Excluded Counterreceipt Challenge / 被排除者反回执挑战机制

Excluded Counterreceipt Challenge defines how a previously excluded constituency can contest a receipt that is being consumed as clean closure.

The mechanism sits after consent, mandate, discharge, and receipt-recovery systems. It does not retry the earlier hearing. It asks a narrower question: who was left outside the prior receipt, and what happens when the next reader tries to use that receipt against them?

Mechanic promise

A prior result may remain valid for its named scope, but it cannot become global closure unless the excluded constituency, missing reader, proof surface, messenger state, and future consumer are all visible.

The mechanism prevents these laundering patterns:

  • lawful-only result cited as whole-public consent;
  • public receipt cited as archive or route-asset discharge;
  • sponsor settlement cited as fan consent;
  • masked witness protection cited as consent;
  • pirate relay cited as lawful mandate;
  • paid witness cited as future waiver for every excluded reader;
  • silence after a counterreceipt cited as acceptance.

State model

counterreceipt_state:
  source_receipt_id: <stable id>
  source_surface: oxygen_haircut_witness | witness_carrier_discharge | fan_delegate_mandate | consent_debt_transfer | receipt_counterclaim_recovery | equivalent
  represented_scope: public_only | lawful_only | sponsor_only | archive_only | route_asset_only | named_constituency | explicit_absence | equivalent
  excluded_constituency: oxygen_creditors | mourning_queue | witness_public | refund_claimants | support_light_collective | artist_privacy_fans | access_caption_readers | explicit_absence_with_reason | equivalent
  false_clean_claim: receipt_closed_all | discharge_closed_all | mandate_spoke_for_all | lawful_annex_as_public | sponsor_settlement_as_consent | mask_as_consent | pirate_relay_as_lawful | equivalent
  counterreceipt_proof: oxygen_stub | public_receipt | witness_oath | access_caption_log | route_asset_trace | lawful_petition | pirate_packet | edit_checksum | explicit_absence | equivalent
  messenger_state: protected | unpaid | exposed | masked | pirate_risk | lawful_only | hostile | captured | explicit_absence | equivalent
  future_consumer: sponsor | lawful_reader | archive | fan_public | route_claimant | public_table | broadcast_reality | equivalent
  resolution: unopened | recognized | narrowed | managed_silence | lawful_appeal | public_counter_broadcast | protected_anonymous | quarantined | false_closed | recovery_only | equivalent

Entry rules

Open the mechanism only when:

  1. a prior receipt-like result exists;
  2. its represented scope and excluded constituency are visible or explicitly absent with reason;
  3. a future reader attempts to consume it as clean closure;
  4. a counterreceipt proof or explicit absence is visible;
  5. a messenger, proof carrier, or explicit absence is visible;
  6. the result can mutate a future route, reader, package, proof window, or broadcast-reality surface.

Never open from fixed turn number, day/week interval, chapter quota, raw fan count, raw receipt count, dashboard state, lens health, or generic fan unrest.

Resolution postures

accept_counterreceipt

The excluded constituency is recognized, and the prior receipt becomes addendum-required or callback-required.

Success relief: false closure is blocked.

Success cost: sponsor, archive, route, inspection, or messenger burden rises.

narrow_original_receipt

The prior receipt remains valid, but only for the represented scope.

Success relief: prior relief survives.

Success cost: excluded readers remain delayed and future public/lawful/sponsor split remains visible.

managed_silence

The desk buys time or quiets the messenger without making the counterreceipt cleanly disappear.

Success relief: immediate pressure can fall.

Success cost: contract capture, public distrust, future recovery cost, or hostile constituency risk rises.

lawful_appeal

The counterreceipt is held by a lawful reader or escrow path.

Success relief: false public closure is blocked.

Success cost: lawful-only routing, bureau favor debt, public delay, or archive debt rises.

public_counter_broadcast

The counterreceipt is made public.

Success relief: private capture weakens and excluded constituency becomes visible.

Success cost: sponsor retaliation, inspection heat, fan instability, or pirate exposure rises.

protect_anonymous_source

The proof is preserved while the messenger is shielded.

Success relief: the counterreceipt remains playable.

Success cost: source ambiguity, edit debt, lawful admissibility cost, or public distrust rises.

quarantine_receipt

The source receipt cannot be consumed until scope is repaired.

Success relief: unsafe consumption is blocked.

Success cost: route delay, archive debt, schedule pressure, or oxygen liability rises.

suppress_default

The counterreceipt is hidden, bought as silence, or misfiled as already answered. 反回执压制默认 fires or arms.

Invariants

  • A counterreceipt cannot erase all prior relief for free.
  • A prior receipt cannot become clean for every reader by being uncontested in prose.
  • Payment may reduce messenger risk, but payment cannot become consent for the excluded constituency.
  • Lawful custody may preserve proof, but lawful custody cannot become public consent without addendum.
  • Public broadcast may expose proof, but broadcast cannot become lawful mandate without appeal.
  • A mask may protect a person, but a mask cannot become consent.
  • A pirate relay may defeat private capture, but it cannot become clean lawful mandate.

Counter hooks

Potential relief surfaces:

  • receipt_scope_legibility
  • counterreceipt_visibility
  • excluded_constituency_recognition
  • false_closure_pressure
  • messenger_safety
  • route_asset_truthfulness

Potential cost surfaces:

  • sponsor_stop_loss_pressure
  • inspection_heat
  • archive_debt
  • fan_oxygen_resentment
  • public_receipt_distrust
  • contract_capture
  • edit_debt
  • source_ambiguity
  • pirate_exposure
  • future_route_cost

Replay evidence shape

mechanic_id: storyteller.mechanic.excluded_counterreceipt_challenge.v1
source_receipt:
  id: <receipt id>
  represented_scope: <scope>
  excluded_constituency: <constituency>
state_pressure:
  future_consumer: <reader or route>
  false_clean_claim: <claim>
  counterreceipt_proof: <proof or explicit_absence>
  messenger_state: <state or explicit_absence>
resolution:
  selected_posture: <posture>
  receipt_scope_after: <scope>
  excluded_constituency_state_after: <state>
  future_reader_or_route_effect: <effect>
  default_event: storyteller.event.counterreceipt_suppression_default.v1 | explicit_absence
assertions:
  - entry_is_state_triggered
  - excluded_constituency_visible
  - false_clean_claim_visible
  - future_consumer_visible
  - success_has_cost
  - no_universal_clean_receipt

Non-goals

  • Not a new voting system.
  • Not a generic appeal board.
  • Not a raw content-count target.
  • Not valid if the only result is mood, money, reputation, or fan anger.