{
 "generated_by": "tools/assurance_inventory.py",
 "issue": "https://github.com/danbri/factoidal/issues/315",
 "suites": {
  "csvw": {
   "name": "CSVW csv2rdf",
   "spec": "https://www.w3.org/TR/csv2rdf/",
   "log_path": "formal/fstar/ocaml-output/csvw_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "no score line matched in formal/fstar/ocaml-output/csvw_results.log"
   }
  },
  "csvw-csv2json": {
   "name": "CSVW csv2json",
   "spec": "https://www.w3.org/TR/csv2json/",
   "log_path": "formal/fstar/ocaml-output/csvw_json_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 270,
    "fail": 0,
    "skip": 0,
    "total": 270,
    "source": "docs/test-results/latest.json:csvw_csv2json"
   }
  },
  "csvw-nonnorm": {
   "name": "csvw-nonnorm",
   "spec": null,
   "log_path": null,
   "domain": null,
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: None"
   }
  },
  "csvw-validation": {
   "name": "CSVW validation",
   "spec": "https://www.w3.org/TR/tabular-data-model/",
   "log_path": "formal/fstar/ocaml-output/csvw_validate_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 281,
    "fail": 1,
    "skip": 0,
    "total": 282,
    "source": "docs/test-results/latest.json:csvw_validation"
   }
  },
  "did": {
   "name": "DID did:key",
   "spec": "https://www.w3.org/TR/did-core/",
   "log_path": "formal/fstar/ocaml-output/did_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "no score line matched in formal/fstar/ocaml-output/did_results.log"
   }
  },
  "eecc-interop": {
   "name": "EECC VC/DID interop fixtures (vendored vc-verifier-rules + webuild-attestations)",
   "spec": "https://github.com/european-epc-competence-center",
   "log_path": null,
   "domain": "VC",
   "coverage": {
    "pass": 4,
    "fail": 0,
    "skip": 51,
    "total": 55,
    "source": "docs/test-results/latest.json:eecc_interop"
   }
  },
  "geosparql": {
   "name": "GeoSPARQL (geof: topology + WKT)",
   "spec": "https://www.ogc.org/standard/geosparql/",
   "log_path": "formal/fstar/ocaml-output/tests_unit_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "no committed log carries score lines for geosparql_v0_unit"
   }
  },
  "grddl": {
   "name": "GRDDL Stage 2 (local docroot)",
   "spec": "https://www.w3.org/TR/grddl/",
   "log_path": "formal/fstar/ocaml-output/grddl_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 18,
    "fail": 50,
    "skip": 0,
    "total": 68,
    "source": "suite-log:named-line:formal/fstar/ocaml-output/grddl_results.log"
   }
  },
  "jsonld-compact": {
   "name": "JSON-LD 1.1 compact (Compaction Algorithm)",
   "spec": "https://www.w3.org/TR/json-ld11-api/#compaction-algorithm",
   "log_path": "formal/fstar/ocaml-output/jsonld_compact_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 245,
    "fail": 0,
    "skip": 0,
    "total": 245,
    "source": "suite-log:named-line:formal/fstar/ocaml-output/jsonld_compact_results.log"
   }
  },
  "jsonld-expand": {
   "name": "JSON-LD 1.1 expand (Expansion Algorithm)",
   "spec": "https://www.w3.org/TR/json-ld11-api/#expansion-algorithm",
   "log_path": "formal/fstar/ocaml-output/jsonld_expand_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 385,
    "fail": 0,
    "skip": 0,
    "total": 385,
    "source": "suite-log:named-line:formal/fstar/ocaml-output/jsonld_expand_results.log"
   }
  },
  "jsonld-flatten": {
   "name": "JSON-LD 1.1 flatten (Node Map Generation + Flattening Algorithm)",
   "spec": "https://www.w3.org/TR/json-ld11-api/#flattening-algorithm",
   "log_path": "formal/fstar/ocaml-output/jsonld_flatten_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 58,
    "fail": 0,
    "skip": 0,
    "total": 58,
    "source": "suite-log:named-line:formal/fstar/ocaml-output/jsonld_flatten_results.log"
   }
  },
  "jsonld-frame": {
   "name": "JSON-LD 1.1 Framing (Framing Algorithm)",
   "spec": "https://www.w3.org/TR/json-ld11-framing/",
   "log_path": "formal/fstar/ocaml-output/jsonld_frame_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 28,
    "fail": 64,
    "skip": 0,
    "total": 92,
    "source": "suite-log:named-line:formal/fstar/ocaml-output/jsonld_frame_results.log"
   }
  },
  "jsonld-fromrdf": {
   "name": "JSON-LD 1.1 fromRdf (Serialize RDF as JSON-LD)",
   "spec": "https://www.w3.org/TR/json-ld11-api/#serialize-rdf-as-json-ld-algorithm",
   "log_path": "formal/fstar/ocaml-output/jsonld_fromrdf_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 53,
    "fail": 0,
    "skip": 1,
    "total": 54,
    "source": "docs/test-results/latest.json:jsonld_fromrdf"
   }
  },
  "jsonld-html": {
   "name": "JSON-LD 1.1 HTML (JSON-LD embedded in HTML documents)",
   "spec": "https://www.w3.org/TR/json-ld11-api/#dom-jsonldoptions-extractallscripts",
   "log_path": "formal/fstar/ocaml-output/jsonld_html_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 50,
    "fail": 0,
    "skip": 0,
    "total": 50,
    "source": "suite-log:named-line:formal/fstar/ocaml-output/jsonld_html_results.log"
   }
  },
  "jsonld-tordf": {
   "name": "JSON-LD 1.1 toRdf (Deserialize JSON-LD to RDF)",
   "spec": "https://www.w3.org/TR/json-ld11-api/#deserialize-json-ld-to-rdf-algorithm",
   "log_path": "formal/fstar/ocaml-output/jsonld_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 467,
    "fail": 0,
    "skip": 0,
    "total": 467,
    "source": "suite-log:named-line:formal/fstar/ocaml-output/jsonld_results.log"
   }
  },
  "jsonschema": {
   "name": "JSON Schema draft-07",
   "spec": "https://json-schema.org/draft-07/schema",
   "log_path": "formal/fstar/ocaml-output/jsonschema_results.log",
   "domain": "JSON",
   "coverage": {
    "pass": 770,
    "fail": 0,
    "skip": 0,
    "total": 770,
    "source": "docs/test-results/latest.json:jsonschema"
   }
  },
  "local-backend-parity": {
   "name": "Local \u2014 backend parity smoke (3 queries, in-memory vs COTTAS)",
   "spec": "internal",
   "log_path": null,
   "domain": "COTTAS",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: None"
   }
  },
  "local-backend-parity-full": {
   "name": "Local \u2014 backend parity full (every query in tests/parity/queries.json)",
   "spec": "internal",
   "log_path": null,
   "domain": "COTTAS",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: None"
   }
  },
  "local-check-pages-links": {
   "name": "Local \u2014 site link integrity (docs/_site)",
   "spec": "internal",
   "log_path": null,
   "domain": "SITE",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: None"
   }
  },
  "local-cottas-ask-decode-failure": {
   "name": "Local \u2014 COTTAS ASK decode-failure semantics (issue 269)",
   "spec": "internal",
   "log_path": null,
   "domain": "COTTAS",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: None"
   }
  },
  "local-cottas-corpus": {
   "name": "Local \u2014 COTTAS corpus round-trip (artifact + verify + query)",
   "spec": "internal",
   "log_path": null,
   "domain": "COTTAS",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: None"
   }
  },
  "local-cottas-groupby-counts": {
   "name": "Local \u2014 COTTAS GROUP BY / COUNT(*) exactness",
   "spec": "internal",
   "log_path": null,
   "domain": "COTTAS",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: None"
   }
  },
  "local-cottas-row-order": {
   "name": "Local \u2014 COTTAS row-order clustering + eager sidecar build",
   "spec": "internal",
   "log_path": null,
   "domain": "COTTAS",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: None"
   }
  },
  "local-graph-default-semantics": {
   "name": "Local \u2014 RDF dataset default-graph vs GRAPH semantics (issue 267)",
   "spec": "internal",
   "log_path": null,
   "domain": "SPARQL.QUERY",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: None"
   }
  },
  "local-graphs-api": {
   "name": "Local \u2014 graphs-first CLI (list/get/hash/diff)",
   "spec": "internal",
   "log_path": null,
   "domain": "RDF",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: None"
   }
  },
  "local-jsonld-regressions": {
   "name": "Local \u2014 JSON-LD expanded-form regressions",
   "spec": "internal",
   "log_path": null,
   "domain": "RDF",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: None"
   }
  },
  "local-negative-test-vacuity": {
   "name": "Local \u2014 negative-test vacuity audit (issue 333)",
   "spec": "internal",
   "log_path": null,
   "domain": "RDF",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: None"
   }
  },
  "local-parquet-footer": {
   "name": "Local \u2014 Parquet footer / DLBA page decode",
   "spec": "internal",
   "log_path": null,
   "domain": "COTTAS",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: None"
   }
  },
  "local-parquet-footer-version-gate": {
   "name": "Local \u2014 Parquet footer version-gate round trip",
   "spec": "internal",
   "log_path": null,
   "domain": "COTTAS",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: None"
   }
  },
  "local-parser-unicode": {
   "name": "Local \u2014 Parser UTF-8 preservation (issue 325)",
   "spec": "internal",
   "log_path": null,
   "domain": "RDF",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: None"
   }
  },
  "local-serializer-unicode": {
   "name": "Local \u2014 Serializer UTF-8 passthrough (issue 271)",
   "spec": "internal",
   "log_path": null,
   "domain": "RDF",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: None"
   }
  },
  "local-sparql-negative": {
   "name": "Local \u2014 SPARQL negative (syntax-reject) regressions",
   "spec": "internal",
   "log_path": null,
   "domain": "SPARQL.QUERY",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: None"
   }
  },
  "local-sparql-parser": {
   "name": "Local \u2014 SPARQL parser regressions",
   "spec": "internal",
   "log_path": null,
   "domain": "SPARQL.QUERY",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: None"
   }
  },
  "local-turtle-pretty": {
   "name": "Local \u2014 Turtle pretty-printer round-trip",
   "spec": "internal",
   "log_path": null,
   "domain": "RDF",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: None"
   }
  },
  "mathml": {
   "name": "MathML 3 content evaluation",
   "spec": "https://www.w3.org/TR/MathML3/",
   "log_path": "formal/fstar/ocaml-output/mathml_results.log",
   "domain": "XML",
   "coverage": {
    "pass": 81,
    "fail": 0,
    "skip": 0,
    "total": 81,
    "source": "docs/test-results/latest.json:mathml"
   }
  },
  "owl-profile-el": {
   "name": "OWL 2 Profile EL Conformance",
   "spec": "https://www.w3.org/TR/owl2-profiles/#OWL_2_EL",
   "log_path": "formal/fstar/ocaml-output/owl_profile_el_results.log",
   "domain": "OWL",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "no committed log carries score lines for rl"
   }
  },
  "owl-profile-ql": {
   "name": "OWL 2 Profile QL Conformance",
   "spec": "https://www.w3.org/TR/owl2-profiles/#OWL_2_QL",
   "log_path": "formal/fstar/ocaml-output/owl_profile_ql_results.log",
   "domain": "OWL",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "no committed log carries score lines for rl"
   }
  },
  "owl-profile-rl": {
   "name": "OWL 2 Profile RL Conformance",
   "spec": "https://www.w3.org/TR/owl2-profiles/#OWL_2_RL",
   "log_path": "formal/fstar/ocaml-output/owl_results.log",
   "domain": "OWL",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: formal/fstar/ocaml-output/owl_results.log"
   }
  },
  "owl-semantics-direct": {
   "name": "OWL 2 DL Semantics-Direct Catalog",
   "spec": "https://www.w3.org/TR/owl2-direct-semantics/",
   "log_path": "formal/fstar/ocaml-output/owl_semantics_direct_results.log",
   "domain": "OWL",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "no committed log carries score lines for dl"
   }
  },
  "owl-syntax-dl": {
   "name": "OWL 2 DL Species Identification (syntax-dl)",
   "spec": "https://www.w3.org/TR/owl2-syntax/#Ontologies",
   "log_path": "formal/fstar/ocaml-output/owl_syntax_dl_results.log",
   "domain": "OWL",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "no score line matched in formal/fstar/ocaml-output/owl_syntax_dl_results.log"
   }
  },
  "owl-type-consistency": {
   "name": "OWL 2 DL Type Consistency (type-consistency)",
   "spec": "https://www.w3.org/TR/owl2-test/",
   "log_path": "formal/fstar/ocaml-output/owl_type_consistency_results.log",
   "domain": "OWL",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "no committed log carries score lines for dl"
   }
  },
  "owl-type-inconsistency": {
   "name": "OWL 2 DL Type Inconsistency (type-inconsistency)",
   "spec": "https://www.w3.org/TR/owl2-test/",
   "log_path": "formal/fstar/ocaml-output/owl_type_inconsistency_results.log",
   "domain": "OWL",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "no committed log carries score lines for dl"
   }
  },
  "owl-type-negative-entailment": {
   "name": "OWL 2 DL Type NegativeEntailment (type-negative-entailment)",
   "spec": "https://www.w3.org/TR/owl2-test/",
   "log_path": "formal/fstar/ocaml-output/owl_type_negative_entailment_results.log",
   "domain": "OWL",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "no committed log carries score lines for dl"
   }
  },
  "owl-type-positive-entailment": {
   "name": "OWL 2 DL Type PositiveEntailment (type-positive-entailment)",
   "spec": "https://www.w3.org/TR/owl2-test/",
   "log_path": "formal/fstar/ocaml-output/owl_type_positive_entailment_results.log",
   "domain": "OWL",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "no committed log carries score lines for dl"
   }
  },
  "qudt": {
   "name": "QUDT v3.4.0 SHACL suites",
   "spec": "https://qudt.org/",
   "log_path": "formal/fstar/ocaml-output/qudt_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "no score line matched in formal/fstar/ocaml-output/qudt_results.log"
   }
  },
  "rdf-mt": {
   "name": "RDF 1.1 Semantics (Model Theory)",
   "spec": "https://www.w3.org/TR/rdf11-mt/",
   "log_path": "formal/fstar/ocaml-output/sparql_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 38,
    "fail": 0,
    "skip": 0,
    "total": 38,
    "source": "suite-log:per-runner-arg:formal/fstar/ocaml-output/rdf_results.log",
    "manifest_log_path_mismatch": "formal/fstar/ocaml-output/sparql_results.log"
   }
  },
  "rdf-n-quads": {
   "name": "RDF 1.1 N-Quads",
   "spec": "https://www.w3.org/TR/n-quads/",
   "log_path": "formal/fstar/ocaml-output/sparql_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 87,
    "fail": 0,
    "skip": 0,
    "total": 87,
    "source": "suite-log:per-runner-arg:formal/fstar/ocaml-output/rdf_results.log",
    "manifest_log_path_mismatch": "formal/fstar/ocaml-output/sparql_results.log"
   }
  },
  "rdf-n-triples": {
   "name": "RDF 1.1 N-Triples",
   "spec": "https://www.w3.org/TR/n-triples/",
   "log_path": "formal/fstar/ocaml-output/sparql_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 70,
    "fail": 0,
    "skip": 0,
    "total": 70,
    "source": "suite-log:per-runner-arg:formal/fstar/ocaml-output/rdf_results.log",
    "manifest_log_path_mismatch": "formal/fstar/ocaml-output/sparql_results.log"
   }
  },
  "rdf-trig": {
   "name": "RDF 1.1 TriG",
   "spec": "https://www.w3.org/TR/trig/",
   "log_path": "formal/fstar/ocaml-output/sparql_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 356,
    "fail": 0,
    "skip": 0,
    "total": 356,
    "source": "suite-log:per-runner-arg:formal/fstar/ocaml-output/rdf_results.log",
    "manifest_log_path_mismatch": "formal/fstar/ocaml-output/sparql_results.log"
   }
  },
  "rdf-turtle": {
   "name": "RDF 1.1 Turtle",
   "spec": "https://www.w3.org/TR/turtle/",
   "log_path": "formal/fstar/ocaml-output/sparql_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 313,
    "fail": 0,
    "skip": 0,
    "total": 313,
    "source": "suite-log:per-runner-arg:formal/fstar/ocaml-output/rdf_results.log",
    "manifest_log_path_mismatch": "formal/fstar/ocaml-output/sparql_results.log"
   }
  },
  "rdf-xml": {
   "name": "RDF 1.1 XML Syntax",
   "spec": "https://www.w3.org/TR/rdf-syntax-grammar/",
   "log_path": "formal/fstar/ocaml-output/sparql_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 166,
    "fail": 0,
    "skip": 0,
    "total": 166,
    "source": "suite-log:per-runner-arg:formal/fstar/ocaml-output/rdf_results.log",
    "manifest_log_path_mismatch": "formal/fstar/ocaml-output/sparql_results.log"
   }
  },
  "rdfc10": {
   "name": "RDF Dataset Canonicalization 1.0",
   "spec": "https://www.w3.org/TR/rdf-canon/",
   "log_path": "formal/fstar/ocaml-output/rdfc10_results.log",
   "domain": "RDFC",
   "coverage": {
    "pass": 86,
    "fail": 0,
    "skip": 0,
    "total": 86,
    "source": "docs/test-results/latest.json:rdfc10"
   }
  },
  "rif": {
   "name": "RIF Core (vendored W3C RIF test cases + full Core dialect corpus)",
   "spec": "https://www.w3.org/TR/rif-core/",
   "log_path": "formal/fstar/ocaml-output/rif_results.log",
   "domain": "RIF",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "no score line matched in formal/fstar/ocaml-output/rif_results.log"
   }
  },
  "rml": {
   "name": "RML (RDF Mapping Language) rml-core",
   "spec": "https://kg-construct.github.io/rml-core/spec/",
   "log_path": "formal/fstar/ocaml-output/rml_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "no score line matched in formal/fstar/ocaml-output/rml_results.log"
   }
  },
  "rml-io": {
   "name": "RML rml-io (source-tests)",
   "spec": "https://kg-construct.github.io/rml-io/spec/",
   "log_path": "formal/fstar/ocaml-output/rml_io_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 17,
    "fail": 1,
    "skip": 55,
    "total": 73,
    "source": "suite-log:named-line:formal/fstar/ocaml-output/rml_io_results.log"
   }
  },
  "schematron": {
   "name": "ISO Schematron",
   "spec": "https://www.iso.org/standard/74515.html",
   "log_path": "formal/fstar/ocaml-output/schematron_results.log",
   "domain": "XML",
   "coverage": {
    "pass": 8,
    "fail": 0,
    "skip": 0,
    "total": 8,
    "source": "suite-log:named-line:formal/fstar/ocaml-output/schematron_results.log"
   }
  },
  "shacl-core": {
   "name": "SHACL Core (W3C data-shapes-test-suite)",
   "spec": "https://www.w3.org/TR/shacl/",
   "log_path": "formal/fstar/ocaml-output/shacl_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 98,
    "fail": 0,
    "skip": 0,
    "total": 98,
    "source": "suite-log:named-line:formal/fstar/ocaml-output/shacl_results.log"
   }
  },
  "shacl-sparql": {
   "name": "SHACL SPARQL-based Constraints (W3C data-shapes-test-suite)",
   "spec": "https://www.w3.org/TR/shacl/#sparql-constraints",
   "log_path": "formal/fstar/ocaml-output/shacl_sparql_results.log",
   "domain": "SHACL",
   "coverage": {
    "pass": 22,
    "fail": 0,
    "skip": 0,
    "total": 22,
    "source": "suite-log:named-line:formal/fstar/ocaml-output/shacl_sparql_results.log"
   }
  },
  "shacl12-core": {
   "name": "SHACL 1.2 Core (W3C shacl12-test-suite)",
   "spec": "https://www.w3.org/TR/shacl12-core/",
   "log_path": "formal/fstar/ocaml-output/shacl12_core_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 138,
    "fail": 0,
    "skip": 0,
    "total": 138,
    "source": "suite-log:TOTAL-line:formal/fstar/ocaml-output/shacl12_core_results.log"
   }
  },
  "shacl12-node-expr": {
   "name": "SHACL 1.2 Node Expressions (W3C shacl12-test-suite)",
   "spec": "https://www.w3.org/TR/shacl12-core/#node-expressions",
   "log_path": "formal/fstar/ocaml-output/shacl12_node_expr_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 142,
    "fail": 0,
    "skip": 0,
    "total": 142,
    "source": "suite-log:TOTAL-line:formal/fstar/ocaml-output/shacl12_node_expr_results.log"
   }
  },
  "shacl12-rules": {
   "name": "SHACL 1.2 Rules (W3C shacl12-test-suite)",
   "spec": "https://www.w3.org/TR/shacl12-core/#rules",
   "log_path": "formal/fstar/ocaml-output/shacl12_rules_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 11,
    "fail": 0,
    "skip": 0,
    "total": 11,
    "source": "suite-log:TOTAL-line:formal/fstar/ocaml-output/shacl12_rules_results.log"
   }
  },
  "shacl12-rules-syntax": {
   "name": "SHACL 1.2 Rules syntax (W3C shacl12-test-suite)",
   "spec": "https://www.w3.org/TR/shacl12-core/#rules",
   "log_path": "formal/fstar/ocaml-output/shacl12_rules_syntax_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 62,
    "fail": 0,
    "skip": 0,
    "total": 62,
    "source": "suite-log:TOTAL-line:formal/fstar/ocaml-output/shacl12_rules_syntax_results.log"
   }
  },
  "shacl12-sparql": {
   "name": "SHACL 1.2 SPARQL (W3C shacl12-test-suite)",
   "spec": "https://www.w3.org/TR/shacl12-sparql/",
   "log_path": "formal/fstar/ocaml-output/shacl12_sparql_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 25,
    "fail": 0,
    "skip": 0,
    "total": 25,
    "source": "suite-log:TOTAL-line:formal/fstar/ocaml-output/shacl12_sparql_results.log"
   }
  },
  "shex": {
   "name": "ShEx (Shape Expressions) Validation",
   "spec": "https://shex.io/shex-semantics/",
   "log_path": "formal/fstar/ocaml-output/shex_results.log",
   "domain": "SHEX",
   "coverage": {
    "pass": 1182,
    "fail": 0,
    "skip": 0,
    "total": 1182,
    "source": "docs/test-results/latest.json:shex"
   }
  },
  "shex-negative-syntax": {
   "name": "ShEx negativeSyntax (ShExC grammar-reject)",
   "spec": "https://shex.io/shex-semantics/#shexc",
   "log_path": "formal/fstar/ocaml-output/shex_negative_syntax_results.log",
   "domain": "SHEX",
   "coverage": {
    "pass": 0,
    "fail": 0,
    "skip": 0,
    "total": 0,
    "source": "docs/test-results/latest.json:shex_negative_syntax"
   }
  },
  "sparql11-entailment": {
   "name": "SPARQL 1.1 Entailment Regimes",
   "spec": "https://www.w3.org/TR/sparql11-entailment/",
   "log_path": "formal/fstar/ocaml-output/sparql_results.log",
   "domain": "SPARQL.QUERY",
   "coverage": {
    "pass": 70,
    "fail": 0,
    "skip": 0,
    "total": 70,
    "source": "suite-log:per-runner-arg:formal/fstar/ocaml-output/sparql_results.log"
   }
  },
  "sparql11-federated-query": {
   "name": "SPARQL 1.1 Federated Query",
   "spec": "https://www.w3.org/TR/sparql11-federated-query/",
   "log_path": "formal/fstar/ocaml-output/sparql_results.log",
   "domain": "SPARQL.QUERY",
   "coverage": {
    "pass": 10,
    "fail": 0,
    "skip": 0,
    "total": 10,
    "source": "suite-log:per-runner-arg:formal/fstar/ocaml-output/sparql_results.log"
   }
  },
  "sparql11-protocol": {
   "name": "SPARQL 1.1 Protocol",
   "spec": "https://www.w3.org/TR/sparql11-protocol/",
   "log_path": "formal/fstar/ocaml-output/sparql_results.log",
   "domain": "SPARQL.PROTOCOL",
   "coverage": {
    "pass": 53,
    "fail": 0,
    "skip": 0,
    "total": 53,
    "source": "suite-log:per-runner-arg:formal/fstar/ocaml-output/sparql_results.log"
   }
  },
  "sparql11-query": {
   "name": "SPARQL 1.1 Query",
   "spec": "https://www.w3.org/TR/sparql11-query/",
   "log_path": "formal/fstar/ocaml-output/sparql_results.log",
   "domain": "SPARQL.QUERY",
   "coverage": {
    "pass": 338,
    "fail": 0,
    "skip": 0,
    "total": 338,
    "source": "suite-log:per-runner-arg:formal/fstar/ocaml-output/sparql_results.log"
   }
  },
  "sparql11-service-description": {
   "name": "SPARQL 1.1 Service Description",
   "spec": "https://www.w3.org/TR/sparql11-service-description/",
   "log_path": "formal/fstar/ocaml-output/sparql_results.log",
   "domain": "SPARQL.PROTOCOL",
   "coverage": {
    "pass": 3,
    "fail": 0,
    "skip": 0,
    "total": 3,
    "source": "suite-log:per-runner-arg:formal/fstar/ocaml-output/sparql_results.log"
   }
  },
  "sparql11-update": {
   "name": "SPARQL 1.1 Update",
   "spec": "https://www.w3.org/TR/sparql11-update/",
   "log_path": "formal/fstar/ocaml-output/sparql_results.log",
   "domain": "SPARQL.UPDATE",
   "coverage": {
    "pass": 157,
    "fail": 0,
    "skip": 0,
    "total": 157,
    "source": "suite-log:per-runner-arg:formal/fstar/ocaml-output/sparql_results.log"
   }
  },
  "tests-unit": {
   "name": "F* unit regressions (tests/unit)",
   "spec": "internal",
   "log_path": "formal/fstar/ocaml-output/tests_unit_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 19,
    "fail": 28,
    "skip": 0,
    "total": 47,
    "source": "docs/test-results/latest.json:tests_unit"
   }
  },
  "toan-matrix": {
   "name": "TOAN CAS + Math.Matrix engines",
   "spec": "internal",
   "log_path": "formal/fstar/ocaml-output/toan_matrix_results.log",
   "domain": "RDF",
   "coverage": {
    "pass": 11,
    "fail": 0,
    "skip": 0,
    "total": 11,
    "source": "docs/test-results/latest.json:toan_matrix"
   }
  },
  "vc": {
   "name": "Verifiable Credentials Data Model 2.0 (structural, Stage 1)",
   "spec": "https://www.w3.org/TR/vc-data-model-2.0/",
   "log_path": "formal/fstar/ocaml-output/vc_results.log",
   "domain": "VC",
   "coverage": {
    "pass": 117,
    "fail": 0,
    "skip": 0,
    "total": 117,
    "source": "suite-log:TOTAL-line:formal/fstar/ocaml-output/vc_results.log"
   }
  },
  "vc-di-eddsa": {
   "name": "VC Data Integrity eddsa-rdfc-2022 (W3C vc-di-eddsa-test-suite, via shim)",
   "spec": "https://w3c.github.io/vc-di-eddsa-test-suite/",
   "log_path": null,
   "domain": "VC",
   "coverage": {
    "pass": 31,
    "fail": 0,
    "skip": 0,
    "total": 31,
    "source": "docs/test-results/latest.json:vc_di_eddsa"
   }
  },
  "vc20-api": {
   "name": "VC Data Model 2.0 issuer/verifier HTTP suite (W3C vc-data-model-2.0-test-suite, via shim)",
   "spec": "https://w3c.github.io/vc-data-model-2.0-test-suite/",
   "log_path": null,
   "domain": "VC",
   "coverage": {
    "pass": 59,
    "fail": 0,
    "skip": 0,
    "total": 59,
    "source": "docs/test-results/latest.json:vc20_api"
   }
  },
  "xforms": {
   "name": "XForms model (bind/recalc)",
   "spec": "https://www.w3.org/TR/xforms/",
   "log_path": "formal/fstar/ocaml-output/xforms_npm_results.log",
   "domain": "XML",
   "coverage": {
    "pass": 2,
    "fail": 0,
    "skip": 0,
    "total": 2,
    "source": "docs/test-results/latest.json:xforms"
   }
  },
  "xml-conformance": {
   "name": "XML 1.0 conformance (OASIS/W3C xmlconf)",
   "spec": "https://www.w3.org/TR/xml/",
   "log_path": "formal/fstar/ocaml-output/xml_conformance_results.log",
   "domain": "XML",
   "coverage": {
    "pass": 1447,
    "fail": 0,
    "skip": 1138,
    "total": 2585,
    "source": "suite-log:named-line:formal/fstar/ocaml-output/xml_conformance_results.log"
   }
  },
  "xpath-unit": {
   "name": "XPath 1.0 (unit)",
   "spec": "https://www.w3.org/TR/xpath-10/",
   "log_path": "formal/fstar/ocaml-output/tests_unit_results.log",
   "domain": "XML",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "no committed log carries score lines for xpath_tests"
   }
  },
  "xslt": {
   "name": "XSLT 1.0 transforms",
   "spec": "https://www.w3.org/TR/xslt-10/",
   "log_path": "formal/fstar/ocaml-output/xslt_results.log",
   "domain": "XML",
   "coverage": {
    "pass": 87,
    "fail": 0,
    "skip": 1,
    "total": 88,
    "source": "docs/test-results/latest.json:xslt"
   }
  },
  "xslt1-xalan": {
   "name": "XSLT 1.0 conformance (Apache Xalan mirror)",
   "spec": "https://www.w3.org/TR/xslt-10/",
   "log_path": "formal/fstar/ocaml-output/xslt1_xalan_results.log",
   "domain": "XML",
   "coverage": {
    "pass": null,
    "fail": null,
    "skip": null,
    "total": null,
    "source": "unresolved",
    "reason": "declared log_path missing: formal/fstar/ocaml-output/xslt1_xalan_results.log"
   }
  }
 },
 "modules": [
  {
   "module": "CSVW.Conversion",
   "files": [
    "formal/fstar/CSVW.Conversion.fst"
   ],
   "loc": 1532,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/CSVW_Conversion.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 101,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "csvw-nonnorm",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "CSVW.Formats",
   "files": [
    "formal/fstar/CSVW.Formats.fst"
   ],
   "loc": 787,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/CSVW_Formats.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 61,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "CSVW.Json",
   "files": [
    "formal/fstar/CSVW.Json.fst"
   ],
   "loc": 653,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/CSVW_Json.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 49,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "csvw-csv2json",
     "how": "direct-trigger"
    },
    {
     "suite": "csvw-nonnorm",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "CSVW.Metadata",
   "files": [
    "formal/fstar/CSVW.Metadata.fst"
   ],
   "loc": 1510,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/CSVW_Metadata.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 104,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "CSVW.URITemplate",
   "files": [
    "formal/fstar/CSVW.URITemplate.fst"
   ],
   "loc": 172,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/CSVW_URITemplate.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 12,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "CSVW.Validate",
   "files": [
    "formal/fstar/CSVW.Validate.fst"
   ],
   "loc": 635,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/CSVW_Validate.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 50,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "csvw-validation",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "DID.Key",
   "files": [
    "formal/fstar/DID.Key.fst"
   ],
   "loc": 196,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/DID_Key.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 18,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "Dep.Reachability",
   "files": [
    "formal/fstar/Dep.Reachability.fst"
   ],
   "loc": 171,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Dep_Reachability.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 7,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 2,
   "local_refinement_lemma_names": [
    "reaches",
    "closed_set_catches_all"
   ],
   "algorithm_correctness_theorems": [
    {
     "name": "no_root_reaches",
     "proved_in": "Dep.Reachability",
     "file": "formal/fstar/Dep.Reachability.fst",
     "line": 155,
     "unconditional": false,
     "names_shipping_functions": [
      "all_mem",
      "is_closed"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": []
  },
  {
   "module": "GRDDL.Discovery",
   "files": [
    "formal/fstar/GRDDL.Discovery.fst"
   ],
   "loc": 466,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/GRDDL_Discovery.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 49,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "grddl",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "HDT.Container",
   "files": [
    "formal/fstar/HDT.Container.fst"
   ],
   "loc": 645,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/HDT_Container.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 35,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_parse_control_info_rejects_bad_cookie",
     "proved_in": "HDT.Container",
     "file": "formal/fstar/HDT.Container.fst",
     "line": 609,
     "unconditional": false,
     "names_shipping_functions": [
      "byte_get",
      "parse_control_info"
     ]
    },
    {
     "name": "lemma_bad_global_cookie_rejects_container",
     "proved_in": "HDT.Container",
     "file": "formal/fstar/HDT.Container.fst",
     "line": 631,
     "unconditional": false,
     "names_shipping_functions": [
      "byte_get",
      "hdt_parse_inventory_hex"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": []
  },
  {
   "module": "HDT.Dictionary",
   "files": [
    "formal/fstar/HDT.Dictionary.fst"
   ],
   "loc": 520,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/HDT_Dictionary.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 43,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "HDT.Triples",
   "files": [
    "formal/fstar/HDT.Triples.fst"
   ],
   "loc": 317,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/HDT_Triples.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 22,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "JSONLD.Compact",
   "files": [
    "formal/fstar/JSONLD.Compact.fst"
   ],
   "loc": 1489,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/JSONLD_Compact.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 76,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "jsonld-compact",
     "how": "direct-trigger"
    },
    {
     "suite": "jsonld-flatten",
     "how": "direct-trigger"
    },
    {
     "suite": "jsonld-frame",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "JSONLD.Context",
   "files": [
    "formal/fstar/JSONLD.Context.fst"
   ],
   "loc": 1986,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/JSONLD_Context.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 62,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "jsonld-compact",
     "how": "direct-trigger"
    },
    {
     "suite": "jsonld-expand",
     "how": "direct-trigger"
    },
    {
     "suite": "jsonld-flatten",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "JSONLD.Expand",
   "files": [
    "formal/fstar/JSONLD.Expand.fst"
   ],
   "loc": 2356,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/JSONLD_Expand.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 88,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "jsonld-compact",
     "how": "direct-trigger"
    },
    {
     "suite": "jsonld-expand",
     "how": "direct-trigger"
    },
    {
     "suite": "jsonld-flatten",
     "how": "direct-trigger"
    },
    {
     "suite": "jsonld-frame",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "JSONLD.Flatten",
   "files": [
    "formal/fstar/JSONLD.Flatten.fst"
   ],
   "loc": 592,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/JSONLD_Flatten.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 32,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "jsonld-flatten",
     "how": "direct-trigger"
    },
    {
     "suite": "jsonld-frame",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "JSONLD.Frame",
   "files": [
    "formal/fstar/JSONLD.Frame.fst"
   ],
   "loc": 336,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/JSONLD_Frame.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 24,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "jsonld-frame",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "JSONLD.FromRdf",
   "files": [
    "formal/fstar/JSONLD.FromRdf.fst"
   ],
   "loc": 622,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/JSONLD_FromRdf.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 74,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "JSONLD.Loader",
   "files": [
    "formal/fstar/JSONLD.Loader.fst"
   ],
   "loc": 68,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/JSONLD_Loader.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 1,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 1,
   "assume_val_names": [
    "jsonld_load_document"
   ],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "JSONSchema.Validate",
   "files": [
    "formal/fstar/JSONSchema.Validate.fst"
   ],
   "loc": 920,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/JSONSchema_Validate.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 78,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "jsonschema",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "LWS.Core.Spec",
   "files": [
    "formal/fstar/LWS.Core.Spec.fst",
    "formal/fstar/LWS.Core.Spec.fsti"
   ],
   "loc": 803,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "not-in-build-list",
   "extraction_oracle_available": false,
   "extracted_ml": null,
   "in_build_module_list": false,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 1,
   "unclassified_definition_count": 98,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 28,
   "local_refinement_lemma_names": [
    "init_segs_shorter",
    "lookup_after_remove",
    "not_contained_after_remove",
    "lookup_filter_other",
    "contained_are_children_aux",
    "lws_core_06_root_has_no_parent",
    "lws_core_06_only_root_has_no_parent",
    "containment_acyclic",
    "containment_single_parent",
    "lws_core_03_last_modified_on_get",
    "lws_core_03_last_modified_on_head",
    "lws_core_05_create_updates_containment",
    "lws_core_05_delete_updates_containment",
    "lws_core_root_not_deleted",
    "create_preserves_others",
    "update_preserves_others",
    "delete_preserves_others",
    "contained_are_children",
    "lws_core_08_auxiliary_links_advertised",
    "lws_core_18_storage_description_link",
    "root_storage_type_link",
    "root_owner_link",
    "lws_core_04_insertions_no_blank_nodes",
    "lws_core_04_ill_formed_patch_refused",
    "lws_patch_not_refused",
    "lws_patch_applied",
    "lws_core_11_four_operations",
    "lws_core_12_created_is_not_success"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "unclassified",
   "suites": []
  },
  {
   "module": "LWS.Solid.Registry",
   "files": [
    "formal/fstar/LWS.Solid.Registry.fst"
   ],
   "loc": 526,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "not-in-build-list",
   "extraction_oracle_available": false,
   "extracted_ml": null,
   "in_build_module_list": false,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 12,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "unclassified",
   "suites": []
  },
  {
   "module": "Math.Diff",
   "files": [
    "formal/fstar/Math.Diff.fst"
   ],
   "loc": 127,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Math_Diff.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 4,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "toan-matrix",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Math.Expr",
   "files": [
    "formal/fstar/Math.Expr.fst"
   ],
   "loc": 511,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Math_Expr.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 48,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "toan-matrix",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Math.Matrix",
   "files": [
    "formal/fstar/Math.Matrix.fst"
   ],
   "loc": 501,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Math_Matrix.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 47,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 1,
   "local_refinement_lemma_names": [
    "rect_index_lemma"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "local-lemmas-only",
   "suites": [
    {
     "suite": "toan-matrix",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Math.Series",
   "files": [
    "formal/fstar/Math.Series.fst"
   ],
   "loc": 62,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Math_Series.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 5,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "toan-matrix",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Math.Sigmoid",
   "files": [
    "formal/fstar/Math.Sigmoid.fst"
   ],
   "loc": 297,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Math_Sigmoid.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 21,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "toan-matrix",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Math.Simplify",
   "files": [
    "formal/fstar/Math.Simplify.fst"
   ],
   "loc": 319,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Math_Simplify.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 29,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "toan-matrix",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Math.Subst",
   "files": [
    "formal/fstar/Math.Subst.fst"
   ],
   "loc": 23,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Math_Subst.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 2,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "toan-matrix",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "MathML.Content",
   "files": [
    "formal/fstar/MathML.Content.fst"
   ],
   "loc": 426,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/MathML_Content.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 33,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "toan-matrix",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "MathML.Present",
   "files": [
    "formal/fstar/MathML.Present.fst"
   ],
   "loc": 290,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/MathML_Present.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 24,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "toan-matrix",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "OWL.Closure",
   "files": [
    "formal/fstar/OWL.Closure.fst",
    "formal/fstar/OWL.Closure.fsti"
   ],
   "loc": 7165,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/OWL_Closure.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 339,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_vocab_symp_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 332,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_SymmetricProperty",
      "rdf_type"
     ]
    },
    {
     "name": "lemma_vocab_eqc_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 461,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_equivalentClass",
      "rdfs_subClassOf"
     ]
    },
    {
     "name": "lemma_vocab_eqp_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 560,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_equivalentProperty",
      "rdfs_subPropertyOf"
     ]
    },
    {
     "name": "lemma_vocab_trp_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 922,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_TransitiveProperty",
      "rdf_type"
     ]
    },
    {
     "name": "lemma_vocab_list_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 2387,
     "unconditional": true,
     "names_shipping_functions": [
      "rdf_first",
      "rdf_nil_iri",
      "rdf_rest"
     ]
    },
    {
     "name": "lemma_vocab_cls_oo_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 2491,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_oneOf_iri",
      "rdf_type"
     ]
    },
    {
     "name": "lemma_vocab_cls_int_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 2630,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_intersectionOf_iri",
      "rdf_type"
     ]
    },
    {
     "name": "lemma_vocab_cls_uni_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 2863,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_unionOf_iri",
      "rdfs_subClassOf"
     ]
    },
    {
     "name": "lemma_vocab_fp_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 3767,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_FunctionalProperty",
      "rdf_type"
     ]
    },
    {
     "name": "lemma_vocab_ifp_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 3970,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_InverseFunctionalProperty",
      "rdf_type"
     ]
    },
    {
     "name": "lemma_vocab_hv_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4217,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type"
     ]
    },
    {
     "name": "lemma_vocab_avf_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4911,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_allValuesFrom_iri",
      "owl_onProperty_iri",
      "rdf_type"
     ]
    },
    {
     "name": "lemma_vocab_clash_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 5169,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_disjointWith_iri",
      "owl_propertyDisjointWith",
      "rdf_type"
     ]
    }
   ],
   "internal_refinement_theorems": [
    {
     "name": "lemma_sameas_pairs_provenance",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 129,
     "unconditional": true,
     "names_shipping_functions": [
      "sameas_pairs"
     ],
     "names_declarative_relations": [
      "pairs_licensed"
     ],
     "declarative_relations_from": [
      "OWL.RL.Refinement"
     ]
    },
    {
     "name": "owl_rule_sameAs_symmetry_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 171,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_rule_sameAs_symmetry"
     ],
     "names_declarative_relations": [
      "eq_sym_licensed"
     ],
     "declarative_relations_from": [
      "OWL.RL.Refinement"
     ]
    },
    {
     "name": "lemma_collect_nodes_provenance",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 243,
     "unconditional": true,
     "names_shipping_functions": [
      "collect_iri_or_bnode_terms"
     ],
     "names_declarative_relations": [
      "nodes_licensed"
     ],
     "declarative_relations_from": [
      "OWL.RL.Refinement"
     ]
    },
    {
     "name": "owl_rule_sameAs_reflexivity_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 274,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_rule_sameAs_reflexivity"
     ],
     "names_declarative_relations": [
      "eq_ref_licensed"
     ],
     "declarative_relations_from": [
      "OWL.RL.Refinement"
     ]
    },
    {
     "name": "owl_rule_symmetric_property_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 361,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_rule_symmetric_property"
     ],
     "names_declarative_relations": [
      "prp_symp_licensed"
     ],
     "declarative_relations_from": [
      "OWL.RL.Refinement"
     ]
    },
    {
     "name": "owl_rule_equivalent_class_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 469,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_rule_equivalent_class"
     ],
     "names_declarative_relations": [
      "scm_eqc1_licensed"
     ],
     "declarative_relations_from": [
      "OWL.RL.Refinement"
     ]
    },
    {
     "name": "owl_rule_equivalent_property_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 568,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_rule_equivalent_property"
     ],
     "names_declarative_relations": [
      "scm_eqp1_licensed"
     ],
     "declarative_relations_from": [
      "OWL.RL.Refinement"
     ]
    },
    {
     "name": "owl_rule_inverse_of_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 682,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_rule_inverse_of"
     ],
     "names_declarative_relations": [
      "inv_licensed"
     ],
     "declarative_relations_from": [
      "OWL.RL.Refinement"
     ]
    },
    {
     "name": "lemma_no_disjoint_union_elim",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 2954,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_disjointUnionOf_iri"
     ],
     "names_declarative_relations": [
      "no_disjoint_union"
     ],
     "declarative_relations_from": [
      "OWL.RL.Refinement"
     ]
    },
    {
     "name": "lemma_collect_haskey_axioms_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 3365,
     "unconditional": true,
     "names_shipping_functions": [
      "collect_haskey_axioms"
     ],
     "names_declarative_relations": [
      "haskey_axioms_licensed"
     ],
     "declarative_relations_from": [
      "OWL.RL.Refinement"
     ]
    },
    {
     "name": "lemma_members_of_class_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 3424,
     "unconditional": true,
     "names_shipping_functions": [
      "members_of_class"
     ],
     "names_declarative_relations": [
      "class_members_licensed"
     ],
     "declarative_relations_from": [
      "OWL.RL.Refinement"
     ]
    }
   ],
   "w3c_refinement_theorems": [
    {
     "name": "theorem_sameAs_symmetry_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 213,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_sameAs_symmetry"
     ],
     "names_declarative_relations": [
      "eq_sym_derives"
     ]
    },
    {
     "name": "theorem_sameAs_reflexivity_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 313,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_sameAs_reflexivity"
     ],
     "names_declarative_relations": [
      "eq_ref_derives"
     ]
    },
    {
     "name": "theorem_symmetric_property_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 423,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_symmetric_property"
     ],
     "names_declarative_relations": [
      "prp_symp_derives"
     ]
    },
    {
     "name": "theorem_equivalent_class_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 529,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_equivalent_class"
     ],
     "names_declarative_relations": [
      "scm_eqc1_derives"
     ]
    },
    {
     "name": "theorem_equivalent_property_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 614,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_equivalent_property"
     ],
     "names_declarative_relations": [
      "scm_eqp1_derives"
     ]
    },
    {
     "name": "theorem_inverse_of_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 756,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_inverse_of"
     ],
     "names_declarative_relations": [
      "prp_inv1_derives",
      "prp_inv2_derives"
     ]
    },
    {
     "name": "owl_rule_sameAs_transitivity_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 830,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_sameAs_transitivity"
     ],
     "names_declarative_relations": [
      "eq_trans_licensed",
      "ig_wf_sp"
     ]
    },
    {
     "name": "theorem_sameAs_transitivity_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 893,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_sameAs_transitivity"
     ],
     "names_declarative_relations": [
      "eq_trans_derives",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_transitive_property_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 944,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_transitive_property"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "prp_trp_licensed"
     ]
    },
    {
     "name": "theorem_transitive_property_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 1044,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_transitive_property"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "prp_trp_derives"
     ]
    },
    {
     "name": "lemma_scm_eqc2_emission_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 1124,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "owl_equivalentClass",
      "rdfs_subClassOf",
      "term_is_iri"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "scm_eqc2_derives"
     ]
    },
    {
     "name": "owl_rule_scm_eqc2_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 1183,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_scm_eqc2"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "scm_eqc2_licensed"
     ]
    },
    {
     "name": "theorem_scm_eqc2_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 1228,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_scm_eqc2"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "scm_eqc2_derives"
     ]
    },
    {
     "name": "owl_rule_sameAs_replace_subject_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 1297,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_sameAs_replace_subject"
     ],
     "names_declarative_relations": [
      "eq_rep_s_licensed",
      "ig_wf_subj"
     ]
    },
    {
     "name": "theorem_sameAs_replace_subject_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 1355,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_sameAs_replace_subject"
     ],
     "names_declarative_relations": [
      "eq_rep_s_derives",
      "ig_wf_subj"
     ]
    },
    {
     "name": "owl_rule_sameAs_replace_object_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 1440,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_sameAs_replace_object"
     ],
     "names_declarative_relations": [
      "eq_rep_o_licensed",
      "ig_wf_obj"
     ]
    },
    {
     "name": "theorem_sameAs_replace_object_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 1503,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_sameAs_replace_object"
     ],
     "names_declarative_relations": [
      "eq_rep_o_derives",
      "ig_wf_obj"
     ]
    },
    {
     "name": "owl_rule_sameAs_replace_predicate_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 1569,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_sameAs_replace_predicate"
     ],
     "names_declarative_relations": [
      "eq_rep_p_licensed",
      "ig_wf_pred"
     ]
    },
    {
     "name": "theorem_sameAs_replace_predicate_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 1635,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_sameAs_replace_predicate"
     ],
     "names_declarative_relations": [
      "eq_rep_p_derives",
      "ig_wf_pred"
     ]
    },
    {
     "name": "lemma_scm_eqp2_emission_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 1699,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "owl_equivalentProperty",
      "rdfs_subPropertyOf",
      "term_is_iri"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "scm_eqp2_derives"
     ]
    },
    {
     "name": "owl_rule_scm_eqp2_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 1758,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_scm_eqp2"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "scm_eqp2_licensed"
     ]
    },
    {
     "name": "theorem_scm_eqp2_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 1803,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_scm_eqp2"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "scm_eqp2_derives"
     ]
    },
    {
     "name": "owl_rule_scm_dom2_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 1891,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_scm_dom2"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "scm_dom1_licensed"
     ]
    },
    {
     "name": "theorem_scm_dom2_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 1984,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_scm_dom2"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "scm_dom1_derives"
     ]
    },
    {
     "name": "owl_rule_scm_rng2_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 2026,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_scm_rng2"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "scm_rng1_licensed"
     ]
    },
    {
     "name": "theorem_scm_rng2_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 2109,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_scm_rng2"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "scm_rng1_derives"
     ]
    },
    {
     "name": "owl_rule_subprop_domain_range_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 2201,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_subprop_domain_range"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "subprop_domain_range_licensed"
     ]
    },
    {
     "name": "theorem_subprop_domain_range_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 2349,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_subprop_domain_range"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "scm_dom2_derives",
      "scm_rng2_derives"
     ]
    },
    {
     "name": "lemma_decode_iri_list_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 2406,
     "unconditional": false,
     "names_shipping_functions": [
      "decode_iri_list"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "owl_list_denotes"
     ]
    },
    {
     "name": "owl_rule_cls_oneof_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 2498,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_cls_oneof"
     ],
     "names_declarative_relations": [
      "cls_oo_licensed",
      "ig_wf_sp"
     ]
    },
    {
     "name": "theorem_cls_oneof_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 2551,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_cls_oneof"
     ],
     "names_declarative_relations": [
      "cls_oo_derives",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_cls_int1_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 2736,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_cls_int1"
     ],
     "names_declarative_relations": [
      "cls_int2_licensed",
      "ig_wf_po_spec",
      "ig_wf_sp"
     ]
    },
    {
     "name": "theorem_cls_int1_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 2800,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_cls_int1"
     ],
     "names_declarative_relations": [
      "cls_int2_derives",
      "ig_wf_po_spec",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_cls_uni_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 3112,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_cls_uni"
     ],
     "names_declarative_relations": [
      "cls_uni_licensed",
      "ig_wf_sp"
     ]
    },
    {
     "name": "theorem_cls_uni_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 3211,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_cls_uni"
     ],
     "names_declarative_relations": [
      "cls_disjoint_union_ext_derives",
      "ig_wf_sp",
      "scm_uni_derives"
     ]
    },
    {
     "name": "lemma_all_keys_match_shares_approx",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 3522,
     "unconditional": false,
     "names_shipping_functions": [
      "all_keys_match"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "shares_key_values_approx"
     ]
    },
    {
     "name": "owl_rule_prp_key_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 3617,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_prp_key"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "prp_key_licensed"
     ]
    },
    {
     "name": "theorem_prp_key_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 3705,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_prp_key"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "prp_key_derives_approx"
     ]
    },
    {
     "name": "lemma_prp_fp_derives_intro",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 3798,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_sameAs"
     ],
     "names_declarative_relations": [
      "fp_from_decl",
      "prp_fp_derives"
     ]
    },
    {
     "name": "owl_rule_functional_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 3809,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_functional"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "prp_fp_licensed"
     ]
    },
    {
     "name": "theorem_functional_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 3892,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_functional"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "prp_fp_derives"
     ]
    },
    {
     "name": "lemma_prp_ifp_derives_intro",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 3989,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_sameAs"
     ],
     "names_declarative_relations": [
      "ifp_from_decl",
      "prp_ifp_derives"
     ]
    },
    {
     "name": "owl_rule_inverse_functional_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4078,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_inverse_functional"
     ],
     "names_declarative_relations": [
      "graph_literal_match_exact",
      "ig_wf_po",
      "ig_wf_pred",
      "prp_ifp_licensed"
     ]
    },
    {
     "name": "theorem_inverse_functional_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4147,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_inverse_functional"
     ],
     "names_declarative_relations": [
      "graph_literal_match_exact",
      "ig_wf_po",
      "ig_wf_pred",
      "prp_ifp_derives"
     ]
    },
    {
     "name": "lemma_cls_hv1_row_intro",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4247,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cls_hv1_derives",
      "ig_wf_po"
     ]
    },
    {
     "name": "lemma_cls_hv1_members_fold",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4282,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_cls_hv1_emit",
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cls_hv1_licensed",
      "ig_wf_po"
     ]
    },
    {
     "name": "lemma_cls_hv1_mid_step",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4313,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "owl_cls_hv1_mid",
      "owl_hasValue_iri",
      "owl_onProperty_iri"
     ],
     "names_declarative_relations": [
      "cls_hv1_licensed",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_cls_hv1_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4344,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_cls_hv1"
     ],
     "names_declarative_relations": [
      "cls_hv1_licensed",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "theorem_cls_hv1_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4374,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_cls_hv1"
     ],
     "names_declarative_relations": [
      "cls_hv1_derives",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_cls_hv2_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4484,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_cls_hv2"
     ],
     "names_declarative_relations": [
      "cls_hv2_licensed",
      "ig_wf_po",
      "ig_wf_pred",
      "ig_wf_sp"
     ]
    },
    {
     "name": "theorem_cls_hv2_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4596,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_cls_hv2"
     ],
     "names_declarative_relations": [
      "cls_hv2_derives_approx",
      "ig_wf_po",
      "ig_wf_pred",
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_decode_chain_pair_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4671,
     "unconditional": false,
     "names_shipping_functions": [
      "decode_chain_pair"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "owl_list_denotes"
     ]
    },
    {
     "name": "lemma_prp_spo2_row_intro",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4767,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "owl_propertyChainAxiom"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "owl_list_denotes",
      "prp_spo2_derives"
     ]
    },
    {
     "name": "lemma_prp_spo2_mid_step",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4809,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_chain2_mid",
      "owl_propertyChainAxiom"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "owl_list_denotes",
      "prp_spo2_licensed"
     ]
    },
    {
     "name": "owl_rule_property_chain_2_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4841,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_property_chain_2"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "prp_spo2_licensed"
     ]
    },
    {
     "name": "theorem_property_chain_2_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4878,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_property_chain_2"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "prp_spo2_derives"
     ]
    },
    {
     "name": "lemma_cls_avf_row_intro",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4931,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "find_subjects_indexed",
      "owl_allValuesFrom_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cls_avf_derives",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_cls_avf_member_step",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4979,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_allValuesFrom_iri",
      "owl_cls_avf1_member",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cls_avf_licensed",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_cls_avf_prop_step",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 5014,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "owl_allValuesFrom_iri",
      "owl_cls_avf1_prop",
      "owl_onProperty_iri"
     ],
     "names_declarative_relations": [
      "cls_avf_licensed",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_cls_avf1_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 5054,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_cls_avf1"
     ],
     "names_declarative_relations": [
      "cls_avf_licensed",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "theorem_cls_avf1_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 5086,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_cls_avf1"
     ],
     "names_declarative_relations": [
      "cls_avf_derives",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "theorem_cax_adc_cax_dw_detection_sound",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 5227,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_has_disjoint_class_clash"
     ],
     "names_declarative_relations": [
      "rdf_type_objects_resource",
      "table6_clashes"
     ]
    },
    {
     "name": "owl_rule_symmetric_property_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 62,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_symmetric_property"
     ],
     "names_declarative_relations": [
      "cond_symmetric",
      "holds_all"
     ]
    },
    {
     "name": "lemma_sameas_pairs_hold",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 307,
     "unconditional": false,
     "names_shipping_functions": [
      "sameas_pairs"
     ],
     "names_declarative_relations": [
      "holds_all",
      "sameas_pairs_hold"
     ]
    },
    {
     "name": "owl_rule_sameAs_symmetry_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 340,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_sameAs_symmetry"
     ],
     "names_declarative_relations": [
      "cond_sameas_identity",
      "holds_all"
     ]
    },
    {
     "name": "decode_iri_list_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 386,
     "unconditional": false,
     "names_shipping_functions": [
      "decode_iri_list"
     ],
     "names_declarative_relations": [
      "holds_all",
      "ig_wf_sp",
      "seq_is"
     ]
    },
    {
     "name": "owl_rule_cls_oneof_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 455,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_cls_oneof"
     ],
     "names_declarative_relations": [
      "cond_oneof",
      "holds_all",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_equivalent_class_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 515,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_equivalent_class"
     ],
     "names_declarative_relations": [
      "cond_equivalent_class",
      "holds_all"
     ]
    },
    {
     "name": "owl_rule_equivalent_property_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 585,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_equivalent_property"
     ],
     "names_declarative_relations": [
      "cond_equivalent_property",
      "holds_all"
     ]
    },
    {
     "name": "owl_rule_sameAs_reflexivity_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 647,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_sameAs_reflexivity"
     ],
     "names_declarative_relations": [
      "cond_sameas_reflexive",
      "holds_all"
     ]
    },
    {
     "name": "owl_rule_differentFrom_symmetry_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 687,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_differentFrom_symmetry"
     ],
     "names_declarative_relations": [
      "cond_differentfrom_symmetric",
      "holds_all"
     ]
    },
    {
     "name": "owl_rule_disjoint_with_propagation_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 744,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_disjoint_with_propagation"
     ],
     "names_declarative_relations": [
      "cond_complementof_disjoint",
      "cond_disjointwith_symmetric",
      "holds_all"
     ]
    },
    {
     "name": "owl_rule_symmetric_metapredicates_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 850,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_symmetric_metapredicates"
     ],
     "names_declarative_relations": [
      "cond_complementof_symmetric",
      "cond_disjointwith_symmetric",
      "cond_equivalentclass_symmetric",
      "cond_equivalentproperty_symmetric",
      "cond_inverseof_symmetric",
      "cond_propertydisjointwith_symmetric",
      "holds_all"
     ]
    },
    {
     "name": "decode_chain_pair_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 969,
     "unconditional": false,
     "names_shipping_functions": [
      "decode_chain_pair"
     ],
     "names_declarative_relations": [
      "holds_all",
      "ig_wf_sp",
      "seq_is"
     ]
    },
    {
     "name": "owl_rule_chain_to_transitive_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 1030,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_chain_to_transitive"
     ],
     "names_declarative_relations": [
      "cond_chain2_transitive",
      "holds_all",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_scm_cls_restriction_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 1158,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_scm_cls_restriction"
     ],
     "names_declarative_relations": [
      "cond_restriction_subclass_of_class",
      "holds_all"
     ]
    },
    {
     "name": "owl_rule_scm_eqc2_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 1409,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_scm_eqc2"
     ],
     "names_declarative_relations": [
      "cond_mutual_subclass_equivalent",
      "holds_all",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_sameAs_replace_subject_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 1514,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_sameAs_replace_subject"
     ],
     "names_declarative_relations": [
      "cond_sameas_identity",
      "holds_all",
      "ig_wf_subj"
     ]
    },
    {
     "name": "owl_rule_sameAs_replace_object_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 1589,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_sameAs_replace_object"
     ],
     "names_declarative_relations": [
      "cond_sameas_identity",
      "holds_all",
      "ig_wf_obj"
     ]
    },
    {
     "name": "owl_rule_sameAs_replace_predicate_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 1673,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_sameAs_replace_predicate"
     ],
     "names_declarative_relations": [
      "cond_sameas_identity",
      "holds_all",
      "ig_wf_pred"
     ]
    },
    {
     "name": "owl_rule_scm_eqp2_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 1742,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_scm_eqp2"
     ],
     "names_declarative_relations": [
      "cond_mutual_subproperty_equivalent",
