Confidant Promise Ledger / 私约承诺账本

Confidant Promise Ledger is a route-bearing card for promises made to named characters in private: a protected confession, refusal, source, boundary, route secret, witness name, rehearsal truth, black-box checksum, oxygen queue detail, or similar material that a later desk wants to use.

This is not a generic relationship score. The row exists only when a private promise can change present proof, route access, recruitability, missability, handler availability, public receipt, legal posture, or broadcast reality.

Card role

The ledger records the difference between being trusted with material and being allowed to spend that material.

A valid row must show:

confidant_promise_row:
  promise_id: <stable id>
  promise_holder: producer | handler | archive | editor | sponsor | public_witness | equivalent
  confidant_character: yu_lan | baiya | shen_luo | han_yanshuang | mu_ning | ai_sheng | li_xingtong | equivalent
  promise_origin_surface: character_scene | witness_intake | edit_room | archive_copy | oxygen_queue | rehearsal | route_asset | lawful_hearing | equivalent
  protected_material: confession | refusal | source_identity | route_secret | witness_name | checksum | unreleased_take | private_boundary | equivalent
  permission_scope: private_only | named_hearing_only | anonymous_public | lawful_only | route_asset_only | emergency_only | disputed | explicit_absence
  requested_use: proof_anchor | public_addendum | lawful_appeal | sponsor_countercopy | management_metric | route_unlock | handler_authority | witness_protection | equivalent
  pressure_actor: sponsor | archive | inspector | fan_public | management | editor | route_claimant | producer | equivalent
  proof_or_absence: <receipt oath checksum statement memory note or explicit_absence>
  threat_if_unused: route_blocked | legal_exposure | public_distrust | witness_unprotected | proof_gap | handler_burden | sponsor_capture | equivalent
  promise_state: pending | honored | renegotiated | anonymized | protected_disclosure | traded | refused | breached | hostile | missed | recovery_only
  future_character_or_route: <character route route asset rite ending scar or explicit_absence>

The row fails as content if it only says a character likes, trusts, hates, or supports the producer.

Visible surfaces

A row may be created from:

Branch states

promise_states:
  honored:
    meaning: material remains private and the route must find another proof or cost
  renegotiated:
    meaning: character grants a narrower use with explicit scar
  anonymized:
    meaning: proof is used without exposing the source, but ambiguity rises
  protected_disclosure:
    meaning: material can enter a hearing only with shield and future obligation
  traded:
    meaning: a faction receives access and captures part of the route
  refused:
    meaning: the promise blocks the requested use and forces substitute play
  breached:
    meaning: the material is spent outside scope
  hostile:
    meaning: the character remains visible but becomes an opposing claimant or witness
  missed:
    meaning: the character route cannot be opened from this promise again
  recovery_only:
    meaning: the route survives only through apology, protection, restitution, or replacement proof

Counter contract

Every resolved row must mutate at least one relief, one cost, and one future character or route effect.

Expected surfaces include confidant_trust, character_availability, recruitability, missability, witness_exposure, handler_burden, proof_legitimacy, source_ambiguity, public_receipt_distrust, sponsor_capture, archive_debt, producer_license_pressure, route_asset_access_cost, and future_recovery_cost.

Non-goals

  • Not a romance or affection meter.
  • Not a generic friendship tag.
  • Not valid unless a named promise can affect proof, route play, recruitment, missability, or future character availability.
  • Not a way to erase 同意债转移线; it creates a visible promise row before consent debt is spent.
  • Not a replacement for 处理人负荷账本 or 导出证据回流分岔线.