A single-writer state machine posts every transfer as a balanced debit and credit, guarded by idempotency keys and a write-ahead log. Concurrent payments and retried requests, the two things that quietly corrupt naive ledgers, can't break the books.
| Account | Balance |
|---|
One concurrent workload, three ledgers: a naive version with no synchronization, a correct global-mutex version, and Tally's single-writer engine. The naive run shows why synchronization isn't optional. The other two are both correct, so the real comparison is the cost of how each one serializes.