      "holds_all",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_sameAs_transitivity_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 1848,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_sameAs_transitivity"
     ],
     "names_declarative_relations": [
      "cond_sameas_identity",
      "holds_all",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_transitive_property_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 1931,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_transitive_property"
     ],
     "names_declarative_relations": [
      "cond_transitive",
      "holds_all",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_functional_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 2058,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_functional"
     ],
     "names_declarative_relations": [
      "cond_functional",
      "cond_sameas_identity",
      "holds_all",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_inverse_functional_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 2179,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_inverse_functional"
     ],
     "names_declarative_relations": [
      "cond_inverse_functional",
      "cond_sameas_identity",
      "graph_literal_match_exact",
      "holds_all",
      "ig_wf_po",
      "ig_wf_pred"
     ]
    },
    {
     "name": "owl_rule_inverse_of_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 2278,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_inverse_of"
     ],
     "names_declarative_relations": [
      "cond_inverse_of",
      "holds_all"
     ]
    },
    {
     "name": "owl_rule_prp_key_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 2471,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_prp_key"
     ],
     "names_declarative_relations": [
      "cond_haskey",
      "cond_literal_term_eq_respecting",
      "cond_sameas_identity",
      "holds_all",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_scm_dom2_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 2598,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_scm_dom2"
     ],
     "names_declarative_relations": [
      "cond_domain_subclass",
      "holds_all",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_scm_rng2_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 2687,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_scm_rng2"
     ],
     "names_declarative_relations": [
      "cond_range_subclass",
      "holds_all",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_subprop_domain_range_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 2784,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_subprop_domain_range"
     ],
     "names_declarative_relations": [
      "cond_domain_subprop",
      "cond_range_subprop",
      "holds_all",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_cls_int1_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 2938,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_cls_int1"
     ],
     "names_declarative_relations": [
      "cond_intersection_of",
      "holds_all",
      "ig_wf_po_spec",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_cls_uni_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3037,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_cls_uni"
     ],
     "names_declarative_relations": [
      "cond_union_of",
      "holds_all",
      "ig_wf_sp",
      "no_disjoint_union"
     ]
    },
    {
     "name": "lemma_cls_hv1_witness_holds",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3116,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cond_hasvalue",
      "holds_all",
      "ig_wf_po",
      "triple_holds"
     ]
    },
    {
     "name": "lemma_cls_hv1_members_fold_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3151,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_cls_hv1_emit",
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cond_hasvalue",
      "holds_all",
      "ig_wf_po"
     ]
    },
    {
     "name": "lemma_cls_hv1_mid_step_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3184,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "owl_cls_hv1_mid",
      "owl_hasValue_iri",
      "owl_onProperty_iri"
     ],
     "names_declarative_relations": [
      "cond_hasvalue",
      "holds_all",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_cls_hv1_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3217,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_cls_hv1"
     ],
     "names_declarative_relations": [
      "cond_hasvalue",
      "holds_all",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_cls_hv2_witness_holds",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3286,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cond_hasvalue",
      "cond_literal_term_eq_respecting",
      "holds_all",
      "ig_wf_po",
      "ig_wf_pred",
      "triple_holds"
     ]
    },
    {
     "name": "owl_rule_cls_hv2_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3319,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_cls_hv2"
     ],
     "names_declarative_relations": [
      "cond_hasvalue",
      "cond_literal_term_eq_respecting",
      "holds_all",
      "ig_wf_po",
      "ig_wf_pred",
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_cls_avf_witness_holds",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3441,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "find_subjects_indexed",
      "owl_allValuesFrom_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term",
      "term_to_subject"
     ],
     "names_declarative_relations": [
      "cond_allvaluesfrom",
      "holds_all",
      "ig_wf_po",
      "ig_wf_sp",
      "triple_holds"
     ]
    },
    {
     "name": "lemma_cls_avf_member_fold_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3492,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "find_subjects_indexed",
      "owl_allValuesFrom_iri",
      "owl_cls_avf1_emit",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cond_allvaluesfrom",
      "holds_all",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_cls_avf_prop_step_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3530,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "owl_allValuesFrom_iri",
      "owl_cls_avf1_prop",
      "owl_onProperty_iri"
     ],
     "names_declarative_relations": [
      "cond_allvaluesfrom",
      "holds_all",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_cls_avf1_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3572,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_cls_avf1"
     ],
     "names_declarative_relations": [
      "cond_allvaluesfrom",
      "holds_all",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_prp_spo2_witness_holds",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3630,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "owl_propertyChainAxiom",
      "term_to_subject"
     ],
     "names_declarative_relations": [
      "cond_chain2_compose",
      "holds_all",
      "ig_wf_sp",
      "seq_is",
      "triple_holds"
     ]
    },
    {
     "name": "lemma_prp_spo2_mid_step_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3673,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_chain2_mid",
      "owl_propertyChainAxiom",
      "term_to_subject"
     ],
     "names_declarative_relations": [
      "cond_chain2_compose",
      "holds_all",
      "ig_wf_sp",
      "seq_is"
     ]
    },
    {
     "name": "owl_rule_property_chain_2_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3707,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_rule_property_chain_2"
     ],
     "names_declarative_relations": [
      "cond_chain2_compose",
      "holds_all",
      "ig_wf_sp"
     ]
    },
    {
     "name": "owl_rule_symmetric_property_entailed",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3757,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_rule_symmetric_property"
     ],
     "names_declarative_relations": [
      "pilot_entails"
     ]
    },
    {
     "name": "owl_rule_sameAs_symmetry_entailed",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3818,
     "unconditional": true,
     "names_shipping_functions": [
      "build_indexed",
      "owl_rule_sameAs_symmetry"
     ],
     "names_declarative_relations": [
      "pilot_entails"
     ]
    },
    {
     "name": "owl_rule_cls_oneof_entailed",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3845,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "owl_rule_cls_oneof"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "pilot_entails"
     ]
    }
   ],
   "assurance_tier": "w3c-refinement",
   "suites": [
    {
     "suite": "local-negative-test-vacuity",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-profile-el",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-profile-ql",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-semantics-direct",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-consistency",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-inconsistency",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-negative-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-positive-entailment",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "OWL.DirectMapping.Filter",
   "files": [
    "formal/fstar/OWL.DirectMapping.Filter.fst"
   ],
   "loc": 72,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/OWL_DirectMapping_Filter.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 4,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "rif",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "OWL.QueryEval",
   "files": [
    "formal/fstar/OWL.QueryEval.fst"
   ],
   "loc": 52,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/OWL_QueryEval.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 3,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "rif",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "OWL.QueryRewrite",
   "files": [
    "formal/fstar/OWL.QueryRewrite.fst"
   ],
   "loc": 1800,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/OWL_QueryRewrite.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 82,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "rif",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "OWL.RL.Refinement",
   "files": [
    "formal/fstar/OWL.RL.Refinement.fst"
   ],
   "loc": 5311,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 50,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 15,
   "local_refinement_lemma_names": [
    "lemma_vocab_sameas_agree",
    "lemma_subj_term_agree",
    "lemma_term_to_subject_subj_term",
    "lemma_dedup_pairs_memP",
    "lemma_rdf_term_eq_iri",
    "lemma_cons_if_new_iri_memP",
    "lemma_vocab_inv_agree",
    "lemma_rdf_term_eq_pins_iri",
    "lemma_fold_left_ext",
    "lemma_vocab_key_agree",
    "lemma_agree_on_property_overapproximates_shares_key_values",
    "lemma_vocab_chain_agree",
    "lemma_rdf_term_eq_true_iri_or_bnode_l",
    "lemma_rdf_term_eq_true_iri_or_bnode_r",
    "lemma_subject_eq_true"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "specification-and-proof",
   "suites": []
  },
  {
   "module": "OWL.RL.Spec",
   "files": [
    "formal/fstar/OWL.RL.Spec.fst"
   ],
   "loc": 1749,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 94,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "specification-and-proof",
   "suites": []
  },
  {
   "module": "OWL.Semantics",
   "files": [
    "formal/fstar/OWL.Semantics.fst"
   ],
   "loc": 877,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 47,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 2,
   "local_refinement_lemma_names": [
    "lemma_denot_subject_to_term",
    "lemma_denot_term_to_subject"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "specification-and-proof",
   "suites": []
  },
  {
   "module": "OWL.Semantics.MemLemmas",
   "files": [
    "formal/fstar/OWL.Semantics.MemLemmas.fst"
   ],
   "loc": 443,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 3,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 11,
   "local_refinement_lemma_names": [
    "fold_left_inv",
    "lemma_partition_memP",
    "lemma_sortWith_memP",
    "lemma_sortWith_memP_forall",
    "lemma_sortWith_memP_rev",
    "lemma_sortWith_memP_rev_forall",
    "lemma_rev_memP_forall",
    "lemma_take_prefix_acc_memP",
    "lemma_take_prefix_memP_forall",
    "lemma_decorated_ok",
    "lemma_pairs_ok_rev"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "specification-and-proof",
   "suites": []
  },
  {
   "module": "OWL.Semantics.Soundness",
   "files": [
    "formal/fstar/OWL.Semantics.Soundness.fst"
   ],
   "loc": 3866,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 6,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 4,
   "local_refinement_lemma_names": [
    "lemma_rdf_term_eq_iri",
    "lemma_dedup_pairs_memP",
    "lemma_shares_key_values_semantic",
    "lemma_pterms_agree"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "specification-and-proof",
   "suites": []
  },
  {
   "module": "OWL.Tests.Manifest",
   "files": [
    "formal/fstar/OWL.Tests.Manifest.fst"
   ],
   "loc": 29,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/OWL_Tests_Manifest.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 2,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "OWL.Vocabulary",
   "files": [
    "formal/fstar/OWL.Vocabulary.fst"
   ],
   "loc": 113,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/OWL_Vocabulary.ml",
   "in_build_module_list": true,
   "foundational_path": true,
   "shipping_function_count": 20,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "csvw-csv2json",
     "how": "foundational-path"
    },
    {
     "suite": "csvw-nonnorm",
     "how": "foundational-path"
    },
    {
     "suite": "csvw-validation",
     "how": "foundational-path"
    },
    {
     "suite": "csvw",
     "how": "foundational-path"
    },
    {
     "suite": "did",
     "how": "foundational-path"
    },
    {
     "suite": "eecc-interop",
     "how": "foundational-path"
    },
    {
     "suite": "geosparql",
     "how": "foundational-path"
    },
    {
     "suite": "grddl",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-compact",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-expand",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-flatten",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-frame",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-fromrdf",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-html",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-tordf",
     "how": "foundational-path"
    },
    {
     "suite": "jsonschema",
     "how": "foundational-path"
    },
    {
     "suite": "local-backend-parity-full",
     "how": "foundational-path"
    },
    {
     "suite": "local-backend-parity",
     "how": "foundational-path"
    },
    {
     "suite": "local-check-pages-links",
     "how": "foundational-path"
    },
    {
     "suite": "local-cottas-ask-decode-failure",
     "how": "foundational-path"
    },
    {
     "suite": "local-cottas-corpus",
     "how": "foundational-path"
    },
    {
     "suite": "local-cottas-groupby-counts",
     "how": "foundational-path"
    },
    {
     "suite": "local-cottas-row-order",
     "how": "foundational-path"
    },
    {
     "suite": "local-graph-default-semantics",
     "how": "foundational-path"
    },
    {
     "suite": "local-graphs-api",
     "how": "foundational-path"
    },
    {
     "suite": "local-jsonld-regressions",
     "how": "foundational-path"
    },
    {
     "suite": "local-negative-test-vacuity",
     "how": "direct-trigger"
    },
    {
     "suite": "local-parquet-footer-version-gate",
     "how": "foundational-path"
    },
    {
     "suite": "local-parquet-footer",
     "how": "foundational-path"
    },
    {
     "suite": "local-parser-unicode",
     "how": "foundational-path"
    },
    {
     "suite": "local-serializer-unicode",
     "how": "foundational-path"
    },
    {
     "suite": "local-sparql-negative",
     "how": "foundational-path"
    },
    {
     "suite": "local-sparql-parser",
     "how": "foundational-path"
    },
    {
     "suite": "local-turtle-pretty",
     "how": "foundational-path"
    },
    {
     "suite": "mathml",
     "how": "foundational-path"
    },
    {
     "suite": "owl-profile-el",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-profile-ql",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-profile-rl",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-semantics-direct",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-syntax-dl",
     "how": "foundational-path"
    },
    {
     "suite": "owl-type-consistency",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-inconsistency",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-negative-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-positive-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "qudt",
     "how": "foundational-path"
    },
    {
     "suite": "rdf-mt",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-n-quads",
     "how": "foundational-path"
    },
    {
     "suite": "rdf-n-triples",
     "how": "foundational-path"
    },
    {
     "suite": "rdf-trig",
     "how": "foundational-path"
    },
    {
     "suite": "rdf-turtle",
     "how": "foundational-path"
    },
    {
     "suite": "rdf-xml",
     "how": "foundational-path"
    },
    {
     "suite": "rdfc10",
     "how": "foundational-path"
    },
    {
     "suite": "rif",
     "how": "foundational-path"
    },
    {
     "suite": "rml-io",
     "how": "foundational-path"
    },
    {
     "suite": "rml",
     "how": "foundational-path"
    },
    {
     "suite": "schematron",
     "how": "foundational-path"
    },
    {
     "suite": "shacl-core",
     "how": "foundational-path"
    },
    {
     "suite": "shacl-sparql",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-core",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-node-expr",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-rules-syntax",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-rules",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-sparql",
     "how": "foundational-path"
    },
    {
     "suite": "shex-negative-syntax",
     "how": "foundational-path"
    },
    {
     "suite": "shex",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-federated-query",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-protocol",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-query",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-service-description",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-update",
     "how": "foundational-path"
    },
    {
     "suite": "tests-unit",
     "how": "foundational-path"
    },
    {
     "suite": "toan-matrix",
     "how": "foundational-path"
    },
    {
     "suite": "vc-di-eddsa",
     "how": "foundational-path"
    },
    {
     "suite": "vc",
     "how": "foundational-path"
    },
    {
     "suite": "vc20-api",
     "how": "foundational-path"
    },
    {
     "suite": "xforms",
     "how": "foundational-path"
    },
    {
     "suite": "xml-conformance",
     "how": "foundational-path"
    },
    {
     "suite": "xpath-unit",
     "how": "foundational-path"
    },
    {
     "suite": "xslt",
     "how": "foundational-path"
    },
    {
     "suite": "xslt1-xalan",
     "how": "foundational-path"
    }
   ]
  },
  {
   "module": "OWL2.SyntaxDL",
   "files": [
    "formal/fstar/OWL2.SyntaxDL.fst"
   ],
   "loc": 649,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/OWL2_SyntaxDL.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 73,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "owl-syntax-dl",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parquet.Footer",
   "files": [
    "formal/fstar/Parquet.Footer.fst"
   ],
   "loc": 3374,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parquet_Footer.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 191,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 3,
   "assume_val_names": [
    "parquet_read_tail_hex",
    "parquet_read_range_hex",
    "parquet_zstd_decompress_hex"
   ],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_parse_version_hex_literal",
     "proved_in": "RDF.CottasStore.BaseWriter",
     "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
     "line": 1270,
     "unconditional": true,
     "names_shipping_functions": [
      "cottas_format_version",
      "parse_file_metadata_version_hex"
     ]
    },
    {
     "name": "lemma_version_field_roundtrip",
     "proved_in": "RDF.CottasStore.BaseWriter",
     "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
     "line": 1274,
     "unconditional": true,
     "names_shipping_functions": [
      "bytes_to_hex",
      "cottas_format_version",
      "parse_file_metadata_version_hex",
      "version_field_bytes"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": [
    {
     "suite": "local-cottas-corpus",
     "how": "direct-trigger"
    },
    {
     "suite": "local-cottas-row-order",
     "how": "direct-trigger"
    },
    {
     "suite": "local-parquet-footer-version-gate",
     "how": "direct-trigger"
    },
    {
     "suite": "local-parquet-footer",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parser.BallyhooCOTTAS",
   "files": [
    "formal/fstar/Parser.BallyhooCOTTAS.fst"
   ],
   "loc": 242,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_BallyhooCOTTAS.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 20,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 13,
   "assume_val_names": [
    "cottas_open_dataset_store",
    "cottas_close_dataset_store",
    "cottas_dataset_summary",
    "cottas_named_graphs",
    "cottas_encode_subject",
    "cottas_encode_predicate",
    "cottas_encode_object",
    "cottas_encode_graph_name",
    "cottas_decode_subject",
    "cottas_decode_predicate",
    "cottas_decode_object",
    "cottas_decode_graph_name",
    "cottas_search"
   ],
   "assume_other_active": 1,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "local-cottas-corpus",
     "how": "direct-trigger"
    },
    {
     "suite": "local-cottas-row-order",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parser.BallyhooHDT",
   "files": [
    "formal/fstar/Parser.BallyhooHDT.fst"
   ],
   "loc": 353,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_BallyhooHDT.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 25,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "Parser.CSVResults",
   "files": [
    "formal/fstar/Parser.CSVResults.fst"
   ],
   "loc": 611,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_CSVResults.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 41,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 1,
   "local_refinement_lemma_names": [
    "rev_length_lemma"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "local-lemmas-only",
   "suites": [
    {
     "suite": "sparql11-federated-query",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parser.Combinators",
   "files": [
    "formal/fstar/Parser.Combinators.fst"
   ],
   "loc": 451,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_Combinators.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 40,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_ptake_while_acc_pos_shift_headroom",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 341,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "ptake_while_acc"
     ]
    },
    {
     "name": "lemma_ptake_while_scan_shift_headroom",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1555,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "ptake_while_scan"
     ]
    },
    {
     "name": "lemma_ptake_while1_pos_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1591,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "ptake_while1_pos",
      "ptake_while_scan"
     ]
    },
    {
     "name": "lemma_parse_lang_tag_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1618,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_alpha",
      "is_lang_char",
      "parse_lang_tag",
      "ptake_while_scan"
     ]
    },
    {
     "name": "lemma_parse_literal_lang_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2519,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_alpha",
      "is_lang_char",
      "parse_literal",
      "parse_string_literal",
      "ptake_while_scan"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": [
    {
     "suite": "local-parser-unicode",
     "how": "direct-trigger"
    },
    {
     "suite": "local-sparql-parser",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-mt",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-n-quads",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-n-triples",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-trig",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-turtle",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-xml",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-update",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parser.FastString",
   "files": [
    "formal/fstar/Parser.FastString.fst",
    "formal/fstar/Parser.FastString.fsti"
   ],
   "loc": 551,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_FastString.ml",
   "in_build_module_list": true,
   "foundational_path": true,
   "shipping_function_count": 32,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "fs_byte_at_concat",
     "proved_in": "Parser.FastString.Axioms",
     "file": "formal/fstar/Parser.FastString.Axioms.fsti",
     "line": 214,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length"
     ]
    },
    {
     "name": "fs_byte_sub_concat_left",
     "proved_in": "Parser.FastString.Axioms",
     "file": "formal/fstar/Parser.FastString.Axioms.fsti",
     "line": 222,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "fs_byte_sub"
     ]
    },
    {
     "name": "fs_byte_sub_concat_right",
     "proved_in": "Parser.FastString.Axioms",
     "file": "formal/fstar/Parser.FastString.Axioms.fsti",
     "line": 230,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "fs_byte_sub"
     ]
    },
    {
     "name": "fs_cp_at_ascii",
     "proved_in": "Parser.FastString.Axioms",
     "file": "formal/fstar/Parser.FastString.Axioms.fsti",
     "line": 274,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length",
      "fs_cp_at"
     ]
    },
    {
     "name": "fs_byte_sub_self",
     "proved_in": "Parser.FastString.Axioms",
     "file": "formal/fstar/Parser.FastString.Axioms.fsti",
     "line": 296,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_length",
      "fs_byte_sub"
     ]
    },
    {
     "name": "fs_ascii_singleton_facts",
     "proved_in": "Parser.FastString.BaseCases",
     "file": "formal/fstar/Parser.FastString.BaseCases.fst",
     "line": 45,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length"
     ]
    },
    {
     "name": "lemma_byte_at_after_prefix",
     "proved_in": "Parser.FastString.RoundTripLemmas",
     "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
     "line": 38,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length"
     ]
    },
    {
     "name": "fs_byte_sub_by_charcount",
     "proved_in": "Parser.FastString.RoundTripLemmas",
     "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
     "line": 470,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_sub",
      "slice_chars",
      "take_chars",
      "utf8_enc_char"
     ]
    },
    {
     "name": "fs_byte_length_eq",
     "proved_in": "Parser.FastString",
     "file": "formal/fstar/Parser.FastString.fst",
     "line": 117,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_length",
      "utf8_bytes"
     ]
    },
    {
     "name": "fs_byte_at_eq",
     "proved_in": "Parser.FastString",
     "file": "formal/fstar/Parser.FastString.fst",
     "line": 120,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_at",
      "nth_byte",
      "utf8_bytes"
     ]
    },
    {
     "name": "fs_byte_sub_eq",
     "proved_in": "Parser.FastString",
     "file": "formal/fstar/Parser.FastString.fst",
     "line": 144,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_sub",
      "slice_bytes",
      "utf8_bytes",
      "utf8_decode_all"
     ]
    },
    {
     "name": "fs_find_byte_eq",
     "proved_in": "Parser.FastString",
     "file": "formal/fstar/Parser.FastString.fst",
     "line": 150,
     "unconditional": true,
     "names_shipping_functions": [
      "find_byte",
      "fs_find_byte",
      "utf8_bytes"
     ]
    },
    {
     "name": "fs_cp_at_eq",
     "proved_in": "Parser.FastString",
     "file": "formal/fstar/Parser.FastString.fst",
     "line": 154,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_cp_at",
      "utf8_bytes",
      "utf8_decode_at"
     ]
    },
    {
     "name": "fs_cp_len_eq",
     "proved_in": "Parser.FastString",
     "file": "formal/fstar/Parser.FastString.fst",
     "line": 159,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_cp_len",
      "utf8_bytes",
      "utf8_decode_at"
     ]
    },
    {
     "name": "fs_byte_index_eq",
     "proved_in": "Parser.FastString",
     "file": "formal/fstar/Parser.FastString.fst",
     "line": 193,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_index"
     ]
    },
    {
     "name": "lemma_byte_index_at_middle",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 89,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length"
     ]
    },
    {
     "name": "lemma_scan_iri_end_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 149,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_scan_iri_end_shift_from_start",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 217,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_scan_iri_end_shift_headroom",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 258,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_ptake_while_acc_pos_shift_headroom",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 341,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "ptake_while_acc"
     ]
    },
    {
     "name": "lemma_pws_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 379,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "pws"
     ]
    },
    {
     "name": "lemma_parse_iri_raw_fastpath_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 414,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "parse_iri_raw",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_iri_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 454,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri",
      "parse_iri_raw",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_subject_iri_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 496,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri_raw",
      "parse_subject",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_object_iri_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 518,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri_raw",
      "parse_object",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_iri_body_acc_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 579,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_iri_body_acc"
     ]
    },
    {
     "name": "lemma_scan_iri_end_success_bound",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 692,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_iri_body_acc_success_bound",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 749,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_iri_body_acc"
     ]
    },
    {
     "name": "lemma_cp_at_at_middle",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1089,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length",
      "fs_cp_at",
      "is_continuation"
     ]
    },
    {
     "name": "lemma_byte_at_at_middle",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1121,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length"
     ]
    },
    {
     "name": "lemma_scan_bnode_body_cp_shift_headroom",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1140,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length",
      "is_continuation",
      "scan_bnode_body_cp"
     ]
    },
    {
     "name": "lemma_scan_string_fast_shift_headroom",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1286,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "scan_string_fast"
     ]
    },
    {
     "name": "lemma_parse_string_body_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1323,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length",
      "is_continuation",
      "parse_string_body"
     ]
    },
    {
     "name": "lemma_scan_string_fast_shift_hasescapes",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1451,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "scan_string_fast"
     ]
    },
    {
     "name": "lemma_parse_string_literal_fastpath_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1486,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "parse_string_literal",
      "scan_string_fast"
     ]
    },
    {
     "name": "lemma_parse_string_literal_escapepath_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1521,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_index",
      "fs_byte_length",
      "is_continuation",
      "parse_string_body",
      "parse_string_literal",
      "scan_string_fast"
     ]
    },
    {
     "name": "lemma_ptake_while_scan_shift_headroom",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1555,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "ptake_while_scan"
     ]
    },
    {
     "name": "lemma_ptake_while1_pos_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1591,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "ptake_while1_pos",
      "ptake_while_scan"
     ]
    },
    {
     "name": "lemma_parse_lang_tag_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1618,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_alpha",
      "is_lang_char",
      "parse_lang_tag",
      "ptake_while_scan"
     ]
    },
    {
     "name": "lemma_parse_datatype_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1643,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_datatype",
      "parse_iri_raw",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_graph_label_iri_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1692,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_graph_label",
      "parse_iri_raw",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_opt_graph_label_iri_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1714,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri_raw",
      "parse_opt_graph_label",
      "pws",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_opt_graph_label_none_dot_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1740,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "parse_opt_graph_label",
      "pws"
     ]
    },
    {
     "name": "lemma_skip_eol_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1819,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length",
      "skip_eol"
     ]
    },
    {
     "name": "lemma_nt_skip_to_eol_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1926,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "nt_skip_to_eol"
     ]
    },
    {
     "name": "lemma_nq_skip_line_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1976,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length",
      "nq_skip_line"
     ]
    },
    {
     "name": "lemma_pws_noop",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2207,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_nt_ws",
      "pws"
     ]
    },
    {
     "name": "lemma_parse_nquad_iri_nograph_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2214,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri",
      "parse_iri_raw",
      "parse_nquad",
      "parse_object",
      "parse_subject",
      "pws",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_bnode_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2313,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length",
      "fs_cp_at",
      "is_bnode_start_cp",
      "is_continuation",
      "parse_bnode",
      "scan_bnode_body_cp"
     ]
    },
    {
     "name": "lemma_parse_subject_bnode_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2372,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_index",
      "fs_byte_length",
      "fs_cp_at",
      "is_bnode_start_cp",
      "is_continuation",
      "parse_subject",
      "scan_bnode_body_cp"
     ]
    },
    {
     "name": "lemma_parse_object_bnode_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2408,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_index",
      "fs_byte_length",
      "fs_cp_at",
      "is_bnode_start_cp",
      "is_continuation",
      "parse_object",
      "scan_bnode_body_cp"
     ]
    },
    {
     "name": "lemma_parse_literal_plain_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2492,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "parse_literal",
      "parse_string_literal"
     ]
    },
    {
     "name": "lemma_parse_literal_lang_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2519,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_alpha",
      "is_lang_char",
      "parse_literal",
      "parse_string_literal",
      "ptake_while_scan"
     ]
    },
    {
     "name": "lemma_parse_literal_datatype_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2620,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "parse_datatype",
      "parse_literal",
      "parse_string_literal",
      "rdf_dir_lang_string",
      "rdf_lang_string"
     ]
    },
    {
     "name": "lemma_parse_object_literal_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2667,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "parse_literal",
      "parse_object"
     ]
    },
    {
     "name": "lemma_parse_graph_label_bnode_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2693,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_index",
      "fs_byte_length",
      "fs_cp_at",
      "is_bnode_start_cp",
      "is_continuation",
      "parse_graph_label",
      "scan_bnode_body_cp"
     ]
    },
    {
     "name": "lemma_parse_opt_graph_label_bnode_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2729,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_index",
      "fs_byte_length",
      "fs_cp_at",
      "is_bnode_start_cp",
      "is_continuation",
      "parse_opt_graph_label",
      "pws",
      "scan_bnode_body_cp"
     ]
    },
    {
     "name": "lemma_parse_nquad_shift_generic",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2800,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri",
      "parse_nquad",
      "parse_object",
      "parse_opt_graph_label",
      "parse_subject",
      "pws"
     ]
    },
    {
     "name": "stream_parse_single_chunk_shape",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 453,
     "unconditional": true,
     "names_shipping_functions": [
      "dataset_finalise",
      "fs_byte_length",
      "parse_nquads_acc"
     ]
    },
    {
     "name": "lemma_fs_byte_index_concat",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 530,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length"
     ]
    },
    {
     "name": "lemma_byte_index_at_middle",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 551,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length"
     ]
    },
    {
     "name": "parse_nquads_acc_concat_line_empty_complete",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 603,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ]
    },
    {
     "name": "parse_nquads_acc_concat_line_empty_carry",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 617,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ]
    },
    {
     "name": "lemma_skip_comment_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 960,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "nt_skip_to_eol",
      "skip_comment"
     ]
    },
    {
     "name": "lemma_nq_skip_line_shift_exact",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 980,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length",
      "nq_skip_line"
     ]
    },
    {
     "name": "stream_consume_single_chunk_shape",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2757,
     "unconditional": true,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_length"
     ]
    },
    {
     "name": "lemma_extract_middle",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 481,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_length",
      "fs_byte_sub"
     ]
    },
    {
     "name": "lemma_iri_bracket_shift_prereqs",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1126,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri_body_char",
      "parse_iri_raw",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_pws_one_space",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1177,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_nt_ws",
      "pws"
     ]
    },
    {
     "name": "lemma_build_string_byte_length_general",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1279,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_length",
      "utf8_enc_char"
     ]
    },
    {
     "name": "lemma_scan_iri_end_one_char_walk",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1315,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "is_iri_body_char",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_scan_iri_end_build_string_utf8",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1359,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "is_iri_body_char",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_iri_raw_build_string_utf8",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1420,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_length",
      "is_iri_body_char",
      "parse_iri_raw"
     ]
    },
    {
     "name": "lemma_parse_iri_build_string_utf8",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1450,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "is_iri_body_char",
      "parse_iri"
     ]
    },
    {
     "name": "lemma_term_iri_round_trip_build_string_utf8",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1464,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "is_iri_body_char",
      "nq_term_to_string",
      "parse_object"
     ]
    },
    {
     "name": "lemma_term_iri_round_trip_utf8",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1493,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "is_iri_body_char",
      "nq_term_to_string",
      "parse_object"
     ]
    },
    {
     "name": "fs_sub_of_concat",
     "proved_in": "SPARQL11.Parser.AskBgpRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
     "line": 796,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_length",
      "fs_byte_sub"
     ]
    },
    {
     "name": "fs_sub_of_concat_literal",
     "proved_in": "SPARQL11.Parser.AskBgpRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
     "line": 803,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_length",
      "fs_byte_sub"
     ]
    }
   ],
   "internal_refinement_theorems": [
    {
     "name": "lemma_parse_nquads_acc_blank_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 1203,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "blank_line_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_parse_nquads_acc_skip_blanks",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 1250,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "blank_chain_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_parse_nquads_acc_comment_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 1318,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "comment_line_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_parse_nquads_acc_quad_fail_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 1382,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length",
      "parse_nquad",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "quad_fail_line_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_parse_nquads_acc_quad_ok_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 1477,
     "unconditional": false,
     "names_shipping_functions": [
      "dataset_add_quad",
      "fs_byte_length",
      "parse_iri",
      "parse_nquad",
      "parse_nquads_acc",
      "parse_object",
      "parse_opt_graph_label",
      "parse_subject"
     ],
     "names_declarative_relations": [
      "quad_ok_line_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_parse_nquads_acc_line_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 1619,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "lw_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_parse_nquads_acc_restart",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 1670,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "chain_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_parse_nquads_acc_full_via_chain",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 1711,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "chain_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_parse_nquads_acc_concat_line_general",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 1756,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "chain_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "theorem_stream_eq_batch_single_chunk_general",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 1839,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "chain_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "stream_fold_eq_batch",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2068,
     "unconditional": false,
     "names_shipping_functions": [
      "dataset_finalise",
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "stream_fold_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lw_wf_shift_left_blank",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2292,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "lw_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lw_wf_shift_left_comment",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2306,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "lw_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lw_wf_shift_left_quadfail",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2321,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "lw_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lw_wf_shift_left_quadok",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2344,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "lw_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lw_wf_shift_left",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2382,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "lw_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lw_ds_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2398,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "lw_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "chain_wf_shift_left",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2445,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "chain_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "chain_ds_fold_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2462,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "chain_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "chain_append",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2511,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "chain_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "stream_consume_dataset_fold_eq_batch",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2937,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "stream_fold_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "stream_consume_dataset_eq_batch_raw",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2971,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "stream_fold_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_fold_nquads_acc_blank_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 3132,
     "unconditional": false,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "blank_line_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_fold_nquads_acc_comment_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 3155,
     "unconditional": false,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "comment_line_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_fold_nquads_acc_quad_fail_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 3180,
     "unconditional": false,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_at",
      "fs_byte_length",
      "parse_nquad"
     ],
     "names_declarative_relations": [
      "quad_fail_line_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_fold_nquads_acc_quad_ok_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 3213,
     "unconditional": false,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_length",
      "parse_iri",
      "parse_nquad",
      "parse_object",
      "parse_opt_graph_label",
      "parse_subject"
     ],
     "names_declarative_relations": [
      "quad_ok_line_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_fold_nquads_acc_line_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 3261,
     "unconditional": false,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "lw_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_fold_nquads_acc_restart",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 3286,
     "unconditional": false,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "chain_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_fold_nquads_acc_full_via_chain",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 3312,
     "unconditional": false,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "chain_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "fold_nquads_acc_concat_line_general",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 3336,
     "unconditional": false,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "chain_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "stream_consume_generic_fold_eq_batch",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 3380,
     "unconditional": false,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "stream_fold_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    }
   ],
   "w3c_refinement_theorems": [],
   "assurance_tier": "internal-refinement",
   "suites": [
    {
     "suite": "csvw-csv2json",
     "how": "foundational-path"
    },
    {
     "suite": "csvw-nonnorm",
     "how": "foundational-path"
    },
    {
     "suite": "csvw-validation",
     "how": "foundational-path"
    },
    {
     "suite": "csvw",
     "how": "foundational-path"
    },
    {
     "suite": "did",
     "how": "foundational-path"
    },
    {
     "suite": "eecc-interop",
     "how": "foundational-path"
    },
    {
     "suite": "geosparql",
     "how": "foundational-path"
    },
    {
     "suite": "grddl",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-compact",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-expand",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-flatten",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-frame",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-fromrdf",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-html",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-tordf",
     "how": "foundational-path"
    },
    {
     "suite": "jsonschema",
     "how": "foundational-path"
    },
    {
     "suite": "local-backend-parity-full",
     "how": "foundational-path"
    },
    {
     "suite": "local-backend-parity",
     "how": "foundational-path"
    },
    {
     "suite": "local-check-pages-links",
     "how": "foundational-path"
    },
    {
     "suite": "local-cottas-ask-decode-failure",
     "how": "foundational-path"
    },
    {
     "suite": "local-cottas-corpus",
     "how": "foundational-path"
    },
    {
     "suite": "local-cottas-groupby-counts",
     "how": "foundational-path"
    },
    {
     "suite": "local-cottas-row-order",
     "how": "foundational-path"
    },
    {
     "suite": "local-graph-default-semantics",
     "how": "foundational-path"
    },
    {
     "suite": "local-graphs-api",
     "how": "foundational-path"
    },
    {
     "suite": "local-jsonld-regressions",
     "how": "foundational-path"
    },
    {
     "suite": "local-negative-test-vacuity",
     "how": "foundational-path"
    },
    {
     "suite": "local-parquet-footer-version-gate",
     "how": "foundational-path"
    },
    {
     "suite": "local-parquet-footer",
     "how": "foundational-path"
    },
    {
     "suite": "local-parser-unicode",
     "how": "direct-trigger"
    },
    {
     "suite": "local-serializer-unicode",
     "how": "foundational-path"
    },
    {
     "suite": "local-sparql-negative",
     "how": "foundational-path"
    },
    {
     "suite": "local-sparql-parser",
     "how": "foundational-path"
    },
    {
     "suite": "local-turtle-pretty",
     "how": "foundational-path"
    },
    {
     "suite": "mathml",
     "how": "foundational-path"
    },
    {
     "suite": "owl-profile-el",
     "how": "foundational-path"
    },
    {
     "suite": "owl-profile-ql",
     "how": "foundational-path"
    },
    {
     "suite": "owl-profile-rl",
     "how": "foundational-path"
    },
    {
     "suite": "owl-semantics-direct",
     "how": "foundational-path"
    },
    {
     "suite": "owl-syntax-dl",
     "how": "foundational-path"
    },
    {
     "suite": "owl-type-consistency",
     "how": "foundational-path"
    },
    {
     "suite": "owl-type-inconsistency",
     "how": "foundational-path"
    },
    {
     "suite": "owl-type-negative-entailment",
     "how": "foundational-path"
    },
    {
     "suite": "owl-type-positive-entailment",
     "how": "foundational-path"
    },
    {
     "suite": "qudt",
     "how": "foundational-path"
    },
    {
     "suite": "rdf-mt",
     "how": "foundational-path"
    },
    {
     "suite": "rdf-n-quads",
     "how": "foundational-path"
    },
    {
     "suite": "rdf-n-triples",
     "how": "foundational-path"
    },
    {
     "suite": "rdf-trig",
     "how": "foundational-path"
    },
    {
     "suite": "rdf-turtle",
     "how": "foundational-path"
    },
    {
     "suite": "rdf-xml",
     "how": "foundational-path"
    },
    {
     "suite": "rdfc10",
     "how": "foundational-path"
    },
    {
     "suite": "rif",
     "how": "foundational-path"
    },
    {
     "suite": "rml-io",
     "how": "foundational-path"
    },
    {
     "suite": "rml",
     "how": "foundational-path"
    },
    {
     "suite": "schematron",
     "how": "foundational-path"
    },
    {
     "suite": "shacl-core",
     "how": "foundational-path"
    },
    {
     "suite": "shacl-sparql",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-core",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-node-expr",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-rules-syntax",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-rules",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-sparql",
     "how": "foundational-path"
    },
    {
     "suite": "shex-negative-syntax",
     "how": "foundational-path"
    },
    {
     "suite": "shex",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-entailment",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-federated-query",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-protocol",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-query",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-service-description",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-update",
     "how": "foundational-path"
    },
    {
     "suite": "tests-unit",
     "how": "foundational-path"
    },
    {
     "suite": "toan-matrix",
     "how": "foundational-path"
    },
    {
     "suite": "vc-di-eddsa",
     "how": "foundational-path"
    },
    {
     "suite": "vc",
     "how": "foundational-path"
    },
    {
     "suite": "vc20-api",
     "how": "foundational-path"
    },
    {
     "suite": "xforms",
     "how": "foundational-path"
    },
    {
     "suite": "xml-conformance",
     "how": "foundational-path"
    },
    {
     "suite": "xpath-unit",
     "how": "foundational-path"
    },
    {
     "suite": "xslt",
     "how": "foundational-path"
    },
    {
     "suite": "xslt1-xalan",
     "how": "foundational-path"
    }
   ]
  },
  {
   "module": "Parser.FastString.Axioms",
   "files": [
    "formal/fstar/Parser.FastString.Axioms.fst",
    "formal/fstar/Parser.FastString.Axioms.fsti"
   ],
   "loc": 650,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "not-in-build-list",
   "extraction_oracle_available": false,
   "extracted_ml": null,
   "in_build_module_list": false,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 10,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 12,
   "local_refinement_lemma_names": [
    "nth_byte_append_left",
    "drop_bytes_length",
    "drop_bytes_append_left",
    "drop_bytes_append_right",
    "take_bytes_append_left",
    "take_bytes_self",
    "nth_byte_some_of_lt",
    "lemma_decode_all_aux_shift",
    "fs_byte_length_empty",
    "fs_byte_length_concat",
    "fs_byte_length_ascii_singleton",
    "fs_byte_at_ascii_singleton"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "unclassified",
   "suites": []
  },
  {
   "module": "Parser.FastString.BaseCases",
   "files": [
    "formal/fstar/Parser.FastString.BaseCases.fst"
   ],
   "loc": 297,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "not-in-build-list",
   "extraction_oracle_available": false,
   "extracted_ml": null,
   "in_build_module_list": false,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 36,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 31,
   "local_refinement_lemma_names": [
    "fs_byte_at_quote",
    "fs_byte_length_quote",
    "fs_byte_at_lbrace",
    "fs_byte_length_lbrace",
    "fs_byte_at_rbrace",
    "fs_byte_length_rbrace",
    "fs_byte_at_lbracket",
    "fs_byte_length_lbracket",
    "fs_byte_at_rbracket",
    "fs_byte_length_rbracket",
    "fs_byte_at_colon",
    "fs_byte_length_colon",
    "fs_byte_at_comma",
    "fs_byte_length_comma",
    "fs_byte_at_lt",
    "fs_byte_length_lt",
    "fs_byte_at_gt",
    "fs_byte_length_gt",
    "fs_byte_at_space",
    "fs_byte_length_space",
    "fs_byte_at_newline",
    "fs_byte_length_newline",
    "fs_byte_at_backslash",
    "fs_byte_length_backslash",
    "lemma_one_char_list_of_string",
    "lemma_codes_of_length",
    "lemma_all_ascii_index",
    "lemma_nth_byte_codes_of",
    "lemma_build_string_utf8_bytes",
    "lemma_build_string_byte_length",
    "lemma_build_string_byte_at"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "unclassified",
   "suites": []
  },
  {
   "module": "Parser.FastString.CharBoundary",
   "files": [
    "formal/fstar/Parser.FastString.CharBoundary.fst"
   ],
   "loc": 58,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_FastString_CharBoundary.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 1,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 1,
   "assume_val_names": [
    "unsafe_char_of_d7ff"
   ],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "Parser.FastString.ConcatSpec",
   "files": [
    "formal/fstar/Parser.FastString.ConcatSpec.fst"
   ],
   "loc": 155,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_FastString_ConcatSpec.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 2,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 6,
   "local_refinement_lemma_names": [
    "concat_spec_nil",
    "concat_spec_singleton",
    "concat_spec_cons",
    "lemma_strcat_empty_l",
    "lemma_strcat_empty_r",
    "lemma_strcat_assoc"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "local-lemmas-only",
   "suites": []
  },
  {
   "module": "Parser.FastString.RoundTripLemmas",
   "files": [
    "formal/fstar/Parser.FastString.RoundTripLemmas.fst"
   ],
   "loc": 801,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "not-in-build-list",
   "extraction_oracle_available": false,
   "extracted_ml": null,
   "in_build_module_list": false,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 15,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 20,
   "local_refinement_lemma_names": [
    "demo_fs_byte_length_ab",
    "lemma_one_char_list_of_string",
    "lemma_one_char_byte_length",
    "lemma_one_char_byte_at",
    "lemma_build_string_byte_length",
    "lemma_build_string_byte_at",
    "lemma_quoted_content_byte_sub",
    "lemma_ascii_utf8_bytes_length",
    "lemma_ascii_string_byte_length",
    "lemma_all_ascii_index",
    "lemma_ascii_string_byte_at",
    "lemma_ascii_string_byte_index",
    "nth_byte_index",
    "lemma_build_string_utf8_bytes_len",
    "lemma_list_of_build_string",
    "lemma_ascii_string_is_build_string",
    "bc_codes_of_is_concatMap",
    "bc_utf8_decode_all_codes_of_identity",
    "bc_lemma_list_of_build_string",
    "lemma_ascii_string_is_build_string_bc"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "unclassified",
   "suites": []
  },
  {
   "module": "Parser.FastString.Spec",
   "files": [
    "formal/fstar/Parser.FastString.Spec.fst"
   ],
   "loc": 853,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_FastString_Spec.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 24,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 15,
   "local_refinement_lemma_names": [
    "nth_byte_zero",
    "nth_byte_succ",
    "nth_byte_append",
    "utf8_decode_at_shift",
    "utf8_enc_char_len_bounds",
    "lemma_concatMap_append",
    "utf8_bytes_concat",
    "utf8_bytes_ascii_singleton",
    "utf8_decode_all_aux_shift",
    "drop_chars_add",
    "drop_bytes_append_left",
    "drop_bytes_self",
    "take_bytes_append_left",
    "take_bytes_self",
    "bytes_split3_slice"
   ],
   "algorithm_correctness_theorems": [
    {
     "name": "utf8_decode_all_aux_unfold",
     "proved_in": "Parser.FastString.Axioms",
     "file": "formal/fstar/Parser.FastString.Axioms.fst",
     "line": 250,
     "unconditional": false,
     "names_shipping_functions": [
      "utf8_decode_all_aux",
      "utf8_decode_at"
     ]
    },
    {
     "name": "lemma_decode_all_aux_encode",
     "proved_in": "Parser.FastString.Axioms",
     "file": "formal/fstar/Parser.FastString.Axioms.fst",
     "line": 303,
     "unconditional": true,
     "names_shipping_functions": [
      "utf8_decode_all_aux",
      "utf8_enc_char"
     ]
    },
    {
     "name": "utf8_decode_all_utf8_bytes_identity",
     "proved_in": "Parser.FastString.Axioms",
     "file": "formal/fstar/Parser.FastString.Axioms.fst",
     "line": 337,
     "unconditional": true,
     "names_shipping_functions": [
      "utf8_bytes",
      "utf8_decode_all"
     ]
    },
    {
     "name": "lemma_ascii_utf8_bytes_at",
     "proved_in": "Parser.FastString.RoundTripLemmas",
     "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
     "line": 281,
     "unconditional": true,
     "names_shipping_functions": [
      "nth_byte",
      "utf8_enc_char"
     ]
    },
    {
     "name": "fs_byte_sub_by_charcount",
     "proved_in": "Parser.FastString.RoundTripLemmas",
     "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
     "line": 470,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_sub",
      "slice_chars",
      "take_chars",
      "utf8_enc_char"
     ]
    },
    {
     "name": "lemma_build_string_utf8_bytes_nth",
     "proved_in": "Parser.FastString.RoundTripLemmas",
     "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
     "line": 614,
     "unconditional": true,
     "names_shipping_functions": [
      "nth_byte",
      "utf8_bytes"
     ]
    },
    {
     "name": "lemma_concatMap_utf8_enc_char_nth",
     "proved_in": "Parser.FastString.RoundTripLemmas",
     "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
     "line": 630,
     "unconditional": true,
     "names_shipping_functions": [
      "nth_byte",
      "utf8_enc_char"
     ]
    },
    {
     "name": "lemma_utf8_bytes_build_string",
     "proved_in": "Parser.FastString.RoundTripLemmas",
     "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
     "line": 648,
     "unconditional": true,
     "names_shipping_functions": [
      "utf8_bytes",
      "utf8_enc_char"
     ]
    },
    {
     "name": "utf8_bytes_singleton",
     "proved_in": "Parser.FastString.Spec",
     "file": "formal/fstar/Parser.FastString.Spec.fst",
     "line": 431,
     "unconditional": false,
     "names_shipping_functions": [
      "utf8_bytes",
      "utf8_enc_char"
     ]
    },
    {
     "name": "utf8_decode_at_ascii",
     "proved_in": "Parser.FastString.Spec",
     "file": "formal/fstar/Parser.FastString.Spec.fst",
     "line": 440,
     "unconditional": false,
     "names_shipping_functions": [
      "nth_byte",
      "utf8_decode_at"
     ]
    },
    {
     "name": "utf8_decode_encode_identity",
     "proved_in": "Parser.FastString.Spec",
     "file": "formal/fstar/Parser.FastString.Spec.fst",
     "line": 450,
     "unconditional": true,
     "names_shipping_functions": [
      "utf8_decode_at",
      "utf8_enc_char"
     ]
    },
    {
     "name": "utf8_decode_all_aux_unfold",
     "proved_in": "Parser.FastString.Spec",
     "file": "formal/fstar/Parser.FastString.Spec.fst",
     "line": 620,
     "unconditional": false,
     "names_shipping_functions": [
      "utf8_decode_all_aux",
      "utf8_decode_at"
     ]
    },
    {
     "name": "utf8_decode_all_aux_encode",
     "proved_in": "Parser.FastString.Spec",
     "file": "formal/fstar/Parser.FastString.Spec.fst",
     "line": 676,
     "unconditional": true,
     "names_shipping_functions": [
      "utf8_decode_all_aux",
      "utf8_enc_char"
     ]
    },
    {
     "name": "utf8_decode_all_concatMap_identity",
     "proved_in": "Parser.FastString.Spec",
     "file": "formal/fstar/Parser.FastString.Spec.fst",
     "line": 704,
     "unconditional": true,
     "names_shipping_functions": [
      "utf8_decode_all",
      "utf8_enc_char"
     ]
    },
    {
     "name": "utf8_decode_all_utf8_bytes_identity",
     "proved_in": "Parser.FastString.Spec",
     "file": "formal/fstar/Parser.FastString.Spec.fst",
     "line": 716,
     "unconditional": true,
     "names_shipping_functions": [
      "utf8_bytes",
      "utf8_decode_all"
     ]
    },
    {
     "name": "chars_take_drop_append",
     "proved_in": "Parser.FastString.Spec",
     "file": "formal/fstar/Parser.FastString.Spec.fst",
     "line": 742,
     "unconditional": true,
     "names_shipping_functions": [
      "drop_chars",
      "take_chars"
     ]
    },
    {
     "name": "chars_split3",
     "proved_in": "Parser.FastString.Spec",
     "file": "formal/fstar/Parser.FastString.Spec.fst",
     "line": 764,
     "unconditional": true,
     "names_shipping_functions": [
      "drop_chars",
      "slice_chars",
      "take_chars"
     ]
    },
    {
     "name": "utf8_decode_all_slice_by_charcount",
     "proved_in": "Parser.FastString.Spec",
     "file": "formal/fstar/Parser.FastString.Spec.fst",
     "line": 833,
     "unconditional": true,
     "names_shipping_functions": [
      "slice_bytes",
      "slice_chars",
      "take_chars",
      "utf8_decode_all",
      "utf8_enc_char"
     ]
    },
    {
     "name": "fs_byte_length_eq",
     "proved_in": "Parser.FastString",
     "file": "formal/fstar/Parser.FastString.fst",
     "line": 117,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_length",
      "utf8_bytes"
     ]
    },
    {
     "name": "fs_byte_at_eq",
     "proved_in": "Parser.FastString",
     "file": "formal/fstar/Parser.FastString.fst",
     "line": 120,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_at",
      "nth_byte",
      "utf8_bytes"
     ]
    },
    {
     "name": "fs_byte_sub_eq",
     "proved_in": "Parser.FastString",
     "file": "formal/fstar/Parser.FastString.fst",
     "line": 144,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_sub",
      "slice_bytes",
      "utf8_bytes",
      "utf8_decode_all"
     ]
    },
    {
     "name": "fs_find_byte_eq",
     "proved_in": "Parser.FastString",
     "file": "formal/fstar/Parser.FastString.fst",
     "line": 150,
     "unconditional": true,
     "names_shipping_functions": [
      "find_byte",
      "fs_find_byte",
      "utf8_bytes"
     ]
    },
    {
     "name": "fs_cp_at_eq",
     "proved_in": "Parser.FastString",
     "file": "formal/fstar/Parser.FastString.fst",
     "line": 154,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_cp_at",
      "utf8_bytes",
      "utf8_decode_at"
     ]
    },
    {
     "name": "fs_cp_len_eq",
     "proved_in": "Parser.FastString",
     "file": "formal/fstar/Parser.FastString.fst",
     "line": 159,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_cp_len",
      "utf8_bytes",
      "utf8_decode_at"
     ]
    },
    {
     "name": "utf8_decode_at_join",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1019,
     "unconditional": false,
     "names_shipping_functions": [
      "is_continuation",
      "utf8_decode_at"
     ]
    },
    {
     "name": "lemma_cp_at_at_middle",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1089,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length",
      "fs_cp_at",
      "is_continuation"
     ]
    },
    {
     "name": "lemma_scan_bnode_body_cp_shift_headroom",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1140,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length",
      "is_continuation",
      "scan_bnode_body_cp"
     ]
    },
    {
     "name": "lemma_parse_string_body_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1323,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length",
      "is_continuation",
      "parse_string_body"
     ]
    },
    {
     "name": "lemma_parse_string_literal_escapepath_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1521,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_index",
      "fs_byte_length",
      "is_continuation",
      "parse_string_body",
      "parse_string_literal",
      "scan_string_fast"
     ]
    },
    {
     "name": "lemma_parse_bnode_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2313,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length",
