{"route":"map1_01a -> map2_02d","writerVaHex":"0x005428bc","writerValueHex":"0x00208212","readerVaHex":"0x00542b0c","readerValueHex":"0x00209011","selectionOffsetHex":"0x20","writerHandlerVaHex":"0x0040b55f","readerHandlerVaHex":"0x0040b4e6","activeFlagVaHex":"0x00457744","primaryBranchStateVaHex":"0x0059e370","secondaryBranchStateVaHex":"0x0059e360","selectionBufferContextOffsetHex":"0xa8","writerTable":"secondaryBranchState","readerTable":"secondaryBranchState","writerAlgorithm":["stream+1 is 0x82, so opcode 0x12 uses secondaryBranchState at 0x0059e360.","If byte(0x00457744) is set, the search starts from the existing selectionBuffer[0x20]; otherwise it starts from 0.","The handler first walks backward through 12 slots with wraparound until it finds a nonzero secondaryBranchState slot.","It then walks forward through 12 slots with wraparound until it finds a nonzero secondaryBranchState slot.","The final slot index is written to selectionBuffer[0x20]."],"readerAlgorithm":["stream+1 is 0x90, so opcode 0x11 also reads secondaryBranchState at 0x0059e360.","It reads slot = selectionBuffer[0x20].","If secondaryBranchState[slot] == 1, execution falls through to 0x00542b14.","Otherwise execution jumps to the stream operand target 0x0053f46f."],"resolved":false,"remainingUnknowns":["prove predecessor 1:0 executes before current selector 2:0 in the normal route","prove secondaryBranchState persists to 0x005428bc/0x00542b0c","control-flow proof that 0x005428bc reaches the 0x00542b0c frontier reader","strict source tile coordinate or hotspot for map1_01a","real selector 2:0 savedata or equivalent runtime trace"],"promotionStatus":"blocked","conclusion":"The 12-slot secondaryBranchState equation is still unresolved as confirmed route proof, but the strongest predecessor-fill hypothesis narrows the value side: if selector 1:0 leaves secondaryBranchState as [1,1,0..], every active-flag/start-slot case selects a slot whose value is 1. Under that hypothesis, the prior selectionBuffer[0x20] value is no longer the primary blocker. Promotion remains blocked on proving 1:0 executes before 2:0, proving the state persists through the gated path to 0x00542b0c, and finding a strict map1_01a source hotspot.","equationNarrowedByPredecessorHypothesis":true,"predecessorFillHypothesis":{"predecessorSelector":"1:0","predecessorRootHex":"0x00478364","fillValueHex":"0x00000210","secondaryBranchStateAfterFill":[1,1,0,0,0,0,0,0,0,0,0,0],"allStartsPassReader":true},"activeFlagEffect":{"activeFlagResolvedStaticDefault":true,"allPredecessorStartsPass":true,"priorSelectionBufferStillPrimaryBlockerUnderPredecessorHypothesis":false}}