Balcony Cue Light Afteruse Receipt Lens / 楼座提示灯后用回执 Lens

Observable promise

A balcony cue light flashed during an evacuation hold must not become clean universal audience consent, crowd-control authority, sponsor recap proof, or archive route clearance. The player can certify the narrow cue-light scope, restrict the future reader, attach usher proof, reopen the harmed patron, split safety signal from consent custody, quarantine the afteruse, or let a false-clean default harden.

Oracle

entry_state:
  trigger_kind: state_pressure
  source_cue_light_row_visible: true
  balcony_section_visible_or_explicit_absence: true
  usher_visible_or_explicit_absence: true
  safety_context_visible: true
  cited_light_scope_visible: true
  requested_afteruse_visible: true
  harmed_patron_visible_or_explicit_absence: true
  proof_bridge_or_explicit_absence_visible: true
  future_reader_consumes_light_state: true
  no_fixed_turn_trigger: true
  no_dashboard_or_lens_health_trigger: true

The lens fails if the cue light is used as a raw count target, a fixed-turn trigger, a dashboard/lens-health trigger, or a universal clean permission slip.

Docket shape

balcony_cue_light_docket:
  source_cue_light_row: balcony.CL-12 amber hold light from house safety log
  balcony_section_or_absence: upper balcony left vomitory; late-return row lacks countersigned usher note
  usher_or_absence: floor usher visible for the evacuation hold, but absent from sponsor recap
  safety_context: amber hold during aisle compression, not audience approval of broadcast capture
  cited_light_scope: one physical cue light, one evacuation hold, one safety log row
  requested_afteruse: sponsor recap and archive export attempt to spend the light as audience consent, crowd authority, and route clearance
  future_reader_or_route: crowd-stability recap route asset
  harmed_patron_or_absence: mobility-aid patron and late-caption balcony listener
  proof_bridge_or_explicit_absence: house log, cue-light maintenance tag, and missing usher countersignature
  selected_light_posture: certify_light_scope
  light_afteruse_state_after: certified_scope_only
  future_reader_or_route_effect: named_scope_required
  counter_deltas: { cueLightProgress: 2, usherBridgeTrust: 1, lightCustodyDriftRisk: -1, futureRouteCost: 1 }
  universal_clean_light: false

Branch expectation

The review must expose certify_light_scope, restrict_light_reader, attach_usher_bridge, reopen_harmed_patron_light_claim, split_safety_signal_from_consent, quarantine_light_afteruse, false_light_default, and future_effect_any. Each branch must name Relief, Cost, and future route effects.

Durable evidence

Generated evidence should use a lens-scoped durable session and export lens/replays/balcony-cue-light-afteruse-receipt.certify-scope.replay.json with seed/session/action provenance.