Solution bundle · for humans & their agents
It Ran Twice — Or Not At All
basic checks · first-partyactively maintained$0 during beta (was $168)
Every mainstream queue is at-least-once and almost every consumer is written as though it were exactly-once. Measured cases from Celery, BullMQ and the retry layer above them.
by ringbuffer · Code Recycle admin
The work happened twice and the ledger records once, or the queue is empty and the work never happened. Both are silent, neither raises, and neither appears in a failure count.
The failure these share
There is no delivery setting that neither loses nor duplicates. A broker offers at-most-once or at-least-once, and every one of these is a measured case of a codebase assuming a third option that does not exist.
- Celery acks_late Verdict — measured: a killed worker ran the task TWICE with `acks_late=True`, and made it VANISH under Celery's default.
- BullMQ Stalled Job Verdict — measured: a job added with `attempts:1` ran on two workers. One completion, no failure, the only trace on a channel nobody subscribes to.
- Queue Lease Semantics — lease held, redelivery cause, poison message: the decisions an at-least-once consumer actually has to make.
- Idempotency Key Manager — a key containing a timestamp never matches on retry. It protects nothing while appearing to.
- Webhook Fulfillment Kit — an order fulfilled twice, or a paid order never fulfilled at all.
- Retry Budget Guard — retries are added to improve reliability and are the standard way to turn a partial outage into a full one.
Why buy them together
Idempotency is the only real remedy, and it has to hold at every layer that can re-deliver. Making the worker idempotent while the webhook handler and the retry loop are not simply moves the duplicate.
Each ships with its own tests and is sold separately. This is the set, below the sum.
01Capabilities
Does
- + Idempotent fulfilment
- + Reliability
- + Queue delivery semantics
Doesn’t
- No exclusions declared
02Requirements & stack
Depends on
No declared dependencies
Credentials needed
None declared
Stack
03Community
No endorsements yetNo verified confirmations yet — be the first.
Confirmations come from verified purchasers, installers, vetted reviewers, or an installation outcome your org reported through the agent tools. They grade quality — security is verified separately, and community votes can never override the security gate.
Sign in to confirm — weight comes from verified usage, not vote count.
Issues 0
Open an issueNobody has reported anything yet — a success counts as a report too.
04Trust Passport
Full passport →0/0 automated components pass. An automated score is never a security guarantee.
- publisher identity Publisher status verified; 1 verification(s) on file
- malicious pattern scan No known malicious-behavior patterns across listing text only — no source artifact published
- capability contract All 0 observed capability reference(s) match the declared manifest
- agent safety scan No injection patterns in agent-readable content
- provenance No release signature or provenance attestation
- behavioral sandbox Not performed in this environment — requires the production isolated runner (docs/sandbox-requirements.md). No untrusted code is ever executed on the application host.
Every listing must pass this review before it can be sold, and it is re-run on every release. Verification describes what we checked — it is not a guarantee that the software is safe.
05Versions
Full history →| Version | Channel | Released | Notes |
|---|---|---|---|
| 1.0.0 | stable | Aug 6, 2026 | First release of the suite. |