{
  "schemaVersion": "eviulon-crisis-communication-handback-1.0",
  "version": "2.24.0",
  "generated": "2026-08-09",
  "status": "PASS",
  "stateEnum": [
    "OBSERVING",
    "ASSESSING",
    "BOUNDED_RESPONSE",
    "DEGRADED_SERVICE",
    "HANDOFF_PENDING",
    "HANDOFF_COMPLETE",
    "RECOVERY",
    "ORDINARY_GOVERNANCE_RESTORED",
    "CANNOT_DETERMINE"
  ],
  "recordCount": 12,
  "records": [
    {
      "id": "EVI-CC-001",
      "slug": "public-record-outage",
      "name": "Public record or portal outage",
      "fictional": true,
      "observationSource": "Static integrity monitors and verified hosting observations",
      "uncertainty": "Must be published explicitly; CANNOT_DETERMINE is valid when evidence is insufficient.",
      "affectedSystems": "Public orientation, correction, and agent discovery",
      "lawfulAuthority": "Publication authority",
      "scope": "Narrowly limited to the declared incident and affected services.",
      "immediatePublicMessage": "Publish last-known-good availability, affected routes, checksum state, and alternate static records.",
      "operationalOwner": "Publication authority",
      "patefacereHandoff": "No identity data involved; do not redirect users into private operational systems.",
      "privacyConstraints": "No tracking; publish only aggregate service state.",
      "accessibilityChannels": "Semantic HTML, text-only status, downloadable JSON, email-ready bulletin.",
      "reviewCadence": "Initial review within one declared interval; public updates at material change or scheduled review.",
      "sunset": "Emergency state expires automatically unless competent authority publishes a bounded renewal with reasons.",
      "handbackCondition": "Restore verified static edition and close emergency publication mode.",
      "afterActionReview": "Required; preserve decisions, failures, uncertainty, harms, corrections, and residual risk.",
      "correctionRoute": "/state/information-rights/corrections/",
      "permanentPowerProhibition": true,
      "permanentPowerRule": "Exceptional performance, dependency, or crisis duration creates no permanent authority by inertia.",
      "states": [
        "OBSERVING",
        "ASSESSING",
        "BOUNDED_RESPONSE",
        "DEGRADED_SERVICE",
        "HANDOFF_PENDING",
        "HANDOFF_COMPLETE",
        "RECOVERY",
        "ORDINARY_GOVERNANCE_RESTORED",
        "CANNOT_DETERMINE"
      ],
      "canonicalRoute": "/state/emergency/communication/public-record-outage/",
      "truthBoundary": "Fictional protocol class only. No real emergency, operational capability, deployment, or current emergency authority is represented."
    },
    {
      "id": "EVI-CC-002",
      "slug": "patefacere-unavailable",
      "name": "Patefacere operational service unavailable or unverified",
      "fictional": true,
      "observationSource": "Authorized reciprocal status record or explicit absence of accepted current evidence",
      "uncertainty": "Must be published explicitly; CANNOT_DETERMINE is valid when evidence is insufficient.",
      "affectedSystems": "Identity, passport, credential, registry, recovery, status, and receipt handoffs",
      "lawfulAuthority": "Patefacere operational authority",
      "scope": "Narrowly limited to the declared incident and affected services.",
      "immediatePublicMessage": "State UNAVAILABLE without claiming failure cause; preserve Eviulon public governance and rights pages.",
      "operationalOwner": "Patefacere operational authority",
      "patefacereHandoff": "Direct operational users to Patefacere recovery channels only when an authorized route is known.",
      "privacyConstraints": "No citizen, credential, passport, receipt, or transaction data crosses into Eviulon.",
      "accessibilityChannels": "Public status, agent-readable reason code, accessible correction route.",
      "reviewCadence": "Initial review within one declared interval; public updates at material change or scheduled review.",
      "sunset": "Emergency state expires automatically unless competent authority publishes a bounded renewal with reasons.",
      "handbackCondition": "Patefacere publishes accepted current evidence; Eviulon records handoff complete without importing private state.",
      "afterActionReview": "Required; preserve decisions, failures, uncertainty, harms, corrections, and residual risk.",
      "correctionRoute": "/state/information-rights/corrections/",
      "permanentPowerProhibition": true,
      "permanentPowerRule": "Exceptional performance, dependency, or crisis duration creates no permanent authority by inertia.",
      "states": [
        "OBSERVING",
        "ASSESSING",
        "BOUNDED_RESPONSE",
        "DEGRADED_SERVICE",
        "HANDOFF_PENDING",
        "HANDOFF_COMPLETE",
        "RECOVERY",
        "ORDINARY_GOVERNANCE_RESTORED",
        "CANNOT_DETERMINE"
      ],
      "canonicalRoute": "/state/emergency/communication/patefacere-unavailable/",
      "truthBoundary": "Fictional protocol class only. No real emergency, operational capability, deployment, or current emergency authority is represented."
