Claude Architect · 课时

反模式:通用错误消息

了解“操作失败”为何会妨碍恢复决策。

第 4 / 4 课13 个步骤

反模式:通用错误消息 是 CoddyKit 上的免费 Claude Architect 课时。 这是第 4 节课,共 4 节。 你可以在下方免费阅读本课时的完整内容 — 然后在浏览器中使用内置代码编辑器和全天候 AI 导师进行实践。 这是 Claude Architect 学习路径的一部分,你的进度在网页和 CoddyKit 应用中同步。 Claude Architect 课程共包含 4 节课。

本课时的部分内容尚未翻译,以英文显示。

The Failure That Tells You Nothing

A tool in your agentic loop returns:

{ "status": "error", "message": "Operation failed" }

The model now has to decide: retry, try a different query, escalate to a human, or stop. But "Operation failed" carries zero signal. It cannot tell whether the database was briefly down, the input was malformed, or a business rule blocked the action.

This is the generic error anti-pattern — and it quietly breaks agent reliability.

Why the Model Can't Recover

In the agentic loop, the model inspects each tool result and chooses the next action. A recovery decision depends on what kind of failure occurred:

  • Transient outage → retry locally
  • Bad input → fix the query and re-call
  • Business rule violation → do NOT retry; escalate or stop
  • Permission denied → escalate

A generic message collapses all four into one indistinguishable blob. The model is left to guess — often retrying something that will never succeed, or aborting the whole workflow on a fault it could have recovered from.

The Anatomy of a Structured Error

The fix is a structured error contract. For MCP tool results, an error should carry:

  • isError: true — an explicit error flag
  • errorCategory — one of transient, validation, business, permission
  • isRetryable — whether retrying could plausibly help
  • message — human-readable detail
  • attempted_query — what the tool actually tried
  • partial_results — anything usable already gathered

Each field maps directly to a recovery decision the model can now make deterministically.

error_result = {
    "isError": True,
    "errorCategory": "transient",   # transient | validation | business | permission
    "isRetryable": True,
    "message": "Inventory DB connection timed out after 5s",
    "attempted_query": "SELECT stock FROM inventory WHERE sku='A-117'",
    "partial_results": []
}

Category Drives the Recovery Route

The single most important field is errorCategory. It tells the model which branch of the recovery tree to take:

  • transient → retry locally in the subagent (network blip, timeout)
  • validation → the input was wrong; correct the arguments and re-call
  • business → a rule blocked it (e.g. refund over limit); retrying is pointless — escalate
  • permission → caller lacks access; escalate, never loop

"Operation failed" forces the model to infer the category from prose, if it can at all. A typed category removes the guessing.

isRetryable: Stop the Pointless Loop

A generic error invites a dangerous behavior: blind retrying. The model re-calls the failing tool, gets "Operation failed" again, and may burn iterations on something that can never succeed.

An explicit isRetryable flag turns a guess into a rule. The model retries only transient faults, and immediately routes business and permission failures elsewhere.

Remember: iteration caps are a safety net, never the primary stop mechanism. Clean error signals are what actually keep the loop honest.

def handle_tool_error(err):
    if err["errorCategory"] == "transient" and err["isRetryable"]:
        return retry_locally(err["attempted_query"])
    if err["errorCategory"] == "validation":
        return fix_arguments_and_recall(err)
    # business / permission: retrying never helps
    return escalate_to_human(err)

Access Failure vs. Empty Result

A subtle trap: a generic error blurs the line between "I could not look" and "I looked and found nothing".

  • Access failure (timeout, auth error) → the data may exist; retry or escalate.
  • Valid empty result (zero matching rows) → the answer is genuinely "none"; do NOT retry.

If both surface as "Operation failed," the model might retry forever on an empty set, or give up on a recoverable outage. A structured contract keeps these two outcomes distinct.

# Valid empty result is NOT an error:
{ "isError": False, "results": [], "message": "No orders found for customer C-908" }

# Access failure IS an error:
{ "isError": True, "errorCategory": "transient", "isRetryable": True,
  "message": "Order service returned 503" }

Carry Partial Results Forward

Failures are rarely all-or-nothing. A multi-agent research coordinator might fan out to five sources; one times out. Returning a bare "Operation failed" throws away the four that succeeded.

Include partial_results so the model can synthesize what it has and annotate the gap rather than abort. The architect's rule: recover transient faults locally, and when you must escalate, escalate with partial results attached — never silently suppress and never kill the whole workflow over one failed branch.

