telemetry_delivery_observed: from owned boundary to trusted query
Treat telemetry_delivery_observed as a durable analytical contract: the owner emits one documented grain, a fixture proves the fields, and a reviewed query answers the stated question.
- 1
Outcome becomes final
Shared instrumentation or telemetry delivery library emits only after a delivery succeeds, is rejected, times out, or exhausts its bounded retries.
- 2
Contract is bounded
10 required fields preserve the declared grain: One sampled or aggregated observation per delivery attempt or delivery window.
- 3
Fixture is verified
Check types, UTC time, alternate outcomes, idempotency, and every pseudonymous or review-classified field.
- 4
Question is answered
Are application events arriving completely, promptly, and without retry amplification?
Grain
One sampled or aggregated observation per delivery attempt or delivery window.
Owner
Shared instrumentation or telemetry delivery library
Emit when
After a delivery succeeds, is rejected, times out, or exhausts its bounded retries.
Field contract
Typed fields with explicit privacy boundaries
Keep existing field names and types stable after production queries depend on them. Optional context should remain bounded, documented, and justified by a specific decision.
| Field | Type | Required | Privacy | Meaning |
|---|---|---|---|---|
| timestamp_utc | timestamp | yes | non-sensitive | UTC time at the outcome boundary. |
| event_id | string | yes | non-sensitive | Stable unique identifier used for deduplication. |
| release | string | yes | non-sensitive | Application or service version that emitted the event. |
| account_id | string | yes | pseudonymous | Stable internal account identifier, never an email or name. |
| target_table | string | yes | non-sensitive | Allowlisted destination event table. |
| delivery_status | string | yes | non-sensitive | Accepted, rejected, timed_out, or transport_failed. |
| attempt_count | number | yes | non-sensitive | Number of bounded delivery attempts. |
| batch_size | number | yes | non-sensitive | Number of logical events in the delivery. |
| payload_bytes | number | yes | non-sensitive | Serialized request size in bytes. |
| duration_ms | number | yes | non-sensitive | Total delivery duration including bounded retries. |
| error_type | string | no | non-sensitive | Controlled transport or rejection category. |
Synthetic JSON event
{
"timestamp_utc": "2026-07-29T10:31:04Z",
"event_id": "evt_delivery_01",
"account_id": "acct_8f31",
"release": "2026.07.3",
"target_table": "api_request_completed",
"delivery_status": "accepted",
"attempt_count": 1,
"batch_size": 20,
"payload_bytes": 8420,
"duration_ms": 146
}Privacy review
Review identifiers before ingestion
This example uses synthetic identifiers. Pseudonymous values can still be personal data, and review fields can expose business or provider context. Apply your own consent, retention, access, residency, and deletion requirements.
account_id: pseudonymous
Validation checklist
Prove the contract before building a dashboard
- Send one known telemetry_delivery_observed fixture after the documented outcome boundary.
- Verify all 10 required fields arrive with the documented types.
- Retry the same event identifier and confirm the chosen deduplication behavior.
- Send a controlled failure or alternate outcome when the workflow supports one.
- Run the related SQL over a fixed window and reconcile the result to the fixture.
Common mistakes
Keep one row equal to one durable outcome
- Emitting telemetry_delivery_observed before shared instrumentation or telemetry delivery library knows the final outcome.
- Mixing several grains in one table, which makes counts and rates ambiguous.
- Replacing controlled categories with raw URLs, payloads, prompts, or error text.
- Changing a field type in place after saved queries and dashboards depend on it.
- Adding identifiers without a documented investigation, access, and retention need.
Use the contract
Query and operationalize the event
Related contracts
Send a fixture before production traffic
Create a free API key, send the synthetic event, and inspect the inferred table before connecting a live workflow.