Excluded Counterreceipt Challenge / 被排除者反回执挑战机制
Excluded Counterreceipt Challenge defines how a previously excluded constituency can contest a receipt that is being consumed as clean closure.
The mechanism sits after consent, mandate, discharge, and receipt-recovery systems. It does not retry the earlier hearing. It asks a narrower question: who was left outside the prior receipt, and what happens when the next reader tries to use that receipt against them?
Mechanic promise
A prior result may remain valid for its named scope, but it cannot become global closure unless the excluded constituency, missing reader, proof surface, messenger state, and future consumer are all visible.
The mechanism prevents these laundering patterns:
- lawful-only result cited as whole-public consent;
- public receipt cited as archive or route-asset discharge;
- sponsor settlement cited as fan consent;
- masked witness protection cited as consent;
- pirate relay cited as lawful mandate;
- paid witness cited as future waiver for every excluded reader;
- silence after a counterreceipt cited as acceptance.
State model
counterreceipt_state:
source_receipt_id: <stable id>
source_surface: oxygen_haircut_witness | witness_carrier_discharge | fan_delegate_mandate | consent_debt_transfer | receipt_counterclaim_recovery | equivalent
represented_scope: public_only | lawful_only | sponsor_only | archive_only | route_asset_only | named_constituency | explicit_absence | equivalent
excluded_constituency: oxygen_creditors | mourning_queue | witness_public | refund_claimants | support_light_collective | artist_privacy_fans | access_caption_readers | explicit_absence_with_reason | equivalent
false_clean_claim: receipt_closed_all | discharge_closed_all | mandate_spoke_for_all | lawful_annex_as_public | sponsor_settlement_as_consent | mask_as_consent | pirate_relay_as_lawful | equivalent
counterreceipt_proof: oxygen_stub | public_receipt | witness_oath | access_caption_log | route_asset_trace | lawful_petition | pirate_packet | edit_checksum | explicit_absence | equivalent
messenger_state: protected | unpaid | exposed | masked | pirate_risk | lawful_only | hostile | captured | explicit_absence | equivalent
future_consumer: sponsor | lawful_reader | archive | fan_public | route_claimant | public_table | broadcast_reality | equivalent
resolution: unopened | recognized | narrowed | managed_silence | lawful_appeal | public_counter_broadcast | protected_anonymous | quarantined | false_closed | recovery_only | equivalentEntry rules
Open the mechanism only when:
- a prior receipt-like result exists;
- its represented scope and excluded constituency are visible or explicitly absent with reason;
- a future reader attempts to consume it as clean closure;
- a counterreceipt proof or explicit absence is visible;
- a messenger, proof carrier, or explicit absence is visible;
- the result can mutate a future route, reader, package, proof window, or broadcast-reality surface.
Never open from fixed turn number, day/week interval, chapter quota, raw fan count, raw receipt count, dashboard state, lens health, or generic fan unrest.
Resolution postures
accept_counterreceipt
The excluded constituency is recognized, and the prior receipt becomes addendum-required or callback-required.
Success relief: false closure is blocked.
Success cost: sponsor, archive, route, inspection, or messenger burden rises.
narrow_original_receipt
The prior receipt remains valid, but only for the represented scope.
Success relief: prior relief survives.
Success cost: excluded readers remain delayed and future public/lawful/sponsor split remains visible.
managed_silence
The desk buys time or quiets the messenger without making the counterreceipt cleanly disappear.
Success relief: immediate pressure can fall.
Success cost: contract capture, public distrust, future recovery cost, or hostile constituency risk rises.
lawful_appeal
The counterreceipt is held by a lawful reader or escrow path.
Success relief: false public closure is blocked.
Success cost: lawful-only routing, bureau favor debt, public delay, or archive debt rises.
public_counter_broadcast
The counterreceipt is made public.
Success relief: private capture weakens and excluded constituency becomes visible.
Success cost: sponsor retaliation, inspection heat, fan instability, or pirate exposure rises.
protect_anonymous_source
The proof is preserved while the messenger is shielded.
Success relief: the counterreceipt remains playable.
Success cost: source ambiguity, edit debt, lawful admissibility cost, or public distrust rises.
quarantine_receipt
The source receipt cannot be consumed until scope is repaired.
Success relief: unsafe consumption is blocked.
Success cost: route delay, archive debt, schedule pressure, or oxygen liability rises.
suppress_default
The counterreceipt is hidden, bought as silence, or misfiled as already answered. 反回执压制默认 fires or arms.
Invariants
- A counterreceipt cannot erase all prior relief for free.
- A prior receipt cannot become clean for every reader by being uncontested in prose.
- Payment may reduce messenger risk, but payment cannot become consent for the excluded constituency.
- Lawful custody may preserve proof, but lawful custody cannot become public consent without addendum.
- Public broadcast may expose proof, but broadcast cannot become lawful mandate without appeal.
- A mask may protect a person, but a mask cannot become consent.
- A pirate relay may defeat private capture, but it cannot become clean lawful mandate.
Counter hooks
Potential relief surfaces:
receipt_scope_legibilitycounterreceipt_visibilityexcluded_constituency_recognitionfalse_closure_pressuremessenger_safetyroute_asset_truthfulness
Potential cost surfaces:
sponsor_stop_loss_pressureinspection_heatarchive_debtfan_oxygen_resentmentpublic_receipt_distrustcontract_captureedit_debtsource_ambiguitypirate_exposurefuture_route_cost
Replay evidence shape
mechanic_id: storyteller.mechanic.excluded_counterreceipt_challenge.v1
source_receipt:
id: <receipt id>
represented_scope: <scope>
excluded_constituency: <constituency>
state_pressure:
future_consumer: <reader or route>
false_clean_claim: <claim>
counterreceipt_proof: <proof or explicit_absence>
messenger_state: <state or explicit_absence>
resolution:
selected_posture: <posture>
receipt_scope_after: <scope>
excluded_constituency_state_after: <state>
future_reader_or_route_effect: <effect>
default_event: storyteller.event.counterreceipt_suppression_default.v1 | explicit_absence
assertions:
- entry_is_state_triggered
- excluded_constituency_visible
- false_clean_claim_visible
- future_consumer_visible
- success_has_cost
- no_universal_clean_receiptNon-goals
- Not a new voting system.
- Not a generic appeal board.
- Not a raw content-count target.
- Not valid if the only result is mood, money, reputation, or fan anger.