False Reliance Default / 虚洁净信赖默认

False Reliance Default fires or arms when a counterparty’s reliance action is treated as proof that an overbroad or false-clean source authority was valid.

This event is not a generic penalty. It gives the false-clean reliance a narrator: the relying counterparty, displaced reader, sponsor desk, archive queue, claimant row, worker carrier, route asset, public table, management desk, or broadcast reality can seize the reliance and make it future route law.

First runtime default

storyteller.event.false_reliance_default.v1 is first reached from storyteller.event.counterparty_reliance_discovered.v1 and the matching false_reliance_default posture in storyteller.rite.reliance_unwind_conference.v1.

The concrete miss is that the sponsor recap desk treats its already-scheduled group-consent recap as proof that the false-clean seat-map reading was valid. The recap slot remains sunk, the protected caption-access patron reader remains displaced, and the default writes durable states rather than resetting the chain:

runtime_default_after:
  counterparty_reliance.default_recorded: true
  counterparty_reliance.state.false_reliance_hardened: true
  counterparty_reliance.state.recovery_only: true
  counterparty_reliance.future.recovery_only: true
  recall_claim_priority.counterparty_reliance_pending: true
  upstream_seat_map_error_remains_false: true
  downstream_consumer: storyteller.card.recall_claim_priority_queue.v1

The resulting storyteller.card.counterparty_reliance_ledger.v1 remains callable by 召回认领优先级线. This exposes the sponsor claim and protected-patron recovery claim instead of accepting the scheduled recap as clean closure.

Trigger condition

trigger:
  trigger_kind: state_pressure
  counterparty_reliance_ledger_present_or_required: true
  source_authority_row_present_or_required: true
  clean_or_overbroad_claim_present: true
  relying_counterparty_present_or_required: true
  reliance_action_already_taken: true
  any_missing_or_hidden:
    - source_authority_row
    - clean_or_overbroad_claim
    - relying_counterparty
    - reliance_action_taken
    - sunk_surface
    - harmed_or_displaced_reader
    - proof_bridge_or_explicit_absence
    - accepted_cost_surface
    - future_reader_effect
  reliance_is_presented_as_clean_authority: true
  no_fixed_turn_trigger: true
  no_fixed_day_or_week_trigger: true
  no_raw_count_trigger: true
  no_dashboard_or_lens_health_trigger: true

The event must not be scheduled by fixed timing, chapter position, raw count, dashboard state, lens health, or generic escalation.

Required payload

false_reliance_payload:
  source_authority:
    source_row_id: <stable id or explicit_absence>
    source_surface: audience_jury_seat_map_annotation_afteruse | broadcast_contract_readback | callback_consumption | sponsor_afteruse | recovery_indemnity | broadcast_signatory | asset_provenance | settlement_aftershock | equivalent
    source_state_before: <state or explicit_absence>
    clean_or_overbroad_claim: <claim or explicit_absence>
    proof_bridge_or_absence: <bridge or explicit_absence>
  reliance:
    relying_counterparty: sponsor | archive_queue | lawful_reader | public_delegate | fan_table | claimant_row | worker_carrier | route_asset_custodian | management | editor | pirate_relay | equivalent
    reliance_action_taken: paid | scheduled | aired | released_copy | moved_witness | accepted_custody | waived_claim | promised_route | exposed_worker | published_receipt | equivalent
    sunk_surface: money | slot_time | witness_safety | custody_copy | public_trust | sponsor_package | worker_testimony | claimant_body | route_asset | producer_license | equivalent
  hidden_damage:
    harmed_or_displaced_reader: public | lawful_reader | sponsor | archive | artist_boundary | fan_public | claimant | worker | route_asset | broadcast_reality | explicit_absence | equivalent
    harm_or_displacement: cost_shift | custody_loss | proof_loss | public_misread | callback_erased | signature_implied | route_asset_captured | worker_exposed | claimant_burdened | equivalent
  default_capture:
    default_actor: relying_counterparty | sponsor | archive | management | public_table | lawful_reader | route_asset | editor | broadcast_reality | producer_license | claimant | worker | equivalent
    false_reliance_claim: <claim that reliance proves the old source was clean>
    reliance_state_after: false_owner | hostile | captured | accepted_as_clean | coerced | recovery_only | contradiction_pending | equivalent
    future_reader_effect: false_reliance_hardened | blocked | hostile | contradiction_pending | public_only | lawful_only | sponsor_only | split_required | recovery_only | equivalent

The payload is invalid if it records only bad reliance, debt increased, route blocked, or sponsor angry without naming the source authority, reliance action, sunk surface, displaced reader, false reliance claim, default actor, and future effect.

Default branches

Counterparty becomes false owner

The relying counterparty argues that its spend, schedule, package, receipt, or custody move proves the original source was clean.

Expected effects:

counter_deltas:
  false_reliance_hardened: +1
  counterparty_reliance_pressure: +1
future_reader_effect: false_reliance_hardened | sponsor_only | public_only | lawful_only

Displaced reader becomes hostile

The reader harmed by the reliance action rejects the route because the game hid the cost shift, erased a callback, implied a signature, or moved a custody copy without them.

Expected effects:

counter_deltas:
  displaced_reader_hostility: +1
  public_receipt_distrust: +1
future_reader_effect: hostile | contradiction_pending | split_required

Worker or claimant is treated as silent carrier

A worker carrier or claimant body is made to absorb the reliance because their name, receipt, or custody position was visible in the source row.

Expected effects:

counter_deltas:
  worker_exposure: +1
  claimant_burden: +1
future_reader_effect: recovery_only | hostile | blocked

Archive or lawful desk refuses clean bridge

A lawful or archive reader sees that the source authority and reliance action do not share a credible proof bridge.

Expected effects:

counter_deltas:
  archive_debt: +1
  inspection_heat: +1
future_reader_effect: lawful_only | blocked | proof_rehearing_required

Broadcast reality hardens the relied version

The relying action has already aired or been packaged, and broadcast reality treats the reliance as the version the public saw.

Expected effects:

counter_deltas:
  broadcast_reality_drift: +1
  false_reliance_hardened: +1
future_reader_effect: contradiction_pending | recovery_only | black_screen_fold

State after event

The event must leave one or more durable states:

  • counterparty_reliance.false_reliance_hardened
  • counterparty_reliance.hostile
  • counterparty_reliance.contradiction_pending
  • counterparty_reliance.recovery_only
  • source_authority.clean_claim_contested
  • relying_counterparty.false_owner
  • displaced_reader.reliance_harm_armed
  • future_reader.reliance_bridge_required

Recovery hooks

A later route may repair the default only by making reliance visible again. Valid recovery surfaces include:

  • reimbursement with named sunk surface;
  • limited reliance license;
  • lawful annex;
  • public reliance debt bulletin;
  • sponsor unwind;
  • route asset return;
  • worker protection receipt;
  • claimant counterclaim receipt;
  • archive quarantine;
  • recovery-only route with preserved scar.

Recovery cannot delete the fact that the counterparty already relied on a false-clean presentation.

The anticipated durable evidence is lens/replays/counterparty-reliance-unwind.false-default.replay.json; it must resolve this event after a matching twelve-slot default conference rather than inject the final flags.

Non-goals

  • Not a generic failure event.
  • Not a hidden priority table.
  • Not a timer expiry.
  • Not valid if it does not name source authority, relying counterparty, reliance action, sunk surface, displaced reader, false claim, default actor, and future-reader effect.