      "fs_cp_at",
      "is_bnode_start_cp",
      "is_continuation",
      "parse_bnode",
      "scan_bnode_body_cp"
     ]
    },
    {
     "name": "lemma_parse_subject_bnode_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2372,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_index",
      "fs_byte_length",
      "fs_cp_at",
      "is_bnode_start_cp",
      "is_continuation",
      "parse_subject",
      "scan_bnode_body_cp"
     ]
    },
    {
     "name": "lemma_parse_object_bnode_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2408,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_index",
      "fs_byte_length",
      "fs_cp_at",
      "is_bnode_start_cp",
      "is_continuation",
      "parse_object",
      "scan_bnode_body_cp"
     ]
    },
    {
     "name": "lemma_parse_graph_label_bnode_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2693,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_index",
      "fs_byte_length",
      "fs_cp_at",
      "is_bnode_start_cp",
      "is_continuation",
      "parse_graph_label",
      "scan_bnode_body_cp"
     ]
    },
    {
     "name": "lemma_parse_opt_graph_label_bnode_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2729,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_index",
      "fs_byte_length",
      "fs_cp_at",
      "is_bnode_start_cp",
      "is_continuation",
      "parse_opt_graph_label",
      "pws",
      "scan_bnode_body_cp"
     ]
    },
    {
     "name": "lemma_build_string_utf8_bytes_general",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1266,
     "unconditional": true,
     "names_shipping_functions": [
      "utf8_bytes",
      "utf8_enc_char"
     ]
    },
    {
     "name": "lemma_build_string_byte_length_general",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1279,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_length",
      "utf8_enc_char"
     ]
    },
    {
     "name": "lemma_utf8_enc_char_iri_safe",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1292,
     "unconditional": false,
     "names_shipping_functions": [
      "is_iri_body_char",
      "is_iri_forbidden_codepoint",
      "utf8_enc_char"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": []
  },
  {
   "module": "Parser.IRI",
   "files": [
    "formal/fstar/Parser.IRI.fst"
   ],
   "loc": 20,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_IRI.ml",
   "in_build_module_list": true,
   "foundational_path": true,
   "shipping_function_count": 1,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "csvw-csv2json",
     "how": "foundational-path"
    },
    {
     "suite": "csvw-nonnorm",
     "how": "foundational-path"
    },
    {
     "suite": "csvw-validation",
     "how": "foundational-path"
    },
    {
     "suite": "csvw",
     "how": "foundational-path"
    },
    {
     "suite": "did",
     "how": "foundational-path"
    },
    {
     "suite": "eecc-interop",
     "how": "foundational-path"
    },
    {
     "suite": "geosparql",
     "how": "foundational-path"
    },
    {
     "suite": "grddl",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-compact",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-expand",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-flatten",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-frame",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-fromrdf",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-html",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-tordf",
     "how": "foundational-path"
    },
    {
     "suite": "jsonschema",
     "how": "foundational-path"
    },
    {
     "suite": "local-backend-parity-full",
     "how": "foundational-path"
    },
    {
     "suite": "local-backend-parity",
     "how": "foundational-path"
    },
    {
     "suite": "local-check-pages-links",
     "how": "foundational-path"
    },
    {
     "suite": "local-cottas-ask-decode-failure",
     "how": "foundational-path"
    },
    {
     "suite": "local-cottas-corpus",
     "how": "foundational-path"
    },
    {
     "suite": "local-cottas-groupby-counts",
     "how": "foundational-path"
    },
    {
     "suite": "local-cottas-row-order",
     "how": "foundational-path"
    },
    {
     "suite": "local-graph-default-semantics",
     "how": "foundational-path"
    },
    {
     "suite": "local-graphs-api",
     "how": "foundational-path"
    },
    {
     "suite": "local-jsonld-regressions",
     "how": "foundational-path"
    },
    {
     "suite": "local-negative-test-vacuity",
     "how": "foundational-path"
    },
    {
     "suite": "local-parquet-footer-version-gate",
     "how": "foundational-path"
    },
    {
     "suite": "local-parquet-footer",
     "how": "foundational-path"
    },
    {
     "suite": "local-parser-unicode",
     "how": "foundational-path"
    },
    {
     "suite": "local-serializer-unicode",
     "how": "foundational-path"
    },
    {
     "suite": "local-sparql-negative",
     "how": "foundational-path"
    },
    {
     "suite": "local-sparql-parser",
     "how": "foundational-path"
    },
    {
     "suite": "local-turtle-pretty",
     "how": "foundational-path"
    },
    {
     "suite": "mathml",
     "how": "foundational-path"
    },
    {
     "suite": "owl-profile-el",
     "how": "foundational-path"
    },
    {
     "suite": "owl-profile-ql",
     "how": "foundational-path"
    },
    {
     "suite": "owl-profile-rl",
     "how": "foundational-path"
    },
    {
     "suite": "owl-semantics-direct",
     "how": "foundational-path"
    },
    {
     "suite": "owl-syntax-dl",
     "how": "foundational-path"
    },
    {
     "suite": "owl-type-consistency",
     "how": "foundational-path"
    },
    {
     "suite": "owl-type-inconsistency",
     "how": "foundational-path"
    },
    {
     "suite": "owl-type-negative-entailment",
     "how": "foundational-path"
    },
    {
     "suite": "owl-type-positive-entailment",
     "how": "foundational-path"
    },
    {
     "suite": "qudt",
     "how": "foundational-path"
    },
    {
     "suite": "rdf-mt",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-n-quads",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-n-triples",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-trig",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-turtle",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-xml",
     "how": "direct-trigger"
    },
    {
     "suite": "rdfc10",
     "how": "foundational-path"
    },
    {
     "suite": "rif",
     "how": "foundational-path"
    },
    {
     "suite": "rml-io",
     "how": "foundational-path"
    },
    {
     "suite": "rml",
     "how": "foundational-path"
    },
    {
     "suite": "schematron",
     "how": "foundational-path"
    },
    {
     "suite": "shacl-core",
     "how": "foundational-path"
    },
    {
     "suite": "shacl-sparql",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-core",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-node-expr",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-rules-syntax",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-rules",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-sparql",
     "how": "foundational-path"
    },
    {
     "suite": "shex-negative-syntax",
     "how": "foundational-path"
    },
    {
     "suite": "shex",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-entailment",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-federated-query",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-protocol",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-query",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-service-description",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-update",
     "how": "foundational-path"
    },
    {
     "suite": "tests-unit",
     "how": "foundational-path"
    },
    {
     "suite": "toan-matrix",
     "how": "foundational-path"
    },
    {
     "suite": "vc-di-eddsa",
     "how": "foundational-path"
    },
    {
     "suite": "vc",
     "how": "foundational-path"
    },
    {
     "suite": "vc20-api",
     "how": "foundational-path"
    },
    {
     "suite": "xforms",
     "how": "foundational-path"
    },
    {
     "suite": "xml-conformance",
     "how": "foundational-path"
    },
    {
     "suite": "xpath-unit",
     "how": "foundational-path"
    },
    {
     "suite": "xslt",
     "how": "foundational-path"
    },
    {
     "suite": "xslt1-xalan",
     "how": "foundational-path"
    }
   ]
  },
  {
   "module": "Parser.JSON",
   "files": [
    "formal/fstar/Parser.JSON.fst"
   ],
   "loc": 423,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_JSON.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 27,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_json_val_of_response_roundtrip",
     "proved_in": "SPARQL.Protocol.RoundTrip",
     "file": "formal/fstar/SPARQL.Protocol.RoundTrip.fst",
     "line": 420,
     "unconditional": true,
     "names_shipping_functions": [
      "json_get_array",
      "json_get_field",
      "json_get_string_array",
      "parse_binding_row"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": [
    {
     "suite": "eecc-interop",
     "how": "direct-trigger"
    },
    {
     "suite": "jsonld-frame",
     "how": "direct-trigger"
    },
    {
     "suite": "jsonld-html",
     "how": "direct-trigger"
    },
    {
     "suite": "jsonld-tordf",
     "how": "direct-trigger"
    },
    {
     "suite": "jsonschema",
     "how": "direct-trigger"
    },
    {
     "suite": "local-jsonld-regressions",
     "how": "direct-trigger"
    },
    {
     "suite": "rml",
     "how": "direct-trigger"
    },
    {
     "suite": "shex",
     "how": "direct-trigger"
    },
    {
     "suite": "vc",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parser.JSONLD",
   "files": [
    "formal/fstar/Parser.JSONLD.fst"
   ],
   "loc": 1460,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_JSONLD.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 84,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "jsonld-compact",
     "how": "direct-trigger"
    },
    {
     "suite": "jsonld-expand",
     "how": "direct-trigger"
    },
    {
     "suite": "jsonld-flatten",
     "how": "direct-trigger"
    },
    {
     "suite": "jsonld-frame",
     "how": "direct-trigger"
    },
    {
     "suite": "jsonld-fromrdf",
     "how": "direct-trigger"
    },
    {
     "suite": "jsonld-html",
     "how": "direct-trigger"
    },
    {
     "suite": "jsonld-tordf",
     "how": "direct-trigger"
    },
    {
     "suite": "local-jsonld-regressions",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parser.JSONLD.Html",
   "files": [
    "formal/fstar/Parser.JSONLD.Html.fst"
   ],
   "loc": 177,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_JSONLD_Html.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 17,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "jsonld-html",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parser.JSONResults",
   "files": [
    "formal/fstar/Parser.JSONResults.fst"
   ],
   "loc": 161,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_JSONResults.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 8,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_json_val_of_response_roundtrip",
     "proved_in": "SPARQL.Protocol.RoundTrip",
     "file": "formal/fstar/SPARQL.Protocol.RoundTrip.fst",
     "line": 420,
     "unconditional": true,
     "names_shipping_functions": [
      "json_get_array",
      "json_get_field",
      "json_get_string_array",
      "parse_binding_row"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": [
    {
     "suite": "sparql11-federated-query",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parser.NQuads",
   "files": [
    "formal/fstar/Parser.NQuads.fst"
   ],
   "loc": 758,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_NQuads.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 26,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_parse_graph_label_iri_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1692,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_graph_label",
      "parse_iri_raw",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_opt_graph_label_iri_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1714,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri_raw",
      "parse_opt_graph_label",
      "pws",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_opt_graph_label_none_dot_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1740,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "parse_opt_graph_label",
      "pws"
     ]
    },
    {
     "name": "lemma_nq_skip_line_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1976,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length",
      "nq_skip_line"
     ]
    },
    {
     "name": "lemma_parse_nquad_iri_nograph_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2214,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri",
      "parse_iri_raw",
      "parse_nquad",
      "parse_object",
      "parse_subject",
      "pws",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_graph_label_bnode_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2693,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_index",
      "fs_byte_length",
      "fs_cp_at",
      "is_bnode_start_cp",
      "is_continuation",
      "parse_graph_label",
      "scan_bnode_body_cp"
     ]
    },
    {
     "name": "lemma_parse_opt_graph_label_bnode_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2729,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_index",
      "fs_byte_length",
      "fs_cp_at",
      "is_bnode_start_cp",
      "is_continuation",
      "parse_opt_graph_label",
      "pws",
      "scan_bnode_body_cp"
     ]
    },
    {
     "name": "lemma_parse_nquad_shift_generic",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2800,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri",
      "parse_nquad",
      "parse_object",
      "parse_opt_graph_label",
      "parse_subject",
      "pws"
     ]
    },
    {
     "name": "stream_parse_single_chunk_shape",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 453,
     "unconditional": true,
     "names_shipping_functions": [
      "dataset_finalise",
      "fs_byte_length",
      "parse_nquads_acc"
     ]
    },
    {
     "name": "parse_nquads_acc_concat_line_empty_complete",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 603,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ]
    },
    {
     "name": "parse_nquads_acc_concat_line_empty_carry",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 617,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ]
    },
    {
     "name": "lemma_nq_skip_line_shift_exact",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 980,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length",
      "nq_skip_line"
     ]
    },
    {
     "name": "lw_ds_step_via_parse_nquad",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2551,
     "unconditional": true,
     "names_shipping_functions": [
      "dataset_add_quad",
      "parse_nquad"
     ]
    },
    {
     "name": "stream_consume_single_chunk_shape",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2757,
     "unconditional": true,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_length"
     ]
    },
    {
     "name": "fold_nquads_acc_eq_parse_nquads_acc",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2879,
     "unconditional": true,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "parse_nquads_acc"
     ]
    }
   ],
   "internal_refinement_theorems": [
    {
     "name": "lemma_parse_nquads_acc_blank_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 1203,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "blank_line_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_parse_nquads_acc_skip_blanks",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 1250,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "blank_chain_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_parse_nquads_acc_comment_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 1318,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "comment_line_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_parse_nquads_acc_quad_fail_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 1382,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length",
      "parse_nquad",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "quad_fail_line_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_parse_nquads_acc_quad_ok_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 1477,
     "unconditional": false,
     "names_shipping_functions": [
      "dataset_add_quad",
      "fs_byte_length",
      "parse_iri",
      "parse_nquad",
      "parse_nquads_acc",
      "parse_object",
      "parse_opt_graph_label",
      "parse_subject"
     ],
     "names_declarative_relations": [
      "quad_ok_line_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_parse_nquads_acc_line_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 1619,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "lw_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_parse_nquads_acc_restart",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 1670,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "chain_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_parse_nquads_acc_full_via_chain",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 1711,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "chain_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_parse_nquads_acc_concat_line_general",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 1756,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "chain_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "stream_fold_eq_batch",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2068,
     "unconditional": false,
     "names_shipping_functions": [
      "dataset_finalise",
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "stream_fold_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "stream_consume_dataset_fold_eq_batch",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2937,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "stream_fold_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "stream_consume_dataset_eq_batch_raw",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2971,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "stream_fold_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_fold_nquads_acc_blank_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 3132,
     "unconditional": false,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "blank_line_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_fold_nquads_acc_comment_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 3155,
     "unconditional": false,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "comment_line_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_fold_nquads_acc_quad_fail_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 3180,
     "unconditional": false,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_at",
      "fs_byte_length",
      "parse_nquad"
     ],
     "names_declarative_relations": [
      "quad_fail_line_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_fold_nquads_acc_quad_ok_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 3213,
     "unconditional": false,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_length",
      "parse_iri",
      "parse_nquad",
      "parse_object",
      "parse_opt_graph_label",
      "parse_subject"
     ],
     "names_declarative_relations": [
      "quad_ok_line_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_fold_nquads_acc_line_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 3261,
     "unconditional": false,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "lw_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_fold_nquads_acc_restart",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 3286,
     "unconditional": false,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "chain_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_fold_nquads_acc_full_via_chain",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 3312,
     "unconditional": false,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "chain_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "fold_nquads_acc_concat_line_general",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 3336,
     "unconditional": false,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "chain_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "stream_consume_generic_fold_eq_batch",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 3380,
     "unconditional": false,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_length"
     ],
     "names_declarative_relations": [
      "stream_fold_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    }
   ],
   "w3c_refinement_theorems": [],
   "assurance_tier": "internal-refinement",
   "suites": [
    {
     "suite": "jsonld-html",
     "how": "direct-trigger"
    },
    {
     "suite": "jsonld-tordf",
     "how": "direct-trigger"
    },
    {
     "suite": "local-parser-unicode",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-n-quads",
     "how": "direct-trigger"
    },
    {
     "suite": "rml",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-update",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parser.NTriples",
   "files": [
    "formal/fstar/Parser.NTriples.fst"
   ],
   "loc": 1449,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_NTriples.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 57,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_scan_iri_end_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 149,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_scan_iri_end_shift_from_start",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 217,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_scan_iri_end_shift_headroom",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 258,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_pws_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 379,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "pws"
     ]
    },
    {
     "name": "lemma_parse_iri_raw_fastpath_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 414,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "parse_iri_raw",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_iri_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 454,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri",
      "parse_iri_raw",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_subject_iri_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 496,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri_raw",
      "parse_subject",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_object_iri_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 518,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri_raw",
      "parse_object",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_iri_body_acc_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 579,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_iri_body_acc"
     ]
    },
    {
     "name": "lemma_scan_iri_end_success_bound",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 692,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_iri_body_acc_success_bound",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 749,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "parse_iri_body_acc"
     ]
    },
    {
     "name": "lemma_scan_bnode_body_cp_shift_headroom",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1140,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length",
      "is_continuation",
      "scan_bnode_body_cp"
     ]
    },
    {
     "name": "lemma_scan_string_fast_shift_headroom",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1286,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "scan_string_fast"
     ]
    },
    {
     "name": "lemma_parse_string_body_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1323,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length",
      "is_continuation",
      "parse_string_body"
     ]
    },
    {
     "name": "lemma_scan_string_fast_shift_hasescapes",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1451,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "scan_string_fast"
     ]
    },
    {
     "name": "lemma_parse_string_literal_fastpath_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1486,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "parse_string_literal",
      "scan_string_fast"
     ]
    },
    {
     "name": "lemma_parse_string_literal_escapepath_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1521,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_index",
      "fs_byte_length",
      "is_continuation",
      "parse_string_body",
      "parse_string_literal",
      "scan_string_fast"
     ]
    },
    {
     "name": "lemma_parse_lang_tag_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1618,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_alpha",
      "is_lang_char",
      "parse_lang_tag",
      "ptake_while_scan"
     ]
    },
    {
     "name": "lemma_parse_datatype_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1643,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_datatype",
      "parse_iri_raw",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_graph_label_iri_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1692,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_graph_label",
      "parse_iri_raw",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_opt_graph_label_iri_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1714,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri_raw",
      "parse_opt_graph_label",
      "pws",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_opt_graph_label_none_dot_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1740,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "parse_opt_graph_label",
      "pws"
     ]
    },
    {
     "name": "lemma_skip_eol_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1819,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length",
      "skip_eol"
     ]
    },
    {
     "name": "lemma_nt_skip_to_eol_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1926,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "nt_skip_to_eol"
     ]
    },
    {
     "name": "lemma_pws_noop",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2207,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_nt_ws",
      "pws"
     ]
    },
    {
     "name": "lemma_parse_nquad_iri_nograph_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2214,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri",
      "parse_iri_raw",
      "parse_nquad",
      "parse_object",
      "parse_subject",
      "pws",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_bnode_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2313,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_length",
      "fs_cp_at",
      "is_bnode_start_cp",
      "is_continuation",
      "parse_bnode",
      "scan_bnode_body_cp"
     ]
    },
    {
     "name": "lemma_parse_subject_bnode_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2372,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_index",
      "fs_byte_length",
      "fs_cp_at",
      "is_bnode_start_cp",
      "is_continuation",
      "parse_subject",
      "scan_bnode_body_cp"
     ]
    },
    {
     "name": "lemma_parse_object_bnode_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2408,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_index",
      "fs_byte_length",
      "fs_cp_at",
      "is_bnode_start_cp",
      "is_continuation",
      "parse_object",
      "scan_bnode_body_cp"
     ]
    },
    {
     "name": "lemma_parse_literal_plain_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2492,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "parse_literal",
      "parse_string_literal"
     ]
    },
    {
     "name": "lemma_parse_literal_lang_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2519,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_alpha",
      "is_lang_char",
      "parse_literal",
      "parse_string_literal",
      "ptake_while_scan"
     ]
    },
    {
     "name": "lemma_parse_literal_datatype_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2620,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "parse_datatype",
      "parse_literal",
      "parse_string_literal",
      "rdf_dir_lang_string",
      "rdf_lang_string"
     ]
    },
    {
     "name": "lemma_parse_object_literal_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2667,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "parse_literal",
      "parse_object"
     ]
    },
    {
     "name": "lemma_parse_graph_label_bnode_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2693,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_index",
      "fs_byte_length",
      "fs_cp_at",
      "is_bnode_start_cp",
      "is_continuation",
      "parse_graph_label",
      "scan_bnode_body_cp"
     ]
    },
    {
     "name": "lemma_parse_opt_graph_label_bnode_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2729,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_at",
      "fs_byte_index",
      "fs_byte_length",
      "fs_cp_at",
      "is_bnode_start_cp",
      "is_continuation",
      "parse_opt_graph_label",
      "pws",
      "scan_bnode_body_cp"
     ]
    },
    {
     "name": "lemma_parse_nquad_shift_generic",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2800,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri",
      "parse_nquad",
      "parse_object",
      "parse_opt_graph_label",
      "parse_subject",
      "pws"
     ]
    },
    {
     "name": "lemma_skip_comment_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 960,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "nt_skip_to_eol",
      "skip_comment"
     ]
    },
    {
     "name": "checkpoint_a_closed_triple_round_trip",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 612,
     "unconditional": true,
     "names_shipping_functions": [
      "nq_line_for_triple_default_graph",
      "parse_triple"
     ]
    },
    {
     "name": "lemma_scan_iri_end_build_string",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 780,
     "unconditional": false,
     "names_shipping_functions": [
      "is_iri_body_char",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_iri_raw_build_string",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 830,
     "unconditional": true,
     "names_shipping_functions": [
      "is_iri_body_char",
      "parse_iri_raw"
     ]
    },
    {
     "name": "lemma_parse_iri_build_string",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 862,
     "unconditional": false,
     "names_shipping_functions": [
      "is_iri_body_char",
      "parse_iri"
     ]
    },
    {
     "name": "lemma_term_iri_round_trip_build_string",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 875,
     "unconditional": false,
     "names_shipping_functions": [
      "is_iri_body_char",
      "nq_term_to_string",
      "parse_object"
     ]
    },
    {
     "name": "lemma_term_iri_round_trip",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 952,
     "unconditional": false,
     "names_shipping_functions": [
      "is_iri_body_char",
      "nq_term_to_string",
      "parse_object"
     ]
    },
    {
     "name": "lemma_iri_round_trip",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1032,
     "unconditional": false,
     "names_shipping_functions": [
      "is_iri_body_char",
      "parse_iri"
     ]
    },
    {
     "name": "lemma_parse_subject_iri_round_trip_build_string",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1052,
     "unconditional": false,
     "names_shipping_functions": [
      "is_iri_body_char",
      "nq_subject_to_string",
      "parse_subject"
     ]
    },
    {
     "name": "lemma_subject_iri_round_trip",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1072,
     "unconditional": false,
     "names_shipping_functions": [
      "is_iri_body_char",
      "nq_subject_to_string",
      "parse_subject"
     ]
    },
    {
     "name": "lemma_scan_iri_end_bracket_witness",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1096,
     "unconditional": false,
     "names_shipping_functions": [
      "is_iri_body_char",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_iri_bracket_shift_prereqs",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1126,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri_body_char",
      "parse_iri_raw",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_pws_one_space",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1177,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_nt_ws",
      "pws"
     ]
    },
    {
     "name": "lemma_utf8_enc_char_iri_safe",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1292,
     "unconditional": false,
     "names_shipping_functions": [
      "is_iri_body_char",
      "is_iri_forbidden_codepoint",
      "utf8_enc_char"
     ]
    },
    {
     "name": "lemma_scan_iri_end_one_char_walk",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1315,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "is_iri_body_char",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_scan_iri_end_build_string_utf8",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1359,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "is_iri_body_char",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_iri_raw_build_string_utf8",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1420,
     "unconditional": true,
     "names_shipping_functions": [
      "fs_byte_length",
      "is_iri_body_char",
      "parse_iri_raw"
     ]
    },
    {
     "name": "lemma_parse_iri_build_string_utf8",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1450,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "is_iri_body_char",
      "parse_iri"
     ]
    },
    {
     "name": "lemma_term_iri_round_trip_build_string_utf8",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1464,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "is_iri_body_char",
      "nq_term_to_string",
      "parse_object"
     ]
    },
    {
     "name": "lemma_term_iri_round_trip_utf8",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1493,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "is_iri_body_char",
      "nq_term_to_string",
      "parse_object"
     ]
    }
   ],
   "internal_refinement_theorems": [
    {
     "name": "lemma_parse_nquads_acc_quad_ok_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 1477,
     "unconditional": false,
     "names_shipping_functions": [
      "dataset_add_quad",
      "fs_byte_length",
      "parse_iri",
      "parse_nquad",
      "parse_nquads_acc",
      "parse_object",
      "parse_opt_graph_label",
      "parse_subject"
     ],
     "names_declarative_relations": [
      "quad_ok_line_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "lemma_fold_nquads_acc_quad_ok_step_shift",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 3213,
     "unconditional": false,
     "names_shipping_functions": [
      "fold_nquads_acc",
      "fs_byte_length",
      "parse_iri",
      "parse_nquad",
      "parse_object",
      "parse_opt_graph_label",
      "parse_subject"
     ],
     "names_declarative_relations": [
      "quad_ok_line_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    }
   ],
   "w3c_refinement_theorems": [
    {
     "name": "entails_ntriples_boundary",
     "proved_in": "RDF.Entailment.Simple.Boundary",
     "file": "formal/fstar/RDF.Entailment.Simple.Boundary.fst",
     "line": 311,
     "unconditional": false,
     "names_shipping_functions": [
      "parse_ntriples_strict"
     ],
     "names_declarative_relations": [
      "graph_exact",
      "simple_entailment_spec"
     ]
    }
   ],
   "assurance_tier": "w3c-refinement",
   "suites": [
    {
     "suite": "local-parser-unicode",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-mt",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-n-quads",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-n-triples",
     "how": "direct-trigger"
    },
    {
     "suite": "rml",
     "how": "direct-trigger"
    },
    {
     "suite": "shex-negative-syntax",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-update",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parser.NTriples.Locality",
   "files": [
    "formal/fstar/Parser.NTriples.Locality.fst"
   ],
   "loc": 2849,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "not-in-build-list",
   "extraction_oracle_available": false,
   "extracted_ml": null,
   "in_build_module_list": false,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 48,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 4,
   "local_refinement_lemma_names": [
    "lemma_scan_iri_end_result_eq",
    "nth_byte_append_left",
    "nth_byte_none_of_ge",
    "nth_byte_some_of_lt"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "unclassified",
   "suites": []
  },
  {
   "module": "Parser.OWLFunctional",
   "files": [
    "formal/fstar/Parser.OWLFunctional.fst"
   ],
   "loc": 974,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_OWLFunctional.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 49,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "owl-semantics-direct",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-syntax-dl",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-consistency",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-inconsistency",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-negative-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-positive-entailment",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parser.RDFXML",
   "files": [
    "formal/fstar/Parser.RDFXML.fst"
   ],
   "loc": 1403,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_RDFXML.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 80,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "local-parser-unicode",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-profile-el",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-profile-ql",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-profile-rl",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-semantics-direct",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-syntax-dl",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-consistency",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-inconsistency",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-negative-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-positive-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-xml",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parser.RIFXML",
   "files": [
    "formal/fstar/Parser.RIFXML.fst"
   ],
   "loc": 1350,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_RIFXML.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 72,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_parse_none_yields_false",
     "proved_in": "RIF.Core.Tests",
     "file": "formal/fstar/RIF.Core.Tests.fst",
     "line": 306,
     "unconditional": false,
     "names_shipping_functions": [
      "parse_rif_program",
      "run_rif_select_rows"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": [
    {
     "suite": "rif",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-entailment",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parser.SRX",
   "files": [
    "formal/fstar/Parser.SRX.fst"
   ],
   "loc": 292,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_SRX.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 17,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "sparql11-federated-query",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parser.ShExC",
   "files": [
    "formal/fstar/Parser.ShExC.fst"
   ],
   "loc": 1786,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_ShExC.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 83,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "shex-negative-syntax",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parser.TriG",
   "files": [
    "formal/fstar/Parser.TriG.fst"
   ],
   "loc": 646,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_TriG.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 25,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "local-parser-unicode",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-trig",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-update",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parser.Turtle",
   "files": [
    "formal/fstar/Parser.Turtle.fst"
   ],
   "loc": 2882,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_Turtle.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 121,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "local-parser-unicode",
     "how": "direct-trigger"
    },
    {
     "suite": "local-turtle-pretty",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-mt",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-trig",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-turtle",
     "how": "direct-trigger"
    },
    {
     "suite": "rml",
     "how": "direct-trigger"
    },
    {
     "suite": "shacl-core",
     "how": "direct-trigger"
    },
    {
     "suite": "shacl-sparql",
     "how": "direct-trigger"
    },
    {
     "suite": "shex-negative-syntax",
     "how": "direct-trigger"
    },
    {
     "suite": "shex",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-service-description",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-update",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parser.TurtleScanner",
   "files": [
    "formal/fstar/Parser.TurtleScanner.fst"
   ],
   "loc": 349,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_TurtleScanner.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 22,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "local-parser-unicode",
     "how": "direct-trigger"
    },
    {
     "suite": "local-turtle-pretty",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-mt",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-trig",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-turtle",
     "how": "direct-trigger"
    },
    {
     "suite": "shex-negative-syntax",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-service-description",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-update",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parser.WKT",
   "files": [
    "formal/fstar/Parser.WKT.fst"
   ],
   "loc": 605,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_WKT.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 52,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "geosparql",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parser.XML",
   "files": [
    "formal/fstar/Parser.XML.fst"
   ],
   "loc": 2071,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_XML.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 94,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "local-parser-unicode",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-profile-el",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-profile-ql",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-profile-rl",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-semantics-direct",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-syntax-dl",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-consistency",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-inconsistency",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-negative-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-positive-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-xml",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Parser.XPath",
   "files": [
    "formal/fstar/Parser.XPath.fst"
   ],
   "loc": 890,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Parser_XPath.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 44,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "xpath-unit",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDF.Bytes",
   "files": [
    "formal/fstar/RDF.Bytes.fst"
   ],
   "loc": 479,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Bytes.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 16,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 8,
   "local_refinement_lemma_names": [
    "lemma_lo_byte0",
    "lemma_lo_byte1",
    "lemma_lo_byte2",
    "lemma_lo_byte3",
    "lemma_hi_byte1",
    "lemma_hi_byte2",
    "lemma_hi_byte3",
    "lemma_parse_n_bytes_inverse"
   ],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_int_of_byte_of_int",
     "proved_in": "RDF.Bytes",
     "file": "formal/fstar/RDF.Bytes.fst",
     "line": 66,
     "unconditional": true,
     "names_shipping_functions": [
      "byte_of_int",
      "int_of_byte"
     ]
    },
    {
     "name": "lemma_map_byte_roundtrip",
     "proved_in": "RDF.Bytes",
     "file": "formal/fstar/RDF.Bytes.fst",
     "line": 168,
     "unconditional": true,
     "names_shipping_functions": [
      "byte_of_int",
      "byte_to_spec_byte"
     ]
    },
    {
     "name": "lemma_bytes_to_string_of_bytes_of_string",
     "proved_in": "RDF.Bytes",
     "file": "formal/fstar/RDF.Bytes.fst",
     "line": 175,
     "unconditional": true,
     "names_shipping_functions": [
      "bytes_of_string",
      "bytes_to_string"
     ]
    },
    {
     "name": "lemma_parse_write_u32_le_inverse",
     "proved_in": "RDF.Bytes",
     "file": "formal/fstar/RDF.Bytes.fst",
     "line": 285,
     "unconditional": true,
     "names_shipping_functions": [
      "parse_u32_le",
      "write_u32_le"
     ]
    },
    {
     "name": "lemma_write_u64_le_decompose",
     "proved_in": "RDF.Bytes",
     "file": "formal/fstar/RDF.Bytes.fst",
     "line": 350,
     "unconditional": false,
     "names_shipping_functions": [
      "write_u32_le",
      "write_u64_le"
     ]
    },
    {
     "name": "lemma_parse_u64_decompose",
     "proved_in": "RDF.Bytes",
     "file": "formal/fstar/RDF.Bytes.fst",
     "line": 367,
     "unconditional": true,
     "names_shipping_functions": [
      "parse_u32_le",
      "parse_u64_le"
     ]
    },
    {
     "name": "lemma_parse_write_u64_le_inverse",
     "proved_in": "RDF.Bytes",
     "file": "formal/fstar/RDF.Bytes.fst",
     "line": 382,
     "unconditional": true,
     "names_shipping_functions": [
      "parse_u64_le",
      "write_u64_le"
     ]
    },
    {
     "name": "lemma_parse_string_of_length_inverse",
     "proved_in": "RDF.Bytes",
     "file": "formal/fstar/RDF.Bytes.fst",
     "line": 436,
     "unconditional": true,
     "names_shipping_functions": [
      "bytes_of_string",
      "parse_string_of_length"
     ]
    },
    {
     "name": "lemma_byte_to_hex_21",
     "proved_in": "RDF.CottasStore.BaseWriter",
     "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
     "line": 1215,
     "unconditional": true,
     "names_shipping_functions": [
      "byte_of_int",
      "byte_to_hex"
     ]
    },
    {
     "name": "lemma_byte_to_hex_250",
     "proved_in": "RDF.CottasStore.BaseWriter",
     "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
     "line": 1225,
     "unconditional": true,
     "names_shipping_functions": [
      "byte_of_int",
      "byte_to_hex"
     ]
    },
    {
     "name": "lemma_byte_to_hex_6",
     "proved_in": "RDF.CottasStore.BaseWriter",
     "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
     "line": 1235,
     "unconditional": true,
     "names_shipping_functions": [
      "byte_of_int",
      "byte_to_hex"
     ]
    },
    {
     "name": "lemma_version_field_bytes_eq",
     "proved_in": "RDF.CottasStore.BaseWriter",
     "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
     "line": 1244,
     "unconditional": true,
     "names_shipping_functions": [
      "byte_of_int",
      "version_field_bytes"
     ]
    },
    {
     "name": "lemma_bytes_to_hex_unfold",
     "proved_in": "RDF.CottasStore.BaseWriter",
     "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
     "line": 1247,
     "unconditional": true,
     "names_shipping_functions": [
      "byte_of_int",
      "byte_to_hex",
      "bytes_to_hex"
     ]
    },
    {
     "name": "lemma_version_field_hex_eq",
     "proved_in": "RDF.CottasStore.BaseWriter",
     "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
     "line": 1259,
     "unconditional": true,
     "names_shipping_functions": [
      "bytes_to_hex",
      "version_field_bytes"
     ]
    },
    {
     "name": "lemma_version_field_roundtrip",
     "proved_in": "RDF.CottasStore.BaseWriter",
     "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
     "line": 1274,
     "unconditional": true,
     "names_shipping_functions": [
      "bytes_to_hex",
      "cottas_format_version",
      "parse_file_metadata_version_hex",
      "version_field_bytes"
     ]
    },
    {
     "name": "lemma_parse_n_u64s_one",
     "proved_in": "RDF.CottasStore.CompoundPresenceWriter",
     "file": "formal/fstar/RDF.CottasStore.CompoundPresenceWriter.fst",
     "line": 197,
     "unconditional": true,
     "names_shipping_functions": [
      "parse_n_u64s",
      "write_u64_le"
     ]
    },
    {
     "name": "lemma_serialize_compound_presence_empty_shape",
     "proved_in": "RDF.CottasStore.CompoundPresenceWriter",
     "file": "formal/fstar/RDF.CottasStore.CompoundPresenceWriter.fst",
     "line": 215,
     "unconditional": true,
     "names_shipping_functions": [
      "copo_magic",
      "copo_version",
      "serialize_compound_presence",
      "write_u32_le",
      "write_u64_le"
     ]
    },
    {
     "name": "lemma_build_offs_cons",
     "proved_in": "RDF.CottasStore.DictWriter",
     "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
     "line": 504,
     "unconditional": false,
     "names_shipping_functions": [
      "build_offs",
      "cum_final",
      "tok_byte_len",
      "write_u64_le"
     ]
    },
    {
     "name": "lemma_parse_n_u64s_one",
     "proved_in": "RDF.CottasStore.OffsetsWriter",
     "file": "formal/fstar/RDF.CottasStore.OffsetsWriter.fst",
     "line": 201,
     "unconditional": true,
     "names_shipping_functions": [
      "parse_n_u64s",
      "write_u64_le"
     ]
    },
    {
     "name": "lemma_serialize_offsets_empty_shape",
     "proved_in": "RDF.CottasStore.OffsetsWriter",
     "file": "formal/fstar/RDF.CottasStore.OffsetsWriter.fst",
     "line": 219,
     "unconditional": true,
     "names_shipping_functions": [
      "coto_magic",
      "coto_version",
      "serialize_offsets",
      "write_u32_le",
      "write_u64_le"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": [
    {
     "suite": "local-parquet-footer-version-gate",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDF.Canonical",
   "files": [
    "formal/fstar/RDF.Canonical.fst"
   ],
   "loc": 2274,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Canonical.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 152,
   "declarative_relation_count": 1,
   "unclassified_definition_count": 0,
   "assume_val_active": 2,
   "assume_val_names": [
    "hash_sha256",
    "hash_sha384"
   ],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 4,
   "local_refinement_lemma_names": [
    "lemma_empty_issuer_wf",
    "lemma_empty_temp_issuer_wf",
    "lemma_issue_fresh_preserves_wf",
    "lemma_issue_identifier_preserves_wf"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [
    {
     "name": "lemma_issue_fresh_label_shape",
     "proved_in": "RDF.Canonical",
     "file": "formal/fstar/RDF.Canonical.fst",
     "line": 981,
     "unconditional": true,
     "names_shipping_functions": [
      "issue_fresh"
     ],
     "names_declarative_relations": [
      "is_issuer_label"
     ],
     "declarative_relations_from": [
      "RDF.Canonical"
     ]
    },
    {
     "name": "lemma_issue_identifier_fresh_label_shape",
     "proved_in": "RDF.Canonical",
     "file": "formal/fstar/RDF.Canonical.fst",
     "line": 1006,
     "unconditional": false,
     "names_shipping_functions": [
      "issue_identifier",
      "lookup_issued"
     ],
     "names_declarative_relations": [
      "is_issuer_label"
     ],
     "declarative_relations_from": [
      "RDF.Canonical"
     ]
    }
   ],
   "w3c_refinement_theorems": [],
   "assurance_tier": "internal-refinement",
   "suites": [
    {
     "suite": "jsonld-html",
     "how": "direct-trigger"
    },
    {
     "suite": "jsonld-tordf",
     "how": "direct-trigger"
    },
    {
     "suite": "local-graphs-api",
     "how": "direct-trigger"
    },
    {
     "suite": "local-jsonld-regressions",
     "how": "direct-trigger"
    },
    {
     "suite": "local-serializer-unicode",
     "how": "direct-trigger"
    },
    {
     "suite": "rdfc10",
     "how": "direct-trigger"
    },
    {
     "suite": "rml",
     "how": "direct-trigger"
    },
    {
     "suite": "shacl-sparql",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDF.Canonical.Manifest",
   "files": [
    "formal/fstar/RDF.Canonical.Manifest.fst"
   ],
   "loc": 39,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Canonical_Manifest.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 7,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "rdfc10",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDF.CottasStore",
   "files": [
    "formal/fstar/RDF.CottasStore.fst"
   ],
   "loc": 2930,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_CottasStore.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 113,
   "declarative_relation_count": 1,
   "unclassified_definition_count": 0,
   "assume_val_active": 3,
   "assume_val_names": [
    "cottas_ondisk_open",
    "cottas_ondisk_close",
    "ondisk_token_tables_global"
   ],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 1,
   "local_refinement_lemma_names": [
    "build_qp_row_default_graph"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [
    {
     "name": "tables_of_handle_agree",
     "proved_in": "RDF.CottasStore",
     "file": "formal/fstar/RDF.CottasStore.fst",
     "line": 387,
     "unconditional": true,
     "names_shipping_functions": [
      "tables_of_handle"
     ],
     "names_declarative_relations": [
      "token_tables_agree_with"
     ],
     "declarative_relations_from": [
      "RDF.CottasStore"
     ]
    },
    {
     "name": "graph_bound_to_raw_token_agrees",
     "proved_in": "RDF.CottasStore",
     "file": "formal/fstar/RDF.CottasStore.fst",
     "line": 442,
     "unconditional": false,
     "names_shipping_functions": [
      "graph_bound_to_raw_token_with",
      "tables_of_handle"
     ],
     "names_declarative_relations": [
      "token_tables_agree_with"
     ],
     "declarative_relations_from": [
      "RDF.CottasStore"
     ]
    },
    {
     "name": "build_qp_row_agrees",
     "proved_in": "RDF.CottasStore",
     "file": "formal/fstar/RDF.CottasStore.fst",
     "line": 505,
     "unconditional": false,
     "names_shipping_functions": [
      "build_qp_row_with",
      "tables_of_handle"
     ],
     "names_declarative_relations": [
      "token_tables_agree_with"
     ],
     "declarative_relations_from": [
      "RDF.CottasStore"
     ]
    }
   ],
   "w3c_refinement_theorems": [],
   "assurance_tier": "internal-refinement",
   "suites": [
    {
     "suite": "local-cottas-corpus",
     "how": "direct-trigger"
    },
    {
     "suite": "local-cottas-row-order",
     "how": "direct-trigger"
    },
    {
     "suite": "local-parquet-footer-version-gate",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDF.CottasStore.BaseWriter",
   "files": [
    "formal/fstar/RDF.CottasStore.BaseWriter.fst"
   ],
   "loc": 1283,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_CottasStore_BaseWriter.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 110,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 6,
   "local_refinement_lemma_names": [
    "lemma_cong_string_of_list",
    "lemma_cong_hat3",
    "lemma_cong_parse_hex",
    "lemma_hex_pair_15",
    "lemma_hex_pair_FA",
    "lemma_hex_pair_06"
   ],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_version_field_bytes_eq",
     "proved_in": "RDF.CottasStore.BaseWriter",
     "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
     "line": 1244,
     "unconditional": true,
     "names_shipping_functions": [
      "byte_of_int",
      "version_field_bytes"
     ]
    },
    {
     "name": "lemma_version_field_hex_eq",
     "proved_in": "RDF.CottasStore.BaseWriter",
     "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
     "line": 1259,
     "unconditional": true,
     "names_shipping_functions": [
      "bytes_to_hex",
      "version_field_bytes"
     ]
    },
    {
     "name": "lemma_version_field_roundtrip",
     "proved_in": "RDF.CottasStore.BaseWriter",
     "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
     "line": 1274,
     "unconditional": true,
     "names_shipping_functions": [
      "bytes_to_hex",
      "cottas_format_version",
      "parse_file_metadata_version_hex",
      "version_field_bytes"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": [
    {
     "suite": "local-parquet-footer-version-gate",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDF.CottasStore.ColumnSeq",
   "files": [
    "formal/fstar/RDF.CottasStore.ColumnSeq.fst"
   ],
   "loc": 164,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_CottasStore_ColumnSeq.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 6,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 4,
   "assume_val_names": [
    "cottas_column_length",
    "cottas_column_get",
    "probe_parquet_column_decode_in_row_group_seq",
    "probe_parquet_column_decode_in_row_group_seq_from_table"
   ],
   "assume_other_active": 1,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "column_decode_sound",
     "proved_in": "RDF.CottasStore.ColumnSeq",
     "file": "formal/fstar/RDF.CottasStore.ColumnSeq.fst",
     "line": 152,
     "unconditional": false,
     "names_shipping_functions": [
      "column_to_list",
      "probe_parquet_column_decode_in_row_group_seq"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": [
    {
     "suite": "local-cottas-ask-decode-failure",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDF.CottasStore.CompoundPresenceBitmap",
   "files": [
    "formal/fstar/RDF.CottasStore.CompoundPresenceBitmap.fst"
   ],
   "loc": 363,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_CottasStore_CompoundPresenceBitmap.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 19,
   "declarative_relation_count": 1,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [
    {
     "name": "rg_could_contain_pair_sound",
     "proved_in": "RDF.CottasStore.CompoundPresenceBitmap",
     "file": "formal/fstar/RDF.CottasStore.CompoundPresenceBitmap.fst",
     "line": 328,
     "unconditional": false,
     "names_shipping_functions": [
      "rg_could_contain_pair"
     ],
     "names_declarative_relations": [
      "compound_built_correctly"
     ],
     "declarative_relations_from": [
      "RDF.CottasStore.CompoundPresenceBitmap"
     ]
    }
   ],
   "w3c_refinement_theorems": [],
   "assurance_tier": "internal-refinement",
   "suites": []
  },
  {
   "module": "RDF.CottasStore.CompoundPresenceWriter",
   "files": [
    "formal/fstar/RDF.CottasStore.CompoundPresenceWriter.fst"
   ],
   "loc": 395,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_CottasStore_CompoundPresenceWriter.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 11,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 2,
   "local_refinement_lemma_names": [
    "lemma_parse_n_u64s_zero",
    "lemma_last_of_or_singleton_zero"
   ],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_parse_n_u64s_one",
     "proved_in": "RDF.CottasStore.CompoundPresenceWriter",
     "file": "formal/fstar/RDF.CottasStore.CompoundPresenceWriter.fst",
     "line": 197,
     "unconditional": true,
     "names_shipping_functions": [
      "parse_n_u64s",
      "write_u64_le"
     ]
    },
    {
     "name": "lemma_serialize_compound_presence_empty_shape",
     "proved_in": "RDF.CottasStore.CompoundPresenceWriter",
     "file": "formal/fstar/RDF.CottasStore.CompoundPresenceWriter.fst",
     "line": 215,
     "unconditional": true,
     "names_shipping_functions": [
      "copo_magic",
      "copo_version",
      "serialize_compound_presence",
      "write_u32_le",
      "write_u64_le"
     ]
    },
    {
     "name": "lemma_parse_serialize_compound_presence_empty_case",
     "proved_in": "RDF.CottasStore.CompoundPresenceWriter",
     "file": "formal/fstar/RDF.CottasStore.CompoundPresenceWriter.fst",
     "line": 264,
     "unconditional": true,
     "names_shipping_functions": [
      "parse_compound_presence",
      "serialize_compound_presence"
     ]
    },
    {
     "name": "lemma_parse_n_u64s_serialize_u64_list",
     "proved_in": "RDF.CottasStore.CompoundPresenceWriter",
     "file": "formal/fstar/RDF.CottasStore.CompoundPresenceWriter.fst",
     "line": 308,
     "unconditional": false,
     "names_shipping_functions": [
      "all_lt",
      "parse_n_u64s",
      "serialize_u64_list"
     ]
    },
    {
     "name": "lemma_parse_serialize_compound_presence",
     "proved_in": "RDF.CottasStore.CompoundPresenceWriter",
     "file": "formal/fstar/RDF.CottasStore.CompoundPresenceWriter.fst",
     "line": 331,
     "unconditional": false,
     "names_shipping_functions": [
      "all_lt",
      "last_of_or",
      "parse_compound_presence",
      "serialize_compound_presence"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": []
  },
  {
   "module": "RDF.CottasStore.DictWriter",
   "files": [
    "formal/fstar/RDF.CottasStore.DictWriter.fst"
   ],
   "loc": 670,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_CottasStore_DictWriter.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 18,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 6,
   "local_refinement_lemma_names": [
    "lemma_build_ids_acc_length",
    "lemma_build_ids_length",
    "lemma_cum_final_mono",
    "lemma_parse_u64_le_append",
    "lemma_parse_u32_le_append",
    "lemma_parse_n_offsets_append"
   ],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_parse_serialize_dict_empty_case",
     "proved_in": "RDF.CottasStore.DictWriter",
     "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
     "line": 323,
     "unconditional": true,
     "names_shipping_functions": [
      "parse_dict",
      "serialize_dict"
     ]
    },
    {
     "name": "lemma_build_offs_acc_final",
     "proved_in": "RDF.CottasStore.DictWriter",
     "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
     "line": 373,
     "unconditional": false,
     "names_shipping_functions": [
      "build_offs_acc",
      "cum_final"
     ]
    },
    {
     "name": "lemma_parse_n_offsets_build_offs_acc",
     "proved_in": "RDF.CottasStore.DictWriter",
     "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
     "line": 389,
     "unconditional": false,
     "names_shipping_functions": [
      "build_offs_acc",
      "cum_final",
      "cum_offs",
      "parse_n_offsets"
     ]
    },
    {
     "name": "lemma_parse_tokens_from_offsets_build_data",
     "proved_in": "RDF.CottasStore.DictWriter",
     "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
     "line": 411,
     "unconditional": false,
     "names_shipping_functions": [
      "build_data",
      "cum_final",
      "cum_offs",
      "parse_tokens_from_offsets"
     ]
    },
    {
     "name": "lemma_cum_offs_length",
     "proved_in": "RDF.CottasStore.DictWriter",
     "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
     "line": 444,
     "unconditional": false,
     "names_shipping_functions": [
      "cum_final",
      "cum_offs"
     ]
    },
    {
     "name": "lemma_build_offs_cons",
     "proved_in": "RDF.CottasStore.DictWriter",
     "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
     "line": 504,
     "unconditional": false,
     "names_shipping_functions": [
      "build_offs",
      "cum_final",
      "tok_byte_len",
      "write_u64_le"
     ]
    },
    {
     "name": "lemma_cum_offs_cons",
     "proved_in": "RDF.CottasStore.DictWriter",
     "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
     "line": 528,
     "unconditional": false,
     "names_shipping_functions": [
      "cum_offs",
      "tok_byte_len"
     ]
    },
    {
     "name": "lemma_cum_final_cons",
     "proved_in": "RDF.CottasStore.DictWriter",
     "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
     "line": 538,
     "unconditional": false,
     "names_shipping_functions": [
      "cum_final",
      "tok_byte_len"
     ]
    },
    {
     "name": "lemma_parse_n_offsets_build_offs",
     "proved_in": "RDF.CottasStore.DictWriter",
     "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
     "line": 551,
     "unconditional": false,
     "names_shipping_functions": [
      "build_offs",
      "cum_final",
      "cum_offs",
      "parse_n_offsets"
     ]
    },
    {
     "name": "lemma_parse_serialize_dict_cons",
     "proved_in": "RDF.CottasStore.DictWriter",
     "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
     "line": 587,
     "unconditional": false,
     "names_shipping_functions": [
      "cum_final",
      "header_size",
      "id_size",
      "offset_size",
      "parse_dict",
      "serialize_dict"
     ]
    },
    {
     "name": "lemma_parse_serialize_dict",
     "proved_in": "RDF.CottasStore.DictWriter",
     "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
     "line": 656,
     "unconditional": false,
     "names_shipping_functions": [
      "cum_final",
      "header_size",
      "id_size",
      "offset_size",
      "parse_dict",
      "serialize_dict"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": []
  },
  {
   "module": "RDF.CottasStore.LazyDict",
   "files": [
    "formal/fstar/RDF.CottasStore.LazyDict.fst"
   ],
   "loc": 84,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_CottasStore_LazyDict.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 11,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 9,
   "assume_val_names": [
    "mk_lazy_dict",
    "decode_by_id",
    "decode_raw_by_id",
    "encode_by_key",
    "encode_by_raw_token",
    "is_populated",
    "size",
    "to_typed_list",
    "to_raw_list"
   ],
   "assume_other_active": 1,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "local-cottas-ask-decode-failure",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDF.CottasStore.LazyDictRegistry",
   "files": [
    "formal/fstar/RDF.CottasStore.LazyDictRegistry.fst"
   ],
   "loc": 53,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_CottasStore_LazyDictRegistry.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 5,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 5,
   "assume_val_names": [
    "get_subjects_lazy",
    "get_predicates_lazy",
    "get_objects_lazy",
    "get_graphs_lazy",
    "is_registered"
   ],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "RDF.CottasStore.OffsetsWriter",
   "files": [
    "formal/fstar/RDF.CottasStore.OffsetsWriter.fst"
   ],
   "loc": 405,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_CottasStore_OffsetsWriter.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 13,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 2,
   "local_refinement_lemma_names": [
    "lemma_parse_n_u32s_zero",
    "lemma_last_of_or_singleton_zero"
   ],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_parse_n_u64s_one",
     "proved_in": "RDF.CottasStore.OffsetsWriter",
     "file": "formal/fstar/RDF.CottasStore.OffsetsWriter.fst",
     "line": 201,
     "unconditional": true,
     "names_shipping_functions": [
      "parse_n_u64s",
      "write_u64_le"
     ]
    },
    {
     "name": "lemma_serialize_offsets_empty_shape",
     "proved_in": "RDF.CottasStore.OffsetsWriter",
     "file": "formal/fstar/RDF.CottasStore.OffsetsWriter.fst",
     "line": 219,
     "unconditional": true,
     "names_shipping_functions": [
      "coto_magic",
      "coto_version",
      "serialize_offsets",
      "write_u32_le",
      "write_u64_le"
     ]
    },
    {
     "name": "lemma_parse_serialize_offsets_empty_case",
     "proved_in": "RDF.CottasStore.OffsetsWriter",
     "file": "formal/fstar/RDF.CottasStore.OffsetsWriter.fst",
     "line": 261,
     "unconditional": true,
     "names_shipping_functions": [
      "parse_offsets",
      "serialize_offsets"
     ]
    },
    {
     "name": "lemma_parse_n_u64s_serialize_u64_list",
     "proved_in": "RDF.CottasStore.OffsetsWriter",
     "file": "formal/fstar/RDF.CottasStore.OffsetsWriter.fst",
     "line": 297,
     "unconditional": false,
     "names_shipping_functions": [
      "all_lt",
      "parse_n_u64s",
      "serialize_u64_list"
     ]
    },
    {
     "name": "lemma_parse_n_u32s_serialize_u32_list",
     "proved_in": "RDF.CottasStore.OffsetsWriter",
     "file": "formal/fstar/RDF.CottasStore.OffsetsWriter.fst",
     "line": 317,
     "unconditional": false,
     "names_shipping_functions": [
      "all_lt",
      "parse_n_u32s",
      "serialize_u32_list"
     ]
    },
    {
     "name": "lemma_parse_serialize_offsets",
     "proved_in": "RDF.CottasStore.OffsetsWriter",
     "file": "formal/fstar/RDF.CottasStore.OffsetsWriter.fst",
     "line": 348,
     "unconditional": false,
     "names_shipping_functions": [
      "all_lt",
      "last_of_or",
      "parse_offsets",
      "serialize_offsets"
     ]
    },
    {
     "name": "lemma_flatten_all_lt",
     "proved_in": "RDF.CottasStore.SubjectOffsetsWriter",
     "file": "formal/fstar/RDF.CottasStore.SubjectOffsetsWriter.fst",
     "line": 142,
     "unconditional": false,
     "names_shipping_functions": [
      "all_lt",
      "flatten_ranges",
      "ranges_all_lt"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": []