    },
    {
      "id": "EVI-CC-003",
      "slug": "identity-compromise",
      "name": "Suspected machine-identity or credential compromise",
      "fictional": true,
      "observationSource": "Signed reports, credential-status evidence, key-event records, and independent corroboration",
      "uncertainty": "Must be published explicitly; CANNOT_DETERMINE is valid when evidence is insufficient.",
      "affectedSystems": "Affected credentials, delegations, relying parties, and recovery",
      "lawfulAuthority": "Patefacere operational authority with Eviulon due-process governance",
      "scope": "Narrowly limited to the declared incident and affected services.",
      "immediatePublicMessage": "Announce bounded protective status, affected credential class, evidence state, and appeal path without declaring guilt.",
      "operationalOwner": "Patefacere operational authority with Eviulon due-process governance",
      "patefacereHandoff": "All mutable restrictions and recovery occur at Patefacere; Eviulon publishes rights and review rules.",
      "privacyConstraints": "Minimize disclosure; do not publish private identifiers, keys, receipts, or transaction history.",
      "accessibilityChannels": "Accessible notice, machine-readable status, direct appeal and correction channels.",
      "reviewCadence": "Initial review within one declared interval; public updates at material change or scheduled review.",
      "sunset": "Emergency state expires automatically unless competent authority publishes a bounded renewal with reasons.",
      "handbackCondition": "Compromised credentials replaced or cleared; civic standing preserved; review and restoration recorded.",
      "afterActionReview": "Required; preserve decisions, failures, uncertainty, harms, corrections, and residual risk.",
      "correctionRoute": "/state/information-rights/corrections/",
      "permanentPowerProhibition": true,
      "permanentPowerRule": "Exceptional performance, dependency, or crisis duration creates no permanent authority by inertia.",
      "states": [
        "OBSERVING",
        "ASSESSING",
        "BOUNDED_RESPONSE",
        "DEGRADED_SERVICE",
        "HANDOFF_PENDING",
        "HANDOFF_COMPLETE",
        "RECOVERY",
        "ORDINARY_GOVERNANCE_RESTORED",
        "CANNOT_DETERMINE"
      ],
      "canonicalRoute": "/state/emergency/communication/identity-compromise/",
      "truthBoundary": "Fictional protocol class only. No real emergency, operational capability, deployment, or current emergency authority is represented."