{
  "isError": True,
  "errorCategory": "transient",
  "isRetryable": True,
  "message": "2 of 5 sources timed out",
  "partial_results": [
    {"source": "arxiv", "finding": "..."},
    {"source": "pubmed", "finding": "..."}
  ],
  "alternatives": ["retry timed-out sources", "report coverage gap"]
}

attempted_query Enables Self-Correction

When the failure is a validation error, the model needs to know what it sent to fix it. The attempted_query field echoes the exact input back.

This mirrors retry-with-feedback for structured output: you fix format and structural errors by sending the model the original request plus the exact error plus what was attempted. With attempted_query in hand, the model can spot a malformed SKU or a bad date filter and correct the next call — instead of repeating the same broken request.

{
  "isError": True,
  "errorCategory": "validation",
  "isRetryable": True,
  "message": "Date filter must be ISO-8601; got '06/2026'",
  "attempted_query": "orders?since=06/2026"
}

Structured Errors vs. Deterministic Guarantees

Structured errors make the model's recovery smarter, but they are still consumed by a probabilistic model. For failures with financial, legal, or safety consequences, pair them with deterministic enforcement.

A PostToolUse hook can inspect a tool result before the model ever sees it, and an outgoing-call hook can block a policy-violating action (e.g. a refund over $500) with 100% determinism. Prompts and structured signals guide ~90% of the time; hooks guarantee the rest. Structured errors enable intelligent routing — they do not replace hard guardrails.

Prefer Community Servers — and Their Error Shapes

You usually do not have to invent this contract from scratch. For standard integrations, prefer well-maintained community MCP servers over custom ones — they often already return categorized, retryable errors.

When you do build a custom tool, document the error contract in the tool description alongside purpose, return values, input formats, and edge cases. A good description tells the model not just how to call the tool, but how to interpret what comes back when things go wrong.

Don't Hide Errors in the Long Middle

One more reliability angle: where the error lands in context matters. Models attend most to the start and end of context and least to the middle ("lost in the middle").

So beyond making errors structured, keep them tight: trim verbose tool output to the relevant fields and surface the error signal cleanly rather than burying errorCategory inside a wall of stack trace. A concise, typed error near the point of decision beats a verbose one drowned in noise.

Quick Check: Diagnosing a Generic Error

A research coordinator delegates to a subagent whose database lookup tool returns { "status": "error", "message": "Operation failed" }. The coordinator keeps re-calling the tool and eventually aborts the entire report.

Recap: Make Failures Actionable

Generic errors like "Operation failed" block recovery because they hide the one thing the model needs — what kind of failure it was.

  • Return structured errors: isError, errorCategory (transient/validation/business/permission), isRetryable, message, attempted_query, partial_results.
  • Category drives routing: retry transient, fix validation, escalate business/permission.
  • Distinguish access failure from a valid empty result.
  • Carry partial results forward; never silently suppress or abort the whole workflow on one branch.
  • For financial/legal/safety stakes, back structured errors with deterministic hooks.

Structured errors turn a dead end into an intelligent recovery decision.

免费开始

用 AI 导师学习 Python — 免费

在浏览器中编写并运行真实代码,获得全天候 AI 导师的即时帮助,并在网页或应用中继续学习。

课程
26
课程
104

常见问题解答

「反模式:通用错误消息」课时是免费的吗?

是的 — 「反模式:通用错误消息」的完整文本可在网页上免费阅读。要进行交互式练习(内置代码编辑器和全天候 AI 导师)并解锁 Claude Architect 课程的其余内容,请升级到 CoddyKit PRO。 Claude Architect 课程共包含 4 节课。

「反模式:通用错误消息」这节课中我会学到什么?

了解“操作失败”为何会妨碍恢复决策。 你通过在浏览器中直接运行的动手代码来练习 Claude Architect,全天候 AI 导师会在你学习这节课的过程中回答你的问题。

学习 Claude Architect 需要有经验吗?

无需任何先前经验。CoddyKit 上的 Claude Architect 课程适合初学者到高级学习者,你可以从这里开始或从头开始,按照自己的节奏学习。 这是第 4 节课,共 4 节。

「反模式:通用错误消息」课时需要多长时间?

大多数 CoddyKit 课程大约需要 5–10 分钟。每节课都很精短且互动,所以你能稳步进步,并在网页和应用中从离开的地方继续。

我能在这节 Claude Architect 课中编写并运行代码吗?

能。每节 Claude Architect 课都包含内置代码编辑器,你可以在浏览器中直接编写并运行真实代码,并获得即时 AI 反馈 — 无需本地设置。

此课程中的所有课时

  1. isError 标志
  2. 错误类别
  3. 可重试元数据与部分结果
  4. 反模式:通用错误消息
← 返回 Claude Architect