A service boundary accepts valid traffic but mishandles duplicate, stale, or unauthorized records. The affected area is Kafka consumer.
Repair the Kafka consumer capacity pool implementation so it allocates limited capacity by priority without exceeding demand or the global limit.
Evidence
- Affected surface: Spring / Kafka consumer.
- Observed failure family: allocate limited capacity.
- Scope policy: retained must equal true.