Wardrobe Evidence Afteruse Receipt
Wardrobe Evidence Afteruse Receipt makes a completed wardrobe custody row reusable only through named afteruse scope.
The mechanism exists when a prior garment state is still true but a later reader wants to spend it in a different context. A public relic does not automatically satisfy a lawful annex. A sponsor recut does not automatically prove body presence. A returned garment cannot become public proof unless its source row, harmed reader, proof bridge, selected posture, and future route effect remain visible.
Entry Contract
wardrobe_evidence_afteruse_receipt:
trigger_kind: state_pressure
source_custody_row_visible: true
source_garment_or_explicit_absence_visible: true
source_wearer_or_claimed_wearer_visible_or_explicit_absence: true
source_trace_state_visible_or_explicit_absence: true
source_custody_posture_visible: true
requested_afteruse_visible: true
future_reader_consumes_garment_state: true
harmed_or_excluded_reader_visible_or_explicit_absence: true
player_can_certify_restrict_bridge_unwind_reissue_quarantine_or_default: true
no_fixed_turn_trigger: true
no_fixed_day_or_week_trigger: true
no_raw_wardrobe_count_trigger: true
no_dashboard_or_lens_health_trigger: trueAfteruse States
wardrobe_afteruse_states:
- unspent_custody
- afteruse_requested
- custody_scope_certified
- reader_restricted
- trace_bridge_attached
- capture_unwound
- wardrobe_receipt_reissued
- afteruse_quarantined
- false_clean_afteruse
- captured_by_reader
- hostile_reader
- recovery_onlyThe implementation fails if a source garment state is collapsed into a generic owned, worn, returned, or proof flag.
Branch Contract
Every non-default branch must record:
wardrobe_afteruse_resolution:
source_custody_row: <row id>
source_garment_or_absence: <garment id or explicit_absence>
source_wearer_or_claimed_wearer: <wearer claimed wearer or explicit_absence>
source_trace_state_before_afteruse: clean | blood | burn | oxygen_tag | sweat | repair_stitch | voice_sync_marker | sponsor_logo | memorial_trace | counterfeit | explicit_absence
source_custody_posture: preserve_trace | return_with_receipt | sponsor_recut | safety_repair | public_relic | collateralize | split_custody | accept_default
requested_afteruse: body_proof | sponsor_package | lawful_annex | public_memorial | archive_release | safety_patch | recovery_collateral_call | management_report | ending_gate | equivalent
future_reader_or_route: sponsor | lawful_reader | archive | public_table | safety_crew | recovery_claimant | body_proof_route | management_report | ending | equivalent
harmed_or_excluded_reader: artist | lawful_reader | sponsor | archive | public_reader | safety_crew | recovery_claimant | witness | route_asset_holder | explicit_absence
proof_bridge_or_explicit_absence: trace_receipt | lawful_annex | public_addendum | custody_sample | repair_log | collateral_call_notice | fresh_wardrobe_receipt | explicit_absence
selected_afteruse_posture: certify_custody_scope | restrict_afteruse_reader | attach_trace_bridge | unwind_sponsor_or_public_capture | reissue_wardrobe_receipt | quarantine_wardrobe_afteruse
wardrobe_afteruse_state_after: <state>
relief_any: []
cost_any: []
future_effect_any: []Failure Cases
The mechanism must fail if:
- a public relic unlocks lawful proof with no afteruse row;
- a sponsor recut is accepted as clean body presence;
- a safety repair is later cited as intact trace;
- a returned garment is used against the wearer without a proof bridge;
- a split-custody row is accepted by every reader;
- a recovery collateral garment is treated as discharged collateral;
- default changes only notification text, reputation, or a generic pressure counter.
Default Contract
The default is False Wardrobe Afteruse Default. It must record false-clean wardrobe afteruse, source custody row or explicit absence, hidden or overbroad custody scope, capturing reader or route, harmed reader, after-state, future reader effect, at least three counter deltas, and durable mutation.