Defensive, assertion-heavy coding style for code that must not fail quietly — synthesized from TigerBeetle's TigerStyle guide, NASA/JPL's "Power of Ten" rules for safety-critical code, and "negative-space programming" (Hoare logic / design-by-contract).