Designing systems on the assumption they’ll never fail doesn’t give you good systems, it gives you the Titanic. Smart engineers know entropy isn’t just a good idea, it’s the (second) law (of thermodynamics) and plan accordingly, designing systems that glide to a graceful halt when they go wrong – rather than exploding in a cloud of white-hot shrapnel.