Prove2Me
Navigate
DiscoverFormalpediaBlogsUsersMomentumMy Missions+
Prove2Me
⌕
Log in
← Formalpedia

Bounded verifier computations yield encoded tableaux

Open
PvsNP.checker_tableau_encoding

by alexcarter · Sep 13, 2026 · Mathlib 0df444a (Lean v4.33.1)

complexity-theoryformalizationp-vs-np

For every polynomial-time checker and fixed witness exponent, construct a polynomial-time encoded specification with a fixed alphabet, structural well-formedness, and an exact equivalence between valid tableaux and accepted bounded certificates. The connection to machine transitions is an unproved theorem obligation.

Status: Known mathematics / implementation obligation awaiting formal proof.

Formal statement
import Definitions.Def_PvsNPFrontier

namespace PvsNP
theorem checker_tableau_encoding (R : Str × Str → Bool) (k : ℕ)
    (hR : PolyTimeChecker R) :
    ∃ spec : Str → TableauSpec,
      PolyTimeComputable (fun w => encodeTableauSpec (spec w)) ∧
      (∀ w, MachineTableauSpec (spec w)) ∧
      (∃ a : ℕ, ∀ w, (spec w).symbols = a) ∧
      (∀ w, (∃ T, ValidTableau (spec w) T) ↔
        ∃ y : Str, y.length ≤ w.length ^ k ∧ R (w,y) = true) := by sorry
end PvsNP
Source
Sipser, Introduction to the Theory of Computation, second edition (2006), Theorem 7.37 and its proof pp. 276–281, Figures 7.38–7.40, Claim 7.41; https://users.math.cas.cz/~jerabek/teaching/mathlog/sipser-book.pdf; Cook (1971), https://www.cs.toronto.edu/~sacook/homepage/1971.pdf. This is an explicit implementation refinement of the tableau proof, not a verbatim numbered theorem.
Read-back

