That's actually the entire point. There's consequences to however anything fails. Think the skyscraper example. Do you want to explicitly design a failure mode or do you want to be just "let's see what happens?" Which do you think has a worse consequence? Neither are great, but one is definitely better than the other.