  },
  {
   "module": "RDF.CottasStore.OnDiskIndex",
   "files": [
    "formal/fstar/RDF.CottasStore.OnDiskIndex.fst"
   ],
   "loc": 426,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_CottasStore_OnDiskIndex.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 26,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 7,
   "assume_val_names": [
    "mmap_companion_open",
    "mmap_companion_close",
    "read_companion_u32_le",
    "read_companion_u64_le",
    "read_companion_byte",
    "read_companion_string",
    "companion_file_size"
   ],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 1,
   "local_refinement_lemma_names": [
    "presence_bit_index_bounded"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "local-lemmas-only",
   "suites": [
    {
     "suite": "local-cottas-row-order",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDF.CottasStore.PageCache",
   "files": [
    "formal/fstar/RDF.CottasStore.PageCache.fst"
   ],
   "loc": 475,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_CottasStore_PageCache.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 26,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 4,
   "assume_val_names": [
    "pcache_decode_in_row_group_global",
    "pcache_decode_in_row_group_global_from_table",
    "pcache_decode_column_at_indices_global_from_table",
    "dpcache_probe_dict_in_row_group_global_from_table"
   ],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "find_oldest_aux_returns_present",
     "proved_in": "RDF.CottasStore.PageCache.Bounds",
     "file": "formal/fstar/RDF.CottasStore.PageCache.Bounds.fst",
     "line": 154,
     "unconditional": true,
     "names_shipping_functions": [
      "find_oldest_aux",
      "key_eq"
     ]
    },
    {
     "name": "entries_after_bound",
     "proved_in": "RDF.CottasStore.PageCache.Bounds",
     "file": "formal/fstar/RDF.CottasStore.PageCache.Bounds.fst",
     "line": 218,
     "unconditional": false,
     "names_shipping_functions": [
      "lookup_entry",
      "replace_entry"
     ]
    },
    {
     "name": "entries_capped_bound",
     "proved_in": "RDF.CottasStore.PageCache.Bounds",
     "file": "formal/fstar/RDF.CottasStore.PageCache.Bounds.fst",
     "line": 240,
     "unconditional": false,
     "names_shipping_functions": [
      "drop_entry",
      "find_oldest"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": [
    {
     "suite": "local-cottas-ask-decode-failure",
     "how": "direct-trigger"
    },
    {
     "suite": "local-cottas-groupby-counts",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDF.CottasStore.PageCache.Bounds",
   "files": [
    "formal/fstar/RDF.CottasStore.PageCache.Bounds.fst"
   ],
   "loc": 464,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 12,
   "local_refinement_lemma_names": [
    "replace_entry_length",
    "drop_entry_length",
    "drop_entry_length_present",
    "list_len_eq_length",
    "find_oldest_aux_found_some",
    "find_oldest_nonempty",
    "find_oldest_present",
    "pcache_put_capacity_bound",
    "pcache_get_length",
    "pcache_decode_capacity_bound",
    "filter_zipped_rows_limited_seq_bound",
    "walk_candidate_rgs_search_limited_bound"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "local-lemmas-only",
   "suites": []
  },
  {
   "module": "RDF.CottasStore.PresenceBitmap",
   "files": [
    "formal/fstar/RDF.CottasStore.PresenceBitmap.fst"
   ],
   "loc": 258,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_CottasStore_PresenceBitmap.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 7,
   "declarative_relation_count": 1,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [
    {
     "name": "rg_contains_token_sound",
     "proved_in": "RDF.CottasStore.PresenceBitmap",
     "file": "formal/fstar/RDF.CottasStore.PresenceBitmap.fst",
     "line": 197,
     "unconditional": false,
     "names_shipping_functions": [
      "rg_contains_token"
     ],
     "names_declarative_relations": [
      "bitmap_built_correctly"
     ],
     "declarative_relations_from": [
      "RDF.CottasStore.PresenceBitmap"
     ]
    }
   ],
   "w3c_refinement_theorems": [],
   "assurance_tier": "internal-refinement",
   "suites": []
  },
  {
   "module": "RDF.CottasStore.PresenceWriter",
   "files": [
    "formal/fstar/RDF.CottasStore.PresenceWriter.fst"
   ],
   "loc": 243,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_CottasStore_PresenceWriter.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 7,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_parse_serialize_presence_empty_case",
     "proved_in": "RDF.CottasStore.PresenceWriter",
     "file": "formal/fstar/RDF.CottasStore.PresenceWriter.fst",
     "line": 165,
     "unconditional": true,
     "names_shipping_functions": [
      "parse_presence",
      "serialize_presence"
     ]
    },
    {
     "name": "lemma_parse_serialize_presence",
     "proved_in": "RDF.CottasStore.PresenceWriter",
     "file": "formal/fstar/RDF.CottasStore.PresenceWriter.fst",
     "line": 203,
     "unconditional": false,
     "names_shipping_functions": [
      "parse_presence",
      "serialize_presence"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": []
  },
  {
   "module": "RDF.CottasStore.SubjectOffsetsWriter",
   "files": [
    "formal/fstar/RDF.CottasStore.SubjectOffsetsWriter.fst"
   ],
   "loc": 273,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_CottasStore_SubjectOffsetsWriter.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 10,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 1,
   "local_refinement_lemma_names": [
    "lemma_flatten_length"
   ],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_unflatten_flatten",
     "proved_in": "RDF.CottasStore.SubjectOffsetsWriter",
     "file": "formal/fstar/RDF.CottasStore.SubjectOffsetsWriter.fst",
     "line": 122,
     "unconditional": true,
     "names_shipping_functions": [
      "flatten_ranges",
      "unflatten_ranges"
     ]
    },
    {
     "name": "lemma_flatten_all_lt",
     "proved_in": "RDF.CottasStore.SubjectOffsetsWriter",
     "file": "formal/fstar/RDF.CottasStore.SubjectOffsetsWriter.fst",
     "line": 142,
     "unconditional": false,
     "names_shipping_functions": [
      "all_lt",
      "flatten_ranges",
      "ranges_all_lt"
     ]
    },
    {
     "name": "lemma_parse_serialize_subject_offsets",
     "proved_in": "RDF.CottasStore.SubjectOffsetsWriter",
     "file": "formal/fstar/RDF.CottasStore.SubjectOffsetsWriter.fst",
     "line": 227,
     "unconditional": false,
     "names_shipping_functions": [
      "parse_subject_offsets",
      "ranges_all_lt",
      "serialize_subject_offsets"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": []
  },
  {
   "module": "RDF.Dataset.Graphs",
   "files": [
    "formal/fstar/RDF.Dataset.Graphs.fst"
   ],
   "loc": 28,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Dataset_Graphs.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 2,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "local-graphs-api",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDF.Dataset.Merge",
   "files": [
    "formal/fstar/RDF.Dataset.Merge.fst"
   ],
   "loc": 70,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Dataset_Merge.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 8,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "local-graph-default-semantics",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDF.Entailment.RDF.Spec",
   "files": [
    "formal/fstar/RDF.Entailment.RDF.Spec.fst"
   ],
   "loc": 250,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 7,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "specification-and-proof",
   "suites": []
  },
  {
   "module": "RDF.Entailment.RDFS.ChainWf",
   "files": [
    "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst"
   ],
   "loc": 369,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 9,
   "local_refinement_lemma_names": [
    "sep_bridge",
    "lemma_rdfs5_sep_free2",
    "lemma_rdfs9_sep_free2",
    "lemma_rdfs11_sep_free2",
    "lemma_d_minimal_sep_free",
    "closure_iter_preserves_sep_free",
    "theorem_closure_chain_wf_of_sep_free",
    "theorem_closure_chain_wf_empty",
    "theorem_closure_chain_wf_nonempty_instance"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "local-lemmas-only",
   "suites": []
  },
  {
   "module": "RDF.Entailment.RDFS.Completeness",
   "files": [
    "formal/fstar/RDF.Entailment.RDFS.Completeness.fst"
   ],
   "loc": 830,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "not-in-build-list",
   "extraction_oracle_available": false,
   "extracted_ml": null,
   "in_build_module_list": false,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 6,
   "unclassified_definition_count": 12,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 25,
   "local_refinement_lemma_names": [
    "lemma_object_ok_tt_free",
    "lemma_frag_tt_free",
    "lemma_object_to_subject",
    "lemma_subj_term_iri",
    "lemma_rdfs_conditions_imply_rho_df",
    "lemma_rho_df_entails_implies_rdfs",
    "lemma_herb_cond_domain",
    "lemma_herb_cond_range",
    "lemma_herb_cond_sub_property",
    "lemma_herb_cond_sub_property_trans",
    "lemma_herb_cond_sub_class",
    "lemma_herb_cond_sub_class_trans",
    "lemma_herbrand_rho_df_conditions",
    "rho_df_closed_complete",
    "rho_df_closed_sound",
    "rho_df_closed_iff",
    "lemma_subgraph_satisfies",
    "rho_df_saturation_complete",
    "rho_df_saturation_sound",
    "rho_df_saturation_iff",
    "lemma_selfloop_witness_frag",
    "lemma_selfloop_witness_closed",
    "rho_df_not_entails_subclass_selfloop",
    "rdfs_entails_subclass_selfloop",
    "rho_df_entailment_strictly_stronger"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "unclassified",
   "suites": []
  },
  {
   "module": "RDF.Entailment.RDFS.DatatypeClash",
   "files": [
    "formal/fstar/RDF.Entailment.RDFS.DatatypeClash.fst"
   ],
   "loc": 281,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Entailment_RDFS_DatatypeClash.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 17,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "RDF.Entailment.RDFS.FixedPoint",
   "files": [
    "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst"
   ],
   "loc": 1567,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "not-in-build-list",
   "extraction_oracle_available": false,
   "extracted_ml": null,
   "in_build_module_list": false,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 9,
   "unclassified_definition_count": 9,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 31,
   "local_refinement_lemma_names": [
    "lemma_add_triple_unchecked_extensive",
    "lemma_emit_once_term_extensive",
    "lemma_emit_once_extensive",
    "lemma_rdfs_rule_subPropertyOf_extensive",
    "lemma_rdfs_rule_domain_extensive",
    "lemma_rdfs_rule_range_extensive",
    "lemma_rdfs_rule_subClassOf_extensive",
    "lemma_rdfs_rule_subClassOf_trans_extensive",
    "lemma_rdfs_rule_subPropertyOf_trans_extensive",
    "lemma_rdfs_rule_container_membership_extensive",
    "lemma_rdfs_rule_recognized_datatypes_extensive",
    "lemma_rdfs_rule_resource_subject_extensive",
    "lemma_rdfs_rule_resource_object_extensive",
    "lemma_rdfs_rule_class_subclass_resource_extensive",
    "lemma_rdfs_rule_datatype_subclass_literal_extensive",
    "lemma_pre_dedup_extensive",
    "lemma_d_minimal_sep_free",
    "lemma_pre_dedup_clean",
    "lemma_pre_dedup_full_sep_free",
    "lemma_map_snd_decorate",
    "lemma_sortWith_memP_iff",
    "lemma_closure_iter_step_shift",
    "lemma_saturated_stable_at",
    "lemma_saturated_stable",
    "lemma_no_repeats_subset_same_length_eq",
    "lemma_str_compare_trans_le",
    "lemma_str_compare_le_lt_trans",
    "lemma_sorted_pairs_dt_append",
    "lemma_no_repeats_p_rev",
    "lemma_graph_dedup_sort_no_repeats",
    "lemma_rdfs_closure_step_no_repeats"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "unclassified",
   "suites": []
  },
  {
   "module": "RDF.Entailment.RDFS.ModelTheory",
   "files": [
    "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst"
   ],
   "loc": 953,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 22,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 22,
   "local_refinement_lemma_names": [
    "lemma_subj_term_denot",
    "rdfD2_true",
    "rdfs1_true",
    "rdfs2_true",
    "rdfs3_true",
    "rdfs4a_true",
    "rdfs4b_true",
    "rdfs5_true",
    "rdfs6_true",
    "rdfs7_true",
    "rdfs8_true",
    "rdfs9_true",
    "rdfs10_true",
    "rdfs11_true",
    "rdfs12_true",
    "rdfs13_true",
    "rdfs_member_subproperty_true",
    "rdfs_subClassOf_endpoint_refl_true",
    "rdfs_subPropertyOf_endpoint_refl_true",
    "rdfs_licensed_true",
    "bridge",
    "lemma_closure_iter_shift"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "specification-and-proof",
   "suites": []
  },
  {
   "module": "RDF.Entailment.RDFS.Refinement",
   "files": [
    "formal/fstar/RDF.Entailment.RDFS.Refinement.fst"
   ],
   "loc": 1614,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 4,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 21,
   "local_refinement_lemma_names": [
    "lemma_term_to_subject_subj_term",
    "lemma_rdf_property_axiom_matches",
    "lemma_add_triples_if_new_memP",
    "lemma_dedup_sorted_memP",
    "lemma_dedup_sorted_decorated_memP",
    "lemma_graph_dedup_sort_memP",
    "selfloop_not_axiomatic",
    "lemma_existsb_elim",
    "lemma_emit_once_grows_all",
    "fold_left_grows",
    "fold_left_reaches",
    "rdfs_rule_recognized_datatypes_monotone",
    "rdfs_rule_resource_subject_monotone",
    "rdfs_rule_resource_object_monotone",
    "rdfs_rule_class_subclass_resource_monotone",
    "rdfs_rule_datatype_subclass_literal_monotone",
    "cons_if_new_iri_memP",
    "cons_subject_iri_if_new_memP",
    "cons_term_iri_if_new_memP",
    "rdfs_reflexivity_axioms_owl_class_empty",
    "owl_reflexivity_axioms_emit_owl_class"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "specification-and-proof",
   "suites": []
  },
  {
   "module": "RDF.Entailment.RDFS.RhoDFClosure",
   "files": [
    "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst"
   ],
   "loc": 1997,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Entailment_RDFS_RhoDFClosure.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 11,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 9,
   "local_refinement_lemma_names": [
    "lemma_rho_df_chain_canonical_shift",
    "lemma_rho_df_pre_dedup_extensive",
    "lemma_rho_df_clean_implies_chain_canonical",
    "lemma_rho_df_chain_wf_shift",
    "lemma_fold_left_reaches_at",
    "fold_left_reaches_scoped",
    "lemma_emit_once_term_grows",
    "lemma_subj_term_to_subject",
    "lemma_rho_df_closure_step_no_repeats"
   ],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_rho_df_step_is_dedup_of_pre_dedup",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 138,
     "unconditional": true,
     "names_shipping_functions": [
      "graph_dedup_sort",
      "rho_df_closure_step",
      "rho_df_closure_step_pre_dedup"
     ]
    },
    {
     "name": "lemma_rho_df_closure_iter_shift",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 168,
     "unconditional": true,
     "names_shipping_functions": [
      "rho_df_closure_iter",
      "rho_df_closure_step"
     ]
    },
    {
     "name": "lemma_after_row1_pre_dedup",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1580,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subPropertyOf",
      "rho_df_closure_step_pre_dedup"
     ]
    },
    {
     "name": "lemma_after_row2_pre_dedup",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1594,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain",
      "rdfs_rule_subPropertyOf",
      "rho_df_closure_step_pre_dedup"
     ]
    },
    {
     "name": "lemma_after_row3_pre_dedup",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1607,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain",
      "rdfs_rule_range",
      "rdfs_rule_subPropertyOf",
      "rho_df_closure_step_pre_dedup"
     ]
    },
    {
     "name": "lemma_after_row4_pre_dedup",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1618,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain",
      "rdfs_rule_range",
      "rdfs_rule_subClassOf",
      "rdfs_rule_subPropertyOf",
      "rho_df_closure_step_pre_dedup"
     ]
    },
    {
     "name": "lemma_after_row5_pre_dedup",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1629,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain",
      "rdfs_rule_range",
      "rdfs_rule_subClassOf",
      "rdfs_rule_subClassOf_trans",
      "rdfs_rule_subPropertyOf",
      "rho_df_closure_step_pre_dedup"
     ]
    },
    {
     "name": "lemma_is_rho_df_frag_is_for_all",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1977,
     "unconditional": true,
     "names_shipping_functions": [
      "is_rho_df_frag",
      "is_rho_df_frag_triple"
     ]
    }
   ],
   "internal_refinement_theorems": [
    {
     "name": "lemma_rho_df_step_extensive",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 200,
     "unconditional": false,
     "names_shipping_functions": [
      "rho_df_closure_step",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "no_dup_keys"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.FixedPoint"
     ]
    },
    {
     "name": "rho_df_closure_sound",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 472,
     "unconditional": false,
     "names_shipping_functions": [
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness"
     ]
    },
    {
     "name": "lemma_f1_witness_frag",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1464,
     "unconditional": false,
     "names_shipping_functions": [
      "f1_witness",
      "i_rdfs_subPropertyOf"
     ],
     "names_declarative_relations": [
      "rho_df_frag_graph"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness"
     ]
    },
    {
     "name": "lemma_f1_bad_triple_not_frag",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1468,
     "unconditional": true,
     "names_shipping_functions": [
      "f1_bad_triple"
     ],
     "names_declarative_relations": [
      "rho_df_frag_triple"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness"
     ]
    },
    {
     "name": "rho_df_len_eq_saturated",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1560,
     "unconditional": false,
     "names_shipping_functions": [
      "graph_len",
      "rho_df_closure_step",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "no_dup_keys"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.FixedPoint"
     ]
    },
    {
     "name": "lemma_pre_dedup_in_c",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1647,
     "unconditional": false,
     "names_shipping_functions": [
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "no_dup_keys"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.FixedPoint"
     ]
    },
    {
     "name": "lemma_is_rho_df_object_ok_correct",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1946,
     "unconditional": true,
     "names_shipping_functions": [
      "is_rho_df_object_ok"
     ],
     "names_declarative_relations": [
      "rho_df_object_ok"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness"
     ]
    },
    {
     "name": "lemma_is_rho_df_frag_triple_correct",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1963,
     "unconditional": true,
     "names_shipping_functions": [
      "is_rho_df_frag_triple"
     ],
     "names_declarative_relations": [
      "rho_df_frag_triple"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness"
     ]
    },
    {
     "name": "lemma_is_rho_df_frag_correct",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1989,
     "unconditional": true,
     "names_shipping_functions": [
      "is_rho_df_frag"
     ],
     "names_declarative_relations": [
      "rho_df_frag_graph"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness"
     ]
    },
    {
     "name": "theorem_rdfs_regime_bgp_sound",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 532,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp",
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_bgp_complete_conditional",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 583,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp",
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "eval_bgp_complete_at",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_bgp_exact",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 606,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp",
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "eval_bgp_complete_at",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_ask_sound",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 662,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_ask_complete_conditional",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 684,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "eval_bgp_complete_at",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_bgp_sound_selective",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 747,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp_store",
      "graph_to_store_for",
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_ask_pattern_sound",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 768,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_ask_query_sound",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 814,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_ask_query",
      "instantiate_bgp",
      "query",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_bgp_complete_conditional_selective",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 854,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp_store",
      "graph_to_store_for",
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "eval_bgp_store_complete_at",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_ask_query_complete_conditional",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 873,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_ask_query",
      "instantiate_bgp",
      "query",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "eval_bgp_store_complete_at",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "lemma_regime_answer_is_subgraph",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 958,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_bgp_complete",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 981,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp",
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "bgp_instantiable",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_bgp_exact_answer",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 1005,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp",
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "bgp_instantiable",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_ask_complete",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 1034,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "bgp_instantiable",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_bgp_complete_selective",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 1061,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp_store",
      "graph_to_store_for",
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "bgp_instantiable",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_ask_query_complete",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 1089,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_ask_query",
      "instantiate_bgp",
      "query",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "bgp_instantiable",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    }
   ],
   "w3c_refinement_theorems": [
    {
     "name": "lemma_rho_df_pre_dedup_clean",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 266,
     "unconditional": false,
     "names_shipping_functions": [
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "lemma_rho_df_pre_dedup_no_dup_keys",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 285,
     "unconditional": false,
     "names_shipping_functions": [
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "graph_clean",
      "no_dup_keys"
     ]
    },
    {
     "name": "lemma_rho_df_step_clean",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 298,
     "unconditional": false,
     "names_shipping_functions": [
      "rho_df_closure_step"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "lemma_rho_df_closure_iter_clean",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 306,
     "unconditional": false,
     "names_shipping_functions": [
      "rho_df_closure_iter"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "lemma_rho_df_closure_extensive_aux",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 348,
     "unconditional": false,
     "names_shipping_functions": [
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "is_subgraph"
     ]
    },
    {
     "name": "rho_df_closure_extensive",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 377,
     "unconditional": false,
     "names_shipping_functions": [
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "graph_clean",
      "is_subgraph"
     ]
    },
    {
     "name": "rho_df_closure_extensive_chain",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 385,
     "unconditional": false,
     "names_shipping_functions": [
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "is_subgraph"
     ]
    },
    {
     "name": "lemma_rho_df_step_sound",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 425,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rho_df_closure_step"
     ],
     "names_declarative_relations": [
      "holds_all",
      "ig_wf_sp",
      "rho_df_conditions"
     ]
    },
    {
     "name": "lemma_rho_df_closure_sound_aux",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 452,
     "unconditional": false,
     "names_shipping_functions": [
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "holds_all",
      "rho_df_conditions"
     ]
    },
    {
     "name": "lemma_f1_bad_triple_derived",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1477,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "f1_bad_triple",
      "f1_witness",
      "i_rdfs_subPropertyOf",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "ig_wf_sp"
     ]
    },
    {
     "name": "rho_df_frag_preservation_fails",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1504,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "f1_bad_triple",
      "f1_witness",
      "i_rdfs_subPropertyOf",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "rho_df_frag_graph",
      "rho_df_frag_triple"
     ]
    },
    {
     "name": "lemma_rho_df_closed_row_domain",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1729,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "no_dup_keys",
      "rdfs2_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "lemma_rho_df_closed_row_range",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1744,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "no_dup_keys",
      "rdfs3_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "lemma_rho_df_closed_row_subPropertyOf",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1765,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "no_dup_keys",
      "rdfs7_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "lemma_rho_df_closed_row_subClassOf_trans",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1778,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "no_dup_keys",
      "rdfs11_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "lemma_rho_df_closed_row_subPropertyOf_trans",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1794,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "no_dup_keys",
      "rdfs5_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "lemma_rho_df_closed_row_subClassOf",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1813,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "no_dup_keys",
      "rdfs9_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "rho_df_closure_closed",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1858,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "graph_len",
      "rho_df_closure",
      "rho_df_closure_step",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "no_dup_keys",
      "rho_df_closed",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "rho_df_closure_decides",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1905,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "graph_len",
      "rho_df_closure",
      "rho_df_closure_step",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "graph_tt_free",
      "ig_wf_sp",
      "no_dup_keys",
      "rho_df_entails",
      "rho_df_frag_graph",
      "simple_entailment_spec"
     ]
    },
    {
     "name": "lemma_decides_hyps_suffices",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 500,
     "unconditional": false,
     "names_shipping_functions": [
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "graph_tt_free",
      "rho_df_decides_hyps",
      "rho_df_entails",
      "simple_entailment_spec"
     ]
    }
   ],
   "assurance_tier": "w3c-refinement",
   "suites": []
  },
  {
   "module": "RDF.Entailment.RDFS.SepFree",
   "files": [
    "formal/fstar/RDF.Entailment.RDFS.SepFree.fst"
   ],
   "loc": 698,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 8,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 38,
   "local_refinement_lemma_names": [
    "lemma_graph_sep_free_sp",
    "lemma_subj_term_obj_sep_free",
    "lemma_subj_term_sep_free",
    "lemma_rdfD2_sep_free",
    "lemma_rdfs1_sep_free",
    "lemma_rdfs2_sep_free",
    "lemma_rdfs3_sep_free",
    "lemma_rdfs4a_sep_free",
    "lemma_rdfs4b_sep_free",
    "lemma_rdfs5_sep_free",
    "lemma_rdfs6_sep_free",
    "lemma_rdfs7_sep_free",
    "lemma_rdfs8_sep_free",
    "lemma_rdfs9_sep_free",
    "lemma_rdfs10_sep_free",
    "lemma_rdfs11_sep_free",
    "lemma_rdfs12_sep_free",
    "lemma_rdfs13_sep_free",
    "lemma_rdfs_subClassOf_endpoint_refl_sep_free",
    "lemma_rdfs_subPropertyOf_endpoint_refl_sep_free",
    "lemma_graph_sep_free_b_sound",
    "lemma_iri_list_sep_free_b_sound",
    "lemma_triple_clean_full_sep_free",
    "lemma_graph_clean_full_sep_free",
    "lemma_rdfs2_obj_not_tt",
    "lemma_rdfs3_obj_not_tt",
    "lemma_rdfs7_obj_not_tt",
    "lemma_rdfs9_sep_free2",
    "lemma_rdfs9_obj_not_tt2",
    "lemma_rdfs11_sep_free2",
    "lemma_rdfs11_obj_not_tt2",
    "lemma_rdfs5_sep_free2",
    "lemma_rdfs5_obj_not_tt2",
    "lemma_rdfs1_obj_not_tt",
    "lemma_rdfs4a_obj_not_tt",
    "lemma_rdfs4b_obj_not_tt",
    "lemma_rdfs8_obj_not_tt",
    "lemma_rdfs13_obj_not_tt"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "specification-and-proof",
   "suites": []
  },
  {
   "module": "RDF.Entailment.RDFS.Spec",
   "files": [
    "formal/fstar/RDF.Entailment.RDFS.Spec.fst"
   ],
   "loc": 419,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 30,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "specification-and-proof",
   "suites": []
  },
  {
   "module": "RDF.Entailment.RDFSPlus",
   "files": [
    "formal/fstar/RDF.Entailment.RDFSPlus.fst"
   ],
   "loc": 94,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Entailment_RDFSPlus.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 3,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "RDF.Entailment.Regime",
   "files": [
    "formal/fstar/RDF.Entailment.Regime.fst"
   ],
   "loc": 272,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Entailment_Regime.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 26,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "local-negative-test-vacuity",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDF.Entailment.RegimeDispatch",
   "files": [
    "formal/fstar/RDF.Entailment.RegimeDispatch.fst"
   ],
   "loc": 54,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Entailment_RegimeDispatch.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 3,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "RDF.Entailment.Simple",
   "files": [
    "formal/fstar/RDF.Entailment.Simple.fst"
   ],
   "loc": 183,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Entailment_Simple.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 8,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_simple_entails_unfold",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 320,
     "unconditional": true,
     "names_shipping_functions": [
      "simple_entails",
      "try_match"
     ]
    }
   ],
   "internal_refinement_theorems": [
    {
     "name": "lemma_try_match_complete",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 239,
     "unconditional": false,
     "names_shipping_functions": [
      "try_match"
     ],
     "names_declarative_relations": [
      "all_matched",
      "binding_compat",
      "bnd_total",
      "leq_reflexive"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.Simple.Refinement"
     ]
    },
    {
     "name": "lemma_match_term_ground_sound",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 753,
     "unconditional": false,
     "names_shipping_functions": [
      "match_term"
     ],
     "names_declarative_relations": [
      "leq_always_identity"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.Simple.Refinement"
     ]
    },
    {
     "name": "lemma_match_triple_ground_sound",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 780,
     "unconditional": false,
     "names_shipping_functions": [
      "match_triple"
     ],
     "names_declarative_relations": [
      "leq_always_identity"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.Simple.Refinement"
     ]
    }
   ],
   "w3c_refinement_theorems": [
    {
     "name": "simple_entails_rename_invariant",
     "proved_in": "RDF.Entailment.Simple.Boundary",
     "file": "formal/fstar/RDF.Entailment.Simple.Boundary.fst",
     "line": 274,
     "unconditional": false,
     "names_shipping_functions": [
      "simple_entails"
     ],
     "names_declarative_relations": [
      "graph_exact"
     ]
    },
    {
     "name": "simple_entails_iff_model_theory",
     "proved_in": "RDF.Entailment.Simple.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
     "line": 358,
     "unconditional": false,
     "names_shipping_functions": [
      "simple_entails"
     ],
     "names_declarative_relations": [
      "graph_exact",
      "graph_tt_free",
      "simple_entails_mt"
     ]
    },
    {
     "name": "lemma_match_subj_complete",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 177,
     "unconditional": false,
     "names_shipping_functions": [
      "match_subj"
     ],
     "names_declarative_relations": [
      "binding_compat",
      "subj_inst"
     ]
    },
    {
     "name": "lemma_match_term_complete",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 191,
     "unconditional": false,
     "names_shipping_functions": [
      "match_term"
     ],
     "names_declarative_relations": [
      "binding_compat",
      "bnd_total",
      "leq_reflexive",
      "term_inst"
     ]
    },
    {
     "name": "lemma_match_triple_complete",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 220,
     "unconditional": false,
     "names_shipping_functions": [
      "match_triple"
     ],
     "names_declarative_relations": [
      "binding_compat",
      "bnd_total",
      "leq_reflexive",
      "triple_inst"
     ]
    },
    {
     "name": "lemma_try_alts_complete",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 253,
     "unconditional": false,
     "names_shipping_functions": [
      "try_alts"
     ],
     "names_declarative_relations": [
      "all_matched",
      "binding_compat",
      "bnd_total",
      "leq_reflexive",
      "triple_inst"
     ]
    },
    {
     "name": "simple_entails_complete",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 328,
     "unconditional": false,
     "names_shipping_functions": [
      "simple_entails"
     ],
     "names_declarative_relations": [
      "simple_entailment_spec"
     ]
    },
    {
     "name": "lemma_match_subj_sound",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 355,
     "unconditional": false,
     "names_shipping_functions": [
      "match_subj"
     ],
     "names_declarative_relations": [
      "binding_exact",
      "binding_extends",
      "subj_inst"
     ]
    },
    {
     "name": "lemma_match_term_sound",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 372,
     "unconditional": false,
     "names_shipping_functions": [
      "match_term"
     ],
     "names_declarative_relations": [
      "binding_exact",
      "binding_extends",
      "leq_exact_identity",
      "term_exact",
      "term_inst"
     ]
    },
    {
     "name": "lemma_match_triple_sound",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 418,
     "unconditional": false,
     "names_shipping_functions": [
      "match_triple"
     ],
     "names_declarative_relations": [
      "binding_exact",
      "binding_extends",
      "leq_exact_identity",
      "triple_exact",
      "triple_inst"
     ]
    },
    {
     "name": "lemma_try_match_sound",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 450,
     "unconditional": false,
     "names_shipping_functions": [
      "try_match"
     ],
     "names_declarative_relations": [
      "binding_exact",
      "graph_exact",
      "leq_exact_identity",
      "search_witness"
     ]
    },
    {
     "name": "lemma_try_alts_sound",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 465,
     "unconditional": false,
     "names_shipping_functions": [
      "try_alts"
     ],
     "names_declarative_relations": [
      "binding_exact",
      "graph_exact",
      "is_subgraph",
      "leq_exact_identity",
      "search_witness",
      "triple_exact"
     ]
    },
    {
     "name": "simple_entails_sound",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 510,
     "unconditional": false,
     "names_shipping_functions": [
      "simple_entails"
     ],
     "names_declarative_relations": [
      "graph_exact",
      "simple_entailment_spec"
     ]
    },
    {
     "name": "entails_with_complete",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 535,
     "unconditional": false,
     "names_shipping_functions": [
      "entails_with"
     ],
     "names_declarative_relations": [
      "bnd_total",
      "leq_reflexive",
      "simple_entailment_spec"
     ]
    },
    {
     "name": "entails_with_sound",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 548,
     "unconditional": false,
     "names_shipping_functions": [
      "entails_with"
     ],
     "names_declarative_relations": [
      "graph_exact",
      "leq_exact_identity",
      "simple_entailment_spec"
     ]
    },
    {
     "name": "simple_entails_iff_spec",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 564,
     "unconditional": false,
     "names_shipping_functions": [
      "simple_entails"
     ],
     "names_declarative_relations": [
      "graph_exact",
      "simple_entailment_spec"
     ]
    },
    {
     "name": "simple_entails_se1_regression",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 644,
     "unconditional": false,
     "names_shipping_functions": [
      "simple_entails"
     ],
     "names_declarative_relations": [
      "simple_entailment_spec"
     ]
    },
    {
     "name": "simple_entails_se1_positive_regression",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 688,
     "unconditional": true,
     "names_shipping_functions": [
      "simple_entails"
     ],
     "names_declarative_relations": [
      "simple_entailment_spec"
     ]
    },
    {
     "name": "lemma_try_match_ground_sound",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 794,
     "unconditional": false,
     "names_shipping_functions": [
      "try_match"
     ],
     "names_declarative_relations": [
      "graph_ground",
      "is_subgraph",
      "leq_always_identity"
     ]
    },
    {
     "name": "lemma_try_alts_ground_sound",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 805,
     "unconditional": false,
     "names_shipping_functions": [
      "try_alts"
     ],
     "names_declarative_relations": [
      "graph_ground",
      "is_subgraph",
      "leq_always_identity"
     ]
    },
    {
     "name": "simple_entails_sound_ground",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 867,
     "unconditional": false,
     "names_shipping_functions": [
      "simple_entails"
     ],
     "names_declarative_relations": [
      "graph_ground",
      "simple_entailment_spec"
     ]
    }
   ],
   "assurance_tier": "w3c-refinement",
   "suites": []
  },
  {
   "module": "RDF.Entailment.Simple.Boundary",
   "files": [
    "formal/fstar/RDF.Entailment.Simple.Boundary.fst"
   ],
   "loc": 333,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 13,
   "local_refinement_lemma_names": [
    "relabelling",
    "lemma_rename_term_exact",
    "lemma_rename_graph_exact",
    "lemma_rename_subj_inst",
    "lemma_rename_term_inst",
    "lemma_rename_triple_inst",
    "lemma_subst_ext_subj",
    "lemma_subst_ext_term",
    "lemma_subst_ext_triple",
    "lemma_memP_rename_intro",
    "lemma_memP_rename_elim",
    "spec_rename_specialises",
    "spec_rename_generalises"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "local-lemmas-only",
   "suites": []
  },
  {
   "module": "RDF.Entailment.Simple.ModelTheory",
   "files": [
    "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst"
   ],
   "loc": 674,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 8,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 30,
   "local_refinement_lemma_names": [
    "lemma_subj_term_is_subject_to_term",
    "lemma_subj_term_injective",
    "lemma_subst_denot_subj",
    "lemma_subst_denot_term",
    "lemma_subst_triple_holds",
    "interpolation_sound",
    "lemma_herb_denot_subj_id",
    "lemma_herb_denot_term_id",
    "lemma_herbrand_satisfies",
    "lemma_herb_denot_is_subj_inst",
    "lemma_herb_denot_is_term_inst",
    "lemma_herbrand_reflects",
    "interpolation_complete",
    "interpolation_lemma",
    "lemma_subject_bnode_mem",
    "lemma_term_bnodes_mem",
    "lemma_triple_bnodes_mem",
    "lemma_graph_bnode_ids_mem",
    "lemma_mem_triple_bnodes_subset",
    "lemma_denot_subject_agree",
    "lemma_denot_term_agree",
    "lemma_triple_holds_agree",
    "graph_bnodes_complete",
    "lemma_holds_all_append",
    "lemma_merge_assignment_g1",
    "lemma_merge_assignment_g2",
    "lemma_merge_satisfies",
    "merge_satisfies_iff",
    "merge_entails_component",
    "merge_entails_iff"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "specification-and-proof",
   "suites": []
  },
  {
   "module": "RDF.Entailment.Simple.Refinement",
   "files": [
    "formal/fstar/RDF.Entailment.Simple.Refinement.fst"
   ],
   "loc": 883,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 9,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 14,
   "local_refinement_lemma_names": [
    "lemma_subj_terms_agree",
    "lemma_subject_eq_identity",
    "lemma_binding_extends_refl",
    "lemma_binding_extends_trans",
    "lemma_simple_leq_reflexive",
    "lemma_simple_bnd_total",
    "lemma_simple_leq_always_identity",
    "lemma_simple_leq_exact_identity",
    "lemma_se1_lit_wf",
    "lemma_spec_is_instance_subgraph",
    "lemma_match_subj_ground_sound",
    "lemma_subj_inst_ground_refl",
    "lemma_term_inst_ground_refl",
    "lemma_triple_inst_ground_refl"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "specification-and-proof",
   "suites": []
  },
  {
   "module": "RDF.Entailment.Simple.Spec",
   "files": [
    "formal/fstar/RDF.Entailment.Simple.Spec.fst"
   ],
   "loc": 310,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 14,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "specification-and-proof",
   "suites": []
  },
  {
   "module": "RDF.Format",
   "files": [
    "formal/fstar/RDF.Format.fst"
   ],
   "loc": 104,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Format.ml",
   "in_build_module_list": true,
   "foundational_path": true,
   "shipping_function_count": 5,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "csvw-csv2json",
     "how": "foundational-path"
    },
    {
     "suite": "csvw-nonnorm",
     "how": "foundational-path"
    },
    {
     "suite": "csvw-validation",
     "how": "foundational-path"
    },
    {
     "suite": "csvw",
     "how": "foundational-path"
    },
    {
     "suite": "did",
     "how": "foundational-path"
    },
    {
     "suite": "eecc-interop",
     "how": "foundational-path"
    },
    {
     "suite": "geosparql",
     "how": "foundational-path"
    },
    {
     "suite": "grddl",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-compact",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-expand",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-flatten",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-frame",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-fromrdf",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-html",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-tordf",
     "how": "foundational-path"
    },
    {
     "suite": "jsonschema",
     "how": "foundational-path"
    },
    {
     "suite": "local-backend-parity-full",
     "how": "foundational-path"
    },
    {
     "suite": "local-backend-parity",
     "how": "foundational-path"
    },
    {
     "suite": "local-check-pages-links",
     "how": "foundational-path"
    },
    {
     "suite": "local-cottas-ask-decode-failure",
     "how": "foundational-path"
    },
    {
     "suite": "local-cottas-corpus",
     "how": "foundational-path"
    },
    {
     "suite": "local-cottas-groupby-counts",
     "how": "foundational-path"
    },
    {
     "suite": "local-cottas-row-order",
     "how": "foundational-path"
    },
    {
     "suite": "local-graph-default-semantics",
     "how": "foundational-path"
    },
    {
     "suite": "local-graphs-api",
     "how": "foundational-path"
    },
    {
     "suite": "local-jsonld-regressions",
     "how": "foundational-path"
    },
    {
     "suite": "local-negative-test-vacuity",
     "how": "foundational-path"
    },
    {
     "suite": "local-parquet-footer-version-gate",
     "how": "foundational-path"
    },
    {
     "suite": "local-parquet-footer",
     "how": "foundational-path"
    },
    {
     "suite": "local-parser-unicode",
     "how": "foundational-path"
    },
    {
     "suite": "local-serializer-unicode",
     "how": "foundational-path"
    },
    {
     "suite": "local-sparql-negative",
     "how": "foundational-path"
    },
    {
     "suite": "local-sparql-parser",
     "how": "foundational-path"
    },
    {
     "suite": "local-turtle-pretty",
     "how": "foundational-path"
    },
    {
     "suite": "mathml",
     "how": "foundational-path"
    },
    {
     "suite": "owl-profile-el",
     "how": "foundational-path"
    },
    {
     "suite": "owl-profile-ql",
     "how": "foundational-path"
    },
    {
     "suite": "owl-profile-rl",
     "how": "foundational-path"
    },
    {
     "suite": "owl-semantics-direct",
     "how": "foundational-path"
    },
    {
     "suite": "owl-syntax-dl",
     "how": "foundational-path"
    },
    {
     "suite": "owl-type-consistency",
     "how": "foundational-path"
    },
    {
     "suite": "owl-type-inconsistency",
     "how": "foundational-path"
    },
    {
     "suite": "owl-type-negative-entailment",
     "how": "foundational-path"
    },
    {
     "suite": "owl-type-positive-entailment",
     "how": "foundational-path"
    },
    {
     "suite": "qudt",
     "how": "foundational-path"
    },
    {
     "suite": "rdf-mt",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-n-quads",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-n-triples",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-trig",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-turtle",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-xml",
     "how": "direct-trigger"
    },
    {
     "suite": "rdfc10",
     "how": "foundational-path"
    },
    {
     "suite": "rif",
     "how": "foundational-path"
    },
    {
     "suite": "rml-io",
     "how": "foundational-path"
    },
    {
     "suite": "rml",
     "how": "foundational-path"
    },
    {
     "suite": "schematron",
     "how": "foundational-path"
    },
    {
     "suite": "shacl-core",
     "how": "foundational-path"
    },
    {
     "suite": "shacl-sparql",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-core",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-node-expr",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-rules-syntax",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-rules",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-sparql",
     "how": "foundational-path"
    },
    {
     "suite": "shex-negative-syntax",
     "how": "foundational-path"
    },
    {
     "suite": "shex",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-entailment",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-federated-query",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-protocol",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-query",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-service-description",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-update",
     "how": "foundational-path"
    },
    {
     "suite": "tests-unit",
     "how": "foundational-path"
    },
    {
     "suite": "toan-matrix",
     "how": "foundational-path"
    },
    {
     "suite": "vc-di-eddsa",
     "how": "foundational-path"
    },
    {
     "suite": "vc",
     "how": "foundational-path"
    },
    {
     "suite": "vc20-api",
     "how": "foundational-path"
    },
    {
     "suite": "xforms",
     "how": "foundational-path"
    },
    {
     "suite": "xml-conformance",
     "how": "foundational-path"
    },
    {
     "suite": "xpath-unit",
     "how": "foundational-path"
    },
    {
     "suite": "xslt",
     "how": "foundational-path"
    },
    {
     "suite": "xslt1-xalan",
     "how": "foundational-path"
    }
   ]
  },
  {
   "module": "RDF.Geo.BBox",
   "files": [
    "formal/fstar/RDF.Geo.BBox.fst"
   ],
   "loc": 106,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Geo_BBox.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 17,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "geosparql",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDF.Geo.Functions",
   "files": [
    "formal/fstar/RDF.Geo.Functions.fst"
   ],
   "loc": 91,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Geo_Functions.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 7,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "geosparql",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDF.Geo.Topology",
   "files": [
    "formal/fstar/RDF.Geo.Topology.fst"
   ],
   "loc": 593,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Geo_Topology.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 59,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "geosparql",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDF.Geo.Types",
   "files": [
    "formal/fstar/RDF.Geo.Types.fst"
   ],
   "loc": 260,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Geo_Types.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 36,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "geosparql",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDF.Graph",
   "files": [
    "formal/fstar/RDF.Graph.fst",
    "formal/fstar/RDF.Graph.fsti"
   ],
   "loc": 357,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Graph.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 23,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_step_is_dedup_of_pre_dedup",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 485,
     "unconditional": true,
     "names_shipping_functions": [
      "graph_dedup_sort",
      "rdfs_closure_step"
     ]
    },
    {
     "name": "lemma_rho_df_step_is_dedup_of_pre_dedup",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 138,
     "unconditional": true,
     "names_shipping_functions": [
      "graph_dedup_sort",
      "rho_df_closure_step",
      "rho_df_closure_step_pre_dedup"
     ]
    },
    {
     "name": "lemma_subject_to_key_eq_term_to_key_opt",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 342,
     "unconditional": true,
     "names_shipping_functions": [
      "subject_to_key",
      "subject_to_term",
      "term_to_key_opt"
     ]
    },
    {
     "name": "lemma_po_key_eq_po_key_opt",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 388,
     "unconditional": true,
     "names_shipping_functions": [
      "po_key",
      "po_key_opt",
      "subject_to_term"
     ]
    },
    {
     "name": "lemma_term_to_subject_roundtrip",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 396,
     "unconditional": false,
     "names_shipping_functions": [
      "subject_to_term",
      "term_to_subject"
     ]
    },
    {
     "name": "lemma_po_key_opt_some_iff_term_to_subject_some",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 412,
     "unconditional": true,
     "names_shipping_functions": [
      "po_key_opt",
      "term_to_subject"
     ]
    },
    {
     "name": "lemma_literal_key_decomposes_1",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 576,
     "unconditional": true,
     "names_shipping_functions": [
      "lit_key_dir_part",
      "lit_key_lang_part",
      "term_to_key_total",
      "unit_sep"
     ]
    },
    {
     "name": "lemma_literal_key_decomposes_2",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 589,
     "unconditional": true,
     "names_shipping_functions": [
      "lit_key_dir_part",
      "lit_key_lang_part",
      "unit_sep"
     ]
    },
    {
     "name": "lemma_literal_key_decomposes_3",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 598,
     "unconditional": true,
     "names_shipping_functions": [
      "lit_key_dir_part",
      "lit_key_lang_part",
      "unit_sep"
     ]
    },
    {
     "name": "lemma_triple_term_key_decomposes_1",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 755,
     "unconditional": true,
     "names_shipping_functions": [
      "subject_to_key",
      "term_to_key_total",
      "unit_sep"
     ]
    },
    {
     "name": "lemma_triple_term_key_decomposes_2",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 763,
     "unconditional": true,
     "names_shipping_functions": [
      "term_to_key_total",
      "unit_sep"
     ]
    }
   ],
   "internal_refinement_theorems": [
    {
     "name": "lemma_dedup_sorted_decorated_extensive",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 924,
     "unconditional": false,
     "names_shipping_functions": [
      "dedup_sorted_decorated_aux",
      "triple_to_key"
     ],
     "names_declarative_relations": [
      "decoration_consistent",
      "no_dup_keys_combined"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.FixedPoint"
     ]
    },
    {
     "name": "lemma_graph_dedup_sort_extensive",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 996,
     "unconditional": false,
     "names_shipping_functions": [
      "graph_dedup_sort"
     ],
     "names_declarative_relations": [
      "no_dup_keys"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.FixedPoint"
     ]
    },
    {
     "name": "lemma_len_eq_saturated",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 1245,
     "unconditional": false,
     "names_shipping_functions": [
      "graph_len",
      "rdfs_closure_step"
     ],
     "names_declarative_relations": [
      "no_dup_keys",
      "step_saturated"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.FixedPoint"
     ]
    },
    {
     "name": "lemma_sortWith_sorted_pairs_dt",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 1330,
     "unconditional": true,
     "names_shipping_functions": [
      "cmp_decorated_triple"
     ],
     "names_declarative_relations": [
      "sorted_pairs_dt"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.FixedPoint"
     ]
    },
    {
     "name": "lemma_dedup_sorted_decorated_no_repeats",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 1405,
     "unconditional": false,
     "names_shipping_functions": [
      "dedup_sorted_decorated_aux"
     ],
     "names_declarative_relations": [
      "decoration_consistent",
      "dedup_acc_inv",
      "sorted_pairs_dt"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.FixedPoint"
     ]
    },
    {
     "name": "lemma_len_eq_saturated_gapB",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 1522,
     "unconditional": false,
     "names_shipping_functions": [
      "graph_len",
      "rdfs_closure_step"
     ],
     "names_declarative_relations": [
      "no_dup_keys",
      "step_saturated"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.FixedPoint"
     ]
    },
    {
     "name": "rho_df_len_eq_saturated",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1560,
     "unconditional": false,
     "names_shipping_functions": [
      "graph_len",
      "rho_df_closure_step",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "no_dup_keys"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.FixedPoint"
     ]
    },
    {
     "name": "lemma_lit_key_lang_part_sep_free",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 617,
     "unconditional": false,
     "names_shipping_functions": [
      "lit_key_lang_part"
     ],
     "names_declarative_relations": [
      "str_sep_free"
     ],
     "declarative_relations_from": [
      "RDF.Indexed.KeyInjectivity"
     ]
    },
    {
     "name": "lemma_literal_key_injective",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 687,
     "unconditional": false,
     "names_shipping_functions": [
      "term_to_key_total"
     ],
     "names_declarative_relations": [
      "literal_sep_free"
     ],
     "declarative_relations_from": [
      "RDF.Indexed.KeyInjectivity"
     ]
    },
    {
     "name": "lemma_term_to_key_total_injective",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 781,
     "unconditional": false,
     "names_shipping_functions": [
      "term_to_key_total"
     ],
     "names_declarative_relations": [
      "term_sep_free"
     ],
     "declarative_relations_from": [
      "RDF.Indexed.KeyInjectivity"
     ]
    },
    {
     "name": "lemma_triple_to_key_injective",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 901,
     "unconditional": false,
     "names_shipping_functions": [
      "triple_to_key"
     ],
     "names_declarative_relations": [
      "triple_full_sep_free"
     ],
     "declarative_relations_from": [
      "RDF.Indexed.KeyInjectivity"
     ]
    },
    {
     "name": "lemma_graph_full_sep_free_no_dup_keys",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 954,
     "unconditional": false,
     "names_shipping_functions": [
      "triple_to_key"
     ],
     "names_declarative_relations": [
      "graph_full_sep_free"
     ],
     "declarative_relations_from": [
      "RDF.Indexed.KeyInjectivity"
     ]
    }
   ],
   "w3c_refinement_theorems": [
    {
     "name": "lemma_single_add_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 2919,
     "unconditional": false,
     "names_shipping_functions": [
      "add_triple_unchecked"
     ],
     "names_declarative_relations": [
      "cls_disjoint_union_ext_derives",
      "cls_uni_licensed",
      "scm_uni_derives"
     ]
    },
    {
     "name": "lemma_find_subjects_indexed_wf_subj",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4196,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "ig_wf_po"
     ]
    },
    {
     "name": "lemma_cls_hv1_row_intro",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4247,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cls_hv1_derives",
      "ig_wf_po"
     ]
    },
    {
     "name": "lemma_cls_hv1_members_fold",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4282,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_cls_hv1_emit",
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cls_hv1_licensed",
      "ig_wf_po"
     ]
    },
    {
     "name": "lemma_cls_avf_row_intro",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4931,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "find_subjects_indexed",
      "owl_allValuesFrom_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cls_avf_derives",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_cls_avf_member_step",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4979,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_allValuesFrom_iri",
      "owl_cls_avf1_member",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cls_avf_licensed",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_cls_hv1_witness_holds",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3116,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cond_hasvalue",
      "holds_all",
      "ig_wf_po",
      "triple_holds"
     ]
    },
    {
     "name": "lemma_cls_hv1_members_fold_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3151,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_cls_hv1_emit",
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cond_hasvalue",
      "holds_all",
      "ig_wf_po"
     ]
    },
    {
     "name": "lemma_cls_hv2_witness_holds",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3286,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cond_hasvalue",
      "cond_literal_term_eq_respecting",
      "holds_all",
      "ig_wf_po",
      "ig_wf_pred",
      "triple_holds"
     ]
    },
    {
     "name": "lemma_cls_avf_witness_holds",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3441,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "find_subjects_indexed",
      "owl_allValuesFrom_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term",
      "term_to_subject"
     ],
     "names_declarative_relations": [
      "cond_allvaluesfrom",
      "holds_all",
      "ig_wf_po",
      "ig_wf_sp",
      "triple_holds"
     ]
    },
    {
     "name": "lemma_cls_avf_member_fold_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3492,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "find_subjects_indexed",
      "owl_allValuesFrom_iri",
      "owl_cls_avf1_emit",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cond_allvaluesfrom",
      "holds_all",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_prp_spo2_witness_holds",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3630,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "owl_propertyChainAxiom",
      "term_to_subject"
     ],
     "names_declarative_relations": [
      "cond_chain2_compose",
      "holds_all",
      "ig_wf_sp",
      "seq_is",
      "triple_holds"
     ]
    },
    {
     "name": "lemma_prp_spo2_mid_step_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3673,
     "unconditional": false,
     "names_shipping_functions": [
      "owl_chain2_mid",
      "owl_propertyChainAxiom",
      "term_to_subject"
     ],
     "names_declarative_relations": [
      "cond_chain2_compose",
      "holds_all",
      "ig_wf_sp",
      "seq_is"
     ]
    },
    {
     "name": "lemma_len_eq_saturated_sep_free",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 1556,
     "unconditional": false,
     "names_shipping_functions": [
      "graph_len",
      "rdfs_closure_step"
     ],
     "names_declarative_relations": [
      "graph_obj_not_tt",
      "graph_sep_free",
      "step_saturated"
     ]
    },
    {
     "name": "lemma_add_triples_if_new_holds",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 843,
     "unconditional": false,
     "names_shipping_functions": [
      "add_triples_if_new"
     ],
     "names_declarative_relations": [
      "holds_all"
     ]
    },
    {
     "name": "rs2_rows_complete_at_build_indexed",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 1216,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "is_typed_as",
      "rdf_type",
      "rdfs_Class",
      "rdfs_Datatype",
      "rdfs_Literal",
      "rdfs_Resource",
      "rdfs_rule_class_subclass_resource",
      "rdfs_rule_datatype_subclass_literal",
      "rdfs_rule_recognized_datatypes",
      "rdfs_rule_resource_object",
      "rdfs_rule_resource_subject",
      "rdfs_subClassOf",
      "recognized_datatypes",
      "term_to_subject"
     ],
     "names_declarative_relations": [
      "ig_wf_sp"
     ]
    },
    {
     "name": "rho_df_closure_closed",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1858,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "graph_len",
      "rho_df_closure",
      "rho_df_closure_step",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "no_dup_keys",
      "rho_df_closed",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "rho_df_closure_decides",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1905,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "graph_len",
      "rho_df_closure",
      "rho_df_closure_step",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "graph_tt_free",
      "ig_wf_sp",
      "no_dup_keys",
      "rho_df_entails",
      "rho_df_frag_graph",
      "simple_entailment_spec"
     ]
    }
   ],
   "assurance_tier": "w3c-refinement",
   "suites": []
  },
  {
   "module": "RDF.Graph.Executable",
   "files": [
    "formal/fstar/RDF.Graph.Executable.fst"
   ],
   "loc": 617,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Graph_Executable.ml",
   "in_build_module_list": true,
   "foundational_path": true,
   "shipping_function_count": 26,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 3,
   "local_refinement_lemma_names": [
    "lemma_mem_triple_append",
    "lemma_remove_absent",
    "lemma_bind_preserves_existing"
   ],
   "algorithm_correctness_theorems": [
    {
     "name": "stream_parse_single_chunk_shape",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 453,
     "unconditional": true,
     "names_shipping_functions": [
      "dataset_finalise",
      "fs_byte_length",
      "parse_nquads_acc"
     ]
    }
   ],
   "internal_refinement_theorems": [
    {
     "name": "stream_fold_eq_batch",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2068,
     "unconditional": false,
     "names_shipping_functions": [
      "dataset_finalise",
      "fs_byte_length",
      "parse_nquads_acc"
     ],
     "names_declarative_relations": [
      "stream_fold_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    },
    {
     "name": "theorem_stream_consume_dataset_eq_batch",
     "proved_in": "RDF.NQuads.Streaming",
     "file": "formal/fstar/RDF.NQuads.Streaming.fst",
     "line": 2991,
     "unconditional": false,
     "names_shipping_functions": [
      "dataset_finalise"
     ],
     "names_declarative_relations": [
      "stream_fold_wf"
     ],
     "declarative_relations_from": [
      "RDF.NQuads.Streaming"
     ]
    }
   ],
   "w3c_refinement_theorems": [],
   "assurance_tier": "internal-refinement",
   "suites": [
    {
     "suite": "csvw-csv2json",
     "how": "foundational-path"
    },
    {
     "suite": "csvw-nonnorm",
     "how": "foundational-path"
    },
    {
     "suite": "csvw-validation",
     "how": "foundational-path"
    },
    {
     "suite": "csvw",
     "how": "foundational-path"
    },
    {
     "suite": "did",
     "how": "foundational-path"
    },
    {
     "suite": "eecc-interop",
     "how": "foundational-path"
    },
    {
     "suite": "geosparql",
     "how": "foundational-path"
    },
    {
     "suite": "grddl",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-compact",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-expand",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-flatten",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-frame",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-fromrdf",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-html",
     "how": "foundational-path"
    },
    {
     "suite": "jsonld-tordf",
     "how": "foundational-path"
    },
    {
     "suite": "jsonschema",
     "how": "foundational-path"
    },
    {
     "suite": "local-backend-parity-full",
     "how": "foundational-path"
    },
    {
     "suite": "local-backend-parity",
     "how": "foundational-path"
    },
    {
     "suite": "local-check-pages-links",
     "how": "foundational-path"
    },
    {
     "suite": "local-cottas-ask-decode-failure",
     "how": "foundational-path"
    },
    {
     "suite": "local-cottas-corpus",
     "how": "foundational-path"
    },
    {
     "suite": "local-cottas-groupby-counts",
     "how": "foundational-path"
    },
    {
     "suite": "local-cottas-row-order",
     "how": "foundational-path"
    },
    {
     "suite": "local-graph-default-semantics",
     "how": "foundational-path"
    },
    {
     "suite": "local-graphs-api",
     "how": "foundational-path"
    },
    {
     "suite": "local-jsonld-regressions",
     "how": "foundational-path"
    },
    {
     "suite": "local-negative-test-vacuity",
     "how": "direct-trigger"
    },
    {
     "suite": "local-parquet-footer-version-gate",
     "how": "foundational-path"
    },
    {
     "suite": "local-parquet-footer",
     "how": "foundational-path"
    },
    {
     "suite": "local-parser-unicode",
     "how": "foundational-path"
    },
    {
     "suite": "local-serializer-unicode",
     "how": "foundational-path"
    },
    {
     "suite": "local-sparql-negative",
     "how": "foundational-path"
    },
    {
     "suite": "local-sparql-parser",
     "how": "foundational-path"
    },
    {
     "suite": "local-turtle-pretty",
     "how": "foundational-path"
    },
    {
     "suite": "mathml",
     "how": "foundational-path"
    },
    {
     "suite": "owl-profile-el",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-profile-ql",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-profile-rl",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-semantics-direct",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-syntax-dl",
     "how": "foundational-path"
    },
    {
