Search Indexing Service · View 13 of 21 · Runtime
Decisions
- Message 7 is the source's acknowledgement, sent once the change is durable in the log — not once it is indexed. That single ordering is what keeps the accept path fast and the lanes independent.
- The version guard runs twice: at capture against assembly state, and again at apply, so a reordered redelivery cannot regress a document in either place.
- The fast lane performs a partial update: no join, no enrichment, no document reassembly for a field that changes hundreds of times an hour on a popular item.
- The query response is stamped with the index version and observed freshness at message 15, so the caller can judge the answer rather than trust it.
Assumptions
- Ingestion accept p99 ≤ 50 ms single change; fast lane source-commit-to-searchable p95 ≤ 2 s, p99 ≤ 10 s.
Risks
- A cluster refresh interval that is tuned for indexing throughput will quietly spend the fast lane's entire budget.