Reproducible refinement proof for unmodified PQClean ML-DSA reference C (reduce.c + forward NTT): fixed-width C -> Cryptol -> Isabelle -> FIPS 204, via a SAW + Cryptol + Isabelle pipeline.
cryptography theorem-proving formal-methods cryptol isabelle post-quantum-cryptography formal-verification saw dilithium ml-dsa fips-204 pqclean verified-cryptography
-
Updated
Jun 25, 2026 - Isabelle