System Design Situations Vault
The complete catalog of 30 staff-level system design situations across all distributed systems primitives. Address the 7-axis rubric (Requirements, Scale, Data Flow, Storage, Bottlenecks, Failure Modes, Trade-offs), defend against two rigorous reviewer objections, and unlock authoritative Teacher Gold Answers.
The Partner Whose Retry Loop Took Down Everyone Else
Target Primitive: 02-distributed-rate-limiting • SENIOR Level
Total Situations
30
All 30 Core Primitives
Defended
0
Both Objections Survived
In Progress
0
Revision Required
Unattempted
30
Ready for Defense
The Product Page That Melted Redis
Objection 1: If the cache node just restarted and is empty, won't the first wave of requests all miss at once and hit Postgres together?
One Customer, One Shard, One Outage
Objection 1: Your biggest tenant is about to 10x their headcount and move onto the platform. What actually happens to their shard the day that migration lands?
The Warehouse System That Fell a Day Behind
Objection 1: What happens to an order event if the warehouse-allocation consumer throws an exception halfway through processing it?
The Partner Whose Retry Loop Took Down Everyone Else
Objection 1: Your rate limiter runs as local counters on each of the 12 API gateway instances behind the load balancer. Does a single partner's quota actually hold at 1,000 req/min, or could they get more than that?
The Booking That Existed in Frankfurt but Not in Virginia
Objection 1: A customer in Frankfurt books the last seat, then their connecting flight's confirmation page loads against the Virginia region two seconds later and shows the seat as available. What went wrong, concretely?
The Image Service That Made Every Origin Server Sweat
Objection 1: A photographer uploads a new cover photo to replace a bad one. How long before viewers around the world actually stop seeing the old cached image?
The Ring Rebalance That Crushed Node 07
Objection 1: When you add 4 new physical storage nodes to the consistent hashing ring, why won't each existing node shed exactly 25% of its keys without virtual nodes?
The Web Crawler That Forgot Its History
Objection 1: What happens when your Bloom filter fills past its designed capacity and the false positive rate climbs to 15%?
The GC Pause That Corrupted Shared Storage
Objection 1: Client 1 acquires a 10-second distributed lock in Redis, hits a 15-second Stop-The-World JVM pause, and then executes its write. Why doesn't an expiring TTL lock protect storage from corruption?
The Time-Series Database That Froze on Flush
Objection 1: Why do writes stall completely when background LSM compaction falls behind the incoming write rate?
The Network Partition That Elected Two Leaders
Objection 1: If a network partition isolates 2 nodes from 3 nodes in a 5-node Raft cluster, can the minority partition commit any client write?
The Flight Booking That Charged Without a Seat
Objection 1: If the hotel reservation succeeds, the payment is charged, but the flight service fails and the compensating refund fails halfway through, what prevents money from being permanently lost?
The Ride-Hailing Hotspot on New Year's Eve
Objection 1: Why does a fixed-precision Geohash (e.g. 6-character precision) fail when driver density varies by 1,000x between rural highways and downtown Times Square?
The Dual-Write That Broke Search Consistency
Objection 1: What happens in a dual-write architecture when the primary database commit succeeds but the network call to publish to Kafka drops or times out?
The Search Bar That Stalled on Every Keystroke
Objection 1: Why does traversing a raw prefix Trie to find top-10 trending queries on every keystroke degrade when the trie holds 50 million search phrases?
The NTP Sync That Generated Duplicate Order IDs
Objection 1: What happens in a Twitter Snowflake ID generator if the physical server's system clock jumps backward by 250 milliseconds during an NTP synchronization event?
The GC Pause That Declared the Cluster Dead
Objection 1: Why does a binary heartbeat threshold (e.g. mark dead after 3 missing pings) cause catastrophic flapping in large-scale distributed clusters?
The Semantic Search That Exhausted All GPU RAM
Objection 1: Why does an in-memory HNSW (Hierarchical Navigable Small World) vector index consume 4x more RAM than the raw 1536-dimension floating-point vectors themselves?
The Gateway Restart That DDOSed the Chat Fleet
Objection 1: When 1.5 million WebSocket clients disconnect simultaneously during an edge gateway rollout, why does immediate reconnection crush backend authentication and Redis Pub/Sub?
The Single Multiplexed TCP Pipe That Stalled 500 RPCs
Objection 1: Why does a single dropped TCP packet on an HTTP/2 connection cause head-of-line blocking across all 500 multiplexed gRPC streams simultaneously?
The Compromised Admin Token That Wouldn't Die
Objection 1: If stateless JWTs are validated cryptographically without a database lookup, how do you revoke an active token immediately when an employee is terminated?
The On-Call Doctor Anomaly (Write Skew under Snapshot Isolation)
Objection 1: Why does Snapshot Isolation (or Repeatable Read in PostgreSQL) fail to prevent Write Skew when two concurrent transactions check a global invariant and update different rows?
The Slow Recommendation Service That Took Down Checkout
Objection 1: Why does an upstream gateway run out of worker threads when a non-critical downstream microservice slows down from 30ms to 5,000ms latency?
The Banking Ledger That Took 3 Days to Replay
Objection 1: Why does an event-sourced architecture struggle with point-in-time state queries (e.g. 'What was account balance on June 1st?') when an entity has accumulated 2 million historical events?
The Credential Stuffing Wave That Bypassed IP Rate Limits
Objection 1: Why do standard per-IP rate limiters fail completely against a residential proxy botnet rotating across 500,000 distinct residential IP addresses?
The Headless Scraper That Filled the Database with Garbage
Objection 1: Why do visual honeypot fields (e.g. `display: none` inputs) fail when sophisticated bots use headless Chrome with accessibility tree inspection?
The 100,000 Free Trials That Vanished Overnight
Objection 1: Why does a static hardcoded blocklist of disposable email domains (e.g. `mailinator.com`, `guerrillamail.com`) fail within days of deployment?
The Flash Sale That Blocked 40% of Paying Mobile Shoppers
Objection 1: Why do aggressive managed challenges (Cloudflare Turnstile / AWS WAF Challenge) falsely challenge or block legitimate users during high-traffic flash sales?
The Silent Fraud Ring That Maintained a 0.9 reCAPTCHA Score
Objection 1: How do automated botnets bypass behavioral risk-scoring (reCAPTCHA v3 / Enterprise score 0.0 to 1.0) and achieve high 'human' trust scores?
The Proof-of-Work Challenge That Melted Mobile Batteries
Objection 1: Why does a fixed client-side Hashcash difficulty (e.g. 20 leading zero bits in SHA-256) cause severe asymmetry between high-end desktop gaming CPUs and low-end mobile devices?