The base for a DO's OWN refusal — the taxonomy's extension point, for the
statuses the runtime errors above do not cover. A shell declares one
(ThreadIdentityError's 403) and so does a host route:
A CLASS, so opting in is instanceof — deliberate and nominal, the posture
TENANT_BOUND and AuditLogger take. The structural alternative (any thrown
value with a numeric status) cannot tell a refusal this DO authored from the
arbitrary values its routes throw: an upstream client's {status: 429} would
become this API's 429, and {status: 0} — routine on HTTP-client error
objects — would make new Response raise inside the very catch whose job is
to never throw. Everything unrecognized stays a 500.
The base for a DO's OWN refusal — the taxonomy's extension point, for the statuses the runtime errors above do not cover. A shell declares one (ThreadIdentityError's 403) and so does a host route:
A CLASS, so opting in is
instanceof— deliberate and nominal, the posture TENANT_BOUND and AuditLogger take. The structural alternative (any thrown value with a numericstatus) cannot tell a refusal this DO authored from the arbitrary values its routes throw: an upstream client's{status: 429}would become this API's 429, and{status: 0}— routine on HTTP-client error objects — would makenew Responseraise inside the very catch whose job is to never throw. Everything unrecognized stays a 500.