WG v2.3 — Gate Role & Visitor Lifecycle

PHYSICAL CHANNEL MODEL
ACB-W1: Channel 1
ACB-W2: Channel 1..2
ACB-W4: Channel 1..4
Each native channel represents the controller's reader/door + relay output used by native granted access.

ROLE
IN   = visitor registration entry + normal member entry
OUT  = visitor automatic checkout + normal member exit
BOTH = both logical roles on the same channel
OFF  = ignored by MSM logical flow

MEMBER
Tap -> ACB privilege check -> GRANTED -> native relay -> MSM log.
MSM does not require an operator action for normal member access.

VISITOR IN
Denied/unregistered tap on a configured IN channel -> token captured -> operator completes visitor form -> verified credential write -> remote-open same IN channel -> IN_SITE.

VISITOR OUT
Tap active visitor card on any configured OUT channel -> ACB GRANTED/open -> MSM marks EXIT_PENDING -> delete card -> read-back not found -> CHECKED_OUT.

SECURITY RECOVERY
If automatic delete fails after three tries, visitor status becomes EXIT_DELETE_FAILED and the card must not be reused until Master/Operator recovery UNREGISTER succeeds.
