Skip to main content

Well Designed Failure

So last night, while I was out for a social gathering and my partner was out of town, someone appears to have tried to break into our house. They did a moderately good job of disassembling the door handle on our front door, but didn't get any further than that, thanks to the deadbolt lock on the door and the two loud dogs in their beds next to the door. Last night I was pretty upset about it, and I was also being critical of the door handle, but the more I think about it the more I think I'm wrong. I am beginning to think that the door handle itself was really quite brilliantly designed -- it was designed not just to work, but to fail gracefully.

When I got home I found the front door handle had been jimmied somehow, and was loose in the door itself; in addition, the interior handle part had come completely off the door. So I was mildly upset about this, thinking that first, someone had tried to break into my house, and second, that I would have to replace the door handle (at 9PM on a Saturday, which did not sound like the best time to go shopping for door hardware). But actually the door handle did its job brilliantly, and here's why I think that:


  1. Most importantly, the alleged intruders were unable to get into the house. So when the integrity of the handle failed, it still managed (with backup from the deadbolt and the dogs) to accomplish one of its two main design goals: keeping the door shut (the other we'll get to in a subsequent point).
  2. After the alleged intruders departed, when I arrived home I was still able to gain entrance to the house via the front door. This, by the bye, is the other main design goal of the handle: allowing the door to be opened. 
  3. This allowed the handle to accomplish another design goal, which is often ignored: it failed securely, and kept functioning even in failure mode. This was accomplished by various parts all acting in concert even in failure mode (including the length of the haft of the knob, the length and placement of the screws, and the design of the latch mechanism itself). 
  4. In addition, after the failure mode, it was relatively easy to return the handle to full working order -- the recovery process was relatively simple and not time-consuming.
  5. It did all this without any damage to the door itself, the deadbolt, or even the handle and knob mechanisms, meaning it was designed for robustness in its application.
So here we have a really, really good example of designers not just designing for the stated goals, but also taking into account failure and recovery modes. This is also an example of how even old, complicated tech (and a modern lock/latch is pretty complicated) can be designed to fail gracefully and with minimal agita to the user. From an Operational perspective, this handle may be a nearly-perfect design: secure, robust, graceful in failure, silent in normal operating modes, and easy to recover. It is a benefit of having had door knobs and locking latches for a couple of hundred years, including the last 50 or so when CAD methods have allowed for much finer tolerances and more rapid iteration of incremental improvements.

To sum this all up: if you, as a software designer, think not just about the stated goals but about how the tool you're building will be used (and broken by users), you'll have not just a better starting point, but also a better idea of what you'll need to iterate towards for improvement. 

Comments

Popular posts from this blog

The default state of technology is broken.

Score one for DRM making me a pirate. I had bought a blu-ray player for my new computer so I could watch hi-def movies on my entertainment-center projector. Apparently, despite paying extra for the hardware, I needed software to play the blurays. OK, fine, I said, and the person who helped me build the machine downloaded some software that would play the blurays. Then, tonight, I went to watch my copy of Inception, and it played for 4 minutes, at which point the software stopped working and insisted that the bluray disc wasn't valid, unless I ponied up $60 (59.95, 25% off for the new year!) to "upgrade" to the latest, licensed version of the software. So, not only did I have to pay extra for the hardware, and extra for the media, I now have to pay extra for the software. Pardon my language, but FUCK THAT SHIT. So, now I'm working on finding a less-expensive way to watch the movie (well, actually, the extra content) that I ALREADY BOUGHT. I've also uninstalled th

Occasional Media Consumption: Swordheart, by T. Kingfisher.

I'm not sure how to say what I want to say without saying it wrong. I don't think I have been this excited for a new author's work since I was in the rapid process of discovering and then chewing through the back catalog of C.J. Cherryh, who at that point had just published Foreigner and grabbed me by my whiskers and screamed (metaphorically) "Look! Here is an author whose style of prose and choice of character speaks directly and entirely to you!" Or that moment in my high school years when I stumbled upon Melissa Scott's Trouble and Her Friends and I suddenly knew, with a certainty that has still not yet left me, that I wanted to be a part of the future (and the culture) of technology. And yet that's not fair, because T. Kingfisher, nee Ursula Vernon, is her own writer, her own voice, her own authorial person, and doesn't deserve to be compared to others.   To say that Kingfisher's prose style and choice of genre (which is to say, a

What I did on my Spring Vacation -- Day 3, Tuesday

We arose on Tuesday morning quite early, as we needed to get across town from Hollywood to Anaheim. Note on geography in LA:  I have no mental map of anything that has to do with Southern California.  I only know that every time we got in a car, it took two hours to get where we were going.  That was as true of the 100-mile drive on Monday as it was for the 1 mile drive from the hotel to the nearest In N Out on Thursday.  So no idea what that was about. We had tea and coffee with Damon, waiting for Ryan and his friend Megan to arrive, which they did around 7:30.  From there, we said a teary goodbye to Damon and headed out to Disneyland! A note on Disneyland:  I'd never been before.  This was my first trip and I was not exactly expecting anything special.  However, everyone around me (including Jean, Ryan, and our friend Donna) was very excited, so I was ready to be happy but underwhelmed.  Boy, was I wrong. We reached the parking lot just before 9 AM, and there was plenty