Read the section on "slots". They keep two copies in New Jersey, and one in Seattle.
However, based on the post mortem, it sounds like they're not willing to invoke failover at the drop of a hat. They allude to needing complex routing to keep their old good-reputation IP addresses alive. That might have something to do with it. (They were "only" 3-5% down during the outage, which is bad for them, but not unusual by industry standards.)
You might have multiple datacenters, but until everyone isn’t in the same office, you still have the same problem (office can burn down, or fall down and bury everyone).
Also, it’s email. It was literally designed to work in such a way that you can be down for days and still get your email.
> You might have multiple datacenters, but until everyone isn’t in the same office, you still have the same problem (office can burn down, or fall down and bury everyone).
Fastmail has multiple offices.
> Also, it’s email. It was literally designed to work in such a way that you can be down for days and still get your email.
Delivery is designed that way, not storage. Once Fastmail tells the sender that a message was delivered to an inbox, Fastmail cannot ask the sender to redeliver it if its inbox storage is lost.