One schema, validated at every boundary. How end-to-end types turn a class of runtime bugs into compile-time errors.