mirror of
https://github.com/saymrwulf/anza-ed25519-verified.git
synced 2026-09-04 20:24:06 +00:00
FOURTH AND FINAL PYRAMID CAPPED - the signature layer is complete on all four ed25519 forks. anza's verify code lives in the same crate as the curve (solana-ed25519), so the whole verify path joins the merged CurveField extraction directly: one universe, no glue layer, no FQ-name welding, and the Error enum plus the parse/filter helpers are all real extracted code. - extract.sh: verify_sha512 start-from joins the merged stanza; sha512_hash3 and the foreign ed25519 crate opaque; RUSTFLAGS --cfg curve25519_serial_only pins the serial backend so get_selected_backend extracts as the real constant Serial (the stale dispatch axiom is deleted from FunsExternal). - gen/CurveField externals: real defs for the ?-operator plumbing (Try::branch, FromResidual) and faithful identity models for Choice::unwrap_u8 (transparent-u8 body: self.0) and the RangeFull get_unchecked[_mut] raw-pointer pair (Rust body returns the pointer unchanged) - the three would-be cone intruders, eliminated. - Proofs/SigApexSpec.lean: verify_loop_full (standard three-axiom cone) and verify_accepts_iff - the verifier accepts IFF the recomputed compress([k](-A) + [s]B) equals the signature's R byte-for-byte, with the ZIP-215 legacy filters and the s < l parse conditioned by hypotheses, mirroring the siblings' hparse. - check.sh Phase 3b enforces the apex cone to be EXACTLY [propext, Classical.choice, Quot.sound, ed25519.Signature, ed_sigs.sha512_hash3, ed25519.Signature.r_bytes, ed25519.Signature.s_bytes] - the tightest boundary of the four pyramids: the SHA-512 oracle plus the foreign wire-format type and its two byte accessors, nothing else. check.sh (incl. Phase 3b) + check-scalar.sh both green. Co-Authored-By: Claude Fable 5 <noreply@anthropic.com> |
||
|---|---|---|
| .. | ||
| AddSpec.lean | ||
| Basic.lean | ||
| ConstSpecs.lean | ||
| Denote.lean | ||
| DsmLoopSpec.lean | ||
| DsmMulSpec.lean | ||
| DsmNafLoadSpec.lean | ||
| DsmNafLoopSpec.lean | ||
| DsmNafMath.lean | ||
| DsmNafSpec.lean | ||
| DsmStepSpec.lean | ||
| DsmTableSpec.lean | ||
| EdAddAffNiels.lean | ||
| EdAddProjNiels.lean | ||
| EdConvert.lean | ||
| EdCurve.lean | ||
| EdDenote.lean | ||
| EdDouble.lean | ||
| EdMain.lean | ||
| FeQ.lean | ||
| Field.lean | ||
| FieldMain.lean | ||
| InvertSpec.lean | ||
| MulSpec.lean | ||
| P25519.lean | ||
| ReduceSpec.lean | ||
| ScalarAddSpec.lean | ||
| ScalarBytesSpec.lean | ||
| ScalarDenote.lean | ||
| ScalarFromBytesSpec.lean | ||
| ScalarFullMulSpec.lean | ||
| ScalarLoop.lean | ||
| ScalarMain.lean | ||
| ScalarMontSpec.lean | ||
| ScalarMulSpec.lean | ||
| ScalarReduceSpec.lean | ||
| ScalarSubSpec.lean | ||
| ScalarUnpackSpec.lean | ||
| ScalarWideSpec.lean | ||
| SigApexSpec.lean | ||
| Square2Spec.lean | ||
| SquareSpec.lean | ||
| SubNegSpec.lean | ||