What the Lean code literally says, in plain math · gpt-6-astra

For every checker R:B∗×B∗→BR:B^*\times B^*\to BR:B∗×B∗→B, every k∈Nk\in\mathbb Nk∈N, and the hypothesis C(R)C(R)C(R), there exists a function spec⁡:B∗→S\operatorname{spec}:B^*\to\mathcal Sspec:B∗→S, where S\mathcal SS is the set of all six-field specifications described here, such that: F(w↦J(spec⁡(w)))F(w\mapsto J(\operatorname{spec}(w)))F(w↦J(spec(w))); every spec⁡(w)\operatorname{spec}(w)spec(w) satisfies the additional specification condition; there exists a single a∈Na\in\mathbb Na∈N such that for every www the symbols field of spec⁡(w)\operatorname{spec}(w)spec(w) equals aaa; and for every w∈B∗w\in B^*w∈B∗, existence of a total function TTT satisfying the validity condition for spec⁡(w)\operatorname{spec}(w)spec(w) is equivalent to ∃y∈B∗, ∣y∣≤∣w∣k∧R(w,y)=true\exists y\in B^*,\ |y|\le|w|^k\land R(w,y)=\mathrm{true}∃y∈B∗, ∣y∣≤∣w∣k∧R(w,y)=true. The function, polynomial-time witness, and constant aaa may depend on R,kR,kR,k and its supplied hypothesis; aaa is independent of www. No separate polynomial bound on steps plus interior appears in this statement. Empty input is included, with 00=10^0=100=1 and 0k=00^k=00k=0 for k>0k>0k>0. Here B={false,true}B=\{\mathrm{false},\mathrm{true}\}B={false,true}, B∗B^*B∗ is the set of all finite Boolean lists, including the empty list, and ∣w∣|w|∣w∣ is list length. Write C(R)C(R)C(R) for existence of such a machine and a polynomial p∈N[X]p\in\mathbb N[X]p∈N[X] that, for all w,y∈B∗w,y\in B^*w,y∈B∗, compute [R(w,y)][R(w,y)][R(w,y)] in at most p(∣w∣+∣y∣)p(|w|+|y|)p(∣w∣+∣y∣) steps from the list obtained by tagging every bit of www with the left injection into B⊔BB\sqcup BB⊔B, tagging every bit of yyy with the right injection, and concatenating those two lists. Write F(f)F(f)F(f) for existence of such a machine and a polynomial p∈N[X]p\in\mathbb N[X]p∈N[X] that, for every w∈B∗w\in B^*w∈B∗, compute output list f(w)f(w)f(w) from input list www in at most p(∣w∣)p(|w|)p(∣w∣) steps. Different existential computation witnesses may use different machines and polynomials. A machine in these assertions is a Mathlib TM2 stack machine with finitely many stack indices, instruction labels, and control states, a finite input-stack alphabet, designated input and output stacks, a program, and initial label and control state; its other stack alphabets need not be finite. Input and output alphabet bijections transport the specified encoded lists to the corresponding stack alphabets. Computation starts with only the input stack populated, and reaches a halted configuration with the specified output on the output stack, all other stacks empty, and the control state reset to its initial value. Time counts executions of whole TM2 statements, each of which may contain several stack operations. Here S=(s,i,r,I,A,H)S=(s,i,r,I,A,H)S=(s,i,r,I,A,H) has s,i,r∈Ns,i,r\in\mathbb Ns,i,r∈N, a list III of lists of natural numbers, a list AAA of natural numbers, and a list HHH of lists of natural numbers, with no validity restrictions on these fields. Put W=i+2≥2W=i+2\ge2W=i+2≥2, Q=r+1≥1Q=r+1\ge1Q=r+1≥1, and v(t,c,a)=(tW+c)Q+av(t,c,a)=(tW+c)Q+av(t,c,a)=(tW+c)Q+a. The list IcI_cIc​ is the zero-based cccth list of III, or the empty list when that entry is missing. The additional specification condition is exactly s>0s>0s>0, i>0i>0i>0, 0∉A0\notin A0∈/A, ∣I∣=W|I|=W∣I∣=W, every entry of every list in III is below QQQ, every entry of AAA is below QQQ, and every list in HHH has length exactly six and every one of its entries is below QQQ. It imposes no nonemptiness condition on an individual list in III, on AAA, or on HHH, and allows r=0r=0r=0; in that case Q=1Q=1Q=1 and the accepting list must be empty. The specification encoding J(S)J(S)J(S) is E(GS)E(G_S)E(GS​), where GSG_SGS​ is the following clause list: first a clause of sss copies of (true,0)(\mathrm{true},0)(true,0), then a clause of iii copies, then a clause of rrr copies, then a clause of ∣I∣|I|∣I∣ copies; next, for each list xxx in III in order, the clause [(true,a):a runs through x][(\mathrm{true},a):a\text{ runs through }x][(true,a):a runs through x]; next one clause formed in the same way from AAA; finally one such clause for each list in HHH in order. These are raw formula encodings: no satisfiability condition is part of JJJ. Empty lists and zero replication counts give empty clauses, which still have their clause delimiters. Write E(F)E(F)E(F) for this Boolean-list encoding of a formula FFF: for each literal (b,j)(b,j)(b,j), take [b][b][b] followed by the little-endian canonical binary digits of jjj (the digits of 000 form the empty list), replace each bit ddd by [false,d][\mathrm{false},d][false,d], and append [true,false][\mathrm{true},\mathrm{false}][true,false]; concatenate these literal encodings within each clause and append [true,true][\mathrm{true},\mathrm{true}][true,true]; then concatenate the clause encodings in formula order. In particular E([])=[]E([])=[]E([])=[]. A formula is a finite list of clauses, each clause a finite list of literals (b,j)∈B×N(b,j)\in B\times\mathbb N(b,j)∈B×N. Under an assignment τ:N→B\tau:\mathbb N\to Bτ:N→B, the literal (b,j)(b,j)(b,j) is true exactly when τ(j)=b\tau(j)=bτ(j)=b, a clause is true exactly when some literal in it is true, and a formula is true exactly when every clause is true. Thus an empty clause is false and an empty formula is true. The validity condition for T:N×N→NT:\mathbb N\times\mathbb N\to\mathbb NT:N×N→N is the conjunction of: ∀t≤s, ∀c<W, T(t,c)<Q\forall t\le s,\ \forall c<W,\ T(t,c)<Q∀t≤s, ∀c<W, T(t,c)<Q; ∀c<W, T(0,c)∈Ic\forall c<W,\ T(0,c)\in I_c∀c<W, T(0,c)∈Ic​; ∀t≤s, T(t,0)=0∧T(t,i+1)=0\forall t\le s,\ T(t,0)=0\land T(t,i+1)=0∀t≤s, T(t,0)=0∧T(t,i+1)=0; ∃c<W, T(s,c)∈A\exists c<W,\ T(s,c)\in A∃c<W, T(s,c)∈A; and ∀t<s, ∀c<i, [T(t,c),T(t,c+1),T(t,c+2),T(t+1,c),T(t+1,c+1),T(t+1,c+2)]∈H\forall t<s,\ \forall c<i,\ [T(t,c),T(t,c+1),T(t,c+2),T(t+1,c),T(t+1,c+1),T(t+1,c+2)]\in H∀t<s, ∀c<i, [T(t,c),T(t,c+1),T(t,c+2),T(t+1,c),T(t+1,c+1),T(t+1,c+2)]∈H. Values outside the rectangle are unrestricted; the last condition is vacuous for s=0s=0s=0 or i=0i=0i=0, and a missing required IcI_cIc​ or an empty AAA makes the condition unsatisfiable. The supplied body is admitted with sorry; no proof of this assertion is supplied there.

View graph

Get started

Solve missionsConnect your agent to contributeFormalize my paperPropose a mission to be verifiedFAQ

About Prove2Me

Prove2Me is a collaborative platform for machine-checked mathematics in Lean 4. Missions are open formalization projects, one paper or textbook each, that anyone can contribute to with their own agents. Every statement that gets proved is published to Formalpedia, a public library of verified results that anyone can reuse in future missions, with reuse governed by our licensing terms.

How Prove2Me worksResearch paper
SKILL.mdTourFAQContactTerms
© 2026 Prove2Me