Chain-Safe Small Delivery / 安全小件交接机制

This mechanism turns the rite.chain_safe_small_delivery.unlocked flag from Lin Qiao’s recruitment line into a real post-recruitment action.

Unlock gate

Both states are required:

unlock_gate:
  flag.rite.chain_safe_small_delivery.unlocked: true
  flag.route_asset.lin_qiao_custody_runner: true

The route is unavailable if only a generic runner, high-rank handler, or archive seal exists.

Per-use contract

Every use creates a fresh delivery docket with packet, source custodian, destination custodian, runner state, payment/protection, proof, lane, future reader, posture, delivery state after, future effect, and counters.

The repeatable rite may reduce custody_gap or improve receipt legitimacy, but each branch must also spend or raise at least one of:

  • favor_debt;
  • payroll_leak;
  • inspection_heat;
  • sponsor_stop_loss_pressure;
  • fan_oxygen_resentment;
  • custody_gap through delay;
  • runner_risk.

Branch rules

  • deliver_lawful_chain: named chain and receipt legitimacy, with payroll/favor cost.
  • publish_split_counterreceipt: public verification, with sponsor/inspection cost.
  • hold_for_runner_protection: reduced runner risk, with custody delay.
  • route_through_fan_queue: delivery with public witnesses, resentment, and inspection cost.
  • overload_route_asset: false-safe breach, hostile witness, suppression, and recovery-only future use.

Safety invariant

safety_invariant:
  one_unlock_does_not_authorize_all_packets: true
  one_delivery_does_not_clean_future_deliveries: true
  high_rank_actor_does_not_replace_physical_carrier: true
  explicit_absence_does_not_count_as_safe_delivery: true
  universal_courier_permission: false

The mechanism is observed by Lin Qiao Chain-Safe Delivery Lens.