The system will have failed, but it will have failed because it exceeded stated limits.
The system didn't fail. Who can prove it failed?
Someone who attempts to use the service and is unable to do so.
You can't require everyone to recognize such a failure because that would be a consensus outcome and now you are relying on a failed consensus system to produce consensus.
Consensus only exists within the specified limits.