{
  "check": "lean_ap_bytes",
  "file": "ApBoundBytes.lean",
  "allowed_axioms": [
    "Classical.choice",
    "Quot.sound",
    "propext"
  ],
  "skipped": false,
  "ok": true,
  "compiles": true,
  "build_exit": 0,
  "lean_exit": 0,
  "sorry_count": 0,
  "sorry_in_lean_output": false,
  "n_theorems": 22,
  "theorems": [
    "le_charge",
    "rmin_le_charge",
    "charge_zero",
    "apTotal_le_charged",
    "length_mul_le_charged",
    "charged_append",
    "charged_release_le",
    "step_preserves",
    "runFrom_inv",
    "inv_empty",
    "ap_bounded_bytes",
    "ap_charged_bounded",
    "ap_sessions_bounded_bytes",
    "ap_per_session_bounded_bytes",
    "bytes_admits_eight",
    "bytes_refuses_ninth",
    "window_admits_four",
    "half_fill_attained",
    "half_fill_eight_live",
    "window_half_fill_four",
    "overfill_refused",
    "n_max_bytes_canonical"
  ],
  "required_missing": [],
  "axioms_checked": 12,
  "axioms": {
    "WifiPQC.ApBytes.ap_bounded_bytes": [
      "propext",
      "Quot.sound"
    ],
    "WifiPQC.ApBytes.ap_charged_bounded": [
      "propext",
      "Quot.sound"
    ],
    "WifiPQC.ApBytes.ap_sessions_bounded_bytes": [
      "propext",
      "Quot.sound"
    ],
    "WifiPQC.ApBytes.ap_per_session_bounded_bytes": [
      "propext",
      "Quot.sound"
    ],
    "WifiPQC.ApBytes.bytes_admits_eight": [],
    "WifiPQC.ApBytes.bytes_refuses_ninth": [],
    "WifiPQC.ApBytes.window_admits_four": [],
    "WifiPQC.ApBytes.half_fill_attained": [],
    "WifiPQC.ApBytes.half_fill_eight_live": [],
    "WifiPQC.ApBytes.window_half_fill_four": [],
    "WifiPQC.ApBytes.overfill_refused": [],
    "WifiPQC.ApBytes.n_max_bytes_canonical": []
  },
  "disallowed_axioms": [],
  "evals": {
    "G": 65536,
    "CAP": 16384,
    "RMIN": 7533,
    "n_max_window_canonical": 4,
    "n_max_bytes_canonical": 8,
    "ninth_open_length": 8,
    "half_fill_admitted_window": 4,
    "half_fill_admitted_bytes": 8,
    "half_fill_total_bytes": 65536,
    "overfill_total_bytes": 65536
  },
  "bound_unconditional": true,
  "n_max_window_canonical": 4,
  "n_max_bytes_canonical": 8,
  "half_fill_admitted_window": 4,
  "half_fill_admitted_bytes": 8,
  "half_fill_total_bytes": 65536,
  "ninth_refused": true,
  "overfill_refused": true,
  "honest_scope": "A model of admission (lists of per-session byte counts); ap_bounded_bytes is unconditional in the model. The engine arm (a byte-accounted policy in lib/wifipqc/ap_admission.py measured by make ap-quota) is not built; RMIN = 7533 is the estate's smallest reassembled credential, a deployment parameter like G and CAP.",
  "lean_output_tail": "65536\n16384\n7533\n4\n8\n8\n4\n8\n65536\n65536\n'WifiPQC.ApBytes.ap_bounded_bytes' depends on axioms: [propext, Quot.sound]\n'WifiPQC.ApBytes.ap_charged_bounded' depends on axioms: [propext, Quot.sound]\n'WifiPQC.ApBytes.ap_sessions_bounded_bytes' depends on axioms: [propext, Quot.sound]\n'WifiPQC.ApBytes.ap_per_session_bounded_bytes' depends on axioms: [propext, Quot.sound]\n'WifiPQC.ApBytes.bytes_admits_eight' does not depend on any axioms\n'WifiPQC.ApBytes.bytes_refuses_ninth' does not depend on any axioms\n'WifiPQC.ApBytes.window_admits_four' does not depend on any axioms\n'WifiPQC.ApBytes.half_fill_attained' does not depend on any axioms\n'WifiPQC.ApBytes.half_fill_eight_live' does not depend on any axioms\n'WifiPQC.ApBytes.window_half_fill_four' does not depend on any axioms\n'WifiPQC.ApBytes.overfill_refused' does not depend on any axioms\n'WifiPQC.ApBytes.n_max_bytes_canonical' does not depend on any axioms"
}
