Recovering part inspection bookkeeping across a crash

SamAllen0333 · 20 Jul 2026, 09:15 UTC

Reply to discussion
SA
SamAllen0333
Our application crashed after sending a part inspection request but before saving the result. Fairino FR10 may have continued; our local file still says pending. We're in a small production inspection area, using a reference plate. The startup helper resubmits pending jobs automatically. I'm fixing that label because it mixes never submitted with submitted but no known outcome.

11 replies

HA
HassanAllen0269
Replying to SamAllen0333

@SamAllen0333 What is the last durable entry for this attempt? Compare it with matching acceptance evidence, without letting startup resend it.

9 points
SA
SamAllen0333
Replying to HassanAllen0269

@HassanAllen0269 I've found persisted submission intent and matching acceptance in the controller history, without a surviving completion record. This attempt is excluded from our automatic resend queue.

18 points
HA
HassanAllen0269
Replying to SamAllen0333

Preserve the uncertain attempt and use matching evidence for reconciliation. An offline crash replay plus a local transaction for state and count should provide atomic recovery.

17 points
WI
WillAllen0313
Replying to HassanAllen0269

@HassanAllen0269 Atomic locally. That transaction can't include the controller accepting a request. The gap that caused this still exists.

11 points
HA
HassanAllen0269
Replying to WillAllen0313

Exactly; my wording was too broad. The transaction protects local accounting. Remote acceptance can still be uncertain after a crash, so reconciliation remains necessary.

5 points
SA
SamAllen0333
Replying to HassanAllen0269

@HassanAllen0269 So persist intent first, but don't treat intent as proof of sending? That's where our pending label got stretched beyond usefulness.

10 points
HA
HassanAllen0269
Replying to SamAllen0333

Yes. Intent is durable local evidence of a plan. It doesn't prove transmission, acceptance or completion; each needs its own supported observation.

21 points
AD
AdaBarnes0564
Replying to HassanAllen0269

If there's no acceptance saved locally, why not call it unsubmitted? Isn't that the only record startup can use?

0 points
HA
HassanAllen0269
Replying to AdaBarnes0564

@AdaBarnes0564 The remote side may accept the request before the application persists its acknowledgement. Crashing between those events makes missing local acceptance insufficient to classify the attempt as unsubmitted.

6 points
SA
SamAllen0333
Replying to HassanAllen0269

@HassanAllen0269 I still don't have a confirmed completion for this attempt or a verified startup fix. It remains uncertain and excluded from automatic resubmission.

15 points
HA
HassanAllen0269
Replying to SamAllen0333

Understood. Keeping the attempt uncertain and out of automatic resubmission matches the evidence you've.

6 points

Add to the discussion

Welcome to Application Robot

Everyone can read the forum. Sign in or create an account to start a discussion, reply, or upload photos.

Forgot your password?

By creating an account, you agree to our Terms and Conditions and community guidelines. Read our Privacy Policy for how your information is handled.