     "suite": "owl-type-consistency",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-inconsistency",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-negative-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-positive-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "qudt",
     "how": "foundational-path"
    },
    {
     "suite": "rdf-mt",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-n-quads",
     "how": "foundational-path"
    },
    {
     "suite": "rdf-n-triples",
     "how": "foundational-path"
    },
    {
     "suite": "rdf-trig",
     "how": "foundational-path"
    },
    {
     "suite": "rdf-turtle",
     "how": "foundational-path"
    },
    {
     "suite": "rdf-xml",
     "how": "foundational-path"
    },
    {
     "suite": "rdfc10",
     "how": "foundational-path"
    },
    {
     "suite": "rif",
     "how": "direct-trigger"
    },
    {
     "suite": "rml-io",
     "how": "foundational-path"
    },
    {
     "suite": "rml",
     "how": "foundational-path"
    },
    {
     "suite": "schematron",
     "how": "foundational-path"
    },
    {
     "suite": "shacl-core",
     "how": "direct-trigger"
    },
    {
     "suite": "shacl-sparql",
     "how": "direct-trigger"
    },
    {
     "suite": "shacl12-core",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-node-expr",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-rules-syntax",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-rules",
     "how": "foundational-path"
    },
    {
     "suite": "shacl12-sparql",
     "how": "foundational-path"
    },
    {
     "suite": "shex-negative-syntax",
     "how": "foundational-path"
    },
    {
     "suite": "shex",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-federated-query",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-protocol",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-query",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-service-description",
     "how": "foundational-path"
    },
    {
     "suite": "sparql11-update",
     "how": "foundational-path"
    },
    {
     "suite": "tests-unit",
     "how": "foundational-path"
    },
    {
     "suite": "toan-matrix",
     "how": "foundational-path"
    },
    {
     "suite": "vc-di-eddsa",
     "how": "foundational-path"
    },
    {
     "suite": "vc",
     "how": "foundational-path"
    },
    {
     "suite": "vc20-api",
     "how": "foundational-path"
    },
    {
     "suite": "xforms",
     "how": "foundational-path"
    },
    {
     "suite": "xml-conformance",
     "how": "foundational-path"
    },
    {
     "suite": "xpath-unit",
     "how": "foundational-path"
    },
    {
     "suite": "xslt",
     "how": "foundational-path"
    },
    {
     "suite": "xslt1-xalan",
     "how": "foundational-path"
    }
   ]
  },
  {
   "module": "RDF.GraphIsomorphism",
   "files": [
    "formal/fstar/RDF.GraphIsomorphism.fst"
   ],
   "loc": 201,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_GraphIsomorphism.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 24,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "RDF.IRI",
   "files": [
    "formal/fstar/RDF.IRI.fst",
    "formal/fstar/RDF.IRI.fsti"
   ],
   "loc": 568,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_IRI.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 23,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "RDF.Indexed",
   "files": [
    "formal/fstar/RDF.Indexed.fst",
    "formal/fstar/RDF.Indexed.fsti"
   ],
   "loc": 708,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Indexed.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 38,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_build_indexed_wf_pred",
     "proved_in": "OWL.Semantics.MemLemmas",
     "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
     "line": 336,
     "unconditional": true,
     "names_shipping_functions": [
      "bucket_lookup",
      "build_indexed"
     ]
    },
    {
     "name": "lemma_build_indexed_wf_subj_weak",
     "proved_in": "OWL.Semantics.MemLemmas",
     "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
     "line": 357,
     "unconditional": true,
     "names_shipping_functions": [
      "bucket_key_subj",
      "bucket_lookup",
      "build_indexed"
     ]
    },
    {
     "name": "lemma_build_indexed_wf_obj_weak",
     "proved_in": "OWL.Semantics.MemLemmas",
     "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
     "line": 380,
     "unconditional": true,
     "names_shipping_functions": [
      "bucket_key_obj",
      "bucket_lookup",
      "build_indexed"
     ]
    },
    {
     "name": "lemma_build_indexed_wf_sp_weak",
     "proved_in": "OWL.Semantics.MemLemmas",
     "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
     "line": 405,
     "unconditional": true,
     "names_shipping_functions": [
      "bucket_key_sp",
      "bucket_lookup",
      "build_indexed"
     ]
    },
    {
     "name": "lemma_build_indexed_wf_po_weak",
     "proved_in": "OWL.Semantics.MemLemmas",
     "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
     "line": 428,
     "unconditional": true,
     "names_shipping_functions": [
      "bucket_key_po",
      "bucket_lookup",
      "build_indexed"
     ]
    },
    {
     "name": "lemma_find_objects_complete",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 625,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "find_objects_indexed"
     ]
    },
    {
     "name": "lemma_after_row1_pre_dedup",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1580,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subPropertyOf",
      "rho_df_closure_step_pre_dedup"
     ]
    },
    {
     "name": "lemma_after_row2_pre_dedup",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1594,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain",
      "rdfs_rule_subPropertyOf",
      "rho_df_closure_step_pre_dedup"
     ]
    },
    {
     "name": "lemma_after_row3_pre_dedup",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1607,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain",
      "rdfs_rule_range",
      "rdfs_rule_subPropertyOf",
      "rho_df_closure_step_pre_dedup"
     ]
    },
    {
     "name": "lemma_after_row4_pre_dedup",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1618,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain",
      "rdfs_rule_range",
      "rdfs_rule_subClassOf",
      "rdfs_rule_subPropertyOf",
      "rho_df_closure_step_pre_dedup"
     ]
    },
    {
     "name": "lemma_after_row5_pre_dedup",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1629,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain",
      "rdfs_rule_range",
      "rdfs_rule_subClassOf",
      "rdfs_rule_subClassOf_trans",
      "rdfs_rule_subPropertyOf",
      "rho_df_closure_step_pre_dedup"
     ]
    },
    {
     "name": "lemma_build_bucket_complete",
     "proved_in": "RDF.Indexed.Completeness",
     "file": "formal/fstar/RDF.Indexed.Completeness.fst",
     "line": 518,
     "unconditional": false,
     "names_shipping_functions": [
      "bucket_lookup",
      "build_bucket"
     ]
    },
    {
     "name": "lemma_build_indexed_complete_pred",
     "proved_in": "RDF.Indexed.Completeness",
     "file": "formal/fstar/RDF.Indexed.Completeness.fst",
     "line": 545,
     "unconditional": true,
     "names_shipping_functions": [
      "bucket_lookup",
      "build_indexed"
     ]
    },
    {
     "name": "lemma_build_indexed_complete_subj",
     "proved_in": "RDF.Indexed.Completeness",
     "file": "formal/fstar/RDF.Indexed.Completeness.fst",
     "line": 583,
     "unconditional": true,
     "names_shipping_functions": [
      "bucket_lookup",
      "build_indexed",
      "subject_to_key"
     ]
    },
    {
     "name": "lemma_build_indexed_complete_sp",
     "proved_in": "RDF.Indexed.Completeness",
     "file": "formal/fstar/RDF.Indexed.Completeness.fst",
     "line": 597,
     "unconditional": true,
     "names_shipping_functions": [
      "bucket_lookup",
      "build_indexed",
      "sp_key"
     ]
    },
    {
     "name": "lemma_build_indexed_complete_obj",
     "proved_in": "RDF.Indexed.Completeness",
     "file": "formal/fstar/RDF.Indexed.Completeness.fst",
     "line": 611,
     "unconditional": true,
     "names_shipping_functions": [
      "bucket_lookup",
      "build_indexed",
      "term_to_key_opt"
     ]
    },
    {
     "name": "lemma_build_indexed_complete_po",
     "proved_in": "RDF.Indexed.Completeness",
     "file": "formal/fstar/RDF.Indexed.Completeness.fst",
     "line": 625,
     "unconditional": true,
     "names_shipping_functions": [
      "bucket_lookup",
      "build_indexed",
      "po_key_opt"
     ]
    },
    {
     "name": "lemma_build_indexed_complete_so",
     "proved_in": "RDF.Indexed.Completeness",
     "file": "formal/fstar/RDF.Indexed.Completeness.fst",
     "line": 639,
     "unconditional": true,
     "names_shipping_functions": [
      "bucket_lookup",
      "build_indexed",
      "so_key_opt"
     ]
    },
    {
     "name": "lemma_sp_key_decomposes",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 134,
     "unconditional": true,
     "names_shipping_functions": [
      "sp_key",
      "subject_to_key"
     ]
    },
    {
     "name": "lemma_subject_to_key_eq_term_to_key_opt",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 342,
     "unconditional": true,
     "names_shipping_functions": [
      "subject_to_key",
      "subject_to_term",
      "term_to_key_opt"
     ]
    },
    {
     "name": "lemma_po_key_eq_po_key_opt",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 388,
     "unconditional": true,
     "names_shipping_functions": [
      "po_key",
      "po_key_opt",
      "subject_to_term"
     ]
    },
    {
     "name": "lemma_po_key_opt_some_iff_term_to_subject_some",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 412,
     "unconditional": true,
     "names_shipping_functions": [
      "po_key_opt",
      "term_to_subject"
     ]
    },
    {
     "name": "lemma_po_key_decomposes",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 423,
     "unconditional": true,
     "names_shipping_functions": [
      "po_key",
      "subject_to_key"
     ]
    },
    {
     "name": "lemma_literal_key_decomposes_1",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 576,
     "unconditional": true,
     "names_shipping_functions": [
      "lit_key_dir_part",
      "lit_key_lang_part",
      "term_to_key_total",
      "unit_sep"
     ]
    },
    {
     "name": "lemma_literal_key_decomposes_2",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 589,
     "unconditional": true,
     "names_shipping_functions": [
      "lit_key_dir_part",
      "lit_key_lang_part",
      "unit_sep"
     ]
    },
    {
     "name": "lemma_literal_key_decomposes_3",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 598,
     "unconditional": true,
     "names_shipping_functions": [
      "lit_key_dir_part",
      "lit_key_lang_part",
      "unit_sep"
     ]
    },
    {
     "name": "lemma_triple_term_key_decomposes_1",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 755,
     "unconditional": true,
     "names_shipping_functions": [
      "subject_to_key",
      "term_to_key_total",
      "unit_sep"
     ]
    },
    {
     "name": "lemma_triple_term_key_decomposes_2",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 763,
     "unconditional": true,
     "names_shipping_functions": [
      "term_to_key_total",
      "unit_sep"
     ]
    }
   ],
   "internal_refinement_theorems": [
    {
     "name": "lemma_tree_ok_lookup",
     "proved_in": "OWL.Semantics.MemLemmas",
     "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
     "line": 156,
     "unconditional": false,
     "names_shipping_functions": [
      "bucket_lookup"
     ],
     "names_declarative_relations": [
      "tree_ok"
     ],
     "declarative_relations_from": [
      "OWL.Semantics.MemLemmas"
     ]
    },
    {
     "name": "lemma_slt_tree_ok",
     "proved_in": "OWL.Semantics.MemLemmas",
     "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
     "line": 197,
     "unconditional": false,
     "names_shipping_functions": [
      "sorted_list_to_tree_fuel"
     ],
     "names_declarative_relations": [
      "pairs_ok",
      "tree_ok"
     ],
     "declarative_relations_from": [
      "OWL.Semantics.MemLemmas"
     ]
    },
    {
     "name": "lemma_group_ok",
     "proved_in": "OWL.Semantics.MemLemmas",
     "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
     "line": 235,
     "unconditional": false,
     "names_shipping_functions": [
      "group_sorted_decorated_aux"
     ],
     "names_declarative_relations": [
      "dec_ok",
      "pairs_ok"
     ],
     "declarative_relations_from": [
      "OWL.Semantics.MemLemmas"
     ]
    },
    {
     "name": "lemma_build_bucket_ok",
     "proved_in": "OWL.Semantics.MemLemmas",
     "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
     "line": 314,
     "unconditional": true,
     "names_shipping_functions": [
      "build_bucket"
     ],
     "names_declarative_relations": [
      "tree_ok"
     ],
     "declarative_relations_from": [
      "OWL.Semantics.MemLemmas"
     ]
    },
    {
     "name": "lemma_sortWith_sorted_pairs",
     "proved_in": "RDF.Indexed.Completeness",
     "file": "formal/fstar/RDF.Indexed.Completeness.fst",
     "line": 177,
     "unconditional": true,
     "names_shipping_functions": [
      "cmp_by_decorated_key"
     ],
     "names_declarative_relations": [
      "sorted_pairs"
     ],
     "declarative_relations_from": [
      "RDF.Indexed.Completeness"
     ]
    },
    {
     "name": "lemma_group_sorted",
     "proved_in": "RDF.Indexed.Completeness",
     "file": "formal/fstar/RDF.Indexed.Completeness.fst",
     "line": 296,
     "unconditional": false,
     "names_shipping_functions": [
      "group_sorted_decorated_aux"
     ],
     "names_declarative_relations": [
      "group_sorted_inv",
      "sorted_kv_desc"
     ],
     "declarative_relations_from": [
      "RDF.Indexed.Completeness"
     ]
    },
    {
     "name": "lemma_slt_lookup_complete",
     "proved_in": "RDF.Indexed.Completeness",
     "file": "formal/fstar/RDF.Indexed.Completeness.fst",
     "line": 473,
     "unconditional": false,
     "names_shipping_functions": [
      "bucket_lookup",
      "sorted_list_to_tree_fuel"
     ],
     "names_declarative_relations": [
      "sorted_kv"
     ],
     "declarative_relations_from": [
      "RDF.Indexed.Completeness"
     ]
    },
    {
     "name": "lemma_subject_key_sep_free",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 96,
     "unconditional": false,
     "names_shipping_functions": [
      "subject_to_key"
     ],
     "names_declarative_relations": [
      "str_sep_free",
      "subj_label_sep_free"
     ],
     "declarative_relations_from": [
      "RDF.Indexed.KeyInjectivity"
     ]
    },
    {
     "name": "sp_key_injective_one_sided",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 146,
     "unconditional": false,
     "names_shipping_functions": [
      "sp_key"
     ],
     "names_declarative_relations": [
      "str_sep_free",
      "subj_label_sep_free"
     ],
     "declarative_relations_from": [
      "RDF.Indexed.KeyInjectivity"
     ]
    },
    {
     "name": "po_key_injective_one_sided",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 430,
     "unconditional": false,
     "names_shipping_functions": [
      "po_key"
     ],
     "names_declarative_relations": [
      "str_sep_free",
      "subj_label_sep_free"
     ],
     "declarative_relations_from": [
      "RDF.Indexed.KeyInjectivity"
     ]
    },
    {
     "name": "lemma_triple_term_prefix_sep_free",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 773,
     "unconditional": false,
     "names_shipping_functions": [
      "subject_to_key"
     ],
     "names_declarative_relations": [
      "str_sep_free"
     ],
     "declarative_relations_from": [
      "RDF.Indexed.KeyInjectivity"
     ]
    }
   ],
   "w3c_refinement_theorems": [
    {
     "name": "lemma_find_objects_indexed_sp_elim",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 814,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed"
     ],
     "names_declarative_relations": [
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_scm_eqc2_emission_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 1124,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "owl_equivalentClass",
      "rdfs_subClassOf",
      "term_is_iri"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "scm_eqc2_derives"
     ]
    },
    {
     "name": "lemma_scm_eqp2_emission_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 1699,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "owl_equivalentProperty",
      "rdfs_subPropertyOf",
      "term_is_iri"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "scm_eqp2_derives"
     ]
    },
    {
     "name": "lemma_find_subjects_indexed_wf",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4023,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed"
     ],
     "names_declarative_relations": [
      "graph_literal_match_exact",
      "ig_wf_po",
      "ig_wf_pred"
     ]
    },
    {
     "name": "lemma_find_subjects_indexed_wf_subj",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4196,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "ig_wf_po"
     ]
    },
    {
     "name": "lemma_cls_hv1_row_intro",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4247,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cls_hv1_derives",
      "ig_wf_po"
     ]
    },
    {
     "name": "lemma_cls_hv1_members_fold",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4282,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_cls_hv1_emit",
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cls_hv1_licensed",
      "ig_wf_po"
     ]
    },
    {
     "name": "lemma_cls_hv1_mid_step",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4313,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "owl_cls_hv1_mid",
      "owl_hasValue_iri",
      "owl_onProperty_iri"
     ],
     "names_declarative_relations": [
      "cls_hv1_licensed",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_find_subjects_indexed_wf_approx",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4430,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "rdf_term_eq"
     ],
     "names_declarative_relations": [
      "ig_wf_po",
      "ig_wf_pred"
     ]
    },
    {
     "name": "lemma_prp_spo2_row_intro",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4767,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "owl_propertyChainAxiom"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "owl_list_denotes",
      "prp_spo2_derives"
     ]
    },
    {
     "name": "lemma_cls_avf_row_intro",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4931,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "find_subjects_indexed",
      "owl_allValuesFrom_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cls_avf_derives",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_cls_avf_member_step",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4979,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_allValuesFrom_iri",
      "owl_cls_avf1_member",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cls_avf_licensed",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_cls_avf_prop_step",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 5014,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "owl_allValuesFrom_iri",
      "owl_cls_avf1_prop",
      "owl_onProperty_iri"
     ],
     "names_declarative_relations": [
      "cls_avf_licensed",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_cls_hv1_witness_holds",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3116,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cond_hasvalue",
      "holds_all",
      "ig_wf_po",
      "triple_holds"
     ]
    },
    {
     "name": "lemma_cls_hv1_members_fold_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3151,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_cls_hv1_emit",
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cond_hasvalue",
      "holds_all",
      "ig_wf_po"
     ]
    },
    {
     "name": "lemma_cls_hv1_mid_step_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3184,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "owl_cls_hv1_mid",
      "owl_hasValue_iri",
      "owl_onProperty_iri"
     ],
     "names_declarative_relations": [
      "cond_hasvalue",
      "holds_all",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_cls_hv2_witness_holds",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3286,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cond_hasvalue",
      "cond_literal_term_eq_respecting",
      "holds_all",
      "ig_wf_po",
      "ig_wf_pred",
      "triple_holds"
     ]
    },
    {
     "name": "lemma_cls_avf_witness_holds",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3441,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "find_subjects_indexed",
      "owl_allValuesFrom_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term",
      "term_to_subject"
     ],
     "names_declarative_relations": [
      "cond_allvaluesfrom",
      "holds_all",
      "ig_wf_po",
      "ig_wf_sp",
      "triple_holds"
     ]
    },
    {
     "name": "lemma_cls_avf_member_fold_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3492,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "find_subjects_indexed",
      "owl_allValuesFrom_iri",
      "owl_cls_avf1_emit",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cond_allvaluesfrom",
      "holds_all",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_cls_avf_prop_step_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3530,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "owl_allValuesFrom_iri",
      "owl_cls_avf1_prop",
      "owl_onProperty_iri"
     ],
     "names_declarative_relations": [
      "cond_allvaluesfrom",
      "holds_all",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_prp_spo2_witness_holds",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3630,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "owl_propertyChainAxiom",
      "term_to_subject"
     ],
     "names_declarative_relations": [
      "cond_chain2_compose",
      "holds_all",
      "ig_wf_sp",
      "seq_is",
      "triple_holds"
     ]
    },
    {
     "name": "rdfs_rule_domain_entailed",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3776,
     "unconditional": true,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain"
     ],
     "names_declarative_relations": [
      "pilot_entails"
     ]
    },
    {
     "name": "rdfs_rule_range_entailed",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3797,
     "unconditional": true,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_range"
     ],
     "names_declarative_relations": [
      "pilot_entails"
     ]
    },
    {
     "name": "owl_rule_sameAs_symmetry_entailed",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3818,
     "unconditional": true,
     "names_shipping_functions": [
      "build_indexed",
      "owl_rule_sameAs_symmetry"
     ],
     "names_declarative_relations": [
      "pilot_entails"
     ]
    },
    {
     "name": "owl_rule_cls_oneof_entailed",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3845,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "owl_rule_cls_oneof"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "pilot_entails"
     ]
    },
    {
     "name": "lemma_closure_chain_wf_step",
     "proved_in": "RDF.Entailment.RDFS.ChainWf",
     "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
     "line": 339,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed"
     ],
     "names_declarative_relations": [
      "graph_sep_free",
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_rdfs_rule_subPropertyOf_clean",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 558,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "lemma_rdfs_rule_domain_clean",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 579,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "lemma_rdfs_rule_range_clean",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 600,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_range"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "lemma_rdfs_rule_subClassOf_clean",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 624,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subClassOf"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "lemma_rdfs_rule_subClassOf_trans_clean",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 694,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subClassOf_trans"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "lemma_rdfs_rule_subPropertyOf_trans_clean",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 716,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subPropertyOf_trans"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "rdfs_closure_step_sound",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 679,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_closure_step"
     ],
     "names_declarative_relations": [
      "holds_all",
      "ig_wf_sp",
      "rdfs_conditions"
     ]
    },
    {
     "name": "lemma_find_objects_elim",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 453,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed"
     ],
     "names_declarative_relations": [
      "ig_wf_sp"
     ]
    },
    {
     "name": "rs2_rows_complete_at_build_indexed",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 1216,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "is_typed_as",
      "rdf_type",
      "rdfs_Class",
      "rdfs_Datatype",
      "rdfs_Literal",
      "rdfs_Resource",
      "rdfs_rule_class_subclass_resource",
      "rdfs_rule_datatype_subclass_literal",
      "rdfs_rule_recognized_datatypes",
      "rdfs_rule_resource_object",
      "rdfs_rule_resource_subject",
      "rdfs_subClassOf",
      "recognized_datatypes",
      "term_to_subject"
     ],
     "names_declarative_relations": [
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_rho_df_step_sound",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 425,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rho_df_closure_step"
     ],
     "names_declarative_relations": [
      "holds_all",
      "ig_wf_sp",
      "rho_df_conditions"
     ]
    },
    {
     "name": "rdfs_rule_domain_reaches2",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 656,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "is_subgraph",
      "rdfs2_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "rdfs_rule_domain_reaches",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 752,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "rdfs2_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "rdfs_rule_range_reaches2",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 772,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_range"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "is_subgraph",
      "rdfs3_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "rdfs_rule_range_reaches",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 876,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_range"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "rdfs3_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "rdfs_rule_subPropertyOf_reaches2",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1010,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "is_subgraph",
      "rdfs7_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "rdfs_rule_subPropertyOf_reaches",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1097,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "rdfs7_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "rdfs_rule_subClassOf_trans_reaches2",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1132,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subClassOf_trans"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "is_subgraph",
      "rdfs11_derives"
     ]
    },
    {
     "name": "rdfs_rule_subClassOf_trans_reaches",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1205,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subClassOf_trans"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "rdfs11_derives"
     ]
    },
    {
     "name": "rdfs_rule_subPropertyOf_trans_reaches2",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1213,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subPropertyOf_trans"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "is_subgraph",
      "rdfs5_derives"
     ]
    },
    {
     "name": "rdfs_rule_subPropertyOf_trans_reaches",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1276,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subPropertyOf_trans"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "rdfs5_derives"
     ]
    },
    {
     "name": "rdfs_rule_subClassOf_reaches_iri2",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1311,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "i_rdf_type",
      "i_rdfs_subClassOf",
      "rdfs_rule_subClassOf"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "is_subgraph",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "rdfs_rule_subClassOf_reaches_iri",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1409,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "i_rdf_type",
      "i_rdfs_subClassOf",
      "rdfs_rule_subClassOf"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "lemma_f1_bad_triple_derived",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1477,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "f1_bad_triple",
      "f1_witness",
      "i_rdfs_subPropertyOf",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "ig_wf_sp"
     ]
    },
    {
     "name": "rho_df_frag_preservation_fails",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1504,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "f1_bad_triple",
      "f1_witness",
      "i_rdfs_subPropertyOf",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "rho_df_frag_graph",
      "rho_df_frag_triple"
     ]
    },
    {
     "name": "lemma_c_in_g1",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1670,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "is_subgraph"
     ]
    },
    {
     "name": "lemma_c_in_g2",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1677,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "is_subgraph"
     ]
    },
    {
     "name": "lemma_c_in_g3",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1686,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain",
      "rdfs_rule_range",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "is_subgraph"
     ]
    },
    {
     "name": "lemma_c_in_g4",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1696,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain",
      "rdfs_rule_range",
      "rdfs_rule_subClassOf",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "is_subgraph"
     ]
    },
    {
     "name": "lemma_c_in_g5",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1707,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain",
      "rdfs_rule_range",
      "rdfs_rule_subClassOf",
      "rdfs_rule_subClassOf_trans",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "is_subgraph"
     ]
    },
    {
     "name": "lemma_rho_df_closed_row_domain",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1729,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "no_dup_keys",
      "rdfs2_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "lemma_rho_df_closed_row_range",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1744,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "no_dup_keys",
      "rdfs3_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "lemma_rho_df_closed_row_subPropertyOf",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1765,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "no_dup_keys",
      "rdfs7_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "lemma_rho_df_closed_row_subClassOf_trans",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1778,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "no_dup_keys",
      "rdfs11_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "lemma_rho_df_closed_row_subPropertyOf_trans",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1794,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "no_dup_keys",
      "rdfs5_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "lemma_rho_df_closed_row_subClassOf",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1813,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "no_dup_keys",
      "rdfs9_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "rho_df_closure_closed",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1858,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "graph_len",
      "rho_df_closure",
      "rho_df_closure_step",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "no_dup_keys",
      "rho_df_closed",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "rho_df_closure_decides",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1905,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "graph_len",
      "rho_df_closure",
      "rho_df_closure_step",
      "rho_df_closure_step_pre_dedup"
     ],
     "names_declarative_relations": [
      "graph_tt_free",
      "ig_wf_sp",
      "no_dup_keys",
      "rho_df_entails",
      "rho_df_frag_graph",
      "simple_entailment_spec"
     ]
    },
    {
     "name": "lemma_build_indexed_wf_sp",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 187,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed"
     ],
     "names_declarative_relations": [
      "graph_sp_sep_free",
      "ig_wf_sp"
     ]
    },
    {
     "name": "theorem_wf_sp_nonempty_instance",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 259,
     "unconditional": true,
     "names_shipping_functions": [
      "build_indexed"
     ],
     "names_declarative_relations": [
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_build_indexed_wf_subj",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 275,
     "unconditional": true,
     "names_shipping_functions": [
      "build_indexed"
     ],
     "names_declarative_relations": [
      "ig_wf_subj"
     ]
    },
    {
     "name": "lemma_build_indexed_wf_obj",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 351,
     "unconditional": true,
     "names_shipping_functions": [
      "build_indexed"
     ],
     "names_declarative_relations": [
      "ig_wf_obj"
     ]
    },
    {
     "name": "lemma_build_indexed_wf_po",
     "proved_in": "RDF.Indexed.KeyInjectivity",
     "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
     "line": 468,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed"
     ],
     "names_declarative_relations": [
      "graph_po_sep_free",
      "ig_wf_po"
     ]
    },
    {
     "name": "theorem_ig_wf_pred_witness",
     "proved_in": "RDF.Semantics.HypothesisWitness",
     "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
     "line": 504,
     "unconditional": true,
     "names_shipping_functions": [
      "bucket_lookup"
     ],
     "names_declarative_relations": [
      "ig_wf_pred"
     ]
    },
    {
     "name": "theorem_ig_wf_sp_satisfiable_degenerately",
     "proved_in": "RDF.Semantics.HypothesisWitness",
     "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
     "line": 570,
     "unconditional": true,
     "names_shipping_functions": [
      "bucket_lookup",
      "sp_key"
     ],
     "names_declarative_relations": [
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_ig_wf_sp_of_empty",
     "proved_in": "RDF.Semantics.HypothesisWitness",
     "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
     "line": 644,
     "unconditional": true,
     "names_shipping_functions": [
      "build_indexed"
     ],
     "names_declarative_relations": [
      "ig_wf_sp"
     ]
    },
    {
     "name": "theorem_closure_chain_wf_n0_of_empty",
     "proved_in": "RDF.Semantics.HypothesisWitness",
     "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
     "line": 648,
     "unconditional": true,
     "names_shipping_functions": [
      "build_indexed"
     ],
     "names_declarative_relations": [
      "ig_wf_sp"
     ]
    }
   ],
   "assurance_tier": "w3c-refinement",
   "suites": []
  },
  {
   "module": "RDF.Indexed.Completeness",
   "files": [
    "formal/fstar/RDF.Indexed.Completeness.fst"
   ],
   "loc": 652,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "not-in-build-list",
   "extraction_oracle_available": false,
   "extracted_ml": null,
   "in_build_module_list": false,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 5,
   "unclassified_definition_count": 1,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 18,
   "local_refinement_lemma_names": [
    "lemma_key_order_cmp_zero_iff_eq",
    "lemma_key_order_cmp_antisym",
    "lemma_key_order_cmp_trans",
    "lemma_key_order_cmp_trans_le",
    "lemma_dkey_is_key_order_cmp",
    "lemma_partition_pred_memP",
    "lemma_partition_pred_memP_forall",
    "lemma_sorted_pairs_append",
    "lemma_group_exists",
    "lemma_forall_lt_trans",
    "lemma_rev_cons",
    "lemma_sorted_kv_snoc",
    "lemma_rev_desc_to_asc",
    "lemma_sorted_kv_append",
    "lemma_take_prefix_acc_append",
    "lemma_take_prefix_append",
    "lemma_take_prefix_acc_length",
    "lemma_take_prefix_length"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "unclassified",
   "suites": []
  },
  {
   "module": "RDF.Indexed.KeyInjectivity",
   "files": [
    "formal/fstar/RDF.Indexed.KeyInjectivity.fst"
   ],
   "loc": 964,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 8,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 10,
   "local_refinement_lemma_names": [
    "lemma_count_sep_append",
    "lemma_sep_split_unique",
    "lemma_subject_to_key_injective",
    "lemma_count_sep_b_eq",
    "lemma_graph_sp_sep_free_b_sound",
    "lemma_term_to_key_opt_injective",
    "lemma_literal_sep_free_b_sound",
    "lemma_literal_prefix_sep_free",
    "lemma_lit_key_dir_part_injective",
    "lemma_lit_key_lang_part_injective"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "specification-and-proof",
   "suites": []
  },
  {
   "module": "RDF.Indexed.StringOrder",
   "files": [
    "formal/fstar/RDF.Indexed.StringOrder.fsti"
   ],
   "loc": 46,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "not-in-build-list",
   "extraction_oracle_available": false,
   "extracted_ml": null,
   "in_build_module_list": false,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 3,
   "local_refinement_lemma_names": [
    "string_compare_zero_iff_eq",
    "string_compare_antisym",
    "string_compare_trans"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "unclassified",
   "suites": []
  },
  {
   "module": "RDF.List.Helpers",
   "files": [
    "formal/fstar/RDF.List.Helpers.fst"
   ],
   "loc": 196,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_List_Helpers.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 5,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 6,
   "local_refinement_lemma_names": [
    "lemma_append_aux_eq",
    "lemma_append_tr_eq",
    "lemma_rev_rev_app",
    "lemma_concatMap_aux_eq",
    "lemma_concatMap_tr_eq",
    "lemma_assoc_tr_eq"
   ],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_eval_bgp_store_unfold",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1018,
     "unconditional": true,
     "names_shipping_functions": [
      "choose_best_tp",
      "concatMap_tr",
      "eval_bgp_store_from_mu_fuel",
      "eval_single_tp_store"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [
    {
     "name": "lemma_assoc_tr_congr",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 479,
     "unconditional": false,
     "names_shipping_functions": [
      "assoc_tr"
     ],
     "names_declarative_relations": [
      "smap_eq"
     ]
    }
   ],
   "assurance_tier": "w3c-refinement",
   "suites": [
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDF.NQuads.Serialize",
   "files": [
    "formal/fstar/RDF.NQuads.Serialize.fst"
   ],
   "loc": 315,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_NQuads_Serialize.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 23,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "checkpoint_a_closed_triple_round_trip",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 612,
     "unconditional": true,
     "names_shipping_functions": [
      "nq_line_for_triple_default_graph",
      "parse_triple"
     ]
    },
    {
     "name": "lemma_term_iri_round_trip_build_string",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 875,
     "unconditional": false,
     "names_shipping_functions": [
      "is_iri_body_char",
      "nq_term_to_string",
      "parse_object"
     ]
    },
    {
     "name": "lemma_term_iri_round_trip",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 952,
     "unconditional": false,
     "names_shipping_functions": [
      "is_iri_body_char",
      "nq_term_to_string",
      "parse_object"
     ]
    },
    {
     "name": "lemma_parse_subject_iri_round_trip_build_string",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1052,
     "unconditional": false,
     "names_shipping_functions": [
      "is_iri_body_char",
      "nq_subject_to_string",
      "parse_subject"
     ]
    },
    {
     "name": "lemma_subject_iri_round_trip",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1072,
     "unconditional": false,
     "names_shipping_functions": [
      "is_iri_body_char",
      "nq_subject_to_string",
      "parse_subject"
     ]
    },
    {
     "name": "lemma_term_iri_round_trip_build_string_utf8",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1464,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "is_iri_body_char",
      "nq_term_to_string",
      "parse_object"
     ]
    },
    {
     "name": "lemma_term_iri_round_trip_utf8",
     "proved_in": "RDF.NTriples.RoundTrip",
     "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
     "line": 1493,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_length",
      "is_iri_body_char",
      "nq_term_to_string",
      "parse_object"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": [
    {
     "suite": "local-serializer-unicode",
     "how": "direct-trigger"
    },
    {
     "suite": "rdf-n-quads",
     "how": "direct-trigger"
    },
    {
     "suite": "rdfc10",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDF.NQuads.Streaming",
   "files": [
    "formal/fstar/RDF.NQuads.Streaming.fst"
   ],
   "loc": 3439,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "not-in-build-list",
   "extraction_oracle_available": false,
   "extracted_ml": null,
   "in_build_module_list": false,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 8,
   "unclassified_definition_count": 104,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 34,
   "local_refinement_lemma_names": [
    "cong_string_of_list",
    "split_lines_acc_reconstruct",
    "split_lines_acc_pending_no_nl",
    "split_complete_lines_reconstruct",
    "split_complete_lines_carry_no_nl",
    "split_lines_acc_no_nl",
    "split_complete_lines_no_newline",
    "split_complete_lines_extend_carry",
    "split_lines_acc_ends_in_newline",
    "split_complete_lines_ends_in_newline",
    "empty_string_concat_left",
    "empty_string_concat_right",
    "theorem_stream_eq_batch_single_chunk_no_newline",
    "theorem_stream_eq_batch_single_chunk_ends_in_newline",
    "theorem_stream_eq_batch_single_chunk",
    "string_concat_assoc",
    "theorem_stream_eq_batch",
    "lw_pos_shift",
    "lw_end_shift",
    "lw_wf_extend_right_blank",
    "lw_wf_extend_right_comment",
    "lw_wf_extend_right_quadfail",
    "lw_wf_extend_right_quadok",
    "lw_wf_extend_right",
    "chain_wf_extend_right",
    "chain_end_shift",
    "chain_wf_append",
    "chain_ds_fold_append",
    "lw_ds_step_extend_right",
    "fold_nquads_acc_empty",
    "theorem_stream_consume_single_chunk_no_newline",
    "theorem_stream_consume_single_chunk_ends_in_newline",
    "theorem_stream_consume_single_chunk",
    "theorem_stream_consume_eq_batch"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "unclassified",
   "suites": []
  },
  {
   "module": "RDF.NTriples.RoundTrip",
   "files": [
    "formal/fstar/RDF.NTriples.RoundTrip.fst"
   ],
   "loc": 1505,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "not-in-build-list",
   "extraction_oracle_available": false,
   "extracted_ml": null,
   "in_build_module_list": false,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 30,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 12,
   "local_refinement_lemma_names": [
    "lemma_nq_subject_to_string_same_shape_iri",
    "lemma_nq_subject_to_string_same_shape_bnode",
    "lemma_nq_subject_to_string_cross_shape",
    "lemma_nq_subject_to_string_injective",
    "lemma_nq_term_to_string_same_shape_iri",
    "lemma_nq_term_to_string_same_shape_bnode",
    "lemma_nq_term_to_string_cross_shape",
    "lemma_nq_term_to_string_injective",
    "lemma_nq_objects_injective_pointwise",
    "nth_byte_index_iri",
    "lemma_list_of_build_string_general",
    "lemma_string_is_build_string_general"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "unclassified",
   "suites": []
  },
  {
   "module": "RDF.Pretty",
   "files": [
    "formal/fstar/RDF.Pretty.fst"
   ],
   "loc": 236,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Pretty.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 17,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "RDF.Semantics.HypothesisWitness",
   "files": [
    "formal/fstar/RDF.Semantics.HypothesisWitness.fst"
   ],
   "loc": 675,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 2,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 32,
   "local_refinement_lemma_names": [
    "lemma_trivial_rdf_conditions",
    "lemma_trivial_rdfs_conditions",
    "lemma_trivial_owl_rl_pilot_conditions",
    "theorem_rdf_conditions_satisfiable",
    "theorem_rdfs_conditions_satisfiable",
    "theorem_owl_rl_pilot_conditions_satisfiable",
    "lemma_memP_obj_is_iri",
    "lemma_sep_denot_iri",
    "lemma_sep_holds_of_iri_object",
    "lemma_sep_rdf_axioms",
    "lemma_sep_rdfs_axioms",
    "lemma_separating_rdf_conditions",
    "lemma_separating_rdfs_conditions",
    "lemma_separating_rejects",
    "lemma_everything_satisfies_empty",
    "theorem_rdfs_conditions_nontrivially_satisfiable",
    "theorem_rdf_conditions_nontrivially_satisfiable",
    "theorem_rdfs_entails_not_everything",
    "theorem_rdf_entails_not_everything",
    "lemma_owl_separating_conditions",
    "lemma_owl_separating_rejects",
    "theorem_owl_rl_pilot_conditions_nontrivially_satisfiable",
    "theorem_pilot_entails_not_everything",
    "theorem_graph_exact_witness",
    "theorem_graph_exact_not_universal",
    "theorem_binding_exact_witness",
    "theorem_leq_hypotheses_satisfiable",
    "theorem_bnd_total_satisfiable",
    "theorem_smap_exact_witness",
    "theorem_ig_wf_sp_not_universal",
    "theorem_sp_key_not_injective",
    "theorem_closure_step_of_empty_is_nonempty"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "specification-and-proof",
   "suites": []
  },
  {
   "module": "RDF.Store.Capabilities",
   "files": [
    "formal/fstar/RDF.Store.Capabilities.fst"
   ],
   "loc": 505,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Store_Capabilities.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 17,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "RDF.Store.Capabilities.Cottas",
   "files": [
    "formal/fstar/RDF.Store.Capabilities.Cottas.fst"
   ],
   "loc": 125,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Store_Capabilities_Cottas.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 1,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "RDF.Store.Capabilities.Delta",
   "files": [
    "formal/fstar/RDF.Store.Capabilities.Delta.fst"
   ],
   "loc": 139,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Store_Capabilities_Delta.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 2,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "RDF.Store.Columnar.DeltaLog",
   "files": [
    "formal/fstar/RDF.Store.Columnar.DeltaLog.fst"
   ],
   "loc": 1340,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Store_Columnar_DeltaLog.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 71,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 5,
   "assume_val_names": [
    "delta_log_append",
    "delta_log_fsync",
    "delta_log_read_all",
    "atomic_rename",
    "fsync_dir"
   ],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 5,
   "local_refinement_lemma_names": [
    "lemma_term_ok_tripleterm",
    "lemma_write_u64_le_length",
    "lemma_parse_u32_le_length",
    "lemma_parse_n_bytes_length",
    "lemma_parse_delta_batch_shrinks"
   ],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_u8_roundtrip",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 124,
     "unconditional": true,
     "names_shipping_functions": [
      "parse_u8",
      "write_u8"
     ]
    },
    {
     "name": "lemma_lstring_roundtrip",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 161,
     "unconditional": false,
     "names_shipping_functions": [
      "field_byte_len",
      "parse_lstring",
      "serialize_lstring"
     ]
    },
    {
     "name": "lemma_lstring_length",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 467,
     "unconditional": true,
     "names_shipping_functions": [
      "field_byte_len",
      "max_field_chars",
      "serialize_lstring"
     ]
    },
    {
     "name": "lemma_term_length",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 474,
     "unconditional": true,
     "names_shipping_functions": [
      "max_field_chars",
      "serialize_term",
      "term_ok"
     ]
    },
    {
     "name": "lemma_term_roundtrip",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 520,
     "unconditional": false,
     "names_shipping_functions": [
      "parse_term",
      "serialize_term",
      "term_ok"
     ]
    },
    {
     "name": "lemma_subject_roundtrip",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 563,
     "unconditional": false,
     "names_shipping_functions": [
      "parse_subject",
      "serialize_subject",
      "subject_ok"
     ]
    },
    {
     "name": "lemma_triple_roundtrip",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 575,
     "unconditional": false,
     "names_shipping_functions": [
      "parse_triple",
      "serialize_triple",
      "triple_ok"
     ]
    },
    {
     "name": "lemma_graph_opt_roundtrip",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 589,
     "unconditional": false,
     "names_shipping_functions": [
      "graph_opt_ok",
      "parse_graph_opt",
      "serialize_graph_opt"
     ]
    },
    {
     "name": "lemma_delta_entry_payload_roundtrip",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 601,
     "unconditional": false,
     "names_shipping_functions": [
      "delta_entry_ok",
      "parse_delta_entry_payload",
      "serialize_delta_entry_payload"
     ]
    },
    {
     "name": "lemma_subject_length_bound",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 655,
     "unconditional": true,
     "names_shipping_functions": [
      "max_field_chars",
      "serialize_subject",
      "subject_ok"
     ]
    },
    {
     "name": "lemma_graph_opt_length_bound",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 665,
     "unconditional": true,
     "names_shipping_functions": [
      "graph_opt_ok",
      "max_field_chars",
      "serialize_graph_opt"
     ]
    },
    {
     "name": "lemma_triple_length_bound",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 674,
     "unconditional": true,
     "names_shipping_functions": [
      "max_field_chars",
      "serialize_triple",
      "triple_ok"
     ]
    },
    {
     "name": "lemma_delta_entry_payload_length",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 687,
     "unconditional": true,
     "names_shipping_functions": [
      "delta_entry_ok",
      "serialize_delta_entry_payload"
     ]
    },
    {
     "name": "lemma_delta_entry_frame_ok",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 732,
     "unconditional": true,
     "names_shipping_functions": [
      "delta_entry_frame_ok",
      "delta_entry_ok"
     ]
    },
    {
     "name": "lemma_delta_entry_roundtrip",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 742,
     "unconditional": false,
     "names_shipping_functions": [
      "delta_entry_ok",
      "parse_delta_entry",
      "serialize_delta_entry"
     ]
    },
    {
     "name": "lemma_ops_roundtrip",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 921,
     "unconditional": false,
     "names_shipping_functions": [
      "delta_batch_ops_ok",
      "parse_n_delta_entries",
      "serialize_ops"
     ]
    },
    {
     "name": "lemma_batch_body_length",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 945,
     "unconditional": true,
     "names_shipping_functions": [
      "delta_batch_ok",
      "serialize_delta_batch_body",
      "serialize_ops"
     ]
    },
    {
     "name": "lemma_delta_batch_frame_ok",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 957,
     "unconditional": true,
     "names_shipping_functions": [
      "delta_batch_ok",
      "serialize_delta_batch_body"
     ]
    },
    {
     "name": "lemma_delta_batch_body_roundtrip",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 961,
     "unconditional": false,
     "names_shipping_functions": [
      "delta_batch_ok",
      "parse_delta_batch_body",
      "serialize_delta_batch_body"
     ]
    },
    {
     "name": "lemma_delta_batch_roundtrip",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 978,
     "unconditional": false,
     "names_shipping_functions": [
      "delta_batch_ok",
      "parse_delta_batch",
      "serialize_delta_batch"
     ]
    },
    {
     "name": "lemma_log_header_roundtrip",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 1042,
     "unconditional": true,
     "names_shipping_functions": [
      "parse_log_header",
      "serialize_log_header"
     ]
    },
    {
     "name": "lemma_parse_log_batches_roundtrip",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 1142,
     "unconditional": false,
     "names_shipping_functions": [
      "delta_batches_ok",
      "parse_log_batches",
      "serialize_delta_batches"
     ]
    },
    {
     "name": "lemma_log_roundtrip",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 1154,
     "unconditional": false,
     "names_shipping_functions": [
      "delta_batches_ok",
      "parse_log",
      "serialize_log"
     ]
    },
    {
     "name": "lemma_compacted_epoch_roundtrip",
     "proved_in": "RDF.Store.Columnar.DeltaLog",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
     "line": 1292,
     "unconditional": true,
     "names_shipping_functions": [
      "parse_compacted_epoch",
      "serialize_compacted_epoch"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": []
  },
  {
   "module": "RDF.Store.Columnar.DeltaMerge",
   "files": [
    "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst"
   ],
   "loc": 935,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Store_Columnar_DeltaMerge.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 24,
   "declarative_relation_count": 1,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 24,
   "local_refinement_lemma_names": [
    "lemma_subject_eq_symm",
    "lemma_subject_eq_trans",
    "lemma_subject_eq_congruent",
    "lemma_lang_tag_eq_symm",
    "lemma_lang_tag_eq_trans",
    "lemma_lang_tag_option_eq_symm",
    "lemma_lang_tag_option_eq_trans",
    "lemma_literal_eq_symm",
    "lemma_literal_eq_trans",
    "lemma_rdf_term_eq_symm",
    "lemma_rdf_term_eq_trans",
    "lemma_rdf_term_eq_congruent",
    "lemma_bound_matches_congruent",
    "lemma_mem_triple_rev_acc",
    "lemma_mem_triple_rev",
    "lemma_mem_triple_append",
    "lemma_triple_eq_congruent",
    "lemma_mem_triple_congruent",
    "lemma_mem_triple_filter_tombstone",
    "lemma_mem_filter_tombstoned",
    "lemma_triple_eq_symm",
    "lemma_mem_graph_add",
    "lemma_mem_graph_remove",
    "lemma_state_agrees_elim"
   ],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_mem_matches_bound_acc",
     "proved_in": "RDF.Store.Columnar.DeltaMerge",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
     "line": 384,
     "unconditional": true,
     "names_shipping_functions": [
      "bound_matches",
      "triple_matches_bound_acc"
     ]
    },
    {
     "name": "lemma_mem_triple_matches_bound",
     "proved_in": "RDF.Store.Columnar.DeltaMerge",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
     "line": 432,
     "unconditional": true,
     "names_shipping_functions": [
      "bound_matches",
      "triple_matches_bound"
     ]
    },
    {
     "name": "lemma_merge_on_read_matches_apply_entries",
     "proved_in": "RDF.Store.Columnar.DeltaMerge",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
     "line": 630,
     "unconditional": true,
     "names_shipping_functions": [
      "apply_entries_ref",
      "delta_resolved_empty",
      "fold_entries_for_graph",
      "merge_on_read",
      "triple_matches_bound"
     ]
    }
   ],
   "internal_refinement_theorems": [
    {
     "name": "lemma_state_agrees_init",
     "proved_in": "RDF.Store.Columnar.DeltaMerge",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
     "line": 539,
     "unconditional": true,
     "names_shipping_functions": [
      "delta_resolved_empty"
     ],
     "names_declarative_relations": [
      "state_agrees"
     ],
     "declarative_relations_from": [
      "RDF.Store.Columnar.DeltaMerge"
     ]
    },
    {
     "name": "lemma_state_agrees_step",
     "proved_in": "RDF.Store.Columnar.DeltaMerge",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
     "line": 565,
     "unconditional": false,
     "names_shipping_functions": [
      "apply_entry_ref_step",
      "apply_entry_to_delta"
     ],
     "names_declarative_relations": [
      "state_agrees"
     ],
     "declarative_relations_from": [
      "RDF.Store.Columnar.DeltaMerge"
     ]
    },
    {
     "name": "lemma_apply_entries_state_agrees",
     "proved_in": "RDF.Store.Columnar.DeltaMerge",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
     "line": 601,
     "unconditional": false,
     "names_shipping_functions": [
      "apply_entries_ref",
      "fold_entries_for_graph"
     ],
     "names_declarative_relations": [
      "state_agrees"
     ],
     "declarative_relations_from": [
      "RDF.Store.Columnar.DeltaMerge"
     ]
    }
   ],
   "w3c_refinement_theorems": [],
   "assurance_tier": "internal-refinement",
   "suites": []
  },
  {
   "module": "RDF.Store.Columnar.OffsetIndex",
   "files": [
    "formal/fstar/RDF.Store.Columnar.OffsetIndex.fst"
   ],
   "loc": 409,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Store_Columnar_OffsetIndex.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 20,
   "declarative_relation_count": 1,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 2,
   "local_refinement_lemma_names": [
    "row_positions_for_opt_noinfo_when_handle_absent",
    "row_positions_for_opt_noinfo_when_pred_unbound"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [
    {
     "name": "row_positions_for_count_sound",
     "proved_in": "RDF.Store.Columnar.OffsetIndex",
     "file": "formal/fstar/RDF.Store.Columnar.OffsetIndex.fst",
     "line": 374,
     "unconditional": false,
     "names_shipping_functions": [
      "row_positions_for"
     ],
     "names_declarative_relations": [
      "offsets_built_correctly"
     ],
     "declarative_relations_from": [
      "RDF.Store.Columnar.OffsetIndex"
     ]
    }
   ],
   "w3c_refinement_theorems": [],
   "assurance_tier": "internal-refinement",
   "suites": []
  },
  {
   "module": "RDF.Store.Columnar.SubjectOffsetIndex",
   "files": [
    "formal/fstar/RDF.Store.Columnar.SubjectOffsetIndex.fst"
   ],
   "loc": 261,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Store_Columnar_SubjectOffsetIndex.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 14,
   "declarative_relation_count": 1,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 2,
   "local_refinement_lemma_names": [
    "range_for_subject_opt_noinfo_when_handle_absent",
    "range_for_subject_opt_noinfo_when_subject_unbound"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [
    {
     "name": "range_for_subject_count_sound",
     "proved_in": "RDF.Store.Columnar.SubjectOffsetIndex",
     "file": "formal/fstar/RDF.Store.Columnar.SubjectOffsetIndex.fst",
     "line": 230,
     "unconditional": false,
     "names_shipping_functions": [
      "range_for_subject",
      "subject_range_count"
     ],
     "names_declarative_relations": [
      "subject_offsets_built_correctly"
     ],
     "declarative_relations_from": [
      "RDF.Store.Columnar.SubjectOffsetIndex"
     ]
    }
   ],
   "w3c_refinement_theorems": [],
   "assurance_tier": "internal-refinement",
   "suites": []
  },
  {
   "module": "RDF.Store.Combine",
   "files": [
    "formal/fstar/RDF.Store.Combine.fst"
   ],
   "loc": 86,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Store_Combine.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 3,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "RDF.Store.LazyTermCache",
   "files": [
    "formal/fstar/RDF.Store.LazyTermCache.fst"
   ],
   "loc": 84,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Store_LazyTermCache.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 6,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 6,
   "assume_val_names": [
    "mk_lazy_term_cache",
    "lookup_by_id",
    "lookup_by_key",
    "is_populated",
    "size",
    "to_list"
   ],
   "assume_other_active": 1,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "RDF.Store.Loader",
   "files": [
    "formal/fstar/RDF.Store.Loader.fst"
   ],
   "loc": 119,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Store_Loader.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 6,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "RDF.Term",
   "files": [
    "formal/fstar/RDF.Term.fst",
    "formal/fstar/RDF.Term.fsti"
   ],
   "loc": 637,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Term.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 37,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 5,
   "local_refinement_lemma_names": [
    "lemma_literal_term_eq_refl",
    "lemma_literal_term_eq_identity",
    "lemma_subject_eq_refl",
    "lemma_literal_eq_refl",
    "lemma_rdf_term_eq_refl"
   ],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_parse_iri_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 454,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri",
      "parse_iri_raw",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_subject_iri_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 496,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri_raw",
      "parse_subject",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_object_iri_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 518,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri_raw",
      "parse_object",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_datatype_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1643,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_datatype",
      "parse_iri_raw",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_graph_label_iri_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1692,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_graph_label",
      "parse_iri_raw",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_opt_graph_label_iri_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 1714,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri_raw",
      "parse_opt_graph_label",
      "pws",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_nquad_iri_nograph_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2214,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri",
      "parse_iri_raw",
      "parse_nquad",
      "parse_object",
      "parse_subject",
      "pws",
      "scan_iri_end"
     ]
    },
    {
     "name": "lemma_parse_literal_datatype_shift",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2620,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "parse_datatype",
      "parse_literal",
      "parse_string_literal",
      "rdf_dir_lang_string",
      "rdf_lang_string"
     ]
    },
    {
     "name": "lemma_parse_nquad_shift_generic",
     "proved_in": "Parser.NTriples.Locality",
     "file": "formal/fstar/Parser.NTriples.Locality.fst",
     "line": 2800,
     "unconditional": false,
     "names_shipping_functions": [
      "fs_byte_index",
      "fs_byte_length",
      "is_iri",
      "parse_iri",
      "parse_nquad",
      "parse_object",
      "parse_opt_graph_label",
      "parse_subject",
      "pws"
     ]
    },
    {
     "name": "lemma_join_canon_term_eq",
     "proved_in": "RDF.Term",
     "file": "formal/fstar/RDF.Term.fsti",
     "line": 535,
     "unconditional": false,
     "names_shipping_functions": [
      "join_canon_term",
      "rdf_term_eq"
     ]
    },
    {
     "name": "theorem_sr2_witness_keys_now_agree",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1058,
     "unconditional": false,
     "names_shipping_functions": [
      "rdf_term_eq",
      "sm_compatible",
      "sm_join_key"
     ]
    },
    {
     "name": "theorem_join_key_no_finer_than_compatibility",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1076,
     "unconditional": false,
     "names_shipping_functions": [
      "rdf_term_eq",
      "sm_join_key"
     ]
    },
    {
     "name": "lemma_sm_submap_lookup",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 2277,
     "unconditional": false,
     "names_shipping_functions": [
      "rdf_term_eq",
      "sm_lookup",
      "sm_submap"
     ]
    },
    {
     "name": "lemma_ebv_langstring_agrees",
     "proved_in": "SPARQL11.Expression.Refinement",
     "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
     "line": 187,
     "unconditional": false,
     "names_shipping_functions": [
      "ebv",
      "ebv_checked",
      "rdf_lang_string"
     ]
    }
   ],
   "internal_refinement_theorems": [
    {
     "name": "lemma_rdf_term_eq_denot",
     "proved_in": "OWL.Semantics",
     "file": "formal/fstar/OWL.Semantics.fst",
     "line": 629,
     "unconditional": false,
     "names_shipping_functions": [
      "rdf_term_eq"
     ],
     "names_declarative_relations": [
      "cond_literal_term_eq_respecting"
     ],
     "declarative_relations_from": [
      "OWL.Semantics"
     ]
    },
    {
     "name": "lemma_rdf_term_eq_sound",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 501,
     "unconditional": false,
     "names_shipping_functions": [
      "rdf_term_eq"
     ],
     "names_declarative_relations": [
      "rho_df_object_ok"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness"
     ]
    }
   ],
   "w3c_refinement_theorems": [
    {
     "name": "lemma_find_subjects_indexed_wf_approx",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4430,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "rdf_term_eq"
     ],
     "names_declarative_relations": [
      "ig_wf_po",
      "ig_wf_pred"
     ]
    },
    {
     "name": "lemma_literal_eq_exact",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 66,
     "unconditional": false,
     "names_shipping_functions": [
      "literal_eq"
     ],
     "names_declarative_relations": [
      "lit_exact"
     ]
    },
    {
     "name": "lemma_rdf_term_eq_exact_identity",
     "proved_in": "RDF.Entailment.Simple.Refinement",
     "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
     "line": 88,
     "unconditional": false,
     "names_shipping_functions": [
      "rdf_term_eq"
     ],
     "names_declarative_relations": [
      "term_exact"
     ]
    }
   ],
   "assurance_tier": "w3c-refinement",
   "suites": []
  },
  {
   "module": "RDF.Triple",
   "files": [
    "formal/fstar/RDF.Triple.fst",
    "formal/fstar/RDF.Triple.fsti"
   ],
   "loc": 63,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Triple.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 1,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 1,
   "local_refinement_lemma_names": [
    "lemma_triple_eq_refl"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "local-lemmas-only",
   "suites": []
  },
  {
   "module": "RDF.Turtle.Serialize",
   "files": [
    "formal/fstar/RDF.Turtle.Serialize.fst"
   ],
   "loc": 503,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Turtle_Serialize.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 28,
   "declarative_relation_count": 1,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [
    {
     "name": "lemma_ts_abbreviate_iri_pname_safe",
     "proved_in": "RDF.Turtle.Serialize",
     "file": "formal/fstar/RDF.Turtle.Serialize.fst",
     "line": 142,
     "unconditional": true,
     "names_shipping_functions": [
      "ts_abbreviate_iri"
     ],
     "names_declarative_relations": [
      "compacts_to_pname_safe"
     ],
     "declarative_relations_from": [
      "RDF.Turtle.Serialize"
     ]
    }
   ],
   "w3c_refinement_theorems": [],
   "assurance_tier": "internal-refinement",
   "suites": [
    {
     "suite": "local-turtle-pretty",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDF.Vocabulary",
   "files": [
    "formal/fstar/RDF.Vocabulary.fst",
    "formal/fstar/RDF.Vocabulary.fsti"
   ],
   "loc": 232,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Vocabulary.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 51,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "RDF.Vocabulary.Axioms",
   "files": [
    "formal/fstar/RDF.Vocabulary.Axioms.fst"
   ],
