I get how it works...
That’s fine for enterprise apps - not for things ‘safety critical’....which is, imo, more relevant for this application.
One could argue that a failover system would be even better for something safety critical because it continues running without significant data loss and only a slight initial delay. Restoring from traditional backup means the system is down while you restore.