Compare commits

...

No commits in common. "d3318b6f7912e5a86076c0994e3641b0b4a9593d" and "98a13a68539b20ac0279876848aea3687e523462" have entirely different histories.

View file

@ -122,3 +122,11 @@ scalar + the verify path's reachable code), regenerated in full by
See [TRUSTED-BASE.md](TRUSTED-BASE.md) for the complete list of assumptions
(Lean kernel, mathlib, Charon/Aeneas semantics, external-function models,
and — in the signature layer only — an opaque SHA-512 model).
## Provenance
Proof engineering in this repository builds on the verification methodology
and proof architecture of
[PlanetMacro/ed25519-verificationtest](https://github.com/PlanetMacro/ed25519-verificationtest)
(the reference solution). All proofs here are checked against **this fork's
own extracted code**; nothing is claimed that the check script does not compile.