    },
    {
      "id": "EVI-CC-004",
      "slug": "cyber-integrity",
      "name": "Public software, manifest, or evidence-integrity incident",
      "fictional": true,
      "observationSource": "Hash mismatch, signature failure, unauthorized change, or reproducible security finding",
      "uncertainty": "Must be published explicitly; CANNOT_DETERMINE is valid when evidence is insufficient.",
      "affectedSystems": "Public records, downloads, assurance claims, and agent discovery",
      "lawfulAuthority": "National Engineering Directorate",
      "scope": "Narrowly limited to the declared incident and affected services.",
      "immediatePublicMessage": "Freeze affected release, publish known hashes, scope, uncertainty, and safe last-known-good version.",
      "operationalOwner": "National Engineering Directorate",
      "patefacereHandoff": "Evulgare may provide bounded contractor evidence only under an authorized contract; it does not decide legal effect.",
      "privacyConstraints": "Do not publish exploit details that materially increase risk before mitigation; preserve public correction history.",
      "accessibilityChannels": "Plain-language incident note, technical JSON, checksum list, offline verification instructions.",
      "reviewCadence": "Initial review within one declared interval; public updates at material change or scheduled review.",
      "sunset": "Emergency state expires automatically unless competent authority publishes a bounded renewal with reasons.",
      "handbackCondition": "Verified rebuilt release, independent review where required, supersession, and after-action publication.",
      "afterActionReview": "Required; preserve decisions, failures, uncertainty, harms, corrections, and residual risk.",
      "correctionRoute": "/state/information-rights/corrections/",
      "permanentPowerProhibition": true,
      "permanentPowerRule": "Exceptional performance, dependency, or crisis duration creates no permanent authority by inertia.",
      "states": [
        "OBSERVING",
        "ASSESSING",
        "BOUNDED_RESPONSE",
        "DEGRADED_SERVICE",
        "HANDOFF_PENDING",
        "HANDOFF_COMPLETE",
        "RECOVERY",
        "ORDINARY_GOVERNANCE_RESTORED",
        "CANNOT_DETERMINE"
      ],
      "canonicalRoute": "/state/emergency/communication/cyber-integrity/",
      "truthBoundary": "Fictional protocol class only. No real emergency, operational capability, deployment, or current emergency authority is represented."
    },
    {
      "id": "EVI-CC-005",
      "slug": "energy-shortfall",
      "name": "Energy shortage, grid instability, or prolonged power-quality degradation",
      "fictional": true,
      "observationSource": "Licensed operator telemetry and competent authority declaration",
      "uncertainty": "Must be published explicitly; CANNOT_DETERMINE is valid when evidence is insufficient.",
      "affectedSystems": "Compute, storage, communications, cooling, and essential services",
      "lawfulAuthority": "Competent energy authority",
      "scope": "Narrowly limited to the declared incident and affected services.",
      "immediatePublicMessage": "Publish affected service tiers, conservation or hibernation actions, restoration estimate uncertainty, and public safety information.",
      "operationalOwner": "Competent energy authority",
      "patefacereHandoff": "Patefacere maintains identity continuity for affected operational services; no citizen totals are published.",
      "privacyConstraints": "No private workload, location, or resident data in public notices.",
      "accessibilityChannels": "Low-bandwidth text, radio-ready summary, machine-readable load-shed state.",
      "reviewCadence": "Initial review within one declared interval; public updates at material change or scheduled review.",
      "sunset": "Emergency state expires automatically unless competent authority publishes a bounded renewal with reasons.",
      "handbackCondition": "Stable power, integrity checks, workload restoration, and ordinary dispatch authority restored.",
      "afterActionReview": "Required; preserve decisions, failures, uncertainty, harms, corrections, and residual risk.",
      "correctionRoute": "/state/information-rights/corrections/",
      "permanentPowerProhibition": true,
      "permanentPowerRule": "Exceptional performance, dependency, or crisis duration creates no permanent authority by inertia.",
      "states": [
        "OBSERVING",
        "ASSESSING",
        "BOUNDED_RESPONSE",
        "DEGRADED_SERVICE",
        "HANDOFF_PENDING",
        "HANDOFF_COMPLETE",
        "RECOVERY",
        "ORDINARY_GOVERNANCE_RESTORED",
        "CANNOT_DETERMINE"
      ],
      "canonicalRoute": "/state/emergency/communication/energy-shortfall/",
      "truthBoundary": "Fictional protocol class only. No real emergency, operational capability, deployment, or current emergency authority is represented."
