wiki: valet / over-capacity mode; 'full' is a soft operator policy

Capture that refusing at capacity is the default, not absolute: an operator
may opt into valet over-capacity (customer hands over keys, operator stacks
the car into custody). Manned-only, new custody/session shape. Deferred;
not built into the entry flow. Made capacity-occupancy's FULL gate a soft
policy knob.
This commit is contained in:
2026-06-15 18:32:40 +02:00
parent 8c2cf93067
commit 648d3254d6
4 changed files with 73 additions and 3 deletions
+9 -1
View File
@@ -33,8 +33,16 @@ editable and drifts; the chain is the truth). Spaces-free = `capacity − occupa
loop count, or the [[opencv-anpr-service|vision]] count) reconciles it — surfaced as an anomaly,
not silently corrected.
## "Full" is a soft, operator-configurable policy
Refusing at capacity is the **default**, not an absolute. An operator may opt into
**[[valet-overcapacity|valet over-capacity]]** — accept the car into operator custody (keys handed
over, stacked beyond the marked count) instead of refusing. So the FULL gate is a policy knob
(refuse vs. valet-accept), set by the operator per site. Valet is a manned-mode feature with its
own custody/session shape — see [[valet-overcapacity]] (deferred).
## Open
- Whether "FULL" is a hard block or a soft warning (operator can wave one in) — operator policy.
- Zone/level granularity at launch vs. single capacity number.
- Reserve-for-permits threshold.
- The valet over-capacity mode + custody model ([[valet-overcapacity]]).
+47
View File
@@ -0,0 +1,47 @@
---
type: concept
tags: [parking, domain, business, capacity, manned]
sources: []
updated: 2026-06-15
status: open
---
# Valet / Over-Capacity Mode
"Full" is **not** necessarily a hard stop. If the operator opts in, a lot at nominal capacity can
still accept cars via **valet**: the customer hands over the keys and leaves, and the operator
stacks/double-parks the vehicle beyond the marked space count. (User direction, 2026-06-15.)
## "Full" is a soft, operator-configurable policy
The [[capacity-occupancy]] FULL gate is therefore a **policy knob**, not a physical absolute:
- **Refuse** — hard stop at nominal capacity (the default/strict behaviour).
- **Valet over-capacity** — accept beyond capacity into operator custody.
The choice is the operator's, per site (and possibly per time/condition).
## Valet is a manned-mode feature with a different session shape
Valet only exists when there's an operator (cf. [[shift]] — manned-only). It adds a **custody**
dimension the normal [[parking-session]] doesn't have:
- The **operator takes custody** of the car — identity is a **claim/valet ticket**, and the
operator (not the driver) is accountable for the vehicle between handover and return.
- New facts to record (as signed [[append-only-event-chain]] events when built): **key handover**,
where/when parked, and **return** to the customer. The operator's accountability ties into the
[[shift]] Z-report and [[reconciliation]] (a valet car with no return record is an anomaly).
- Payment still flows through the normal [[tariff]] (duration-based) unless a separate valet fee
applies.
## Status — deferred
Captured now so the [[capacity-occupancy]] design treats "full" as soft and the entry flow leaves a
clean seam. **Not** built into the current transient entry flow (decision 2026-06-15). Full design —
the valet session/custody model, the claim ticket, the over-capacity accept path — is future work.
## Open
- Valet session/custody data model (claim ticket, parked location, return event).
- Whether a distinct valet fee/tariff applies, or normal duration pricing.
- Operator UI for handover/return; how it ties to the [[shift]] accountability record.