Make a long-running workflow restartable: apply events idempotently, checkpoint state, and reject impossible transitions. In the Async Ingestion Service system, implement this level as a deterministic contract before composing it with the next service.