Skip to content

Commit 92bc474

Browse files
cardmagicclaude
andcommitted
docs: state what an administration event records
An event records an authorized press, not a state transition, and the redrive transitions are the opposite. The rule was implicit in the tests. Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
1 parent f679326 commit 92bc474

1 file changed

Lines changed: 9 additions & 1 deletion

File tree

‎docs/operations.md‎

Lines changed: 9 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -357,7 +357,15 @@ their own resource name: `dead_letters`, `effect_dead_letters`,
357357
writes one row to `solid_objects_administration_events`, holding the action, the
358358
kind, the subject, the identity, and when it happened. The identity comes from
359359
`administration_identity`, which receives the authorization context the caller
360-
passed and defaults to its `to_s`. A refused caller writes nothing.
360+
passed and defaults to its `to_s`.
361+
362+
An event records an authorized press, not a state transition. Pressing retry
363+
twice writes two rows, because an operator did two things and a log that shows
364+
one cannot answer who pressed what. The row the event names carries the outcome.
365+
A refused caller writes nothing, and a retry that raises after the lookup writes
366+
nothing, because the event shares the transaction with the work. The redrive
367+
transitions are different: `redrive.start`, `redrive.finish`, and
368+
`redrive.cancel` are written only when the task actually changes.
361369

362370
Automatic redrive on a schedule is deliberately absent. A dead row means a
363371
person decided something, and these APIs give that person an alternative to an

0 commit comments

Comments
 (0)