SLO and Error Budget Service · View 10 of 21 · Data
Decisions
- Good and valid counts stay separate the whole way across. No ratio is stored anywhere, because a stored ratio cannot be re-aggregated across windows and destroys the information a recompute needs (ADR-01).
- The source emits a low-cardinality outcome cube — status class by latency bucket — rather than a single good/valid pair, so a predicate change over the declared dimensions is still recomputable at pre-aggregation cost (ADR-03).
- Exclusions are an overlay applied at derivation, not an edit to the buckets. The unexcluded figure stays retrievable forever (ADR-11).
Targets
- Lateness horizon 10 minutes, after which a bucket closes and later data becomes a coverage deficit rather than a dropped event — assumed.
- 1.73 million minute buckets written per day at launch (1,200 SLOs × 1,440 minutes) — assumed.
- Recompute determinism: identical inputs and definition version reproduce identical figures.
Risks
- The cube's dimensions are chosen once, upstream, by a team that does not own this platform. A dimension nobody thought to emit cannot be recovered by any amount of recompute (ADR-03).
- The window close is the only irreversible step in the flow. A definition error discovered after a close produces a corrected current figure and a sealed wrong one, which is the honest outcome but needs explaining.