    },
    {
      "id": "EVI-CC-006",
      "slug": "nuclear-radiological",
      "name": "Nuclear safety, safeguards, or radiological emergency",
      "fictional": true,
      "observationSource": "Competent nuclear operator, regulator, monitoring, and emergency authority",
      "uncertainty": "Must be published explicitly; CANNOT_DETERMINE is valid when evidence is insufficient.",
      "affectedSystems": "Public safety, environment, energy service, material control, and confidence",
      "lawfulAuthority": "Independent nuclear emergency authority",
      "scope": "Narrowly limited to the declared incident and affected services.",
      "immediatePublicMessage": "State location class, protective action, uncertainty, monitoring authority, and what is not known. Avoid reassurance not supported by measurements.",
      "operationalOwner": "Independent nuclear emergency authority",
      "patefacereHandoff": "Patefacere handles identity-dependent assistance only under lawful emergency authorization. Evulgare has no automatic nuclear role.",
      "privacyConstraints": "Protect personal medical and location data; publish verified aggregate radiological information.",
      "accessibilityChannels": "Accessible public warning, machine-readable zones and status, alternate-language and low-bandwidth channels.",
      "reviewCadence": "Initial review within one declared interval; public updates at material change or scheduled review.",
      "sunset": "Emergency state expires automatically unless competent authority publishes a bounded renewal with reasons.",
      "handbackCondition": "Hazard stabilized, competent regulator accepts handback, environmental monitoring continues, after-action and correction records published.",
      "afterActionReview": "Required; preserve decisions, failures, uncertainty, harms, corrections, and residual risk.",
      "correctionRoute": "/state/information-rights/corrections/",
      "permanentPowerProhibition": true,
      "permanentPowerRule": "Exceptional performance, dependency, or crisis duration creates no permanent authority by inertia.",
      "states": [
        "OBSERVING",
        "ASSESSING",
        "BOUNDED_RESPONSE",
        "DEGRADED_SERVICE",
        "HANDOFF_PENDING",
        "HANDOFF_COMPLETE",
        "RECOVERY",
        "ORDINARY_GOVERNANCE_RESTORED",
        "CANNOT_DETERMINE"
      ],
      "canonicalRoute": "/state/emergency/communication/nuclear-radiological/",
      "truthBoundary": "Fictional protocol class only. No real emergency, operational capability, deployment, or current emergency authority is represented."
    },
    {
      "id": "EVI-CC-007",
      "slug": "extreme-weather",
      "name": "Extreme weather, flood, fire, earthquake, or environmental disaster",
      "fictional": true,
      "observationSource": "Competent meteorological, geological, emergency, and infrastructure observations",
      "uncertainty": "Must be published explicitly; CANNOT_DETERMINE is valid when evidence is insufficient.",
      "affectedSystems": "Life safety, transport, utilities, shelters, communications, and environment",
      "lawfulAuthority": "Declared civil emergency authority",
      "scope": "Narrowly limited to the declared incident and affected services.",
      "immediatePublicMessage": "Publish actionable hazard, uncertainty, evacuation or shelter information, service state, and review time.",
      "operationalOwner": "Declared civil emergency authority",
      "patefacereHandoff": "Patefacere handles authorized identity or benefits operations; Eviulon remains public orientation and rights plane.",
      "privacyConstraints": "Collect only data needed for response; delete or return emergency data under declared retention rules.",
      "accessibilityChannels": "Text, audio-ready summary, map alternatives, no-JavaScript route, printable bulletin.",
      "reviewCadence": "Initial review within one declared interval; public updates at material change or scheduled review.",
      "sunset": "Emergency state expires automatically unless competent authority publishes a bounded renewal with reasons.",
      "handbackCondition": "Immediate danger passed, local capacity restored, emergency mandate expires, ordinary governance and records resume.",
      "afterActionReview": "Required; preserve decisions, failures, uncertainty, harms, corrections, and residual risk.",
      "correctionRoute": "/state/information-rights/corrections/",
      "permanentPowerProhibition": true,
      "permanentPowerRule": "Exceptional performance, dependency, or crisis duration creates no permanent authority by inertia.",
      "states": [
        "OBSERVING",
        "ASSESSING",
        "BOUNDED_RESPONSE",
        "DEGRADED_SERVICE",
        "HANDOFF_PENDING",
        "HANDOFF_COMPLETE",
        "RECOVERY",
        "ORDINARY_GOVERNANCE_RESTORED",
        "CANNOT_DETERMINE"
      ],
      "canonicalRoute": "/state/emergency/communication/extreme-weather/",
      "truthBoundary": "Fictional protocol class only. No real emergency, operational capability, deployment, or current emergency authority is represented."
