✓False-positive resistanceMultiple local checks before disruptive recovery.
✓Service-specific recoveryNginx and upstream applications are evaluated independently.
✓DNS path and content integrityInternal-reference and client-facing resolver comparison, UDP/TCP answers, TTL risk, delegation, authoritative, public-recursive, expected-IP, and semantic content checks can expose stale caches, resolver divergence, DNS drift, or a wrong site served with a successful HTTP status.
✓Correlated infrastructure alertsMatching multi-site network or DNS failures can be consolidated into one infrastructure incident instead of creating an alert storm.
✓Hardware and power evidenceWatchdog recovery remains separate from supported Raspberry Pi power-condition reporting.
✓Auditable decisionsEvery failure, action, cooldown, and lockout is logged.