Redis backs the DRF throttles, and the stock RedisCache raises inside the throttle check when Redis is unreachable or refusing writes (a failed RDB snapshot disables writes by default) — turning a cache problem into a blanket 500, which is exactly what took prod down. ResilientRedisCache treats backend failures as cache misses, logs the first one per worker, and lets rate limits degrade until Redis is back.