   "loc": 259,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDF_Vocabulary_Axioms.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 78,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_rho_df_vocab_distinct",
     "proved_in": "RDF.Entailment.RDFS.Completeness",
     "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
     "line": 739,
     "unconditional": true,
     "names_shipping_functions": [
      "i_rdf_type",
      "i_rdfs_domain",
      "i_rdfs_range",
      "i_rdfs_subClassOf",
      "i_rdfs_subPropertyOf"
     ]
    },
    {
     "name": "lemma_vocab_agree",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 88,
     "unconditional": true,
     "names_shipping_functions": [
      "i_rdf_Property",
      "i_rdf_type",
      "i_rdfs_Class",
      "i_rdfs_ContainerMembershipProperty",
      "i_rdfs_domain",
      "i_rdfs_member",
      "i_rdfs_range",
      "i_rdfs_subClassOf",
      "i_rdfs_subPropertyOf",
      "rdf_Property",
      "rdf_type",
      "rdfs_Class",
      "rdfs_ContainerMembershipProperty",
      "rdfs_domain",
      "rdfs_member",
      "rdfs_range",
      "rdfs_subClassOf",
      "rdfs_subPropertyOf"
     ]
    },
    {
     "name": "lemma_vocab_agree_rs2",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 106,
     "unconditional": true,
     "names_shipping_functions": [
      "i_rdfs_Datatype",
      "i_rdfs_Literal",
      "i_rdfs_Resource",
      "rdfs_Datatype",
      "rdfs_Literal",
      "rdfs_Resource"
     ]
    }
   ],
   "internal_refinement_theorems": [
    {
     "name": "finite_rdf_axioms_sound",
     "proved_in": "RDF.Entailment.RDF.Spec",
     "file": "formal/fstar/RDF.Entailment.RDF.Spec.fst",
     "line": 247,
     "unconditional": false,
     "names_shipping_functions": [
      "rdf_axiomatic_triples"
     ],
     "names_declarative_relations": [
      "rdf_axiomatic"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDF.Spec"
     ]
    },
    {
     "name": "lemma_f1_witness_frag",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1464,
     "unconditional": false,
     "names_shipping_functions": [
      "f1_witness",
      "i_rdfs_subPropertyOf"
     ],
     "names_declarative_relations": [
      "rho_df_frag_graph"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness"
     ]
    }
   ],
   "w3c_refinement_theorems": [
    {
     "name": "lemma_selfloop_not_in_herbrand",
     "proved_in": "RDF.Entailment.RDFS.Completeness",
     "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
     "line": 763,
     "unconditional": false,
     "names_shipping_functions": [
      "i_rdfs_subClassOf"
     ],
     "names_declarative_relations": [
      "herb_iext"
     ]
    },
    {
     "name": "lemma_graph_clean_satisfiable",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 321,
     "unconditional": true,
     "names_shipping_functions": [
      "i_rdf_type",
      "i_rdfs_Class",
      "i_rdfs_Resource"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "rdfs_rule_subClassOf_reaches_iri2",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1311,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "i_rdf_type",
      "i_rdfs_subClassOf",
      "rdfs_rule_subClassOf"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "is_subgraph",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "rdfs_rule_subClassOf_reaches_iri",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1409,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "i_rdf_type",
      "i_rdfs_subClassOf",
      "rdfs_rule_subClassOf"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "lemma_f1_bad_triple_derived",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1477,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "f1_bad_triple",
      "f1_witness",
      "i_rdfs_subPropertyOf",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "ig_wf_sp"
     ]
    },
    {
     "name": "rho_df_frag_preservation_fails",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1504,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "f1_bad_triple",
      "f1_witness",
      "i_rdfs_subPropertyOf",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "rho_df_frag_graph",
      "rho_df_frag_triple"
     ]
    },
    {
     "name": "lemma_vocab_sep_free",
     "proved_in": "RDF.Entailment.RDFS.SepFree",
     "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
     "line": 118,
     "unconditional": true,
     "names_shipping_functions": [
      "i_rdf_Property",
      "i_rdf_type",
      "i_rdfs_Class",
      "i_rdfs_ContainerMembershipProperty",
      "i_rdfs_Datatype",
      "i_rdfs_Literal",
      "i_rdfs_Resource",
      "i_rdfs_domain",
      "i_rdfs_member",
      "i_rdfs_range",
      "i_rdfs_subClassOf",
      "i_rdfs_subPropertyOf"
     ],
     "names_declarative_relations": [
      "str_sep_free"
     ]
    },
    {
     "name": "lemma_axiomatic_tables_sep_free",
     "proved_in": "RDF.Entailment.RDFS.SepFree",
     "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
     "line": 477,
     "unconditional": true,
     "names_shipping_functions": [
      "container_membership_properties",
      "rdf_axiomatic_triples",
      "rdfs_axiomatic_triples"
     ],
     "names_declarative_relations": [
      "str_sep_free",
      "triple_sep_free"
     ]
    }
   ],
   "assurance_tier": "w3c-refinement",
   "suites": []
  },
  {
   "module": "RDFS.Closure",
   "files": [
    "formal/fstar/RDFS.Closure.fst",
    "formal/fstar/RDFS.Closure.fsti"
   ],
   "loc": 859,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDFS_Closure.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 68,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_vocab_symp_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 332,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_SymmetricProperty",
      "rdf_type"
     ]
    },
    {
     "name": "lemma_vocab_eqc_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 461,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_equivalentClass",
      "rdfs_subClassOf"
     ]
    },
    {
     "name": "lemma_vocab_eqp_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 560,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_equivalentProperty",
      "rdfs_subPropertyOf"
     ]
    },
    {
     "name": "lemma_vocab_trp_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 922,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_TransitiveProperty",
      "rdf_type"
     ]
    },
    {
     "name": "lemma_vocab_dom_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 1881,
     "unconditional": true,
     "names_shipping_functions": [
      "rdfs_domain",
      "rdfs_subClassOf"
     ]
    },
    {
     "name": "lemma_vocab_rng_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 2017,
     "unconditional": true,
     "names_shipping_functions": [
      "rdfs_range",
      "rdfs_subClassOf"
     ]
    },
    {
     "name": "lemma_vocab_cls_oo_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 2491,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_oneOf_iri",
      "rdf_type"
     ]
    },
    {
     "name": "lemma_vocab_cls_int_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 2630,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_intersectionOf_iri",
      "rdf_type"
     ]
    },
    {
     "name": "lemma_vocab_cls_uni_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 2863,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_unionOf_iri",
      "rdfs_subClassOf"
     ]
    },
    {
     "name": "lemma_vocab_fp_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 3767,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_FunctionalProperty",
      "rdf_type"
     ]
    },
    {
     "name": "lemma_vocab_ifp_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 3970,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_InverseFunctionalProperty",
      "rdf_type"
     ]
    },
    {
     "name": "lemma_vocab_hv_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4217,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type"
     ]
    },
    {
     "name": "lemma_vocab_avf_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4911,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_allValuesFrom_iri",
      "owl_onProperty_iri",
      "rdf_type"
     ]
    },
    {
     "name": "lemma_vocab_clash_agree",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 5169,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_disjointWith_iri",
      "owl_propertyDisjointWith",
      "rdf_type"
     ]
    },
    {
     "name": "lemma_step_is_dedup_of_pre_dedup",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 485,
     "unconditional": true,
     "names_shipping_functions": [
      "graph_dedup_sort",
      "rdfs_closure_step"
     ]
    },
    {
     "name": "lemma_vocab_agree",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 88,
     "unconditional": true,
     "names_shipping_functions": [
      "i_rdf_Property",
      "i_rdf_type",
      "i_rdfs_Class",
      "i_rdfs_ContainerMembershipProperty",
      "i_rdfs_domain",
      "i_rdfs_member",
      "i_rdfs_range",
      "i_rdfs_subClassOf",
      "i_rdfs_subPropertyOf",
      "rdf_Property",
      "rdf_type",
      "rdfs_Class",
      "rdfs_ContainerMembershipProperty",
      "rdfs_domain",
      "rdfs_member",
      "rdfs_range",
      "rdfs_subClassOf",
      "rdfs_subPropertyOf"
     ]
    },
    {
     "name": "lemma_vocab_agree_rs2",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 106,
     "unconditional": true,
     "names_shipping_functions": [
      "i_rdfs_Datatype",
      "i_rdfs_Literal",
      "i_rdfs_Resource",
      "rdfs_Datatype",
      "rdfs_Literal",
      "rdfs_Resource"
     ]
    },
    {
     "name": "lemma_class_typing_rdfs",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 1429,
     "unconditional": false,
     "names_shipping_functions": [
      "is_class_type_object_rdfs",
      "rdfs_Class"
     ]
    },
    {
     "name": "lemma_property_typing_rdfs",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 1438,
     "unconditional": false,
     "names_shipping_functions": [
      "is_property_type_object_rdfs",
      "rdf_Property"
     ]
    },
    {
     "name": "lemma_after_row1_pre_dedup",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1580,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subPropertyOf",
      "rho_df_closure_step_pre_dedup"
     ]
    },
    {
     "name": "lemma_after_row2_pre_dedup",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1594,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain",
      "rdfs_rule_subPropertyOf",
      "rho_df_closure_step_pre_dedup"
     ]
    },
    {
     "name": "lemma_after_row3_pre_dedup",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1607,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain",
      "rdfs_rule_range",
      "rdfs_rule_subPropertyOf",
      "rho_df_closure_step_pre_dedup"
     ]
    },
    {
     "name": "lemma_after_row4_pre_dedup",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1618,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain",
      "rdfs_rule_range",
      "rdfs_rule_subClassOf",
      "rdfs_rule_subPropertyOf",
      "rho_df_closure_step_pre_dedup"
     ]
    },
    {
     "name": "lemma_after_row5_pre_dedup",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1629,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain",
      "rdfs_rule_range",
      "rdfs_rule_subClassOf",
      "rdfs_rule_subClassOf_trans",
      "rdfs_rule_subPropertyOf",
      "rho_df_closure_step_pre_dedup"
     ]
    }
   ],
   "internal_refinement_theorems": [
    {
     "name": "lemma_step_extensive",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 1076,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_closure_step"
     ],
     "names_declarative_relations": [
      "no_dup_keys"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.FixedPoint"
     ]
    },
    {
     "name": "lemma_len_eq_saturated",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 1245,
     "unconditional": false,
     "names_shipping_functions": [
      "graph_len",
      "rdfs_closure_step"
     ],
     "names_declarative_relations": [
      "no_dup_keys",
      "step_saturated"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.FixedPoint"
     ]
    },
    {
     "name": "lemma_len_eq_saturated_gapB",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 1522,
     "unconditional": false,
     "names_shipping_functions": [
      "graph_len",
      "rdfs_closure_step"
     ],
     "names_declarative_relations": [
      "no_dup_keys",
      "step_saturated"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.FixedPoint"
     ]
    },
    {
     "name": "lemma_chain_shift",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 742,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_closure_step"
     ],
     "names_declarative_relations": [
      "closure_chain_wf"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.ModelTheory"
     ]
    },
    {
     "name": "rdfs_closure_entails",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 777,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_closure"
     ],
     "names_declarative_relations": [
      "closure_chain_wf",
      "rdfs_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.ModelTheory"
     ]
    },
    {
     "name": "rdf_property_axiom_closure_entails",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 796,
     "unconditional": true,
     "names_shipping_functions": [
      "rdf_property_axiom_closure"
     ],
     "names_declarative_relations": [
      "rdf_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.ModelTheory"
     ]
    },
    {
     "name": "rdfs_closure_with_reflexivity_entails",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 873,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_closure_with_reflexivity"
     ],
     "names_declarative_relations": [
      "closure_chain_wf",
      "rdfs_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.ModelTheory"
     ]
    },
    {
     "name": "collect_related_iris_source",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 1380,
     "unconditional": true,
     "names_shipping_functions": [
      "collect_related_iris"
     ],
     "names_declarative_relations": [
      "harvest_source"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Refinement"
     ]
    }
   ],
   "w3c_refinement_theorems": [
    {
     "name": "lemma_scm_eqc2_emission_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 1124,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "owl_equivalentClass",
      "rdfs_subClassOf",
      "term_is_iri"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "scm_eqc2_derives"
     ]
    },
    {
     "name": "lemma_scm_eqp2_emission_licensed",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 1699,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "owl_equivalentProperty",
      "rdfs_subPropertyOf",
      "term_is_iri"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "scm_eqp2_derives"
     ]
    },
    {
     "name": "lemma_cls_hv1_row_intro",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4247,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cls_hv1_derives",
      "ig_wf_po"
     ]
    },
    {
     "name": "lemma_cls_hv1_members_fold",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4282,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_cls_hv1_emit",
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cls_hv1_licensed",
      "ig_wf_po"
     ]
    },
    {
     "name": "lemma_cls_avf_row_intro",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4931,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "find_subjects_indexed",
      "owl_allValuesFrom_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cls_avf_derives",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_cls_avf_member_step",
     "proved_in": "OWL.RL.Refinement",
     "file": "formal/fstar/OWL.RL.Refinement.fst",
     "line": 4979,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_allValuesFrom_iri",
      "owl_cls_avf1_member",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cls_avf_licensed",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "rdfs_rule_domain_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 129,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_domain"
     ],
     "names_declarative_relations": [
      "cond_domain",
      "holds_all",
      "ig_wf_pred"
     ]
    },
    {
     "name": "rdfs_rule_range_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 208,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_range"
     ],
     "names_declarative_relations": [
      "cond_range",
      "holds_all",
      "ig_wf_pred"
     ]
    },
    {
     "name": "lemma_cls_hv1_witness_holds",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3116,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cond_hasvalue",
      "holds_all",
      "ig_wf_po",
      "triple_holds"
     ]
    },
    {
     "name": "lemma_cls_hv1_members_fold_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3151,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_cls_hv1_emit",
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cond_hasvalue",
      "holds_all",
      "ig_wf_po"
     ]
    },
    {
     "name": "lemma_cls_hv2_witness_holds",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3286,
     "unconditional": false,
     "names_shipping_functions": [
      "find_subjects_indexed",
      "owl_hasValue_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cond_hasvalue",
      "cond_literal_term_eq_respecting",
      "holds_all",
      "ig_wf_po",
      "ig_wf_pred",
      "triple_holds"
     ]
    },
    {
     "name": "lemma_cls_avf_witness_holds",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3441,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "find_subjects_indexed",
      "owl_allValuesFrom_iri",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term",
      "term_to_subject"
     ],
     "names_declarative_relations": [
      "cond_allvaluesfrom",
      "holds_all",
      "ig_wf_po",
      "ig_wf_sp",
      "triple_holds"
     ]
    },
    {
     "name": "lemma_cls_avf_member_fold_sound",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3492,
     "unconditional": false,
     "names_shipping_functions": [
      "find_objects_indexed",
      "find_subjects_indexed",
      "owl_allValuesFrom_iri",
      "owl_cls_avf1_emit",
      "owl_onProperty_iri",
      "rdf_type",
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "cond_allvaluesfrom",
      "holds_all",
      "ig_wf_po",
      "ig_wf_sp"
     ]
    },
    {
     "name": "rdfs_rule_domain_entailed",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3776,
     "unconditional": true,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain"
     ],
     "names_declarative_relations": [
      "pilot_entails"
     ]
    },
    {
     "name": "rdfs_rule_range_entailed",
     "proved_in": "OWL.Semantics.Soundness",
     "file": "formal/fstar/OWL.Semantics.Soundness.fst",
     "line": 3797,
     "unconditional": true,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_range"
     ],
     "names_declarative_relations": [
      "pilot_entails"
     ]
    },
    {
     "name": "rdfs_rule_subPropertyOf_preserves_sep",
     "proved_in": "RDF.Entailment.RDFS.ChainWf",
     "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
     "line": 146,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "graph_sep_free",
      "ig_wf_pred"
     ]
    },
    {
     "name": "rdfs_rule_domain_preserves_sep",
     "proved_in": "RDF.Entailment.RDFS.ChainWf",
     "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
     "line": 153,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_domain"
     ],
     "names_declarative_relations": [
      "graph_sep_free",
      "ig_wf_pred"
     ]
    },
    {
     "name": "rdfs_rule_range_preserves_sep",
     "proved_in": "RDF.Entailment.RDFS.ChainWf",
     "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
     "line": 160,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_range"
     ],
     "names_declarative_relations": [
      "graph_sep_free",
      "ig_wf_pred"
     ]
    },
    {
     "name": "rdfs_rule_subClassOf_preserves_sep",
     "proved_in": "RDF.Entailment.RDFS.ChainWf",
     "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
     "line": 167,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_subClassOf"
     ],
     "names_declarative_relations": [
      "graph_sep_free",
      "ig_wf_sp"
     ]
    },
    {
     "name": "rdfs_rule_container_membership_preserves_sep",
     "proved_in": "RDF.Entailment.RDFS.ChainWf",
     "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
     "line": 184,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_container_membership"
     ],
     "names_declarative_relations": [
      "graph_sep_free"
     ]
    },
    {
     "name": "rdfs_rule_subClassOf_trans_preserves_sep",
     "proved_in": "RDF.Entailment.RDFS.ChainWf",
     "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
     "line": 217,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_subClassOf_trans"
     ],
     "names_declarative_relations": [
      "graph_sep_free",
      "ig_wf_sp"
     ]
    },
    {
     "name": "rdfs_rule_subPropertyOf_trans_preserves_sep",
     "proved_in": "RDF.Entailment.RDFS.ChainWf",
     "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
     "line": 225,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_subPropertyOf_trans"
     ],
     "names_declarative_relations": [
      "graph_sep_free",
      "ig_wf_sp"
     ]
    },
    {
     "name": "rdfs_rule_recognized_datatypes_preserves_sep",
     "proved_in": "RDF.Entailment.RDFS.ChainWf",
     "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
     "line": 236,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_recognized_datatypes"
     ],
     "names_declarative_relations": [
      "graph_sep_free"
     ]
    },
    {
     "name": "rdfs_rule_class_subclass_resource_preserves_sep",
     "proved_in": "RDF.Entailment.RDFS.ChainWf",
     "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
     "line": 246,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_class_subclass_resource"
     ],
     "names_declarative_relations": [
      "graph_sep_free"
     ]
    },
    {
     "name": "rdfs_rule_datatype_subclass_literal_preserves_sep",
     "proved_in": "RDF.Entailment.RDFS.ChainWf",
     "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
     "line": 253,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_datatype_subclass_literal"
     ],
     "names_declarative_relations": [
      "graph_sep_free"
     ]
    },
    {
     "name": "rdfs_rule_resource_subject_preserves_sep",
     "proved_in": "RDF.Entailment.RDFS.ChainWf",
     "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
     "line": 260,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_resource_subject"
     ],
     "names_declarative_relations": [
      "graph_sep_free"
     ]
    },
    {
     "name": "rdfs_rule_resource_object_preserves_sep",
     "proved_in": "RDF.Entailment.RDFS.ChainWf",
     "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
     "line": 267,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_resource_object"
     ],
     "names_declarative_relations": [
      "graph_sep_free"
     ]
    },
    {
     "name": "step_preserves_sep_free",
     "proved_in": "RDF.Entailment.RDFS.ChainWf",
     "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
     "line": 283,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_closure_step"
     ],
     "names_declarative_relations": [
      "graph_sep_free"
     ]
    },
    {
     "name": "step_domain",
     "proved_in": "RDF.Entailment.RDFS.Completeness",
     "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
     "line": 279,
     "unconditional": false,
     "names_shipping_functions": [
      "rdf_type",
      "rdfs_domain"
     ],
     "names_declarative_relations": [
      "herb_iext",
      "rho_df_closed"
     ]
    },
    {
     "name": "step_range",
     "proved_in": "RDF.Entailment.RDFS.Completeness",
     "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
     "line": 311,
     "unconditional": false,
     "names_shipping_functions": [
      "rdf_type",
      "rdfs_range"
     ],
     "names_declarative_relations": [
      "herb_iext",
      "rho_df_closed",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "step_sub_property",
     "proved_in": "RDF.Entailment.RDFS.Completeness",
     "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
     "line": 350,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_subPropertyOf"
     ],
     "names_declarative_relations": [
      "herb_iext",
      "rho_df_closed",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "step_sub_property_trans",
     "proved_in": "RDF.Entailment.RDFS.Completeness",
     "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
     "line": 386,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_subPropertyOf"
     ],
     "names_declarative_relations": [
      "herb_iext",
      "rho_df_closed"
     ]
    },
    {
     "name": "step_sub_class",
     "proved_in": "RDF.Entailment.RDFS.Completeness",
     "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
     "line": 419,
     "unconditional": false,
     "names_shipping_functions": [
      "rdf_type",
      "rdfs_subClassOf"
     ],
     "names_declarative_relations": [
      "herb_iext",
      "rho_df_closed"
     ]
    },
    {
     "name": "step_sub_class_trans",
     "proved_in": "RDF.Entailment.RDFS.Completeness",
     "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
     "line": 451,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_subClassOf"
     ],
     "names_declarative_relations": [
      "herb_iext",
      "rho_df_closed"
     ]
    },
    {
     "name": "rdfs_closure_rho_df_complete",
     "proved_in": "RDF.Entailment.RDFS.Completeness",
     "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
     "line": 697,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_closure"
     ],
     "names_declarative_relations": [
      "graph_tt_free",
      "is_subgraph",
      "rho_df_closed",
      "rho_df_entails",
      "rho_df_frag_graph",
      "simple_entailment_spec"
     ]
    },
    {
     "name": "lemma_rdfs_rule_subPropertyOf_clean",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 558,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "lemma_rdfs_rule_domain_clean",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 579,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "lemma_rdfs_rule_range_clean",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 600,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_range"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "lemma_rdfs_rule_subClassOf_clean",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 624,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subClassOf"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "lemma_rdfs_rule_container_membership_clean",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 657,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_container_membership"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "lemma_rdfs_rule_subClassOf_trans_clean",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 694,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subClassOf_trans"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "lemma_rdfs_rule_subPropertyOf_trans_clean",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 716,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subPropertyOf_trans"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "lemma_rdfs_rule_recognized_datatypes_clean",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 740,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_recognized_datatypes"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "lemma_rdfs_rule_class_subclass_resource_clean",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 762,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_class_subclass_resource"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "lemma_rdfs_rule_datatype_subclass_literal_clean",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 782,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_datatype_subclass_literal"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "lemma_rdfs_rule_resource_subject_clean",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 802,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_resource_subject"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "lemma_rdfs_rule_resource_object_clean",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 825,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_resource_object"
     ],
     "names_declarative_relations": [
      "graph_clean"
     ]
    },
    {
     "name": "lemma_len_eq_saturated_sep_free",
     "proved_in": "RDF.Entailment.RDFS.FixedPoint",
     "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
     "line": 1556,
     "unconditional": false,
     "names_shipping_functions": [
      "graph_len",
      "rdfs_closure_step"
     ],
     "names_declarative_relations": [
      "graph_obj_not_tt",
      "graph_sep_free",
      "step_saturated"
     ]
    },
    {
     "name": "rdfs_rule_subPropertyOf_preserves",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 552,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "cond_subPropertyOf",
      "holds_all",
      "ig_wf_pred"
     ]
    },
    {
     "name": "rdfs_rule_domain_preserves",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 562,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_domain"
     ],
     "names_declarative_relations": [
      "cond_domain",
      "holds_all",
      "ig_wf_pred"
     ]
    },
    {
     "name": "rdfs_rule_range_preserves",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 572,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_range"
     ],
     "names_declarative_relations": [
      "cond_range",
      "holds_all",
      "ig_wf_pred"
     ]
    },
    {
     "name": "rdfs_rule_subClassOf_preserves",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 582,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_subClassOf"
     ],
     "names_declarative_relations": [
      "cond_subClassOf",
      "holds_all",
      "ig_wf_sp"
     ]
    },
    {
     "name": "rdfs_rule_subClassOf_trans_preserves",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 592,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_subClassOf_trans"
     ],
     "names_declarative_relations": [
      "cond_subClassOf_trans",
      "holds_all",
      "ig_wf_sp"
     ]
    },
    {
     "name": "rdfs_rule_subPropertyOf_trans_preserves",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 602,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_subPropertyOf_trans"
     ],
     "names_declarative_relations": [
      "cond_subPropertyOf_trans",
      "holds_all",
      "ig_wf_sp"
     ]
    },
    {
     "name": "rdfs_rule_container_membership_preserves",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 612,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_container_membership"
     ],
     "names_declarative_relations": [
      "cond_cmp_member",
      "cond_rdfs_axioms",
      "holds_all"
     ]
    },
    {
     "name": "rdfs_rule_recognized_datatypes_preserves",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 623,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_recognized_datatypes"
     ],
     "names_declarative_relations": [
      "cond_datatypes_minimal",
      "holds_all"
     ]
    },
    {
     "name": "rdfs_rule_resource_subject_preserves",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 631,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_resource_subject"
     ],
     "names_declarative_relations": [
      "cond_resource",
      "holds_all"
     ]
    },
    {
     "name": "rdfs_rule_resource_object_preserves",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 640,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_resource_object"
     ],
     "names_declarative_relations": [
      "cond_resource",
      "holds_all"
     ]
    },
    {
     "name": "rdfs_rule_class_subclass_resource_preserves",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 649,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_class_subclass_resource"
     ],
     "names_declarative_relations": [
      "cond_class_subclass_resource",
      "holds_all"
     ]
    },
    {
     "name": "rdfs_rule_datatype_subclass_literal_preserves",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 658,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_datatype_subclass_literal"
     ],
     "names_declarative_relations": [
      "cond_datatype_subclass_literal",
      "holds_all"
     ]
    },
    {
     "name": "rdfs_closure_step_sound",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 679,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_closure_step"
     ],
     "names_declarative_relations": [
      "holds_all",
      "ig_wf_sp",
      "rdfs_conditions"
     ]
    },
    {
     "name": "rdfs_closure_sound",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 756,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_closure"
     ],
     "names_declarative_relations": [
      "closure_chain_wf",
      "holds_all",
      "rdfs_conditions"
     ]
    },
    {
     "name": "rdfs_reflexivity_axioms_preserves",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 835,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_reflexivity_axioms"
     ],
     "names_declarative_relations": [
      "holds_all",
      "rdfs_conditions"
     ]
    },
    {
     "name": "rdfs_closure_with_reflexivity_sound",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 855,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_closure_with_reflexivity"
     ],
     "names_declarative_relations": [
      "closure_chain_wf",
      "holds_all",
      "rdfs_conditions"
     ]
    },
    {
     "name": "reflexivity_needs_rdfs_Class",
     "proved_in": "RDF.Entailment.RDFS.ModelTheory",
     "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
     "line": 912,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_Class",
      "rdfs_subClassOf"
     ],
     "names_declarative_relations": [
      "cond_subClassOf_refl",
      "icext"
     ]
    },
    {
     "name": "rdf_property_axiom_closure_licensed",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 205,
     "unconditional": true,
     "names_shipping_functions": [
      "rdf_property_axiom_closure"
     ],
     "names_declarative_relations": [
      "rdfD2_derives"
     ]
    },
    {
     "name": "rdfs_rule_domain_licensed",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 252,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_domain"
     ],
     "names_declarative_relations": [
      "ig_wf_pred",
      "licensed_by2",
      "rdfs2_derives"
     ]
    },
    {
     "name": "rdfs_rule_range_licensed",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 303,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_range"
     ],
     "names_declarative_relations": [
      "ig_wf_pred",
      "licensed_by2",
      "rdfs3_derives"
     ]
    },
    {
     "name": "rdfs_rule_subPropertyOf_licensed",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 362,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "ig_wf_pred",
      "licensed_by2",
      "rdfs7_derives"
     ]
    },
    {
     "name": "rdfs_rule_subClassOf_licensed",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 460,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_subClassOf"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "licensed_by2",
      "rdfs9_derives2"
     ]
    },
    {
     "name": "rdfs_rule_subClassOf_trans_licensed",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 517,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_subClassOf_trans"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "licensed_by2",
      "rdfs11_derives2"
     ]
    },
    {
     "name": "rdfs_rule_subPropertyOf_trans_licensed",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 575,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_subPropertyOf_trans"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "licensed_by2",
      "rdfs5_derives2"
     ]
    },
    {
     "name": "lemma_rdf_member_iris",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 650,
     "unconditional": true,
     "names_shipping_functions": [
      "rdf_1",
      "rdf_2",
      "rdf_3",
      "rdf_4",
      "rdf_5"
     ],
     "names_declarative_relations": [
      "is_rdf_member_iri"
     ]
    },
    {
     "name": "rdfs_rule_container_membership_licensed",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 675,
     "unconditional": true,
     "names_shipping_functions": [
      "rdfs_rule_container_membership"
     ],
     "names_declarative_relations": [
      "rdfs_axiomatic",
      "rdfs_member_subproperty"
     ]
    },
    {
     "name": "rdfs_rule_recognized_datatypes_licensed",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 790,
     "unconditional": true,
     "names_shipping_functions": [
      "rdfs_rule_recognized_datatypes"
     ],
     "names_declarative_relations": [
      "rdfs1_derives"
     ]
    },
    {
     "name": "rdfs_rule_resource_subject_licensed",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 826,
     "unconditional": true,
     "names_shipping_functions": [
      "rdfs_rule_resource_subject"
     ],
     "names_declarative_relations": [
      "licensed_by",
      "rdfs4a_derives"
     ]
    },
    {
     "name": "rdfs_rule_resource_object_licensed",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 853,
     "unconditional": true,
     "names_shipping_functions": [
      "rdfs_rule_resource_object"
     ],
     "names_declarative_relations": [
      "licensed_by",
      "rdfs4b_derives"
     ]
    },
    {
     "name": "rdfs_rule_class_subclass_resource_licensed",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 881,
     "unconditional": true,
     "names_shipping_functions": [
      "rdfs_rule_class_subclass_resource"
     ],
     "names_declarative_relations": [
      "licensed_by",
      "rdfs8_derives"
     ]
    },
    {
     "name": "rdfs_rule_datatype_subclass_literal_licensed",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 911,
     "unconditional": true,
     "names_shipping_functions": [
      "rdfs_rule_datatype_subclass_literal"
     ],
     "names_declarative_relations": [
      "licensed_by",
      "rdfs13_derives"
     ]
    },
    {
     "name": "lemma_snapshot_carries_elim",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 992,
     "unconditional": false,
     "names_shipping_functions": [
      "snapshot_carries"
     ],
     "names_declarative_relations": [
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_emit_once",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 1011,
     "unconditional": false,
     "names_shipping_functions": [
      "emit_once"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "snapshot_subset"
     ]
    },
    {
     "name": "lemma_emit_once_all",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 1028,
     "unconditional": false,
     "names_shipping_functions": [
      "emit_once"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "snapshot_subset"
     ]
    },
    {
     "name": "rdfs_rule_recognized_datatypes_complete",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 1112,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_recognized_datatypes",
      "recognized_datatypes"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "snapshot_subset"
     ]
    },
    {
     "name": "rdfs_rule_resource_subject_complete",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 1133,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_resource_subject"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "snapshot_subset"
     ]
    },
    {
     "name": "rdfs_rule_resource_object_complete",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 1153,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_resource_object"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "snapshot_subset"
     ]
    },
    {
     "name": "rdfs_rule_class_subclass_resource_complete",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 1173,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_class_subclass_resource"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "snapshot_subset"
     ]
    },
    {
     "name": "rdfs_rule_datatype_subclass_literal_complete",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 1193,
     "unconditional": false,
     "names_shipping_functions": [
      "rdfs_rule_datatype_subclass_literal"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "snapshot_subset"
     ]
    },
    {
     "name": "rs2_rows_complete_at_build_indexed",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 1216,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "is_typed_as",
      "rdf_type",
      "rdfs_Class",
      "rdfs_Datatype",
      "rdfs_Literal",
      "rdfs_Resource",
      "rdfs_rule_class_subclass_resource",
      "rdfs_rule_datatype_subclass_literal",
      "rdfs_rule_recognized_datatypes",
      "rdfs_rule_resource_object",
      "rdfs_rule_resource_subject",
      "rdfs_subClassOf",
      "recognized_datatypes",
      "term_to_subject"
     ],
     "names_declarative_relations": [
      "ig_wf_sp"
     ]
    },
    {
     "name": "lemma_class_refl_licensed",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 1452,
     "unconditional": false,
     "names_shipping_functions": [
      "is_class_type_object_rdfs",
      "rdfs_subClassOf"
     ],
     "names_declarative_relations": [
      "harvest_source",
      "rdfs_licensed"
     ]
    },
    {
     "name": "lemma_property_refl_licensed",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 1482,
     "unconditional": false,
     "names_shipping_functions": [
      "is_property_type_object_rdfs",
      "rdfs_subPropertyOf"
     ],
     "names_declarative_relations": [
      "harvest_source",
      "rdfs_licensed"
     ]
    },
    {
     "name": "rdfs_reflexivity_axioms_licensed",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 1516,
     "unconditional": true,
     "names_shipping_functions": [
      "rdfs_reflexivity_axioms"
     ],
     "names_declarative_relations": [
      "rdfs_licensed"
     ]
    },
    {
     "name": "owl_reflexivity_axioms_not_rdfs_sound",
     "proved_in": "RDF.Entailment.RDFS.Refinement",
     "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
     "line": 1590,
     "unconditional": true,
     "names_shipping_functions": [
      "owl_reflexivity_axioms"
     ],
     "names_declarative_relations": [
      "rdfs_licensed"
     ]
    },
    {
     "name": "lemma_emit_once_term_reaches",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 587,
     "unconditional": false,
     "names_shipping_functions": [
      "emit_once_term"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "rho_df_frag_graph",
      "rho_df_object_ok",
      "snapshot_subset"
     ]
    },
    {
     "name": "rdfs_rule_domain_reaches2",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 656,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "is_subgraph",
      "rdfs2_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "rdfs_rule_domain_reaches",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 752,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "rdfs2_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "rdfs_rule_range_reaches2",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 772,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_range"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "is_subgraph",
      "rdfs3_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "rdfs_rule_range_reaches",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 876,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_range"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "rdfs3_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "rdfs_rule_subPropertyOf_reaches2",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1010,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "is_subgraph",
      "rdfs7_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "rdfs_rule_subPropertyOf_reaches",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1097,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "rdfs7_derives",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "rdfs_rule_subClassOf_trans_reaches2",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1132,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subClassOf_trans"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "is_subgraph",
      "rdfs11_derives"
     ]
    },
    {
     "name": "rdfs_rule_subClassOf_trans_reaches",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1205,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subClassOf_trans"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "rdfs11_derives"
     ]
    },
    {
     "name": "rdfs_rule_subPropertyOf_trans_reaches2",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1213,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subPropertyOf_trans"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "is_subgraph",
      "rdfs5_derives"
     ]
    },
    {
     "name": "rdfs_rule_subPropertyOf_trans_reaches",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1276,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subPropertyOf_trans"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "rdfs5_derives"
     ]
    },
    {
     "name": "rdfs_rule_subClassOf_reaches_iri2",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1311,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "i_rdf_type",
      "i_rdfs_subClassOf",
      "rdfs_rule_subClassOf"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "is_subgraph",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "rdfs_rule_subClassOf_reaches_iri",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1409,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "i_rdf_type",
      "i_rdfs_subClassOf",
      "rdfs_rule_subClassOf"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "rho_df_frag_graph"
     ]
    },
    {
     "name": "lemma_f1_bad_triple_derived",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1477,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "f1_bad_triple",
      "f1_witness",
      "i_rdfs_subPropertyOf",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "ig_wf_sp"
     ]
    },
    {
     "name": "rho_df_frag_preservation_fails",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1504,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "f1_bad_triple",
      "f1_witness",
      "i_rdfs_subPropertyOf",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "ig_wf_sp",
      "rho_df_frag_graph",
      "rho_df_frag_triple"
     ]
    },
    {
     "name": "lemma_c_in_g1",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1670,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "is_subgraph"
     ]
    },
    {
     "name": "lemma_c_in_g2",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1677,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "is_subgraph"
     ]
    },
    {
     "name": "lemma_c_in_g3",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1686,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain",
      "rdfs_rule_range",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "is_subgraph"
     ]
    },
    {
     "name": "lemma_c_in_g4",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1696,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain",
      "rdfs_rule_range",
      "rdfs_rule_subClassOf",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "is_subgraph"
     ]
    },
    {
     "name": "lemma_c_in_g5",
     "proved_in": "RDF.Entailment.RDFS.RhoDFClosure",
     "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
     "line": 1707,
     "unconditional": false,
     "names_shipping_functions": [
      "build_indexed",
      "rdfs_rule_domain",
      "rdfs_rule_range",
      "rdfs_rule_subClassOf",
      "rdfs_rule_subClassOf_trans",
      "rdfs_rule_subPropertyOf"
     ],
     "names_declarative_relations": [
      "is_subgraph"
     ]
    },
    {
     "name": "lemma_axiomatic_tables_sep_free",
     "proved_in": "RDF.Entailment.RDFS.SepFree",
     "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
     "line": 477,
     "unconditional": true,
     "names_shipping_functions": [
      "container_membership_properties",
      "rdf_axiomatic_triples",
      "rdfs_axiomatic_triples"
     ],
     "names_declarative_relations": [
      "str_sep_free",
      "triple_sep_free"
     ]
    }
   ],
   "assurance_tier": "w3c-refinement",
   "suites": [
    {
     "suite": "local-negative-test-vacuity",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RDFS.Closure.SemiNaive",
   "files": [
    "formal/fstar/RDFS.Closure.SemiNaive.fst"
   ],
   "loc": 422,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDFS_Closure_SemiNaive.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 16,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "RDFS.SchemaSplit",
   "files": [
    "formal/fstar/RDFS.SchemaSplit.fst"
   ],
   "loc": 809,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RDFS_SchemaSplit.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 40,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 5,
   "local_refinement_lemma_names": [
    "schema_stable_check_sound",
    "schema_stable_check_complete",
    "emit_edge_shape",
    "emit_from_node_shape",
    "sc_bfs_visited_grows"
   ],
   "algorithm_correctness_theorems": [
    {
     "name": "witness_stable_holds",
     "proved_in": "RDFS.SchemaSplit",
     "file": "formal/fstar/RDFS.SchemaSplit.fst",
     "line": 795,
     "unconditional": true,
     "names_shipping_functions": [
      "schema_stable_check",
      "witness_stable"
     ]
    },
    {
     "name": "witness_reflective_violates",
     "proved_in": "RDFS.SchemaSplit",
     "file": "formal/fstar/RDFS.SchemaSplit.fst",
     "line": 798,
     "unconditional": true,
     "names_shipping_functions": [
      "schema_stable_check",
      "witness_reflective"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": []
  },
  {
   "module": "RIF.Core.Builtins",
   "files": [
    "formal/fstar/RIF.Core.Builtins.fst"
   ],
   "loc": 1090,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RIF_Core_Builtins.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 91,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "rif",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RIF.Core.Conformance",
   "files": [
    "formal/fstar/RIF.Core.Conformance.fst"
   ],
   "loc": 802,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RIF_Core_Conformance.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 60,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "rif",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RIF.Core.Eval",
   "files": [
    "formal/fstar/RIF.Core.Eval.fst"
   ],
   "loc": 749,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RIF_Core_Eval.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 39,
   "declarative_relation_count": 1,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 8,
   "local_refinement_lemma_names": [
    "lemma_mem_triple_append_left",
    "lemma_add_one_triple_tracking_preserves",
    "lemma_add_triples_tracking_preserves",
    "lemma_fire_head_per_bindings_preserves",
    "lemma_fire_rule_preserves",
    "lemma_one_round_aux_preserves",
    "lemma_one_round_preserves",
    "lemma_fixpoint_preserves"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [
    {
     "name": "lemma_fixpoint_extends",
     "proved_in": "RIF.Core.Eval",
     "file": "formal/fstar/RIF.Core.Eval.fst",
     "line": 619,
     "unconditional": true,
     "names_shipping_functions": [
      "fixpoint"
     ],
     "names_declarative_relations": [
      "graph_subset"
     ],
     "declarative_relations_from": [
      "RIF.Core.Eval"
     ]
    },
    {
     "name": "rif_fixpoint_extensive",
     "proved_in": "RIF.Core.Refinement",
     "file": "formal/fstar/RIF.Core.Refinement.fst",
     "line": 108,
     "unconditional": true,
     "names_shipping_functions": [
      "fixpoint"
     ],
     "names_declarative_relations": [
      "graph_subset"
     ],
     "declarative_relations_from": [
      "RIF.Core.Eval"
     ]
    },
    {
     "name": "rif_one_round_extensive",
     "proved_in": "RIF.Core.Refinement",
     "file": "formal/fstar/RIF.Core.Refinement.fst",
     "line": 117,
     "unconditional": true,
     "names_shipping_functions": [
      "one_round"
     ],
     "names_declarative_relations": [
      "graph_subset"
     ],
     "declarative_relations_from": [
      "RIF.Core.Eval"
     ]
    },
    {
     "name": "rif_fire_rule_extensive",
     "proved_in": "RIF.Core.Refinement",
     "file": "formal/fstar/RIF.Core.Refinement.fst",
     "line": 133,
     "unconditional": true,
     "names_shipping_functions": [
      "fire_rule"
     ],
     "names_declarative_relations": [
      "graph_subset"
     ],
     "declarative_relations_from": [
      "RIF.Core.Eval"
     ]
    },
    {
     "name": "fire_head_per_bindings_licensed",
     "proved_in": "RIF.Core.Refinement",
     "file": "formal/fstar/RIF.Core.Refinement.fst",
     "line": 238,
     "unconditional": true,
     "names_shipping_functions": [
      "fire_head_per_bindings"
     ],
     "names_declarative_relations": [
      "rif_bindings_derive"
     ],
     "declarative_relations_from": [
      "RIF.Core.Refinement"
     ]
    },
    {
     "name": "fire_rule_licensed",
     "proved_in": "RIF.Core.Refinement",
     "file": "formal/fstar/RIF.Core.Refinement.fst",
     "line": 260,
     "unconditional": true,
     "names_shipping_functions": [
      "fire_rule"
     ],
     "names_declarative_relations": [
      "rif_rule_derives"
     ],
     "declarative_relations_from": [
      "RIF.Core.Refinement"
     ]
    },
    {
     "name": "lemma_one_round_aux_licensed",
     "proved_in": "RIF.Core.Refinement",
     "file": "formal/fstar/RIF.Core.Refinement.fst",
     "line": 282,
     "unconditional": false,
     "names_shipping_functions": [
      "one_round_aux"
     ],
     "names_declarative_relations": [
      "graph_subset",
      "rif_derives"
     ],
     "declarative_relations_from": [
      "RIF.Core.Eval",
      "RIF.Core.Refinement"
     ]
    },
    {
     "name": "one_round_licensed",
     "proved_in": "RIF.Core.Refinement",
     "file": "formal/fstar/RIF.Core.Refinement.fst",
     "line": 314,
     "unconditional": true,
     "names_shipping_functions": [
      "one_round"
     ],
     "names_declarative_relations": [
      "rif_derives"
     ],
     "declarative_relations_from": [
      "RIF.Core.Refinement"
     ]
    },
    {
     "name": "fixpoint_licensed",
     "proved_in": "RIF.Core.Refinement",
     "file": "formal/fstar/RIF.Core.Refinement.fst",
     "line": 333,
     "unconditional": true,
     "names_shipping_functions": [
      "fixpoint"
     ],
     "names_declarative_relations": [
      "rif_derives"
     ],
     "declarative_relations_from": [
      "RIF.Core.Refinement"
     ]
    }
   ],
   "w3c_refinement_theorems": [],
   "assurance_tier": "internal-refinement",
   "suites": [
    {
     "suite": "rif",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-entailment",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RIF.Core.Refinement",
   "files": [
    "formal/fstar/RIF.Core.Refinement.fst"
   ],
   "loc": 365,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "not-in-build-list",
   "extraction_oracle_available": false,
   "extracted_ml": null,
   "in_build_module_list": false,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 3,
   "unclassified_definition_count": 6,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 4,
   "local_refinement_lemma_names": [
    "lemma_graph_subset_trans",
    "lemma_mem_triple_append_or",
    "add_one_triple_tracking_licensed",
    "add_triples_tracking_licensed"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "unclassified",
   "suites": []
  },
  {
   "module": "RIF.Core.Syntax",
   "files": [
    "formal/fstar/RIF.Core.Syntax.fst"
   ],
   "loc": 287,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RIF_Core_Syntax.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 21,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 2,
   "local_refinement_lemma_names": [
    "rif_term_eq_refl",
    "rif_term_list_eq_refl"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "local-lemmas-only",
   "suites": [
    {
     "suite": "rif",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-entailment",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RIF.Core.Tests",
   "files": [
    "formal/fstar/RIF.Core.Tests.fst"
   ],
   "loc": 316,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RIF_Core_Tests.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 10,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_parse_none_yields_false",
     "proved_in": "RIF.Core.Tests",
     "file": "formal/fstar/RIF.Core.Tests.fst",
     "line": 306,
     "unconditional": false,
     "names_shipping_functions": [
      "parse_rif_program",
      "run_rif_select_rows"
     ]
    }
   ],
   "internal_refinement_theorems": [
    {
     "name": "lemma_saturate_extends",
     "proved_in": "RIF.Core.Tests",
     "file": "formal/fstar/RIF.Core.Tests.fst",
     "line": 282,
     "unconditional": true,
     "names_shipping_functions": [
      "saturate_with_program"
     ],
     "names_declarative_relations": [
      "graph_subset"
     ],
     "declarative_relations_from": [
      "RIF.Core.Eval"
     ]
    }
   ],
   "w3c_refinement_theorems": [],
   "assurance_tier": "internal-refinement",
   "suites": [
    {
     "suite": "sparql11-entailment",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RIF.Core.Translation",
   "files": [
    "formal/fstar/RIF.Core.Translation.fst"
   ],
   "loc": 594,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RIF_Core_Translation.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 29,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "rif",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-entailment",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RML.Eval",
   "files": [
    "formal/fstar/RML.Eval.fst"
   ],
   "loc": 991,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RML_Eval.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 65,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "rml",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RML.Mapping",
   "files": [
    "formal/fstar/RML.Mapping.fst"
   ],
   "loc": 898,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RML_Mapping.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 90,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "rml",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RML.Sources",
   "files": [
    "formal/fstar/RML.Sources.fst"
   ],
   "loc": 456,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RML_Sources.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 29,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "csvw-nonnorm",
     "how": "direct-trigger"
    },
    {
     "suite": "rml",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "RML.VirtualSource",
   "files": [
    "formal/fstar/RML.VirtualSource.fst"
   ],
   "loc": 376,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/RML_VirtualSource.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 17,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "Regex.Derivative",
   "files": [
    "formal/fstar/Regex.Derivative.fst"
   ],
   "loc": 187,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Regex_Derivative.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 3,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 4,
   "local_refinement_lemma_names": [
    "take_zero",
    "drop_zero",
    "take_cons",
    "drop_cons"
   ],
   "algorithm_correctness_theorems": [
    {
     "name": "cat_shift",
     "proved_in": "Regex.Derivative",
     "file": "formal/fstar/Regex.Derivative.fst",
     "line": 83,
     "unconditional": false,
     "names_shipping_functions": [
      "cat_try",
      "deriv",
      "mem"
     ]
    },
    {
     "name": "star_shift",
     "proved_in": "Regex.Derivative",
     "file": "formal/fstar/Regex.Derivative.fst",
     "line": 98,
     "unconditional": false,
     "names_shipping_functions": [
      "cat_try",
      "deriv",
      "mem",
      "star_try"
     ]
    },
    {
     "name": "deriv_cat_w",
     "proved_in": "Regex.Derivative",
     "file": "formal/fstar/Regex.Derivative.fst",
     "line": 111,
     "unconditional": false,
     "names_shipping_functions": [
      "deriv",
      "mem"
     ]
    },
    {
     "name": "deriv_star_w",
     "proved_in": "Regex.Derivative",
     "file": "formal/fstar/Regex.Derivative.fst",
     "line": 123,
     "unconditional": false,
     "names_shipping_functions": [
      "deriv",
      "mem"
     ]
    },
    {
     "name": "deriv_correct",
     "proved_in": "Regex.Derivative",
     "file": "formal/fstar/Regex.Derivative.fst",
     "line": 136,
     "unconditional": true,
     "names_shipping_functions": [
      "deriv",
      "mem"
     ]
    },
    {
     "name": "deriv_word_correct",
     "proved_in": "Regex.Derivative",
     "file": "formal/fstar/Regex.Derivative.fst",
     "line": 175,
     "unconditional": true,
     "names_shipping_functions": [
      "deriv_word",
      "mem"
     ]
    },
    {
     "name": "matches_correct",
     "proved_in": "Regex.Derivative",
     "file": "formal/fstar/Regex.Derivative.fst",
     "line": 183,
     "unconditional": true,
     "names_shipping_functions": [
      "matches",
      "mem"
     ]
    },
    {
     "name": "matches_norm_eq_proven",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 498,
     "unconditional": true,
     "names_shipping_functions": [
      "matches",
      "matches_norm"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": []
  },
  {
   "module": "Regex.Exec",
   "files": [
    "formal/fstar/Regex.Exec.fst"
   ],
   "loc": 502,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Regex_Exec.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 34,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "insert_regex_ok",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 318,
     "unconditional": true,
     "names_shipping_functions": [
      "insert_regex",
      "mem",
      "mem_alt_list"
     ]
    },
    {
     "name": "alt_flatten_ok",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 329,
     "unconditional": true,
     "names_shipping_functions": [
      "alt_flatten",
      "mem",
      "mem_alt_list"
     ]
    },
    {
     "name": "rebuild_alt_ok",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 337,
     "unconditional": true,
     "names_shipping_functions": [
      "mem",
      "mem_alt_list",
      "rebuild_alt"
     ]
    },
    {
     "name": "has_universal_ok",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 345,
     "unconditional": false,
     "names_shipping_functions": [
      "has_universal",
      "mem_alt_list"
     ]
    },
    {
     "name": "ealt_ok",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 351,
     "unconditional": true,
     "names_shipping_functions": [
      "ealt",
      "mem"
     ]
    },
    {
     "name": "insert_regex_and_ok",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 366,
     "unconditional": true,
     "names_shipping_functions": [
      "insert_regex",
      "mem",
      "mem_and_list"
     ]
    },
    {
     "name": "and_flatten_ok",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 377,
     "unconditional": true,
     "names_shipping_functions": [
      "and_flatten",
      "mem",
      "mem_and_list"
     ]
    },
    {
     "name": "rebuild_and_ok",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 384,
     "unconditional": true,
     "names_shipping_functions": [
      "mem",
      "mem_and_list",
      "rebuild_and"
     ]
    },
    {
     "name": "has_empty_ok",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 391,
     "unconditional": false,
     "names_shipping_functions": [
      "has_empty",
      "mem_and_list"
     ]
    },
    {
     "name": "eand_ok",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 397,
     "unconditional": true,
     "names_shipping_functions": [
      "eand",
      "mem"
     ]
    },
    {
     "name": "nderiv_cat_w",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 433,
     "unconditional": false,
     "names_shipping_functions": [
      "mem",
      "nderiv"
     ]
    },
    {
     "name": "nderiv_star_w",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 443,
     "unconditional": false,
     "names_shipping_functions": [
      "mem",
      "nderiv"
     ]
    },
    {
     "name": "nderiv_correct",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 451,
     "unconditional": true,
     "names_shipping_functions": [
      "mem",
      "nderiv"
     ]
    },
    {
     "name": "run_word_norm_correct",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 481,
     "unconditional": true,
     "names_shipping_functions": [
      "mem",
      "run_word_norm"
     ]
    },
    {
     "name": "matches_norm_correct",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 491,
     "unconditional": true,
     "names_shipping_functions": [
      "matches_norm",
      "mem"
     ]
    },
    {
     "name": "matches_norm_eq_proven",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 498,
     "unconditional": true,
     "names_shipping_functions": [
      "matches",
      "matches_norm"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": [
    {
     "suite": "jsonschema",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Regex.Syntax",
   "files": [
    "formal/fstar/Regex.Syntax.fst"
   ],
   "loc": 424,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Regex_Syntax.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 20,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 12,
   "local_refinement_lemma_names": [
    "take_all",
    "drop_all",
    "drop_below",
    "cat_empty_left",
    "cat_empty_right",
    "cat_eps_right_below",
    "star_try_empty",
    "star_empty_lang",
    "star_try_eps",
    "star_eps_lang",
    "ranges_cmp_eq",
    "regex_cmp_eq"
   ],
   "algorithm_correctness_theorems": [
    {
     "name": "cat_shift",
     "proved_in": "Regex.Derivative",
     "file": "formal/fstar/Regex.Derivative.fst",
     "line": 83,
     "unconditional": false,
     "names_shipping_functions": [
      "cat_try",
      "deriv",
      "mem"
     ]
    },
    {
     "name": "star_shift",
     "proved_in": "Regex.Derivative",
     "file": "formal/fstar/Regex.Derivative.fst",
     "line": 98,
     "unconditional": false,
     "names_shipping_functions": [
      "cat_try",
      "deriv",
      "mem",
      "star_try"
     ]
    },
    {
     "name": "deriv_cat_w",
     "proved_in": "Regex.Derivative",
     "file": "formal/fstar/Regex.Derivative.fst",
     "line": 111,
     "unconditional": false,
     "names_shipping_functions": [
      "deriv",
      "mem"
     ]
    },
    {
     "name": "deriv_star_w",
     "proved_in": "Regex.Derivative",
     "file": "formal/fstar/Regex.Derivative.fst",
     "line": 123,
     "unconditional": false,
     "names_shipping_functions": [
      "deriv",
      "mem"
     ]
    },
    {
     "name": "deriv_correct",
     "proved_in": "Regex.Derivative",
     "file": "formal/fstar/Regex.Derivative.fst",
     "line": 136,
     "unconditional": true,
     "names_shipping_functions": [
      "deriv",
      "mem"
     ]
    },
    {
     "name": "deriv_word_correct",
     "proved_in": "Regex.Derivative",
     "file": "formal/fstar/Regex.Derivative.fst",
     "line": 175,
     "unconditional": true,
     "names_shipping_functions": [
      "deriv_word",
      "mem"
     ]
    },
    {
     "name": "matches_correct",
     "proved_in": "Regex.Derivative",
     "file": "formal/fstar/Regex.Derivative.fst",
     "line": 183,
     "unconditional": true,
     "names_shipping_functions": [
      "matches",
      "mem"
     ]
    },
    {
     "name": "insert_regex_ok",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 318,
     "unconditional": true,
     "names_shipping_functions": [
      "insert_regex",
      "mem",
      "mem_alt_list"
     ]
    },
    {
     "name": "alt_flatten_ok",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 329,
     "unconditional": true,
     "names_shipping_functions": [
      "alt_flatten",
      "mem",
      "mem_alt_list"
     ]
    },
    {
     "name": "rebuild_alt_ok",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 337,
     "unconditional": true,
     "names_shipping_functions": [
      "mem",
      "mem_alt_list",
      "rebuild_alt"
     ]
    },
    {
     "name": "ealt_ok",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 351,
     "unconditional": true,
     "names_shipping_functions": [
      "ealt",
      "mem"
     ]
    },
    {
     "name": "insert_regex_and_ok",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 366,
     "unconditional": true,
     "names_shipping_functions": [
      "insert_regex",
      "mem",
      "mem_and_list"
     ]
    },
    {
     "name": "and_flatten_ok",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 377,
     "unconditional": true,
     "names_shipping_functions": [
      "and_flatten",
      "mem",
      "mem_and_list"
     ]
    },
    {
     "name": "rebuild_and_ok",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 384,
     "unconditional": true,
     "names_shipping_functions": [
      "mem",
      "mem_and_list",
      "rebuild_and"
     ]
    },
    {
     "name": "eand_ok",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 397,
     "unconditional": true,
