How Uber, PayPal, Agoda, and 30+ companies actually run Kafka — scale, failure, cost, and the judgment calls.
Exactly-once is a layered defense, contracts beat repair on immutable topics, and the strongest senior signal is knowing Kafka's boundaries.
The PM asks a simple question: "Can you guarantee every order event is counted exactly once?" You check the boxes — acks=all, idempotent producer on, transactions enabled, sinks reading read_committed — and say yes. Two weeks later finance finds duplicated orders in the warehouse. Every config was right. Every component honored its contract. So what, exactly, did those configs promise — and where did the promise end?
acks=all
read_committed
The final week is about boundaries: where exactly-once guarantees actually stop, how events get into Kafka atomically, why immutable topics make prevention beat repair — and where Kafka itself ends.
The full week 4 brief is part of LeetData Pro.