Call-Sheet Watermark Afteruse Receipt Lens / 通告单水印后用回执 Lens

Intent

A call-sheet watermark receipt records a production-facing schedule artifact: which call sheet carried the watermark, who held or altered it, which performer or crew member relied on it, and what future route tries to spend it as authority. The watermark can support a narrow afteruse only when the source sheet, watermark holder, harmed or displaced party, proof bridge, selected branch, and future reader remain visible. It must not become blanket schedule consent for later broadcast, sponsor makegood, memorial custody, or continuity edits.

Scope

  • Evidence surface: storyteller.card.call_sheet_watermark_docket.v1
  • Review rite: storyteller.rite.call_sheet_watermark_afteruse_review.v1
  • Default event: storyteller.event.false_call_sheet_watermark_default.v1
  • Required surface: source call-sheet watermark row, watermark holder or explicit absence, named performer/crew claimant or explicit absence, requested future use, harmed or displaced party, proof bridge or explicit absence, selected afteruse branch, cost, and future reader effect.

Entry Oracle

A satisfying implementation proves:

  • trigger_kind: state_pressure
  • source_call_sheet_watermark_receipt_visible: true
  • watermark_holder_or_explicit_absence_visible: true
  • performer_or_crew_claimant_visible: true
  • requested_afteruse_visible: true
  • later_reader_or_route_attempts_consumption: true
  • harmed_or_displaced_party_visible: true
  • proof_bridge_or_explicit_absence_visible: true
  • selected_afteruse_branch_visible: true
  • future_reader_consumes_watermark_state: true
  • no_watermark_as_universal_schedule_consent: true
  • no_fixed_turn_day_week_raw_count_dashboard_or_lens_health_trigger: true

The lens fails if a call-sheet watermark, copied roster, production stamp, or schedule screenshot becomes universal consent for any later route without a named holder, affected party, proof bridge, and route scar.

Branch expectation

Branch familyReliefCostFuture route effect
Certify watermark scopevalidates only the named call-sheet usepublic receiptwatermark_scope_required
Lawful annex onlylegal annex can read the watermark rowarchive frictionannex_reader_required
Sponsor schedule capturesponsor can cite only with disclaimerdistrustsponsor_disclaimer_required
Editor checksum holdeditor can hold but not launder the sheetedit delaychecksum_reader_required
Inspector quarantinewatermark cannot travel until inspectedschedule heatquarantine_required
Split call sheet from broadcast readersproduction sheet and broadcast archive divergeroute costliersplit_required
False roster consent defaultfastest reader treats watermark as blanket consentdisplaced claimant scarrecovery_only

Replay evidence expectation

lens_id: storyteller.lens.call_sheet_watermark_afteruse_receipt.v1
session_id_prefix: lens-storyteller-lens-call-sheet-watermark-afteruse-receipt-v1-
seed: call-sheet-watermark-20260710
replay: lens/replays/call-sheet-watermark-afteruse-receipt.replay.json
assertions:
  - durable lens-scoped session exists
  - call-sheet watermark review is selected with `--prefer-rite`
  - replay records a bounded call-sheet watermark afteruse branch
  - false roster consent remains a scar, not universal permission

Anti-regression clauses

  • A watermark is not blanket schedule consent.
  • A copied roster does not erase the performer, crew claimant, or displaced party.
  • Sponsor-safe schedule copy cannot replace a proof bridge.
  • Every accepted afteruse branch leaves a future reader, route effect, or recovery scar.