What comes back when the cause of a failure cannot be established?
Sometimes nothing comes back as a named cause, and that’s a legitimate result, not a failed investigation. Not every regression traces to one located change: sometimes the traffic itself shifted, sometimes the signal was measurement noise rather than a real decline, and sometimes the real cause sits outside anything you can see, in a provider’s model update or a dependency you don’t control. A trustworthy investigation reports that honestly instead of naming the closest available guess just to close the case, because a wrong cause sends someone to fix the wrong thing while the real one keeps firing. What you still get is the record of what was checked and ruled out, so the next occurrence doesn’t start from zero, and a note on what would need to be true for a cause to surface, more traces, better logging, a repo connection. No change found is a real, useful answer. A confident wrong one isn’t.