Single Exit Protection Allocation Mechanism

This mechanism converts the opening’s single exit allowance from decorative prose into an executable one-of-four allocation.

first prescription: exit allowance = 1
  -> selected opening programme completes
  -> physical exit clause enters hand
  -> assign clause + one available person
  -> choose truthful protection | false voluntary copy
  -> allowance = 0, protected targets = 1, displaced candidates = 3
  -> sponsor review reads the allocation docket

Runtime invariants

  1. slot-clause accepts only card-storyteller-exit-clause.
  2. slot-target accepts only Li Xingtong, Qi Jin, Mu Ning, or Yu Lan.
  3. Every option declares requiredSlotCardIds; the selected target and assigned person must match exactly.
  4. Resolution unsets the one-exit allowance and completes a non-repeatable rite.
  5. Exactly one single_exit_allocation.target.* flag and exactly three single_exit_allocation.displaced.* flags are emitted.
  6. The protected person card stays in hand. State records loss of public stage, not loss of personhood.
  7. Truthful and fake-voluntary postures share the same cardinality but produce different trust, consent-debt, and sponsor-pressure states.

Availability is source-driven

Candidate presence comes from existing playable routes. Li Xingtong is present at the licence handoff; Qi Jin and Mu Ning are granted by their selected opening triage branches; Yu Lan is granted by the fan oxygen audit. The rite never creates a virtual target and never treats a name in prose as an in-hand person.

Authority boundary

The mechanism owns only allocation of one public-stage protection. It does not recruit the target, prove consent, establish death or personhood, release contracts generally, or grant voice, identity, archive, memorial, medical, or naming authority.