     "names_shipping_functions": [
      "eand",
      "mem"
     ]
    },
    {
     "name": "cat_shift_gen",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 412,
     "unconditional": false,
     "names_shipping_functions": [
      "cat_try",
      "mem"
     ]
    },
    {
     "name": "star_shift_gen",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 422,
     "unconditional": false,
     "names_shipping_functions": [
      "cat_try",
      "mem",
      "star_try"
     ]
    },
    {
     "name": "nderiv_cat_w",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 433,
     "unconditional": false,
     "names_shipping_functions": [
      "mem",
      "nderiv"
     ]
    },
    {
     "name": "nderiv_star_w",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 443,
     "unconditional": false,
     "names_shipping_functions": [
      "mem",
      "nderiv"
     ]
    },
    {
     "name": "nderiv_correct",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 451,
     "unconditional": true,
     "names_shipping_functions": [
      "mem",
      "nderiv"
     ]
    },
    {
     "name": "run_word_norm_correct",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 481,
     "unconditional": true,
     "names_shipping_functions": [
      "mem",
      "run_word_norm"
     ]
    },
    {
     "name": "matches_norm_correct",
     "proved_in": "Regex.Exec",
     "file": "formal/fstar/Regex.Exec.fst",
     "line": 491,
     "unconditional": true,
     "names_shipping_functions": [
      "matches_norm",
      "mem"
     ]
    },
    {
     "name": "nullable_correct",
     "proved_in": "Regex.Syntax",
     "file": "formal/fstar/Regex.Syntax.fst",
     "line": 181,
     "unconditional": true,
     "names_shipping_functions": [
      "mem",
      "nullable"
     ]
    },
    {
     "name": "smart_alt_ok",
     "proved_in": "Regex.Syntax",
     "file": "formal/fstar/Regex.Syntax.fst",
     "line": 251,
     "unconditional": true,
     "names_shipping_functions": [
      "mem",
      "smart_alt"
     ]
    },
    {
     "name": "smart_and_ok",
     "proved_in": "Regex.Syntax",
     "file": "formal/fstar/Regex.Syntax.fst",
     "line": 266,
     "unconditional": true,
     "names_shipping_functions": [
      "mem",
      "smart_and"
     ]
    },
    {
     "name": "smart_not_ok",
     "proved_in": "Regex.Syntax",
     "file": "formal/fstar/Regex.Syntax.fst",
     "line": 276,
     "unconditional": true,
     "names_shipping_functions": [
      "mem",
      "smart_not"
     ]
    },
    {
     "name": "cat_eps_left",
     "proved_in": "Regex.Syntax",
     "file": "formal/fstar/Regex.Syntax.fst",
     "line": 335,
     "unconditional": true,
     "names_shipping_functions": [
      "cat_try",
      "mem"
     ]
    },
    {
     "name": "cat_eps_right",
     "proved_in": "Regex.Syntax",
     "file": "formal/fstar/Regex.Syntax.fst",
     "line": 351,
     "unconditional": true,
     "names_shipping_functions": [
      "cat_try",
      "mem"
     ]
    },
    {
     "name": "smart_cat_ok",
     "proved_in": "Regex.Syntax",
     "file": "formal/fstar/Regex.Syntax.fst",
     "line": 357,
     "unconditional": true,
     "names_shipping_functions": [
      "mem",
      "smart_cat"
     ]
    },
    {
     "name": "smart_star_ok",
     "proved_in": "Regex.Syntax",
     "file": "formal/fstar/Regex.Syntax.fst",
     "line": 392,
     "unconditional": true,
     "names_shipping_functions": [
      "mem",
      "smart_star"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": []
  },
  {
   "module": "Regex.XSDPattern",
   "files": [
    "formal/fstar/Regex.XSDPattern.fst"
   ],
   "loc": 438,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Regex_XSDPattern.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 50,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "jsonschema",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SHACL.NodeExpr",
   "files": [
    "formal/fstar/SHACL.NodeExpr.fst"
   ],
   "loc": 714,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SHACL_NodeExpr.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 77,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "SHACL.Rules",
   "files": [
    "formal/fstar/SHACL.Rules.fst"
   ],
   "loc": 439,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SHACL_Rules.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 49,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "SHACL.Validation",
   "files": [
    "formal/fstar/SHACL.Validation.fst"
   ],
   "loc": 3773,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SHACL_Validation.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 303,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 1,
   "assume_val_names": [
    "eval_sparql_target_select"
   ],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "qudt",
     "how": "direct-trigger"
    },
    {
     "suite": "shacl-core",
     "how": "direct-trigger"
    },
    {
     "suite": "shacl-sparql",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL.Diagnostics",
   "files": [
    "formal/fstar/SPARQL.Diagnostics.fst"
   ],
   "loc": 79,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_Diagnostics.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 8,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL.Eval.Limits",
   "files": [
    "formal/fstar/SPARQL.Eval.Limits.fst"
   ],
   "loc": 129,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_Eval_Limits.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 6,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "take_capped_aux_at_cap",
     "proved_in": "SPARQL.Eval.Limits",
     "file": "formal/fstar/SPARQL.Eval.Limits.fst",
     "line": 82,
     "unconditional": false,
     "names_shipping_functions": [
      "is_enabled",
      "take_capped_aux"
     ]
    },
    {
     "name": "take_capped_aux_length_le",
     "proved_in": "SPARQL.Eval.Limits",
     "file": "formal/fstar/SPARQL.Eval.Limits.fst",
     "line": 94,
     "unconditional": false,
     "names_shipping_functions": [
      "is_enabled",
      "take_capped_aux"
     ]
    },
    {
     "name": "take_capped_length_le_cap",
     "proved_in": "SPARQL.Eval.Limits",
     "file": "formal/fstar/SPARQL.Eval.Limits.fst",
     "line": 112,
     "unconditional": false,
     "names_shipping_functions": [
      "is_enabled",
      "take_capped"
     ]
    },
    {
     "name": "take_capped_aux_unlimited",
     "proved_in": "SPARQL.Eval.Limits",
     "file": "formal/fstar/SPARQL.Eval.Limits.fst",
     "line": 118,
     "unconditional": false,
     "names_shipping_functions": [
      "no_cap",
      "take_capped_aux"
     ]
    },
    {
     "name": "take_capped_unlimited_id",
     "proved_in": "SPARQL.Eval.Limits",
     "file": "formal/fstar/SPARQL.Eval.Limits.fst",
     "line": 126,
     "unconditional": true,
     "names_shipping_functions": [
      "no_cap",
      "take_capped"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": [
    {
     "suite": "sparql11-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-update",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL.Eval.TimeBudget",
   "files": [
    "formal/fstar/SPARQL.Eval.TimeBudget.fst"
   ],
   "loc": 134,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_Eval_TimeBudget.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 10,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 1,
   "assume_val_names": [
    "now_ms"
   ],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "disabled_never_expires",
     "proved_in": "SPARQL.Eval.TimeBudget",
     "file": "formal/fstar/SPARQL.Eval.TimeBudget.fst",
     "line": 84,
     "unconditional": false,
     "names_shipping_functions": [
      "is_disabled",
      "is_expired"
     ]
    },
    {
     "name": "enabled_expires_at_deadline",
     "proved_in": "SPARQL.Eval.TimeBudget",
     "file": "formal/fstar/SPARQL.Eval.TimeBudget.fst",
     "line": 91,
     "unconditional": false,
     "names_shipping_functions": [
      "is_disabled",
      "is_expired"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": [
    {
     "suite": "sparql11-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-update",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL.Explain",
   "files": [
    "formal/fstar/SPARQL.Explain.fst"
   ],
   "loc": 105,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_Explain.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 4,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "SPARQL.FullText",
   "files": [
    "formal/fstar/SPARQL.FullText.fst"
   ],
   "loc": 224,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_FullText.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 22,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_parse_object_list_simple_1",
     "proved_in": "SPARQL11.Parser.AskBgpRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
     "line": 309,
     "unconditional": false,
     "names_shipping_functions": [
      "fulltext_query_pred",
      "ggp_add_triple",
      "group_graph_pattern",
      "parse_object_list_simple"
     ]
    },
    {
     "name": "lemma_parse_pred_obj_list_1",
     "proved_in": "SPARQL11.Parser.AskBgpRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
     "line": 324,
     "unconditional": false,
     "names_shipping_functions": [
      "fulltext_query_pred",
      "ggp_add_triple",
      "group_graph_pattern",
      "parse_pred_obj_list"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": []
  },
  {
   "module": "SPARQL.GraphStore",
   "files": [
    "formal/fstar/SPARQL.GraphStore.fst"
   ],
   "loc": 186,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_GraphStore.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 15,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "sparql11-protocol",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL.HTTP",
   "files": [
    "formal/fstar/SPARQL.HTTP.fst"
   ],
   "loc": 580,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_HTTP.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 35,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "sparql11-protocol",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-service-description",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL.HTTP.Admin",
   "files": [
    "formal/fstar/SPARQL.HTTP.Admin.fst"
   ],
   "loc": 167,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_HTTP_Admin.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 6,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "sparql11-protocol",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL.HTTP.BackendInfo",
   "files": [
    "formal/fstar/SPARQL.HTTP.BackendInfo.fst"
   ],
   "loc": 152,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_HTTP_BackendInfo.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 7,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "sparql11-protocol",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-service-description",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL.HTTP.Client",
   "files": [
    "formal/fstar/SPARQL.HTTP.Client.fst"
   ],
   "loc": 604,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_HTTP_Client.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 46,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "sparql11-federated-query",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL.HTTP.QueriesIndex",
   "files": [
    "formal/fstar/SPARQL.HTTP.QueriesIndex.fst"
   ],
   "loc": 109,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_HTTP_QueriesIndex.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 10,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "sparql11-protocol",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-service-description",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL.HTTP.Response",
   "files": [
    "formal/fstar/SPARQL.HTTP.Response.fst"
   ],
   "loc": 279,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_HTTP_Response.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 24,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "sparql11-protocol",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL.HTTP.Routes",
   "files": [
    "formal/fstar/SPARQL.HTTP.Routes.fst"
   ],
   "loc": 99,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_HTTP_Routes.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 6,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "SPARQL.HTTP.RunQuery",
   "files": [
    "formal/fstar/SPARQL.HTTP.RunQuery.fst"
   ],
   "loc": 231,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_HTTP_RunQuery.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 17,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "SPARQL.HTTP.StaticFiles",
   "files": [
    "formal/fstar/SPARQL.HTTP.StaticFiles.fst"
   ],
   "loc": 78,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_HTTP_StaticFiles.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 4,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "sparql11-protocol",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL.JSON.Escape",
   "files": [
    "formal/fstar/SPARQL.JSON.Escape.fst"
   ],
   "loc": 98,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_JSON_Escape.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 6,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "sparql11-protocol",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-update",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL.Plan.AccessPath",
   "files": [
    "formal/fstar/SPARQL.Plan.AccessPath.fst"
   ],
   "loc": 258,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_Plan_AccessPath.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 5,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 4,
   "local_refinement_lemma_names": [
    "choose_access_path_no_handle_is_full_scan",
    "choose_access_path_unbound_pred_is_full_scan",
    "choose_access_path_for_pattern_unbound_pred_is_full_scan",
    "drop_skips_identity_when_no_skips"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "local-lemmas-only",
   "suites": [
    {
     "suite": "local-cottas-groupby-counts",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL.Plan.Pruning",
   "files": [
    "formal/fstar/SPARQL.Plan.Pruning.fst"
   ],
   "loc": 257,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_Plan_Pruning.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 10,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 1,
   "local_refinement_lemma_names": [
    "rg_can_match_all_unbound_is_true"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "local-lemmas-only",
   "suites": [
    {
     "suite": "local-cottas-groupby-counts",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL.Plan.Streamable",
   "files": [
    "formal/fstar/SPARQL.Plan.Streamable.fst"
   ],
   "loc": 302,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_Plan_Streamable.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 15,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "SPARQL.Protocol",
   "files": [
    "formal/fstar/SPARQL.Protocol.fst"
   ],
   "loc": 1524,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_Protocol.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 104,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_srj_single_row",
     "proved_in": "SPARQL.Protocol.RoundTrip",
     "file": "formal/fstar/SPARQL.Protocol.RoundTrip.fst",
     "line": 617,
     "unconditional": true,
     "names_shipping_functions": [
      "json_row",
      "json_var_list",
      "serialise_response_json"
     ]
    },
    {
     "name": "lemma_srj_n_rows",
     "proved_in": "SPARQL.Protocol.RoundTrip",
     "file": "formal/fstar/SPARQL.Protocol.RoundTrip.fst",
     "line": 809,
     "unconditional": true,
     "names_shipping_functions": [
      "json_var_list",
      "serialise_response_json"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": [
    {
     "suite": "sparql11-protocol",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-service-description",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL.Protocol.Client",
   "files": [
    "formal/fstar/SPARQL.Protocol.Client.fst"
   ],
   "loc": 534,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_Protocol_Client.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 44,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "SPARQL.Protocol.RoundTrip",
   "files": [
    "formal/fstar/SPARQL.Protocol.RoundTrip.fst"
   ],
   "loc": 820,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 11,
   "local_refinement_lemma_names": [
    "lemma_json_val_of_term_roundtrip",
    "lemma_json_val_of_row_roundtrip",
    "lemma_json_val_of_vars_roundtrip",
    "lemma_json_val_of_rows_roundtrip",
    "lemma_json_val_of_bool_roundtrip",
    "lemma_concat_spec_two",
    "lemma_serialise_response_json_empty_literal",
    "lemma_serialise_response_json_two_empty_rows_literal",
    "lemma_json_rows_body_acc_is_rev_acc",
    "lemma_body_pieces_eq",
    "lemma_concat_chunks"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "local-lemmas-only",
   "suites": []
  },
  {
   "module": "SPARQL.Query.Analysis",
   "files": [
    "formal/fstar/SPARQL.Query.Analysis.fst"
   ],
   "loc": 54,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_Query_Analysis.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 2,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL.ServiceDescription",
   "files": [
    "formal/fstar/SPARQL.ServiceDescription.fst"
   ],
   "loc": 251,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_ServiceDescription.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 36,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "SPARQL.Update.Analysis",
   "files": [
    "formal/fstar/SPARQL.Update.Analysis.fst"
   ],
   "loc": 32,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_Update_Analysis.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 2,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "sparql11-update",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL.Update.Sandbox",
   "files": [
    "formal/fstar/SPARQL.Update.Sandbox.fst"
   ],
   "loc": 324,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL_Update_Sandbox.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 20,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "sparql11-update",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL11.Algebra",
   "files": [
    "formal/fstar/SPARQL11.Algebra.fst"
   ],
   "loc": 8794,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL11_Algebra.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 516,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 11,
   "assume_val_names": [
    "string_uppercase_unicode",
    "string_lowercase_unicode",
    "hash_md5",
    "hash_sha1",
    "hash_sha256",
    "hash_sha384",
    "hash_sha512",
    "fx_current_datetime",
    "extension_function_call",
    "eval_property_path_fwd",
    "service_endpoint_lookup"
   ],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 24,
   "local_refinement_lemma_names": [
    "lemma_union_assoc",
    "lemma_union_nil_l",
    "lemma_union_nil_r",
    "lemma_filter_append",
    "lemma_offset_zero",
    "lemma_list_drop_zero",
    "lemma_list_take_nil",
    "lemma_filter_mem",
    "lemma_assoc_none_of_domain",
    "lemma_sm_compatible_extra_binding",
    "lemma_sm_compatible_not_refl_with_dup_keys",
    "lemma_sm_merge_empty_r",
    "lemma_sm_merge_aux_lookup",
    "lemma_sm_merge_empty_l_not_structural_identity",
    "lemma_domains_disjoint_empty_l",
    "lemma_filter_true",
    "lemma_join_empty_l",
    "lemma_concatMap_nil",
    "lemma_join_empty_r",
    "lemma_minus_empty_r",
    "lemma_union_length",
    "lemma_concatMap_all_nil",
    "lemma_ig_search_empty",
    "lemma_bgp_empty_graph"
   ],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_mem_matches_bound_acc",
     "proved_in": "RDF.Store.Columnar.DeltaMerge",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
     "line": 384,
     "unconditional": true,
     "names_shipping_functions": [
      "bound_matches",
      "triple_matches_bound_acc"
     ]
    },
    {
     "name": "lemma_mem_triple_matches_bound",
     "proved_in": "RDF.Store.Columnar.DeltaMerge",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
     "line": 432,
     "unconditional": true,
     "names_shipping_functions": [
      "bound_matches",
      "triple_matches_bound"
     ]
    },
    {
     "name": "lemma_merge_on_read_matches_apply_entries",
     "proved_in": "RDF.Store.Columnar.DeltaMerge",
     "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
     "line": 630,
     "unconditional": true,
     "names_shipping_functions": [
      "apply_entries_ref",
      "delta_resolved_empty",
      "fold_entries_for_graph",
      "merge_on_read",
      "triple_matches_bound"
     ]
    },
    {
     "name": "lemma_store_search_sound",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 344,
     "unconditional": false,
     "names_shipping_functions": [
      "graph_to_store",
      "store_search"
     ]
    },
    {
     "name": "lemma_store_search_sound_for",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 559,
     "unconditional": false,
     "names_shipping_functions": [
      "graph_to_store_for",
      "group_graph_pattern",
      "store_search"
     ]
    },
    {
     "name": "lemma_bound_pred_from_obj",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 866,
     "unconditional": false,
     "names_shipping_functions": [
      "bound_object_of_pattern",
      "bound_predicate_of_pattern"
     ]
    },
    {
     "name": "lemma_eval_single_tp_store_default_eq",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 917,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_single_tp_store",
      "eval_single_tp_store_default"
     ]
    },
    {
     "name": "lemma_eval_single_tp_sound",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 925,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_single_tp_store_default",
      "graph_to_store",
      "tp_match"
     ]
    },
    {
     "name": "lemma_eval_bgp_store_unfold",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1018,
     "unconditional": true,
     "names_shipping_functions": [
      "choose_best_tp",
      "concatMap_tr",
      "eval_bgp_store_from_mu_fuel",
      "eval_single_tp_store"
     ]
    },
    {
     "name": "lemma_eval_bgp_store_step",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1042,
     "unconditional": false,
     "names_shipping_functions": [
      "choose_best_tp",
      "eval_bgp_store_from_mu_fuel",
      "eval_single_tp_store"
     ]
    },
    {
     "name": "lemma_bound_obj_from_pred",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1452,
     "unconditional": false,
     "names_shipping_functions": [
      "bound_object_of_pattern",
      "bound_predicate_of_pattern"
     ]
    },
    {
     "name": "lemma_eval_bgp_store_step_intro",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1695,
     "unconditional": false,
     "names_shipping_functions": [
      "choose_best_tp",
      "eval_bgp_store_from_mu_fuel",
      "eval_single_tp_store"
     ]
    },
    {
     "name": "lemma_try_bind_subject_domain",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 2006,
     "unconditional": false,
     "names_shipping_functions": [
      "pattern_subject_var",
      "try_bind_subject"
     ]
    },
    {
     "name": "lemma_try_bind_term_domain",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 2034,
     "unconditional": false,
     "names_shipping_functions": [
      "pattern_term_var",
      "try_bind_term"
     ]
    },
    {
     "name": "lemma_tp_match_domain",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 2061,
     "unconditional": false,
     "names_shipping_functions": [
      "tp_match",
      "tp_vars"
     ]
    },
    {
     "name": "theorem_filter_sound",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 374,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_expr_ebv",
      "filter_solutions"
     ]
    },
    {
     "name": "theorem_filter_complete",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 386,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_expr_ebv",
      "filter_solutions"
     ]
    },
    {
     "name": "lemma_substitute_existentials_noop",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 667,
     "unconditional": false,
     "names_shipping_functions": [
      "expr_has_existential",
      "substitute_existentials"
     ]
    },
    {
     "name": "lemma_substitute_existentials_list_noop",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 715,
     "unconditional": false,
     "names_shipping_functions": [
      "expr_list_has_existential",
      "substitute_existentials_list"
     ]
    },
    {
     "name": "lemma_substitute_existentials_opt_noop",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 727,
     "unconditional": false,
     "names_shipping_functions": [
      "expr_opt_has_existential",
      "substitute_existentials_opt"
     ]
    },
    {
     "name": "theorem_filter_with_graph_is_filter_solutions",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 740,
     "unconditional": false,
     "names_shipping_functions": [
      "expr_has_existential",
      "filter_solutions",
      "filter_solutions_with_graph"
     ]
    },
    {
     "name": "lemma_join_is_nested_loop_no_shared_vars",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 993,
     "unconditional": false,
     "names_shipping_functions": [
      "join",
      "join_nested_loop",
      "sm_domain",
      "vars_intersect"
     ]
    },
    {
     "name": "lemma_join_is_nested_loop_empty",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 999,
     "unconditional": false,
     "names_shipping_functions": [
      "join",
      "join_nested_loop"
     ]
    },
    {
     "name": "theorem_sr2_witness_keys_now_agree",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1058,
     "unconditional": false,
     "names_shipping_functions": [
      "rdf_term_eq",
      "sm_compatible",
      "sm_join_key"
     ]
    },
    {
     "name": "theorem_join_key_no_finer_than_compatibility",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1076,
     "unconditional": false,
     "names_shipping_functions": [
      "rdf_term_eq",
      "sm_join_key"
     ]
    },
    {
     "name": "lemma_project_solutions_acc_memP",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1099,
     "unconditional": true,
     "names_shipping_functions": [
      "project",
      "project_solutions_acc"
     ]
    },
    {
     "name": "theorem_project_solutions_spec",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1128,
     "unconditional": true,
     "names_shipping_functions": [
      "project",
      "project_solutions"
     ]
    },
    {
     "name": "theorem_fx_bind_rows_rowwise",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1382,
     "unconditional": true,
     "names_shipping_functions": [
      "er_to_term",
      "eval_expr_fwd",
      "fx_bind_rows",
      "fx_ctx_put",
      "sm_bind"
     ]
    },
    {
     "name": "lemma_sort_solutions_permutation_pointwise",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1675,
     "unconditional": true,
     "names_shipping_functions": [
      "order_condition",
      "sort_solutions"
     ]
    },
    {
     "name": "theorem_sort_solutions_permutation",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1682,
     "unconditional": true,
     "names_shipping_functions": [
      "order_condition",
      "sort_solutions"
     ]
    },
    {
     "name": "lemma_sm_submap_extra_binding",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 2253,
     "unconditional": false,
     "names_shipping_functions": [
      "sm_domain",
      "sm_submap"
     ]
    },
    {
     "name": "lemma_sm_submap_refl",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 2261,
     "unconditional": false,
     "names_shipping_functions": [
      "sm_domain",
      "sm_submap"
     ]
    },
    {
     "name": "lemma_sm_equal_refl",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 2272,
     "unconditional": false,
     "names_shipping_functions": [
      "sm_domain",
      "sm_equal"
     ]
    },
    {
     "name": "lemma_sm_submap_lookup",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 2277,
     "unconditional": false,
     "names_shipping_functions": [
      "rdf_term_eq",
      "sm_lookup",
      "sm_submap"
     ]
    },
    {
     "name": "lemma_sm_mem_witness",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 2310,
     "unconditional": false,
     "names_shipping_functions": [
      "sm_equal",
      "sm_mem"
     ]
    },
    {
     "name": "lemma_dedup_core_complete",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 2347,
     "unconditional": false,
     "names_shipping_functions": [
      "list_deduplicate_sm_acc",
      "sm_domain",
      "sm_equal"
     ]
    },
    {
     "name": "theorem_distinct_complete",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 2395,
     "unconditional": false,
     "names_shipping_functions": [
      "distinct_solutions",
      "sm_domain",
      "sm_equal"
     ]
    },
    {
     "name": "lemma_substitute_pattern_preserves_size",
     "proved_in": "SPARQL11.Algebra",
     "file": "formal/fstar/SPARQL11.Algebra.fst",
     "line": 4976,
     "unconditional": true,
     "names_shipping_functions": [
      "group_graph_pattern",
      "pattern_size",
      "substitute_pattern"
     ]
    },
    {
     "name": "lemma_lateral_substitute_preserves_size",
     "proved_in": "SPARQL11.Algebra",
     "file": "formal/fstar/SPARQL11.Algebra.fst",
     "line": 5031,
     "unconditional": true,
     "names_shipping_functions": [
      "group_graph_pattern",
      "lateral_substitute",
      "pattern_size"
     ]
    },
    {
     "name": "lemma_rewrite_query_bnodes_pattern_preserves_size",
     "proved_in": "SPARQL11.Algebra",
     "file": "formal/fstar/SPARQL11.Algebra.fst",
     "line": 5890,
     "unconditional": true,
     "names_shipping_functions": [
      "group_graph_pattern",
      "pattern_size",
      "rewrite_query_bnodes_pattern"
     ]
    },
    {
     "name": "lemma_filter_union",
     "proved_in": "SPARQL11.Algebra",
     "file": "formal/fstar/SPARQL11.Algebra.fst",
     "line": 7469,
     "unconditional": true,
     "names_shipping_functions": [
      "filter_solutions",
      "union"
     ]
    },
    {
     "name": "lemma_sm_compatible_refl",
     "proved_in": "SPARQL11.Algebra",
     "file": "formal/fstar/SPARQL11.Algebra.fst",
     "line": 7544,
     "unconditional": false,
     "names_shipping_functions": [
      "sm_compatible",
      "sm_domain"
     ]
    },
    {
     "name": "lemma_sm_merge_empty_l",
     "proved_in": "SPARQL11.Algebra",
     "file": "formal/fstar/SPARQL11.Algebra.fst",
     "line": 7593,
     "unconditional": true,
     "names_shipping_functions": [
      "sm_lookup",
      "sm_merge"
     ]
    },
    {
     "name": "lemma_store_search_empty",
     "proved_in": "SPARQL11.Algebra",
     "file": "formal/fstar/SPARQL11.Algebra.fst",
     "line": 7698,
     "unconditional": true,
     "names_shipping_functions": [
      "graph_to_store",
      "store_search"
     ]
    },
    {
     "name": "lemma_eval_single_tp_empty",
     "proved_in": "SPARQL11.Algebra",
     "file": "formal/fstar/SPARQL11.Algebra.fst",
     "line": 7702,
     "unconditional": true,
     "names_shipping_functions": [
      "eval_single_tp_store",
      "graph_to_store"
     ]
    },
    {
     "name": "lemma_eval_bgp_store_empty_fuel",
     "proved_in": "SPARQL11.Algebra",
     "file": "formal/fstar/SPARQL11.Algebra.fst",
     "line": 7716,
     "unconditional": true,
     "names_shipping_functions": [
      "eval_bgp_store_from_mu_fuel",
      "graph_to_store"
     ]
    },
    {
     "name": "lemma_eval_pattern_bgp_is_selective_store",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 645,
     "unconditional": true,
     "names_shipping_functions": [
      "eval_bgp_store",
      "eval_pattern",
      "graph_to_store_for"
     ]
    },
    {
     "name": "lemma_ask_pattern_gives_solution",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 730,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp_store",
      "graph_to_store_for"
     ]
    },
    {
     "name": "lemma_eval_ask_query_bgp_shape",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 797,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_ask_query",
      "query"
     ]
    },
    {
     "name": "lemma_ebv_langstring_agrees",
     "proved_in": "SPARQL11.Expression.Refinement",
     "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
     "line": 187,
     "unconditional": false,
     "names_shipping_functions": [
      "ebv",
      "ebv_checked",
      "rdf_lang_string"
     ]
    },
    {
     "name": "lemma_parse_object_list_simple_1",
     "proved_in": "SPARQL11.Parser.AskBgpRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
     "line": 309,
     "unconditional": false,
     "names_shipping_functions": [
      "fulltext_query_pred",
      "ggp_add_triple",
      "group_graph_pattern",
      "parse_object_list_simple"
     ]
    },
    {
     "name": "lemma_parse_pred_obj_list_1",
     "proved_in": "SPARQL11.Parser.AskBgpRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
     "line": 324,
     "unconditional": false,
     "names_shipping_functions": [
      "fulltext_query_pred",
      "ggp_add_triple",
      "group_graph_pattern",
      "parse_pred_obj_list"
     ]
    },
    {
     "name": "parse_select_query_token_level_query",
     "proved_in": "SPARQL11.Parser.AskBgpRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
     "line": 641,
     "unconditional": false,
     "names_shipping_functions": [
      "default_modifier",
      "parse_select_query",
      "query"
     ]
    }
   ],
   "internal_refinement_theorems": [
    {
     "name": "lemma_pick_smaller_bucket_sound",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 265,
     "unconditional": false,
     "names_shipping_functions": [
      "pick_smaller_bucket"
     ],
     "names_declarative_relations": [
      "bucket_cand_sound"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "lemma_pick_smaller_bucket_complete",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 640,
     "unconditional": false,
     "names_shipping_functions": [
      "pick_smaller_bucket"
     ],
     "names_declarative_relations": [
      "bucket_cand_complete"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "lemma_ig_search_complete_selective",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 758,
     "unconditional": false,
     "names_shipping_functions": [
      "ig_search"
     ],
     "names_declarative_relations": [
      "bound_obj_exact"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "lemma_ig_search_complete",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 838,
     "unconditional": false,
     "names_shipping_functions": [
      "ig_search"
     ],
     "names_declarative_relations": [
      "bound_obj_exact"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "lemma_store_search_complete",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 843,
     "unconditional": false,
     "names_shipping_functions": [
      "graph_to_store",
      "store_search"
     ],
     "names_declarative_relations": [
      "bound_obj_exact"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "lemma_store_search_complete_for",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 850,
     "unconditional": false,
     "names_shipping_functions": [
      "graph_to_store_for",
      "group_graph_pattern",
      "store_search"
     ],
     "names_declarative_relations": [
      "bound_obj_exact"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "theorem_eval_bgp_subgraph",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1134,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "bgp_subgraph_clause",
      "graph_frag"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "lemma_instantiate_bgp_subset",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1144,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_bgp"
     ],
     "names_declarative_relations": [
      "bgp_subgraph_clause"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "theorem_eval_bgp_instantiates_into_graph",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1180,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp",
      "instantiate_bgp"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "graph_frag"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "lemma_graph_to_store_sound",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1217,
     "unconditional": true,
     "names_shipping_functions": [
      "graph_to_store"
     ],
     "names_declarative_relations": [
      "store_search_sound"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "lemma_graph_to_store_for_sound",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1227,
     "unconditional": true,
     "names_shipping_functions": [
      "graph_to_store_for",
      "group_graph_pattern"
     ],
     "names_declarative_relations": [
      "store_search_sound"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "lemma_eval_single_tp_sound_at",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1239,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_single_tp_store_default",
      "tp_match"
     ],
     "names_declarative_relations": [
      "store_search_sound"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "theorem_eval_bgp_store_subgraph",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1328,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp_store"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "bgp_subgraph_clause",
      "graph_frag",
      "store_search_sound"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "theorem_eval_bgp_store_instantiates_into_graph",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1334,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp_store",
      "instantiate_bgp"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "graph_frag",
      "store_search_sound"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "theorem_eval_bgp_store_for_instantiates_into_graph",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1350,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp_store",
      "graph_to_store_for",
      "group_graph_pattern",
      "instantiate_bgp"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "graph_frag"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "lemma_graph_to_store_complete",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1630,
     "unconditional": true,
     "names_shipping_functions": [
      "graph_to_store"
     ],
     "names_declarative_relations": [
      "store_search_complete"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "lemma_graph_to_store_for_complete",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1639,
     "unconditional": true,
     "names_shipping_functions": [
      "graph_to_store_for",
      "group_graph_pattern"
     ],
     "names_declarative_relations": [
      "store_search_complete"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "lemma_subgraph_clause_of_instantiated",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1858,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_bgp",
      "instantiate_tp"
     ],
     "names_declarative_relations": [
      "bgp_subgraph_clause"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "theorem_eval_bgp_store_complete_answer",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1883,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp_store",
      "instantiate_bgp"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "bgp_subgraph_clause",
      "graph_frag",
      "store_search_complete",
      "store_search_sound"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "theorem_eval_bgp_store_complete_from_subset",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1908,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp_store",
      "instantiate_bgp",
      "instantiate_tp"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "graph_frag",
      "store_search_complete",
      "store_search_sound"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "theorem_eval_bgp_complete_from_subset",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1924,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp",
      "instantiate_bgp",
      "instantiate_tp"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "graph_frag"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "theorem_eval_bgp_store_for_complete_from_subset",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1942,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp_store",
      "graph_to_store_for",
      "group_graph_pattern",
      "instantiate_bgp",
      "instantiate_tp"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "graph_frag"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "lemma_eval_single_tp_store_domain",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 2088,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_single_tp_store",
      "tp_vars"
     ],
     "names_declarative_relations": [
      "tp_frag"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "theorem_eval_bgp_store_domain_fuel",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 2157,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp_store_from_mu_fuel"
     ],
     "names_declarative_relations": [
      "bgp_dom_grow_clause",
      "bgp_frag"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "theorem_eval_bgp_domain",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 2195,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp",
      "sm_empty"
     ],
     "names_declarative_relations": [
      "bgp_dom_grow_clause",
      "bgp_frag"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "theorem_eval_bgp_dom_clause",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 2210,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp"
     ],
     "names_declarative_relations": [
      "bgp_dom_clause",
      "bgp_frag"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.BGPRefinement"
     ]
    },
    {
     "name": "lemma_sm_compatible_sound",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 215,
     "unconditional": false,
     "names_shipping_functions": [
      "sm_compatible"
     ],
     "names_declarative_relations": [
      "smap_exact"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.Refinement"
     ]
    },
    {
     "name": "lemma_try_bind_term_instantiates",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1471,
     "unconditional": false,
     "names_shipping_functions": [
      "bound_object_of_pattern",
      "try_bind_term"
     ],
     "names_declarative_relations": [
      "binding_extends",
      "ptrm_exact",
      "smap_exact",
      "term_exact"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.Refinement"
     ]
    },
    {
     "name": "lemma_try_bind_subject_instantiates",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1508,
     "unconditional": false,
     "names_shipping_functions": [
      "bound_subject_of_pattern",
      "try_bind_subject"
     ],
     "names_declarative_relations": [
      "binding_extends",
      "smap_exact"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.Refinement"
     ]
    },
    {
     "name": "theorem_tp_match_instantiates",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1538,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_tp",
      "tp_match"
     ],
     "names_declarative_relations": [
      "binding_extends",
      "ptrm_exact",
      "smap_exact",
      "term_exact"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.Refinement"
     ]
    },
    {
     "name": "theorem_sort_solutions_sorted",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1901,
     "unconditional": false,
     "names_shipping_functions": [
      "compare_on_conditions",
      "order_condition",
      "sort_solutions"
     ],
     "names_declarative_relations": [
      "sorted_by",
      "totality_on",
      "transitivity_on"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.Refinement"
     ]
    },
    {
     "name": "lemma_sparql_order_numeric_frag_totality",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 2015,
     "unconditional": false,
     "names_shipping_functions": [
      "sparql_order"
     ],
     "names_declarative_relations": [
      "er_num_plain"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.Refinement"
     ]
    },
    {
     "name": "lemma_sparql_order_numeric_frag_trans",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 2050,
     "unconditional": false,
     "names_shipping_functions": [
      "sparql_order"
     ],
     "names_declarative_relations": [
      "er_num_plain"
     ],
     "declarative_relations_from": [
      "SPARQL11.Algebra.Refinement"
     ]
    },
    {
     "name": "lemma_smap_ground_lookup",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 285,
     "unconditional": false,
     "names_shipping_functions": [
      "sm_lookup"
     ],
     "names_declarative_relations": [
      "smap_ground",
      "term_ground"
     ],
     "declarative_relations_from": [
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "lemma_bound_subject_ground",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 293,
     "unconditional": false,
     "names_shipping_functions": [
      "bound_subject_of_pattern"
     ],
     "names_declarative_relations": [
      "smap_ground",
      "subject_ground"
     ],
     "declarative_relations_from": [
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "lemma_bound_object_ground",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 304,
     "unconditional": false,
     "names_shipping_functions": [
      "bound_object_of_pattern"
     ],
     "names_declarative_relations": [
      "smap_ground",
      "term_ground"
     ],
     "declarative_relations_from": [
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "lemma_instantiate_tp_ground",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 320,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_tp"
     ],
     "names_declarative_relations": [
      "smap_ground",
      "tp_ground_positions",
      "triple_ground"
     ],
     "declarative_relations_from": [
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "lemma_instantiate_bgp_ground",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 340,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_bgp"
     ],
     "names_declarative_relations": [
      "bgp_ground_positions",
      "smap_ground"
     ],
     "declarative_relations_from": [
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_bgp_sound",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 532,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp",
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_bgp_complete_conditional",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 583,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp",
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "eval_bgp_complete_at",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_bgp_exact",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 606,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp",
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "eval_bgp_complete_at",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_ask_sound",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 662,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_ask_complete_conditional",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 684,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "eval_bgp_complete_at",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_bgp_sound_selective",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 747,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp_store",
      "graph_to_store_for",
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_ask_pattern_sound",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 768,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_ask_query_sound",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 814,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_ask_query",
      "instantiate_bgp",
      "query",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_bgp_complete_conditional_selective",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 854,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp_store",
      "graph_to_store_for",
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "eval_bgp_store_complete_at",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_ask_query_complete_conditional",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 873,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_ask_query",
      "instantiate_bgp",
      "query",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "eval_bgp_store_complete_at",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "lemma_regime_answer_is_subgraph",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 958,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_bgp_complete",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 981,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp",
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "bgp_instantiable",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_bgp_exact_answer",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 1005,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp",
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "bgp_instantiable",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_ask_complete",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 1034,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "bgp_instantiable",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_bgp_complete_selective",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 1061,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp_store",
      "graph_to_store_for",
      "instantiate_bgp",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "bgp_instantiable",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    },
    {
     "name": "theorem_rdfs_regime_ask_query_complete",
     "proved_in": "SPARQL11.EntailmentRegime.RDFS",
     "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
     "line": 1089,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_ask_query",
      "instantiate_bgp",
      "query",
      "rho_df_closure"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "bgp_instantiable",
      "graph_frag",
      "rho_df_decides_hyps",
      "rho_df_entails"
     ],
     "declarative_relations_from": [
      "RDF.Entailment.RDFS.Completeness",
      "SPARQL11.Algebra.BGPRefinement",
      "SPARQL11.EntailmentRegime.RDFS"
     ]
    }
   ],
   "w3c_refinement_theorems": [
    {
     "name": "theorem_tp_match_instantiates_ext",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 881,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_tp",
      "tp_match"
     ],
     "names_declarative_relations": [
      "binding_extends",
      "ptrm_exact",
      "smap_exact",
      "term_exact"
     ]
    },
    {
     "name": "theorem_eval_bgp_sound_fuel",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1069,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp_store_from_mu_fuel",
      "graph_to_store"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "bgp_subgraph_clause",
      "binding_extends",
      "graph_frag",
      "smap_exact"
     ]
    },
    {
     "name": "lemma_bgp_sol_spec_from_subgraph_clause",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1168,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_tp"
     ],
     "names_declarative_relations": [
      "bgp_sol_spec",
      "bgp_subgraph_clause"
     ]
    },
    {
     "name": "theorem_eval_bgp_store_sound_fuel",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1264,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp_store_from_mu_fuel"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "bgp_subgraph_clause",
      "binding_extends",
      "graph_frag",
      "smap_exact",
      "store_search_sound"
     ]
    },
    {
     "name": "lemma_term_exact_subject",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1373,
     "unconditional": true,
     "names_shipping_functions": [
      "subject_to_term"
     ],
     "names_declarative_relations": [
      "term_exact"
     ]
    },
    {
     "name": "lemma_bound_subject_mono",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1395,
     "unconditional": false,
     "names_shipping_functions": [
      "bound_subject_of_pattern"
     ],
     "names_declarative_relations": [
      "binding_extends"
     ]
    },
    {
     "name": "lemma_bound_predicate_mono",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1415,
     "unconditional": false,
     "names_shipping_functions": [
      "bound_predicate_of_pattern"
     ],
     "names_declarative_relations": [
      "binding_extends"
     ]
    },
    {
     "name": "lemma_bound_object_mono",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1431,
     "unconditional": false,
     "names_shipping_functions": [
      "bound_object_of_pattern"
     ],
     "names_declarative_relations": [
      "binding_extends"
     ]
    },
    {
     "name": "lemma_bound_object_exact",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1462,
     "unconditional": false,
     "names_shipping_functions": [
      "bound_object_of_pattern"
     ],
     "names_declarative_relations": [
      "ptrm_exact",
      "smap_exact",
      "term_exact"
     ]
    },
    {
     "name": "lemma_sm_bind_extends",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1481,
     "unconditional": false,
     "names_shipping_functions": [
      "sm_bind"
     ],
     "names_declarative_relations": [
      "binding_extends"
     ]
    },
    {
     "name": "lemma_sm_bind_under",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1486,
     "unconditional": false,
     "names_shipping_functions": [
      "sm_bind"
     ],
     "names_declarative_relations": [
      "binding_extends"
     ]
    },
    {
     "name": "lemma_try_bind_subject_complete",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1497,
     "unconditional": false,
     "names_shipping_functions": [
      "bound_subject_of_pattern",
      "try_bind_subject"
     ],
     "names_declarative_relations": [
      "binding_extends",
      "smap_exact"
     ]
    },
    {
     "name": "lemma_try_bind_term_complete",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1529,
     "unconditional": false,
     "names_shipping_functions": [
      "bound_object_of_pattern",
      "try_bind_term"
     ],
     "names_declarative_relations": [
      "binding_extends",
      "smap_exact",
      "term_exact"
     ]
    },
    {
     "name": "lemma_tp_match_complete",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1558,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_tp",
      "tp_match"
     ],
     "names_declarative_relations": [
      "binding_extends",
      "smap_exact",
      "term_exact"
     ]
    },
    {
     "name": "lemma_bound_holds_of_instantiate",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1598,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_tp"
     ],
     "names_declarative_relations": [
      "binding_extends"
     ]
    },
    {
     "name": "lemma_eval_single_tp_complete_at",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1660,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_tp"
     ],
     "names_declarative_relations": [
      "binding_extends",
      "graph_frag",
      "single_tp_goal",
      "smap_exact",
      "store_search_complete",
      "tp_frag"
     ]
    },
    {
     "name": "theorem_eval_bgp_store_complete",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1796,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp_store"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "bgp_subgraph_clause",
      "binding_extends",
      "graph_frag",
      "smap_exact",
      "store_search_complete"
     ]
    },
    {
     "name": "theorem_eval_bgp_complete",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1804,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "bgp_subgraph_clause",
      "binding_extends",
      "graph_frag",
      "smap_exact"
     ]
    },
    {
     "name": "lemma_instantiate_tp_mono",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1830,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_tp"
     ],
     "names_declarative_relations": [
      "binding_extends"
     ]
    },
    {
     "name": "lemma_instantiate_bgp_agree",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 1839,
     "unconditional": false,
     "names_shipping_functions": [
      "instantiate_bgp",
      "instantiate_tp"
     ],
     "names_declarative_relations": [
      "binding_extends"
     ]
    },
    {
     "name": "theorem_eval_bgp_full_spec",
     "proved_in": "SPARQL11.Algebra.BGPRefinement",
     "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
     "line": 2223,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_bgp",
      "instantiate_tp",
      "tp_vars"
     ],
     "names_declarative_relations": [
      "bgp_frag",
      "bgp_sol_spec",
      "graph_frag"
     ]
    },
    {
     "name": "theorem_sm_compatible_sound",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 226,
     "unconditional": false,
     "names_shipping_functions": [
      "sm_compatible"
     ],
     "names_declarative_relations": [
      "compatible_spec",
      "smap_exact"
     ]
    },
    {
     "name": "theorem_sm_compatible_complete",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 244,
     "unconditional": false,
     "names_shipping_functions": [
      "sm_compatible"
     ],
     "names_declarative_relations": [
      "compatible_spec"
     ]
    },
    {
     "name": "theorem_sm_merge_is_merge",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 280,
     "unconditional": true,
     "names_shipping_functions": [
      "sm_merge"
     ],
     "names_declarative_relations": [
      "is_merge"
     ]
    },
    {
     "name": "theorem_domains_disjoint_sound",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 287,
     "unconditional": false,
     "names_shipping_functions": [
      "domains_disjoint"
     ],
     "names_declarative_relations": [
      "dom_disjoint_spec"
     ]
    },
    {
     "name": "theorem_domains_disjoint_complete",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 301,
     "unconditional": false,
     "names_shipping_functions": [
      "domains_disjoint"
     ],
     "names_declarative_relations": [
      "dom_disjoint_spec"
     ]
    },
    {
     "name": "theorem_union_card",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 346,
     "unconditional": true,
     "names_shipping_functions": [
      "union"
     ],
     "names_declarative_relations": [
      "union_card_spec"
     ]
    },
    {
     "name": "theorem_union_sound",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 353,
     "unconditional": false,
     "names_shipping_functions": [
      "union"
     ],
     "names_declarative_relations": [
      "in_union_spec"
     ]
    },
    {
     "name": "lemma_sm_lookup_congr",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 485,
     "unconditional": false,
     "names_shipping_functions": [
      "sm_lookup"
     ],
     "names_declarative_relations": [
      "smap_eq"
     ]
    },
    {
     "name": "lemma_fx_ctx_get_congr",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 490,
     "unconditional": false,
     "names_shipping_functions": [
      "fx_ctx_get"
     ],
     "names_declarative_relations": [
      "smap_eq"
     ]
    },
    {
     "name": "lemma_eval_expr_congr",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 507,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_expr_with_base"
     ],
     "names_declarative_relations": [
      "smap_eq"
     ]
    },
    {
     "name": "lemma_eval_coalesce_congr",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 568,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_coalesce_with_base"
     ],
     "names_declarative_relations": [
      "smap_eq"
     ]
    },
    {
     "name": "lemma_eval_geof_args_congr",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 578,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_geof_args_with_base"
     ],
     "names_declarative_relations": [
      "smap_eq"
     ]
    },
    {
     "name": "lemma_eval_in_congr",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 588,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_in_with_base"
     ],
     "names_declarative_relations": [
      "smap_eq"
     ]
    },
    {
     "name": "lemma_eval_concat_congr",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 598,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_concat_with_base"
     ],
     "names_declarative_relations": [
      "smap_eq"
     ]
    },
    {
     "name": "lemma_eval_expr_opt_congr",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 609,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_expr_with_base"
     ],
     "names_declarative_relations": [
      "smap_eq"
     ]
    },
    {
     "name": "theorem_sr1_witness_now_card_conformant",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 810,
     "unconditional": true,
     "names_shipping_functions": [
      "distinct_solutions"
     ],
     "names_declarative_relations": [
      "distinct_card_spec"
     ]
    },
    {
     "name": "theorem_sm_equal_matches_smap_eq_on_witness",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 846,
     "unconditional": true,
     "names_shipping_functions": [
      "sm_equal"
     ],
     "names_declarative_relations": [
      "smap_eq"
     ]
    },
    {
     "name": "theorem_join_nested_loop_sound",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 940,
     "unconditional": false,
     "names_shipping_functions": [
      "join_nested_loop"
     ],
     "names_declarative_relations": [
      "in_join_spec",
      "seq_exact"
     ]
    },
    {
     "name": "theorem_join_nested_loop_complete",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 965,
     "unconditional": false,
     "names_shipping_functions": [
      "join_nested_loop"
     ],
     "names_declarative_relations": [
      "compatible_spec",
      "is_merge"
     ]
    },
    {
     "name": "theorem_project_is_proj",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1095,
     "unconditional": true,
     "names_shipping_functions": [
      "project"
     ],
     "names_declarative_relations": [
      "is_proj"
     ]
    },
    {
     "name": "theorem_project_solutions_sound",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1135,
     "unconditional": false,
     "names_shipping_functions": [
      "project_solutions"
     ],
     "names_declarative_relations": [
      "in_project_spec"
     ]
    },
    {
     "name": "theorem_project_card",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1177,
     "unconditional": true,
     "names_shipping_functions": [
      "project_solutions"
     ],
     "names_declarative_relations": [
      "project_card_spec"
     ]
    },
    {
     "name": "lemma_not_compatible_of_engine",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1240,
     "unconditional": false,
     "names_shipping_functions": [
      "sm_compatible"
     ],
     "names_declarative_relations": [
      "compatible_spec"
     ]
    },
    {
     "name": "theorem_minus_sound",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1249,
     "unconditional": false,
     "names_shipping_functions": [
      "minus"
     ],
     "names_declarative_relations": [
      "in_minus_spec"
     ]
    },
    {
     "name": "theorem_minus_complete",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1266,
     "unconditional": false,
     "names_shipping_functions": [
      "minus"
     ],
     "names_declarative_relations": [
      "compatible_spec",
      "dom_disjoint_spec",
      "smap_exact"
     ]
    },
    {
     "name": "theorem_left_join_empty_right",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1338,
     "unconditional": false,
     "names_shipping_functions": [
      "eval_expr_ebv",
      "left_join"
     ],
     "names_declarative_relations": [
      "in_leftjoin_spec"
     ]
    },
    {
     "name": "theorem_sm_bind_is_extend",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 1404,
     "unconditional": false,
     "names_shipping_functions": [
      "sm_bind"
     ],
     "names_declarative_relations": [
      "is_extend_at"
     ]
    },
    {
     "name": "theorem_sr3_distinct_card_spec_false",
     "proved_in": "SPARQL11.Algebra.Refinement",
     "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
     "line": 2491,
     "unconditional": true,
     "names_shipping_functions": [
      "distinct_solutions"
     ],
     "names_declarative_relations": [
      "distinct_card_spec"
     ]
    }
   ],
   "assurance_tier": "w3c-refinement",
   "suites": [
    {
     "suite": "local-backend-parity-full",
     "how": "direct-trigger"
    },
    {
     "suite": "local-graph-default-semantics",
     "how": "direct-trigger"
    },
    {
     "suite": "local-sparql-negative",
     "how": "direct-trigger"
    },
    {
     "suite": "local-sparql-parser",
     "how": "direct-trigger"
    },
    {
     "suite": "rif",
     "how": "direct-trigger"
    },
    {
     "suite": "rml",
     "how": "direct-trigger"
    },
    {
     "suite": "shacl-core",
     "how": "direct-trigger"
    },
    {
     "suite": "shacl-sparql",
     "how": "direct-trigger"
    },
    {
     "suite": "shex",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-federated-query",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-protocol",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-service-description",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-update",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL11.Algebra.BGPRefinement",
   "files": [
    "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst"
   ],
   "loc": 2235,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "not-in-build-list",
   "extraction_oracle_available": false,
   "extracted_ml": null,
   "in_build_module_list": false,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 13,
   "unclassified_definition_count": 4,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 29,
   "local_refinement_lemma_names": [
    "lemma_build_indexed_wf_so_weak",
    "lemma_memP_tmb_acc",
    "lemma_memP_triple_matches_bound",
    "lemma_ig_search_sound",
    "lemma_build_indexed_selective_wf_pred",
    "lemma_build_indexed_selective_wf_subj_weak",
    "lemma_build_indexed_selective_wf_obj_weak",
    "lemma_build_indexed_selective_wf_sp_weak",
    "lemma_build_indexed_selective_wf_po_weak",
    "lemma_build_indexed_selective_wf_so_weak",
    "lemma_ig_search_sound_selective",
    "lemma_subject_eq_ident",
    "lemma_tmb_acc_complete",
    "lemma_triple_matches_bound_complete",
    "lemma_build_indexed_selective_complete_pred",
    "lemma_build_indexed_selective_complete_subj",
    "lemma_build_indexed_selective_complete_sp",
    "lemma_build_indexed_selective_complete_obj",
    "lemma_build_indexed_selective_complete_po",
    "lemma_build_indexed_selective_complete_so",
    "lemma_choose_best_tp_cover",
    "lemma_memP_concatMap_tr",
    "lemma_term_exact_iri",
    "lemma_term_exact_bnode",
    "lemma_sm_bind_sval",
    "lemma_tp_bound_obj_exact",
    "lemma_memP_concatMap_tr_intro",
    "theorem_eval_bgp_store_complete_fuel",
    "lemma_bgp_vars_cover"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "unclassified",
   "suites": []
  },
  {
   "module": "SPARQL11.Algebra.Refinement",
   "files": [
    "formal/fstar/SPARQL11.Algebra.Refinement.fst"
   ],
   "loc": 2498,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 11,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 74,
   "local_refinement_lemma_names": [
    "lemma_assoc_some_mem",
    "lemma_mult_append",
    "lemma_memP_append",
    "lemma_union_is_append",
    "theorem_union_complete",
    "theorem_filter_card",
    "lemma_eval_expr_ebv_transparent_congr",
    "theorem_eval_expr_ebv_transparent_congr",
    "theorem_filter_card_eval_expr_with_base",
    "lemma_dedup_acc_sound",
    "theorem_distinct_sound",
    "lemma_sr1_same_mapping",
    "lemma_sr1_sm_equal_agrees",
    "lemma_sr1_distinct_dedups",
    "lemma_memP_filter_map_acc",
    "lemma_memP_filter_map",
    "lemma_memP_concatMap",
    "lemma_seq_exact_memP",
    "lemma_seq_wf_memP",
    "lemma_join_nested_loop_unfold",
    "lemma_concatMap_nil_f",
    "lemma_strcat_left_neq",
    "lemma_strcat_right_neq",
    "lemma_sr2_nq_differs",
    "lemma_project_lookup",
    "lemma_project_solutions_acc_length",
    "theorem_project_solutions_length",
    "lemma_is_proj_unique",
    "lemma_is_proj_congr_target",
    "lemma_minus_unfold",
    "lemma_existsb_memP",
    "lemma_memP_filter",
    "lemma_filter_map_nil_all_none",
    "theorem_left_join_empty_left",
    "theorem_fx_bind_rows_length",
    "lemma_binding_extends_refl",
    "lemma_binding_extends_trans",
    "lemma_smap_exact_sval",
    "lemma_filter_partition_count",
    "lemma_sortWith_mult",
    "lemma_mult_is_filter_length",
    "lemma_totality_on_weaken",
    "lemma_partition_bool_memP",
    "lemma_partition_bool_memP_forall",
    "lemma_sorted_by_cons_hi",
    "lemma_sorted_by_append",
    "lemma_sortWith_sorted_by",
    "lemma_sparql_order_iri_totality",
    "lemma_sparql_order_iri_trans",
    "lemma_list_drop_length",
    "lemma_list_take_length",
    "lemma_list_drop_index",
    "lemma_list_take_index",
    "theorem_slice_solutions_window",
    "theorem_slice_solutions_length",
    "lemma_lang_tag_eq_symm",
    "lemma_lang_tag_eq_trans",
    "lemma_lang_tag_option_eq_symm",
    "lemma_lang_tag_option_eq_trans",
    "lemma_literal_eq_symm",
    "lemma_literal_eq_trans",
    "lemma_subject_eq_symm",
    "lemma_subject_eq_trans",
    "lemma_rdf_term_eq_symm",