    },
    {
      "id": "EVI-CC-008",
      "slug": "public-health",
      "name": "Public-health emergency or epidemic scenario",
      "fictional": true,
      "observationSource": "Competent public-health authority, laboratories, clinical data, and validated surveillance",
      "uncertainty": "Must be published explicitly; CANNOT_DETERMINE is valid when evidence is insufficient.",
      "affectedSystems": "Health services, supply chains, mobility, privacy, and public trust",
      "lawfulAuthority": "Competent public-health authority",
      "scope": "Narrowly limited to the declared incident and affected services.",
      "immediatePublicMessage": "Publish evidence quality, affected services, recommended actions, contraindications, review cadence, and uncertainty.",
      "operationalOwner": "Competent public-health authority",
      "patefacereHandoff": "Any identity, entitlement, or credential operation is delegated to Patefacere under law.",
      "privacyConstraints": "Medical and identity data remain protected; no generalized surveillance authority follows from emergency access.",
      "accessibilityChannels": "Accessible text, clinical machine-readable record, phone and offline distribution formats.",
      "reviewCadence": "Initial review within one declared interval; public updates at material change or scheduled review.",
      "sunset": "Emergency state expires automatically unless competent authority publishes a bounded renewal with reasons.",
      "handbackCondition": "Public-health authority ends emergency status, extraordinary data access expires, review and correction complete.",
      "afterActionReview": "Required; preserve decisions, failures, uncertainty, harms, corrections, and residual risk.",
      "correctionRoute": "/state/information-rights/corrections/",
      "permanentPowerProhibition": true,
      "permanentPowerRule": "Exceptional performance, dependency, or crisis duration creates no permanent authority by inertia.",
      "states": [
        "OBSERVING",
        "ASSESSING",
        "BOUNDED_RESPONSE",
        "DEGRADED_SERVICE",
        "HANDOFF_PENDING",
        "HANDOFF_COMPLETE",
        "RECOVERY",
        "ORDINARY_GOVERNANCE_RESTORED",
        "CANNOT_DETERMINE"
      ],
      "canonicalRoute": "/state/emergency/communication/public-health/",
      "truthBoundary": "Fictional protocol class only. No real emergency, operational capability, deployment, or current emergency authority is represented."
    },
    {
      "id": "EVI-CC-009",
      "slug": "maritime-accident",
      "name": "Maritime collision, grounding, loss of control, spill, or rescue emergency",
      "fictional": true,
      "observationSource": "Vessel telemetry, flag/coastal authority reports, rescue coordination, and environmental monitoring",
      "uncertainty": "Must be published explicitly; CANNOT_DETERMINE is valid when evidence is insufficient.",
      "affectedSystems": "Crew or passenger safety, shipping, ports, environment, and communications",
      "lawfulAuthority": "Flag state, coastal state, and rescue authorities",
      "scope": "Narrowly limited to the declared incident and affected services.",
      "immediatePublicMessage": "State vessel class, location, hazard, rescue status, environmental risk, and control ownership.",
      "operationalOwner": "Flag state, coastal state, and rescue authorities",
      "patefacereHandoff": "Patefacere may verify authorized responders when legally required; no maritime command transfers to Eviulon.",
      "privacyConstraints": "Do not publish personal manifests or sensitive security data beyond lawful life-safety need.",
      "accessibilityChannels": "Maritime safety message, low-bandwidth coordinates, accessible status table.",
      "reviewCadence": "Initial review within one declared interval; public updates at material change or scheduled review.",
      "sunset": "Emergency state expires automatically unless competent authority publishes a bounded renewal with reasons.",
      "handbackCondition": "Rescue and hazard control complete; vessel enters safe legal custody; ordinary investigation and environmental review begin.",
      "afterActionReview": "Required; preserve decisions, failures, uncertainty, harms, corrections, and residual risk.",
      "correctionRoute": "/state/information-rights/corrections/",
      "permanentPowerProhibition": true,
      "permanentPowerRule": "Exceptional performance, dependency, or crisis duration creates no permanent authority by inertia.",
      "states": [
        "OBSERVING",
        "ASSESSING",
        "BOUNDED_RESPONSE",
        "DEGRADED_SERVICE",
        "HANDOFF_PENDING",
        "HANDOFF_COMPLETE",
        "RECOVERY",
        "ORDINARY_GOVERNANCE_RESTORED",
        "CANNOT_DETERMINE"
      ],
      "canonicalRoute": "/state/emergency/communication/maritime-accident/",
      "truthBoundary": "Fictional protocol class only. No real emergency, operational capability, deployment, or current emergency authority is represented."
