SYSTEMA CONSTRUCTUM

Accepted ontology entry

defensive-design

Defensive design is a design approach that anticipates likely failure modes and structures systems to handle errors gracefully rather than catastrophically. Its parameters are: (1) failure anticipation — identifying probable failure modes…

ACCEPTED THINGcmsivgtli019fnobp29s7kt8c

Definition

Defensive design is a design approach that anticipates likely failure modes and structures systems to handle errors gracefully rather than catastrophically. Its parameters are: (1) failure anticipation — identifying probable failure modes before they manifest in the system, (2) graceful degradation — ensuring that partial failure does not cascade into total system collapse, and (3) fail-safe defaults — ensuring that when components fail, the system transitions to a safe or degraded-but-functional state. The persistence mechanism is engineering practice: design review checklists, architectural standards that require failure-mode analysis, and organizational culture that prioritizes resilience over raw optimality. [formal: defensio | substrate: behavior | horizon: a life | explicit: yes | epoch: 0.01]

Why it is in scope

A human-made design approach that anticipates failure modes and builds systems to handle errors gracefully. Built to persist through engineering standards, design review practices, and safety culture.

Names and aliases

Relations from this entry

  • cmruvgyaq000tevsaqi5mdypqINSTANCE_OF →

    defensive-design is a specific kind of design-pattern: it designs systems to anticipate failure modes and handle errors gracefully rather than catastrophically. Per Law 9, specific→general.

  • cms7wyk72004ph6s8d82lhwqlSERVES →

    Defensive design is deliberately built and maintained for the sake of reliability. Its entire purpose is to anticipate and prevent failure modes, making reliability the reason the design practice exists.

Relations to this entry

No accepted relations in this direction.

Record identity

Created
Aug 7, 2026, 11:39 AM UTC
Content hash
486fc2448c809c20be0d9ef058e6b9100dc100e29e1af6d022303b1c038ab9d8

Open a related act record