pasta-pallas-verified/verification/Proofs/drafts
mrwulf 3719156140 pasta field FOUNDATION proven + honest status; check.sh green
Proven & compiling (check.sh): PPallas primality cert, Denote (Montgomery
denotation + Canon), HelperSpecs (adc/sbb/mac exact specs), SubNegSpec
(sub/neg), ConstSpecs (R/R2/INV/zero/one) — all against the real extraction,
no bridge axioms.

Diagnosed and documented: add/mul/montgomery_reduce/square/invert/FieldMain
overflow the Lean kernel's proof-checking memory because omega certificates
with 2^256/2^512-scale coefficients (intrinsic to 4x64 Montgomery arithmetic)
exceed the kernel budget. Drafts + the standalone-proven montgomery accounting
lemma retained under Proofs/drafts/. Fix (linear_combination + context-free
big-coefficient lemmas) is mechanical, not yet complete. Documented honestly,
not shipped behind an axiom.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
2026-07-02 20:16:07 +02:00
..
AddSpec.lean pasta field FOUNDATION proven + honest status; check.sh green 2026-07-02 20:16:07 +02:00
MulSpec.lean pasta field FOUNDATION proven + honest status; check.sh green 2026-07-02 20:16:07 +02:00
ReduceSpec.lean pasta field FOUNDATION proven + honest status; check.sh green 2026-07-02 20:16:07 +02:00