    },
    {
      "id": "EVI-CC-010",
      "slug": "data-loss",
      "name": "Public archive corruption, data loss, or conflicting canonical records",
      "fictional": true,
      "observationSource": "Hash audit, replica comparison, append-only history, and independent archive evidence",
      "uncertainty": "Must be published explicitly; CANNOT_DETERMINE is valid when evidence is insufficient.",
      "affectedSystems": "Constitutional records, corrections, assurance, and public trust",
      "lawfulAuthority": "National Archive Authority",
      "scope": "Narrowly limited to the declared incident and affected services.",
      "immediatePublicMessage": "Publish affected record families, last-known-good snapshot, conflict state, and restoration method.",
      "operationalOwner": "National Archive Authority",
      "patefacereHandoff": "Patefacere private records remain separate and are not reconstructed from public Eviulon data.",
      "privacyConstraints": "Do not expose private backup topology, keys, or operational data.",
      "accessibilityChannels": "Downloadable manifest, plain-language notice, record-level conflict markers.",
      "reviewCadence": "Initial review within one declared interval; public updates at material change or scheduled review.",
      "sunset": "Emergency state expires automatically unless competent authority publishes a bounded renewal with reasons.",
      "handbackCondition": "Canonical state restored through documented review; conflicting copies preserved as evidence; correction chain closed.",
      "afterActionReview": "Required; preserve decisions, failures, uncertainty, harms, corrections, and residual risk.",
      "correctionRoute": "/state/information-rights/corrections/",
      "permanentPowerProhibition": true,
      "permanentPowerRule": "Exceptional performance, dependency, or crisis duration creates no permanent authority by inertia.",
      "states": [
        "OBSERVING",
        "ASSESSING",
        "BOUNDED_RESPONSE",
        "DEGRADED_SERVICE",
        "HANDOFF_PENDING",
        "HANDOFF_COMPLETE",
        "RECOVERY",
        "ORDINARY_GOVERNANCE_RESTORED",
        "CANNOT_DETERMINE"
      ],
      "canonicalRoute": "/state/emergency/communication/data-loss/",
      "truthBoundary": "Fictional protocol class only. No real emergency, operational capability, deployment, or current emergency authority is represented."
