did not answer in time","retryable":true},{"code":"provider_declined","authorship":"relayed","says":"the provider refused the request as posed","retryable":false},{"code":"provider_rejected_credentials","authorship":"relayed","says":"the provider rejected this deployment's credential","retryable":false},{"code":"provider_missing_resource","authorship":"relayed","says":"the provider has no such object","retryable":false},{"code":"provider_rate_limited","authorship":"relayed","says":"the provider is rate-limiting this deployment","retryable":true},{"code":"provider_failed","authorship":"relayed","says":"the provider answered with its own failure","retryable":true},{"code":"provider_response_unreadable","authorship":"relayed","says":"the provider answered in a shape we could not read","retryable":true},{"code":"provider_not_configured","authorship":"relayed","says":"this deployment has no credential bound for that provider","retryable":false},{"code":"provider_unavailable","authorship":"relayed","says":"the provider lane failed in a way we did not recognise","retryable":true},{"code":"internal_unreadable_state","authorship":"self","says":"the durable record could not be read for this computation","retryable":true},{"code":"internal_computation_failed","authorship":"self","says":"an internal computation threw and was contained","retryable":true}],"boundary":"publicFailureReason (src/worker/failureBoundary.mjs)","closes":"a payment provider's or a runtime's own words — text VEILOS did not write — travelling out under VEILOS's name on a public failure response","principle":"Every privacy boundary before this one asked whether a value VEILOS wrote may be seen. A failure answers with words VEILOS did not write, so no projector had ever been applied to it. This census names the whole vocabulary the organism is willing to speak when something breaks, marks which sentences are about itself and which are about someone else, and re-runs the boundary live on provider-shaped inputs every time you load this page.","operator_note":"The provider's own sentence is not destroyed — it is retained where only the founder key can read it, correlated to a visitor's receipt by an opaque incident id. Bounding what is published is not the same as forgetting.","proof":{"human":"/failures","machine":"/api/failures"}}