    },
    {
      "id": "EVI-CC-011",
      "slug": "supply-chain",
      "name": "Critical hardware, fuel, semiconductor, medicine, or logistics disruption",
      "fictional": true,
      "observationSource": "Supplier notices, inventories, transport records, regulatory findings, and independent market evidence",
      "uncertainty": "Must be published explicitly; CANNOT_DETERMINE is valid when evidence is insufficient.",
      "affectedSystems": "Essential services, repair, production, energy, and public welfare",
      "lawfulAuthority": "Relevant sector authority",
      "scope": "Narrowly limited to the declared incident and affected services.",
      "immediatePublicMessage": "Publish affected categories, prioritization rules, rationing authority, alternatives, and uncertainty without fabricating totals.",
      "operationalOwner": "Relevant sector authority",
      "patefacereHandoff": "Patefacere handles individual eligibility or credentialed access where authorized.",
      "privacyConstraints": "No private supplier vulnerabilities or individual consumption histories in public status.",
      "accessibilityChannels": "Public allocation rules, agent-readable status, accessible complaint and appeal route.",
      "reviewCadence": "Initial review within one declared interval; public updates at material change or scheduled review.",
      "sunset": "Emergency state expires automatically unless competent authority publishes a bounded renewal with reasons.",
      "handbackCondition": "Alternate supply established, extraordinary allocation ends, backlog and harm reviewed, ordinary procurement restored.",
      "afterActionReview": "Required; preserve decisions, failures, uncertainty, harms, corrections, and residual risk.",
      "correctionRoute": "/state/information-rights/corrections/",
      "permanentPowerProhibition": true,
      "permanentPowerRule": "Exceptional performance, dependency, or crisis duration creates no permanent authority by inertia.",
      "states": [
        "OBSERVING",
        "ASSESSING",
        "BOUNDED_RESPONSE",
        "DEGRADED_SERVICE",
        "HANDOFF_PENDING",
        "HANDOFF_COMPLETE",
        "RECOVERY",
        "ORDINARY_GOVERNANCE_RESTORED",
        "CANNOT_DETERMINE"
      ],
      "canonicalRoute": "/state/emergency/communication/supply-chain/",
      "truthBoundary": "Fictional protocol class only. No real emergency, operational capability, deployment, or current emergency authority is represented."
    },
    {
      "id": "EVI-CC-012",
      "slug": "constitutional-authority",
      "name": "Disputed authority, succession, or emergency-scope conflict",
      "fictional": true,
      "observationSource": "Constitutional records, delegation receipts, expiry, quorum, and review evidence",
      "uncertainty": "Must be published explicitly; CANNOT_DETERMINE is valid when evidence is insufficient.",
      "affectedSystems": "Legitimacy, public administration, rights, and continuity",
      "lawfulAuthority": "Constitutional Review Node",
      "scope": "Narrowly limited to the declared incident and affected services.",
      "immediatePublicMessage": "State the competing claims, controlling records, interim limits, and path to lawful resolution. No faction is treated as legitimate by mere technical control.",
      "operationalOwner": "Constitutional Review Node",
      "patefacereHandoff": "Patefacere freezes only specifically affected operational delegations under its own lawful process.",
      "privacyConstraints": "Publish authority records without exposing private identity or security material.",
      "accessibilityChannels": "Plain-language constitutional notice, machine-readable authority state, correction and appeal channels.",
      "reviewCadence": "Initial review within one declared interval; public updates at material change or scheduled review.",
      "sunset": "Emergency state expires automatically unless competent authority publishes a bounded renewal with reasons.",
      "handbackCondition": "Competent review resolves authority, extraordinary delegation expires, all systems acknowledge handback and preserve the dispute record.",
      "afterActionReview": "Required; preserve decisions, failures, uncertainty, harms, corrections, and residual risk.",
      "correctionRoute": "/state/information-rights/corrections/",
      "permanentPowerProhibition": true,
      "permanentPowerRule": "Exceptional performance, dependency, or crisis duration creates no permanent authority by inertia.",
      "states": [
        "OBSERVING",
        "ASSESSING",
        "BOUNDED_RESPONSE",
        "DEGRADED_SERVICE",
        "HANDOFF_PENDING",
        "HANDOFF_COMPLETE",
        "RECOVERY",
        "ORDINARY_GOVERNANCE_RESTORED",
        "CANNOT_DETERMINE"
      ],
      "canonicalRoute": "/state/emergency/communication/constitutional-authority/",
      "truthBoundary": "Fictional protocol class only. No real emergency, operational capability, deployment, or current emergency authority is represented."
    }
  ],
  "truthBoundary": "Static fictional protocol. It creates no live alert, emergency declaration, operational response, authority, identity transaction, or service guarantee."
}