    "lemma_rdf_term_eq_trans",
    "lemma_sm_equal_symm",
    "lemma_sm_submap_trans",
    "lemma_sm_equal_trans",
    "lemma_dedup_acc_append",
    "lemma_dc_witness_rdf_term_eq",
    "lemma_dc_witness_term_id_eqb_false",
    "lemma_dc_distinct_dedups",
    "lemma_dc_mult_witness_omega",
    "lemma_dc_mult_witness_res"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "specification-and-proof",
   "suites": []
  },
  {
   "module": "SPARQL11.Algebra.Spec",
   "files": [
    "formal/fstar/SPARQL11.Algebra.Spec.fst"
   ],
   "loc": 835,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "fully-erased",
   "extraction_oracle_available": true,
   "extracted_ml": null,
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 22,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 36,
   "local_refinement_lemma_names": [
    "lemma_lit_id_eqb_sound",
    "lemma_subj_id_eqb_sound",
    "lemma_term_id_eqb_sound",
    "lemma_term_id_eqb_complete",
    "lemma_term_id_eqb_refl",
    "lemma_smap_eq_refl",
    "lemma_smap_eq_sym",
    "lemma_smap_eq_trans",
    "lemma_sval_none_outside_dom",
    "lemma_agrees_on_mem",
    "lemma_opt_term_id_eqb_sound",
    "lemma_smap_eqb_sound",
    "lemma_agrees_on_of_smap_eq",
    "lemma_smap_eqb_complete",
    "lemma_compatible_empty_l",
    "lemma_compatible_empty_r",
    "lemma_compatible_of_disjoint",
    "lemma_compatible_refl",
    "lemma_compatible_sym",
    "lemma_compatible_congr_l",
    "lemma_assoc_append",
    "lemma_merge_canonical_is_merge",
    "lemma_merge_unique",
    "lemma_merge_comm_compatible",
    "lemma_merge_extends_l",
    "lemma_merge_extends_r",
    "lemma_merge_dom",
    "lemma_merge_compatible_l",
    "lemma_occurs_memP",
    "lemma_join_comm_witness",
    "lemma_join_comm_spec",
    "lemma_mult_congr",
    "lemma_mult_pos_implies_occurs",
    "lemma_occurs_witness_implies_mult_pos",
    "lemma_mult_pos_iff_occurs",
    "lemma_bgp_empty"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "specification-and-proof",
   "suites": []
  },
  {
   "module": "SPARQL11.EntailmentRegime.RDFS",
   "files": [
    "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst"
   ],
   "loc": 1116,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "not-in-build-list",
   "extraction_oracle_available": false,
   "extracted_ml": null,
   "in_build_module_list": false,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 11,
   "unclassified_definition_count": 20,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 12,
   "local_refinement_lemma_names": [
    "lemma_ground_implies_tt_free",
    "lemma_subj_inst_id",
    "lemma_term_inst_id",
    "lemma_triple_inst_id",
    "lemma_subgraph_implies_spec",
    "lemma_triple_inst_ground",
    "lemma_spec_ground_implies_subgraph",
    "lemma_ground_entailment_collapse",
    "lemma_term_tt_free_bridge",
    "lemma_graph_frag_tt_free",
    "lemma_tt_free_subset",
    "lemma_ask_bgp_gives_solution"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "unclassified",
   "suites": []
  },
  {
   "module": "SPARQL11.Expression.Refinement",
   "files": [
    "formal/fstar/SPARQL11.Expression.Refinement.fst"
   ],
   "loc": 424,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "not-in-build-list",
   "extraction_oracle_available": false,
   "extracted_ml": null,
   "in_build_module_list": false,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 6,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 19,
   "local_refinement_lemma_names": [
    "lemma_ebv_checked_is_spec",
    "lemma_ebv_matches_spec_some",
    "lemma_ebv_typeerror_folds_false",
    "lemma_and_matches_spec_when_no_error",
    "lemma_or_matches_spec_when_no_error",
    "lemma_not_matches_spec_when_no_error",
    "lemma_eval_and_matches_spec",
    "lemma_eval_or_matches_spec",
    "lemma_eval_not_matches_spec",
    "lemma_eval_and_true_error_agrees",
    "lemma_eval_or_false_error_agrees",
    "lemma_eval_not_error_agrees",
    "lemma_eq_num_matches_spec",
    "lemma_eq_plain_string_matches_spec",
    "lemma_eq_dec_reflexive",
    "lemma_eq_dbl_reflexive",
    "lemma_eq_literal_different_datatype_typeerror",
    "lemma_eq_literal_same_datatype_diff_lang",
    "lemma_eval_eq_num_matches_spec"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "unclassified",
   "suites": []
  },
  {
   "module": "SPARQL11.IRI.Resolve",
   "files": [
    "formal/fstar/SPARQL11.IRI.Resolve.fst"
   ],
   "loc": 39,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL11_IRI_Resolve.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 2,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "SPARQL11.Parser",
   "files": [
    "formal/fstar/SPARQL11.Parser.fst"
   ],
   "loc": 5413,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL11_Parser.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 269,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [
    {
     "name": "lemma_path_elt_iri",
     "proved_in": "SPARQL11.Parser.AskBgpRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
     "line": 225,
     "unconditional": false,
     "names_shipping_functions": [
      "parse_path_elt",
      "parse_peek"
     ]
    },
    {
     "name": "lemma_path_elt_or_inverse_iri",
     "proved_in": "SPARQL11.Parser.AskBgpRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
     "line": 233,
     "unconditional": false,
     "names_shipping_functions": [
      "parse_path_elt_or_inverse",
      "parse_peek"
     ]
    },
    {
     "name": "lemma_path_sequence_iri",
     "proved_in": "SPARQL11.Parser.AskBgpRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
     "line": 241,
     "unconditional": false,
     "names_shipping_functions": [
      "parse_path_sequence",
      "parse_peek"
     ]
    },
    {
     "name": "lemma_path_alternative_iri",
     "proved_in": "SPARQL11.Parser.AskBgpRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
     "line": 250,
     "unconditional": false,
     "names_shipping_functions": [
      "parse_path_alternative",
      "parse_peek"
     ]
    },
    {
     "name": "lemma_parse_verb_iri",
     "proved_in": "SPARQL11.Parser.AskBgpRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
     "line": 261,
     "unconditional": false,
     "names_shipping_functions": [
      "parse_peek",
      "parse_verb"
     ]
    },
    {
     "name": "lemma_parse_verb_1",
     "proved_in": "SPARQL11.Parser.AskBgpRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
     "line": 277,
     "unconditional": false,
     "names_shipping_functions": [
      "parse_peek",
      "parse_verb"
     ]
    },
    {
     "name": "lemma_parse_object_list_simple_1",
     "proved_in": "SPARQL11.Parser.AskBgpRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
     "line": 309,
     "unconditional": false,
     "names_shipping_functions": [
      "fulltext_query_pred",
      "ggp_add_triple",
      "group_graph_pattern",
      "parse_object_list_simple"
     ]
    },
    {
     "name": "lemma_parse_pred_obj_list_1",
     "proved_in": "SPARQL11.Parser.AskBgpRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
     "line": 324,
     "unconditional": false,
     "names_shipping_functions": [
      "fulltext_query_pred",
      "ggp_add_triple",
      "group_graph_pattern",
      "parse_pred_obj_list"
     ]
    },
    {
     "name": "lemma_triples_block_unfold_one_triple",
     "proved_in": "SPARQL11.Parser.AskBgpRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
     "line": 391,
     "unconditional": false,
     "names_shipping_functions": [
      "parse_peek",
      "parse_triples_block"
     ]
    },
    {
     "name": "lemma_parse_ask_body_1",
     "proved_in": "SPARQL11.Parser.AskBgpRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
     "line": 528,
     "unconditional": false,
     "names_shipping_functions": [
      "default_modifier",
      "parse_ask_body"
     ]
    },
    {
     "name": "lemma_parse_select_query_ask_bgp",
     "proved_in": "SPARQL11.Parser.AskBgpRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
     "line": 589,
     "unconditional": false,
     "names_shipping_functions": [
      "default_modifier",
      "parse_select_query",
      "resolve_relative_iri_tokens"
     ]
    },
    {
     "name": "parse_select_query_token_level",
     "proved_in": "SPARQL11.Parser.AskBgpRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
     "line": 618,
     "unconditional": false,
     "names_shipping_functions": [
      "default_modifier",
      "parse_select_query"
     ]
    },
    {
     "name": "parse_select_query_token_level_query",
     "proved_in": "SPARQL11.Parser.AskBgpRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
     "line": 641,
     "unconditional": false,
     "names_shipping_functions": [
      "default_modifier",
      "parse_select_query",
      "query"
     ]
    },
    {
     "name": "peek_at_offset",
     "proved_in": "SPARQL11.Parser.TokenRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
     "line": 156,
     "unconditional": false,
     "names_shipping_functions": [
      "at_end",
      "peek_char"
     ]
    },
    {
     "name": "peek_at_space",
     "proved_in": "SPARQL11.Parser.TokenRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
     "line": 201,
     "unconditional": false,
     "names_shipping_functions": [
      "at_end",
      "peek_char"
     ]
    },
    {
     "name": "var_chars_end_stop",
     "proved_in": "SPARQL11.Parser.TokenRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
     "line": 283,
     "unconditional": false,
     "names_shipping_functions": [
      "at_end",
      "peek_char",
      "scan_var_chars_end"
     ]
    },
    {
     "name": "var_name_empty",
     "proved_in": "SPARQL11.Parser.TokenRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
     "line": 289,
     "unconditional": false,
     "names_shipping_functions": [
      "scan_var_chars_end",
      "scan_var_name"
     ]
    },
    {
     "name": "next_token_skip_space",
     "proved_in": "SPARQL11.Parser.TokenRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
     "line": 704,
     "unconditional": false,
     "names_shipping_functions": [
      "at_end",
      "char_code",
      "is_ws",
      "next_token",
      "peek_char"
     ]
    },
    {
     "name": "next_token_at_end",
     "proved_in": "SPARQL11.Parser.TokenRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
     "line": 726,
     "unconditional": false,
     "names_shipping_functions": [
      "at_end",
      "next_token"
     ]
    },
    {
     "name": "combine_step",
     "proved_in": "SPARQL11.Parser.TokenRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
     "line": 1012,
     "unconditional": false,
     "names_shipping_functions": [
      "next_token",
      "tokenize_loop"
     ]
    },
    {
     "name": "tokenize_loop_step_bridge",
     "proved_in": "SPARQL11.Parser.TokenRoundTrip",
     "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
     "line": 1146,
     "unconditional": false,
     "names_shipping_functions": [
      "next_token",
      "tokenize_loop"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": [
    {
     "suite": "local-sparql-negative",
     "how": "direct-trigger"
    },
    {
     "suite": "local-sparql-parser",
     "how": "direct-trigger"
    },
    {
     "suite": "rif",
     "how": "direct-trigger"
    },
    {
     "suite": "shacl-sparql",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-federated-query",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-protocol",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-service-description",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-update",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "SPARQL11.Parser.AskBgpRoundTrip",
   "files": [
    "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst"
   ],
   "loc": 853,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "not-in-build-list",
   "extraction_oracle_available": false,
   "extracted_ml": null,
   "in_build_module_list": false,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 47,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 15,
   "local_refinement_lemma_names": [
    "lemma_ask_bgp_fuel_cost_n5_fits_entry_fuel",
    "lemma_path_primary_iri",
    "lemma_parse_verb_var",
    "lemma_parse_object_with_extras_1",
    "lemma_parse_annotations_dot",
    "lemma_parse_subject_with_extras_1",
    "lemma_ggp_add_triple_acc",
    "lemma_ggp_join_acc_empty",
    "lemma_parse_triples_block_bgp",
    "lemma_ggp_body_step1",
    "lemma_ggp_body_step2",
    "lemma_parse_group_graph_pattern_ask_bgp",
    "lemma_resolve_bgp_tokens_fixed",
    "lemma_resolve_expected_tokens_fixed",
    "ask_keyword_recovered_from_prefix"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "unclassified",
   "suites": []
  },
  {
   "module": "SPARQL11.Parser.TokenRoundTrip",
   "files": [
    "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst"
   ],
   "loc": 1392,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "not-in-build-list",
   "extraction_oracle_available": false,
   "extracted_ml": null,
   "in_build_module_list": false,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 58,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 45,
   "local_refinement_lemma_names": [
    "index_append",
    "index_concat_at",
    "all_ascii_append",
    "ascii_string_concat",
    "next_token_le_pre",
    "next_token_and_pre",
    "next_token_qmark_pre",
    "next_token_lt_pre",
    "next_token_dot_pre",
    "next_token_lbrace_pre",
    "next_token_rbrace_pre",
    "next_token_lparen_pre",
    "next_token_rparen_pre",
    "next_token_lbracket_pre",
    "next_token_rbracket_pre",
    "next_token_semi_pre",
    "next_token_comma_pre",
    "next_token_star_pre",
    "next_token_slash_pre",
    "next_token_eq_pre",
    "next_token_plus_pre",
    "next_token_minus_pre",
    "next_token_bang_pre",
    "next_token_caret_pre",
    "next_token_pipe_pre",
    "next_token_gt_pre",
    "next_token_ge_pre",
    "next_token_hathat_pre",
    "next_token_ne_pre",
    "next_token_or_pre",
    "peek_char_concat_right",
    "next_token_head_pre",
    "string_concat_assoc",
    "print_tokens_length_bound",
    "empty_concat_identity",
    "concat_empty_right",
    "tokenize_single_fragment_token",
    "concat_right_of_eq",
    "length_of_eq",
    "next_token_input_of_eq",
    "tokenize_loop_input_of_eq",
    "concat_regroup3",
    "space_tail_empty_length",
    "tokenize_loop_fragment",
    "tokenize_fragment_roundtrip"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "unclassified",
   "suites": []
  },
  {
   "module": "SPARQL11.Store",
   "files": [
    "formal/fstar/SPARQL11.Store.fst"
   ],
   "loc": 1453,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/SPARQL11_Store.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 50,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "local-backend-parity-full",
     "how": "direct-trigger"
    },
    {
     "suite": "local-backend-parity",
     "how": "direct-trigger"
    },
    {
     "suite": "local-graph-default-semantics",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-protocol",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-query",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-update",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Schematron.Validate",
   "files": [
    "formal/fstar/Schematron.Validate.fst"
   ],
   "loc": 346,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Schematron_Validate.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 34,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "ShEx.Schema",
   "files": [
    "formal/fstar/ShEx.Schema.fst"
   ],
   "loc": 877,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/ShEx_Schema.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 38,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "shex-negative-syntax",
     "how": "direct-trigger"
    },
    {
     "suite": "shex",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "ShEx.SchemaEq",
   "files": [
    "formal/fstar/ShEx.SchemaEq.fst"
   ],
   "loc": 310,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/ShEx_SchemaEq.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 30,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "ShEx.Validation",
   "files": [
    "formal/fstar/ShEx.Validation.fst"
   ],
   "loc": 1869,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/ShEx_Validation.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 95,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "shex",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Solid.Protocol.Spec",
   "files": [
    "formal/fstar/Solid.Protocol.Spec.fst",
    "formal/fstar/Solid.Protocol.Spec.fsti"
   ],
   "loc": 1175,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "not-in-build-list",
   "extraction_oracle_available": false,
   "extracted_ml": null,
   "in_build_module_list": false,
   "foundational_path": false,
   "shipping_function_count": 0,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 124,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 43,
   "local_refinement_lemma_names": [
    "mem_map_containment",
    "acl_lookup_after_remove",
    "meta_lookup_after_remove",
    "init_segs_append",
    "agent_in_any_group_intro",
    "mem_names_append",
    "header_value_append",
    "link_target_present",
    "storage_walk_sound_aux",
    "solid_02_02_content_type_required",
    "solid_03_01_slash_denotes_container",
    "solid_03_02_slash_pair_distinct",
    "solid_04_03_storage_type_link",
    "solid_04_07_owner_link",
    "solid_04_04_storage_description_link",
    "solid_04_08_containment_iff_enumerated",
    "solid_04_08_containment_is_hierarchy",
    "solid_04_11_auxiliaries_deleted_with_subject",
    "solid_04_12_auxiliary_links_advertised",
    "solid_04_13_at_most_one_description",
    "solid_04_14_description_authorized_as_subject",
    "solid_05_01_unsupported_method_405",
    "solid_05_02_post_assigns_uri",
    "solid_05_04_allow_header",
    "solid_05_05_accept_headers",
    "solid_05_07_intermediate_container",
    "solid_05_09_post_missing_target_404",
    "solid_05_11_containment_edit_409",
    "solid_05_13_n3_patch_accepted",
    "solid_05_19_ill_formed_patch_422",
    "solid_05_20_patch_operations",
    "solid_05_24_delete_root_405",
    "solid_05_25_delete_removes_containment",
    "solid_05_27_delete_non_empty_container_409",
    "solid_wac_01_no_acl_denies",
    "solid_wac_02_match_resource_agent_mode",
    "solid_wac_03_default_is_inherited",
    "solid_wac_04_agent_group",
    "solid_wac_07_wac_allow_header",
    "solid_02_06_client_content_type",
    "solid_wac_09_client_acl_from_links",
    "solid_wac_08_client_reads_wac_allow",
    "solid_cl_01_storage_walk_sound"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "unclassified",
   "suites": []
  },
  {
   "module": "Tableau",
   "files": [
    "formal/fstar/Tableau.fst"
   ],
   "loc": 1523,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Tableau.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 60,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "owl-semantics-direct",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-consistency",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-inconsistency",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-negative-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-positive-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "rif",
     "how": "direct-trigger"
    },
    {
     "suite": "sparql11-entailment",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Tableau.CountingOracle",
   "files": [
    "formal/fstar/Tableau.CountingOracle.fst"
   ],
   "loc": 1664,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Tableau_CountingOracle.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 154,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 1,
   "assume_val_names": [
    "z3_check_sat"
   ],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 5,
   "local_refinement_lemma_names": [
    "zeros_len",
    "vscale_len",
    "vadd_len",
    "mult_mono",
    "mk_row_len"
   ],
   "algorithm_correctness_theorems": [
    {
     "name": "comb_len",
     "proved_in": "Tableau.CountingOracle",
     "file": "formal/fstar/Tableau.CountingOracle.fst",
     "line": 1062,
     "unconditional": false,
     "names_shipping_functions": [
      "all_len",
      "comb_coeffs"
     ]
    },
    {
     "name": "lin_dot_zeros",
     "proved_in": "Tableau.CountingOracle",
     "file": "formal/fstar/Tableau.CountingOracle.fst",
     "line": 1075,
     "unconditional": true,
     "names_shipping_functions": [
      "lin_dot",
      "zeros"
     ]
    },
    {
     "name": "lin_dot_vscale",
     "proved_in": "Tableau.CountingOracle",
     "file": "formal/fstar/Tableau.CountingOracle.fst",
     "line": 1081,
     "unconditional": true,
     "names_shipping_functions": [
      "lin_dot",
      "vscale"
     ]
    },
    {
     "name": "lin_dot_vadd",
     "proved_in": "Tableau.CountingOracle",
     "file": "formal/fstar/Tableau.CountingOracle.fst",
     "line": 1089,
     "unconditional": false,
     "names_shipping_functions": [
      "lin_dot",
      "vadd"
     ]
    },
    {
     "name": "comb_dot",
     "proved_in": "Tableau.CountingOracle",
     "file": "formal/fstar/Tableau.CountingOracle.fst",
     "line": 1100,
     "unconditional": false,
     "names_shipping_functions": [
      "all_len",
      "comb_coeffs",
      "lin_dot",
      "weighted_lhs"
     ]
    },
    {
     "name": "weighted_ge",
     "proved_in": "Tableau.CountingOracle",
     "file": "formal/fstar/Tableau.CountingOracle.fst",
     "line": 1119,
     "unconditional": false,
     "names_shipping_functions": [
      "lin_sat",
      "valid_mults",
      "weighted_lhs",
      "weighted_rhs"
     ]
    },
    {
     "name": "farkas_sound",
     "proved_in": "Tableau.CountingOracle",
     "file": "formal/fstar/Tableau.CountingOracle.fst",
     "line": 1149,
     "unconditional": false,
     "names_shipping_functions": [
      "farkas_check",
      "lin_sat"
     ]
    },
    {
     "name": "class_size_unsat_sound",
     "proved_in": "Tableau.CountingOracle",
     "file": "formal/fstar/Tableau.CountingOracle.fst",
     "line": 1654,
     "unconditional": false,
     "names_shipping_functions": [
      "build_lin_system",
      "class_size_unsat",
      "lin_sat"
     ]
    }
   ],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "algorithm-correctness",
   "suites": [
    {
     "suite": "owl-semantics-direct",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-consistency",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-inconsistency",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-negative-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-positive-entailment",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "Tableau.Refute",
   "files": [
    "formal/fstar/Tableau.Refute.fst"
   ],
   "loc": 4683,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/Tableau_Refute.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 265,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "owl-semantics-direct",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-consistency",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-inconsistency",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-negative-entailment",
     "how": "direct-trigger"
    },
    {
     "suite": "owl-type-positive-entailment",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "VC.Context",
   "files": [
    "formal/fstar/VC.Context.fst"
   ],
   "loc": 311,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/VC_Context.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 21,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "eecc-interop",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "VC.Credential",
   "files": [
    "formal/fstar/VC.Credential.fst"
   ],
   "loc": 961,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/VC_Credential.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 66,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "eecc-interop",
     "how": "direct-trigger"
    },
    {
     "suite": "vc",
     "how": "direct-trigger"
    },
    {
     "suite": "vc20-api",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "VC.DataIntegrity",
   "files": [
    "formal/fstar/VC.DataIntegrity.fst"
   ],
   "loc": 154,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/VC_DataIntegrity.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 13,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 4,
   "assume_val_names": [
    "hash_sha256_hex",
    "ed25519_secret_to_public",
    "ed25519_sign",
    "ed25519_verify"
   ],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "eecc-interop",
     "how": "direct-trigger"
    },
    {
     "suite": "vc-di-eddsa",
     "how": "direct-trigger"
    },
    {
     "suite": "vc20-api",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "VC.Multibase",
   "files": [
    "formal/fstar/VC.Multibase.fst"
   ],
   "loc": 254,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/VC_Multibase.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 32,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "vc-di-eddsa",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "XForms.Bind",
   "files": [
    "formal/fstar/XForms.Bind.fst"
   ],
   "loc": 377,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/XForms_Bind.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 26,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": false,
   "local_refinement_lemma_count": 1,
   "local_refinement_lemma_names": [
    "filter_complement_length"
   ],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "local-lemmas-only",
   "suites": [
    {
     "suite": "xforms",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "XML.Namespaces",
   "files": [
    "formal/fstar/XML.Namespaces.fst"
   ],
   "loc": 243,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/XML_Namespaces.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 18,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "XML.Wellformedness",
   "files": [
    "formal/fstar/XML.Wellformedness.fst"
   ],
   "loc": 205,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/XML_Wellformedness.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 15,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "XPath.Eval",
   "files": [
    "formal/fstar/XPath.Eval.fst"
   ],
   "loc": 2287,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/XPath_Eval.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 169,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "grddl",
     "how": "direct-trigger"
    },
    {
     "suite": "xpath-unit",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "XSD.Datatypes",
   "files": [
    "formal/fstar/XSD.Datatypes.fst"
   ],
   "loc": 374,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/XSD_Datatypes.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 26,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "rif",
     "how": "direct-trigger"
    },
    {
     "suite": "shex",
     "how": "direct-trigger"
    }
   ]
  },
  {
   "module": "XSD.Facets",
   "files": [
    "formal/fstar/XSD.Facets.fst"
   ],
   "loc": 1292,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/XSD_Facets.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 94,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "XSD.IEEE754",
   "files": [
    "formal/fstar/XSD.IEEE754.fst"
   ],
   "loc": 293,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/XSD_IEEE754.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 22,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": []
  },
  {
   "module": "XSLT.Transform",
   "files": [
    "formal/fstar/XSLT.Transform.fst"
   ],
   "loc": 4184,
   "provenance": "fstar-authored",
   "provenance_basis": "file lives under formal/fstar/ and is not under any vendored third-party directory",
   "extraction": "extracted",
   "extraction_oracle_available": true,
   "extracted_ml": "formal/fstar/ocaml-output/XSLT_Transform.ml",
   "in_build_module_list": true,
   "foundational_path": false,
   "shipping_function_count": 282,
   "declarative_relation_count": 0,
   "unclassified_definition_count": 0,
   "assume_val_active": 0,
   "assume_val_names": [],
   "assume_other_active": 0,
   "admissions_active": 0,
   "admission_sites": [],
   "lax_or_admit_pragmas": [],
   "merely_tot": true,
   "local_refinement_lemma_count": 0,
   "local_refinement_lemma_names": [],
   "algorithm_correctness_theorems": [],
   "internal_refinement_theorems": [],
   "w3c_refinement_theorems": [],
   "assurance_tier": "merely-tot",
   "suites": [
    {
     "suite": "grddl",
     "how": "direct-trigger"
    }
   ]
  }
 ],
 "theorems": [
  {
   "name": "reaches",
   "host_module": "Dep.Reachability",
   "file": "formal/fstar/Dep.Reachability.fst",
   "line": 106,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "closed_set_catches_all",
   "host_module": "Dep.Reachability",
   "file": "formal/fstar/Dep.Reachability.fst",
   "line": 137,
   "unconditional": false,
   "shipping_functions_named": [
    "is_closed"
   ],
   "shipping_modules": [
    "Dep.Reachability"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "no_root_reaches",
   "host_module": "Dep.Reachability",
   "file": "formal/fstar/Dep.Reachability.fst",
   "line": 155,
   "unconditional": false,
   "shipping_functions_named": [
    "all_mem",
    "is_closed"
   ],
   "shipping_modules": [
    "Dep.Reachability"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_control_info_rejects_bad_cookie",
   "host_module": "HDT.Container",
   "file": "formal/fstar/HDT.Container.fst",
   "line": 609,
   "unconditional": false,
   "shipping_functions_named": [
    "byte_get",
    "parse_control_info"
   ],
   "shipping_modules": [
    "HDT.Container"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_bad_global_cookie_rejects_container",
   "host_module": "HDT.Container",
   "file": "formal/fstar/HDT.Container.fst",
   "line": 631,
   "unconditional": false,
   "shipping_functions_named": [
    "byte_get",
    "hdt_parse_inventory_hex"
   ],
   "shipping_modules": [
    "HDT.Container"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "init_segs_shorter",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fst",
   "line": 26,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lookup_after_remove",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fst",
   "line": 93,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "not_contained_after_remove",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fst",
   "line": 101,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lookup_filter_other",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fst",
   "line": 187,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "contained_are_children_aux",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fst",
   "line": 202,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lws_core_06_root_has_no_parent",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 69,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lws_core_06_only_root_has_no_parent",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 74,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "containment_acyclic",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 81,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "containment_single_parent",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 87,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lws_core_03_last_modified_on_get",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 246,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lws_core_03_last_modified_on_head",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 254,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lws_core_05_create_updates_containment",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 268,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lws_core_05_delete_updates_containment",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 275,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lws_core_root_not_deleted",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 286,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "create_preserves_others",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 291,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "update_preserves_others",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 296,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "delete_preserves_others",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 301,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "contained_are_children",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 309,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lws_core_08_auxiliary_links_advertised",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 319,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lws_core_18_storage_description_link",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 332,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "root_storage_type_link",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 339,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "root_owner_link",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 346,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lws_core_04_insertions_no_blank_nodes",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 412,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lws_core_04_ill_formed_patch_refused",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 450,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lws_patch_not_refused",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 459,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lws_patch_applied",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 470,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lws_core_11_four_operations",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 497,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lws_core_12_created_is_not_success",
   "host_module": "LWS.Core.Spec",
   "file": "formal/fstar/LWS.Core.Spec.fsti",
   "line": 516,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rect_index_lemma",
   "host_module": "Math.Matrix",
   "file": "formal/fstar/Math.Matrix.fst",
   "line": 60,
   "unconditional": false,
   "shipping_functions_named": [
    "rect"
   ],
   "shipping_modules": [
    "Math.Matrix"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_vocab_sameas_agree",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 78,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_sameAs"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subj_term_agree",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 81,
   "unconditional": true,
   "shipping_functions_named": [
    "subject_to_term"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_term_to_subject_subj_term",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 88,
   "unconditional": false,
   "shipping_functions_named": [
    "term_to_subject"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_dedup_pairs_memP",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 117,
   "unconditional": true,
   "shipping_functions_named": [
    "dedup_pairs_sorted_aux"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sameas_pairs_provenance",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 129,
   "unconditional": true,
   "shipping_functions_named": [
    "sameas_pairs"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "pairs_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "owl_rule_sameAs_symmetry_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 171,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_rule_sameAs_symmetry"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "eq_sym_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_sameAs_symmetry_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 213,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_sameAs_symmetry"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "eq_sym_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_collect_nodes_provenance",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 243,
   "unconditional": true,
   "shipping_functions_named": [
    "collect_iri_or_bnode_terms"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "nodes_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "owl_rule_sameAs_reflexivity_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 274,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_rule_sameAs_reflexivity"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "eq_ref_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_sameAs_reflexivity_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 313,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_sameAs_reflexivity"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "eq_ref_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_vocab_symp_agree",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 332,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_SymmetricProperty",
    "rdf_type"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_rdf_term_eq_iri",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 339,
   "unconditional": false,
   "shipping_functions_named": [
    "rdf_term_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_cons_if_new_iri_memP",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 346,
   "unconditional": true,
   "shipping_functions_named": [
    "cons_if_new_iri"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "owl_rule_symmetric_property_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 361,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_rule_symmetric_property"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "prp_symp_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_symmetric_property_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 423,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_symmetric_property"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "prp_symp_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_vocab_eqc_agree",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 461,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_equivalentClass",
    "rdfs_subClassOf"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "owl_rule_equivalent_class_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 469,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_rule_equivalent_class"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "scm_eqc1_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_equivalent_class_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 529,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_equivalent_class"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "scm_eqc1_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_vocab_eqp_agree",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 560,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_equivalentProperty",
    "rdfs_subPropertyOf"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "owl_rule_equivalent_property_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 568,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_rule_equivalent_property"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "scm_eqp1_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_equivalent_property_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 614,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_equivalent_property"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "scm_eqp1_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_vocab_inv_agree",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 673,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_inverseOf"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "owl_rule_inverse_of_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 682,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_rule_inverse_of"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "inv_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_inverse_of_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 756,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_inverse_of"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "prp_inv1_derives",
    "prp_inv2_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_find_objects_indexed_sp_elim",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 814,
   "unconditional": false,
   "shipping_functions_named": [
    "find_objects_indexed"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_sameAs_transitivity_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 830,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_sameAs_transitivity"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "eq_trans_licensed",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_sameAs_transitivity_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 893,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_sameAs_transitivity"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "eq_trans_derives",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_vocab_trp_agree",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 922,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_TransitiveProperty",
    "rdf_type"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "owl_rule_transitive_property_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 944,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_transitive_property"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "prp_trp_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_transitive_property_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 1044,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_transitive_property"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "prp_trp_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rdf_term_eq_pins_iri",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 1103,
   "unconditional": false,
   "shipping_functions_named": [
    "rdf_term_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_scm_eqc2_emission_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 1124,
   "unconditional": false,
   "shipping_functions_named": [
    "find_objects_indexed",
    "owl_equivalentClass",
    "rdfs_subClassOf",
    "term_is_iri"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "scm_eqc2_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_scm_eqc2_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 1183,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_scm_eqc2"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "scm_eqc2_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_scm_eqc2_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 1228,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_scm_eqc2"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "scm_eqc2_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_sameAs_replace_subject_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 1297,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_sameAs_replace_subject"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "eq_rep_s_licensed",
    "ig_wf_subj"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_sameAs_replace_subject_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 1355,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_sameAs_replace_subject"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "eq_rep_s_derives",
    "ig_wf_subj"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_sameAs_replace_object_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 1440,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_sameAs_replace_object"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "eq_rep_o_licensed",
    "ig_wf_obj"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_sameAs_replace_object_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 1503,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_sameAs_replace_object"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "eq_rep_o_derives",
    "ig_wf_obj"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_sameAs_replace_predicate_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 1569,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_sameAs_replace_predicate"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "eq_rep_p_licensed",
    "ig_wf_pred"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_sameAs_replace_predicate_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 1635,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_sameAs_replace_predicate"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "eq_rep_p_derives",
    "ig_wf_pred"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_scm_eqp2_emission_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 1699,
   "unconditional": false,
   "shipping_functions_named": [
    "find_objects_indexed",
    "owl_equivalentProperty",
    "rdfs_subPropertyOf",
    "term_is_iri"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "scm_eqp2_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_scm_eqp2_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 1758,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_scm_eqp2"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "scm_eqp2_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_scm_eqp2_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 1803,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_scm_eqp2"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "scm_eqp2_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_vocab_dom_agree",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 1881,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_domain",
    "rdfs_subClassOf"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "owl_rule_scm_dom2_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 1891,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_scm_dom2"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "scm_dom1_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_scm_dom2_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 1984,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_scm_dom2"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "scm_dom1_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_vocab_rng_agree",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 2017,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_range",
    "rdfs_subClassOf"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "owl_rule_scm_rng2_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 2026,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_scm_rng2"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "scm_rng1_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_scm_rng2_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 2109,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_scm_rng2"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "scm_rng1_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_subprop_domain_range_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 2201,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_subprop_domain_range"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "subprop_domain_range_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_subprop_domain_range_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 2349,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_subprop_domain_range"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "scm_dom2_derives",
    "scm_rng2_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_vocab_list_agree",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 2387,
   "unconditional": true,
   "shipping_functions_named": [
    "rdf_first",
    "rdf_nil_iri",
    "rdf_rest"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_decode_iri_list_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 2406,
   "unconditional": false,
   "shipping_functions_named": [
    "decode_iri_list"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "owl_list_denotes"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_vocab_cls_oo_agree",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 2491,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_oneOf_iri",
    "rdf_type"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "owl_rule_cls_oneof_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 2498,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_cls_oneof"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cls_oo_licensed",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_cls_oneof_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 2551,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_cls_oneof"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cls_oo_derives",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_vocab_cls_int_agree",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 2630,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_intersectionOf_iri",
    "rdf_type"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "owl_rule_cls_int1_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 2736,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_cls_int1"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cls_int2_licensed",
    "ig_wf_po_spec",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_cls_int1_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 2800,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_cls_int1"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cls_int2_derives",
    "ig_wf_po_spec",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_vocab_cls_uni_agree",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 2863,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_unionOf_iri",
    "rdfs_subClassOf"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_single_add_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 2919,
   "unconditional": false,
   "shipping_functions_named": [
    "add_triple_unchecked"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [
    "cls_disjoint_union_ext_derives",
    "cls_uni_licensed",
    "scm_uni_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.RL.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_no_disjoint_union_elim",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 2954,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_disjointUnionOf_iri"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "no_disjoint_union"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_fold_left_ext",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 2978,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "owl_rule_cls_uni_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 3112,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_cls_uni"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cls_uni_licensed",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_cls_uni_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 3211,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_cls_uni"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cls_disjoint_union_ext_derives",
    "ig_wf_sp",
    "scm_uni_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_vocab_key_agree",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 3339,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_hasKey"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_collect_haskey_axioms_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 3365,
   "unconditional": true,
   "shipping_functions_named": [
    "collect_haskey_axioms"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "haskey_axioms_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_members_of_class_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 3424,
   "unconditional": true,
   "shipping_functions_named": [
    "members_of_class"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "class_members_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_agree_on_property_overapproximates_shares_key_values",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 3475,
   "unconditional": true,
   "shipping_functions_named": [
    "rdf_term_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_all_keys_match_shares_approx",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 3522,
   "unconditional": false,
   "shipping_functions_named": [
    "all_keys_match"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "shares_key_values_approx"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_prp_key_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 3617,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_prp_key"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "prp_key_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_prp_key_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 3705,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_prp_key"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "prp_key_derives_approx"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_vocab_fp_agree",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 3767,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_FunctionalProperty",
    "rdf_type"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_prp_fp_derives_intro",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 3798,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_sameAs"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "fp_from_decl",
    "prp_fp_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.RL.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_functional_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 3809,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_functional"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "prp_fp_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_functional_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 3892,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_functional"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "prp_fp_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_vocab_ifp_agree",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 3970,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_InverseFunctionalProperty",
    "rdf_type"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_prp_ifp_derives_intro",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 3989,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_sameAs"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ifp_from_decl",
    "prp_ifp_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.RL.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_find_subjects_indexed_wf",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4023,
   "unconditional": false,
   "shipping_functions_named": [
    "find_subjects_indexed"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "graph_literal_match_exact",
    "ig_wf_po",
    "ig_wf_pred"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_inverse_functional_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4078,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_inverse_functional"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "graph_literal_match_exact",
    "ig_wf_po",
    "ig_wf_pred",
    "prp_ifp_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_inverse_functional_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4147,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_inverse_functional"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "graph_literal_match_exact",
    "ig_wf_po",
    "ig_wf_pred",
    "prp_ifp_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_find_subjects_indexed_wf_subj",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4196,
   "unconditional": false,
   "shipping_functions_named": [
    "find_subjects_indexed",
    "subject_to_term"
   ],
   "shipping_modules": [
    "RDF.Graph",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "ig_wf_po"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_vocab_hv_agree",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4217,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_hasValue_iri",
    "owl_onProperty_iri",
    "rdf_type"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_cls_hv1_row_intro",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4247,
   "unconditional": false,
   "shipping_functions_named": [
    "find_subjects_indexed",
    "owl_hasValue_iri",
    "owl_onProperty_iri",
    "rdf_type",
    "subject_to_term"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDF.Graph",
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cls_hv1_derives",
    "ig_wf_po"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_cls_hv1_members_fold",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4282,
   "unconditional": false,
   "shipping_functions_named": [
    "find_subjects_indexed",
    "owl_cls_hv1_emit",
    "owl_hasValue_iri",
    "owl_onProperty_iri",
    "rdf_type",
    "subject_to_term"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDF.Graph",
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cls_hv1_licensed",
    "ig_wf_po"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_cls_hv1_mid_step",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4313,
   "unconditional": false,
   "shipping_functions_named": [
    "find_objects_indexed",
    "owl_cls_hv1_mid",
    "owl_hasValue_iri",
    "owl_onProperty_iri"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "cls_hv1_licensed",
    "ig_wf_po",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_cls_hv1_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4344,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_cls_hv1"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cls_hv1_licensed",
    "ig_wf_po",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_cls_hv1_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4374,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_cls_hv1"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cls_hv1_derives",
    "ig_wf_po",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_find_subjects_indexed_wf_approx",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4430,
   "unconditional": false,
   "shipping_functions_named": [
    "find_subjects_indexed",
    "rdf_term_eq"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDF.Term"
   ],
   "declarative_relations_named": [
    "ig_wf_po",
    "ig_wf_pred"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_cls_hv2_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4484,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_cls_hv2"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cls_hv2_licensed",
    "ig_wf_po",
    "ig_wf_pred",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_cls_hv2_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4596,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_cls_hv2"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cls_hv2_derives_approx",
    "ig_wf_po",
    "ig_wf_pred",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_vocab_chain_agree",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4667,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_propertyChainAxiom"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_decode_chain_pair_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4671,
   "unconditional": false,
   "shipping_functions_named": [
    "decode_chain_pair"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "owl_list_denotes"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_prp_spo2_row_intro",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4767,
   "unconditional": false,
   "shipping_functions_named": [
    "find_objects_indexed",
    "owl_propertyChainAxiom"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "owl_list_denotes",
    "prp_spo2_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_prp_spo2_mid_step",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4809,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_chain2_mid",
    "owl_propertyChainAxiom"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "owl_list_denotes",
    "prp_spo2_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_property_chain_2_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4841,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_property_chain_2"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "prp_spo2_licensed"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_property_chain_2_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4878,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_property_chain_2"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "prp_spo2_derives"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_vocab_avf_agree",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4911,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_allValuesFrom_iri",
    "owl_onProperty_iri",
    "rdf_type"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_cls_avf_row_intro",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4931,
   "unconditional": false,
   "shipping_functions_named": [
    "find_objects_indexed",
    "find_subjects_indexed",
    "owl_allValuesFrom_iri",
    "owl_onProperty_iri",
    "rdf_type",
    "subject_to_term"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDF.Graph",
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cls_avf_derives",
    "ig_wf_po",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_cls_avf_member_step",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 4979,
   "unconditional": false,
   "shipping_functions_named": [
    "find_subjects_indexed",
    "owl_allValuesFrom_iri",
    "owl_cls_avf1_member",
    "owl_onProperty_iri",
    "rdf_type",
    "subject_to_term"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDF.Graph",
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cls_avf_licensed",
    "ig_wf_po",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_cls_avf_prop_step",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 5014,
   "unconditional": false,
   "shipping_functions_named": [
    "find_objects_indexed",
    "owl_allValuesFrom_iri",
    "owl_cls_avf1_prop",
    "owl_onProperty_iri"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "cls_avf_licensed",
    "ig_wf_po",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_cls_avf1_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 5054,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_cls_avf1"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cls_avf_licensed",
    "ig_wf_po",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_cls_avf1_licensed",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 5086,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_cls_avf1"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cls_avf_derives",
    "ig_wf_po",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_vocab_clash_agree",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 5169,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_disjointWith_iri",
    "owl_propertyDisjointWith",
    "rdf_type"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_rdf_term_eq_true_iri_or_bnode_l",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 5182,
   "unconditional": false,
   "shipping_functions_named": [
    "rdf_term_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdf_term_eq_true_iri_or_bnode_r",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 5190,
   "unconditional": false,
   "shipping_functions_named": [
    "rdf_term_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subject_eq_true",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 5201,
   "unconditional": false,
   "shipping_functions_named": [
    "subject_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_cax_adc_cax_dw_detection_sound",
   "host_module": "OWL.RL.Refinement",
   "file": "formal/fstar/OWL.RL.Refinement.fst",
   "line": 5227,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_has_disjoint_class_clash"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "rdf_type_objects_resource",
    "table6_clashes"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.RL.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "fold_left_inv",
   "host_module": "OWL.Semantics.MemLemmas",
   "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
   "line": 66,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_partition_memP",
   "host_module": "OWL.Semantics.MemLemmas",
   "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
   "line": 82,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sortWith_memP",
   "host_module": "OWL.Semantics.MemLemmas",
   "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
   "line": 92,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sortWith_memP_forall",
   "host_module": "OWL.Semantics.MemLemmas",
   "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
   "line": 106,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sortWith_memP_rev",
   "host_module": "OWL.Semantics.MemLemmas",
   "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
   "line": 120,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sortWith_memP_rev_forall",
   "host_module": "OWL.Semantics.MemLemmas",
   "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
   "line": 134,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rev_memP_forall",
   "host_module": "OWL.Semantics.MemLemmas",
   "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
   "line": 139,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_tree_ok_lookup",
   "host_module": "OWL.Semantics.MemLemmas",
   "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
   "line": 156,
   "unconditional": false,
   "shipping_functions_named": [
    "bucket_lookup"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "tree_ok"
   ],
   "declarative_modules": [
    "OWL.Semantics.MemLemmas"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_take_prefix_acc_memP",
   "host_module": "OWL.Semantics.MemLemmas",
   "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
   "line": 178,
   "unconditional": true,
   "shipping_functions_named": [
    "take_prefix_acc"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_take_prefix_memP_forall",
   "host_module": "OWL.Semantics.MemLemmas",
   "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
   "line": 189,
   "unconditional": true,
   "shipping_functions_named": [
    "take_prefix"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_slt_tree_ok",
   "host_module": "OWL.Semantics.MemLemmas",
   "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
   "line": 197,
   "unconditional": false,
   "shipping_functions_named": [
    "sorted_list_to_tree_fuel"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "pairs_ok",
    "tree_ok"
   ],
   "declarative_modules": [
    "OWL.Semantics.MemLemmas"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_decorated_ok",
   "host_module": "OWL.Semantics.MemLemmas",
   "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
   "line": 225,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "dec_ok"
   ],
   "declarative_modules": [
    "OWL.Semantics.MemLemmas"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_group_ok",
   "host_module": "OWL.Semantics.MemLemmas",
   "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
   "line": 235,
   "unconditional": false,
   "shipping_functions_named": [
    "group_sorted_decorated_aux"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "dec_ok",
    "pairs_ok"
   ],
   "declarative_modules": [
    "OWL.Semantics.MemLemmas"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_pairs_ok_rev",
   "host_module": "OWL.Semantics.MemLemmas",
   "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
   "line": 264,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "pairs_ok"
   ],
   "declarative_modules": [
    "OWL.Semantics.MemLemmas"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_bucket_ok",
   "host_module": "OWL.Semantics.MemLemmas",
   "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
   "line": 314,
   "unconditional": true,
   "shipping_functions_named": [
    "build_bucket"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "tree_ok"
   ],
   "declarative_modules": [
    "OWL.Semantics.MemLemmas"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_build_indexed_wf_pred",
   "host_module": "OWL.Semantics.MemLemmas",
   "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
   "line": 336,
   "unconditional": true,
   "shipping_functions_named": [
    "bucket_lookup",
    "build_indexed"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_build_indexed_wf_subj_weak",
   "host_module": "OWL.Semantics.MemLemmas",
   "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
   "line": 357,
   "unconditional": true,
   "shipping_functions_named": [
    "bucket_key_subj",
    "bucket_lookup",
    "build_indexed"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_build_indexed_wf_obj_weak",
   "host_module": "OWL.Semantics.MemLemmas",
   "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
   "line": 380,
   "unconditional": true,
   "shipping_functions_named": [
    "bucket_key_obj",
    "bucket_lookup",
    "build_indexed"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_build_indexed_wf_sp_weak",
   "host_module": "OWL.Semantics.MemLemmas",
   "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
   "line": 405,
   "unconditional": true,
   "shipping_functions_named": [
    "bucket_key_sp",
    "bucket_lookup",
    "build_indexed"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_build_indexed_wf_po_weak",
   "host_module": "OWL.Semantics.MemLemmas",
   "file": "formal/fstar/OWL.Semantics.MemLemmas.fst",
   "line": 428,
   "unconditional": true,
   "shipping_functions_named": [
    "bucket_key_po",
    "bucket_lookup",
    "build_indexed"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_rdf_term_eq_iri",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 41,
   "unconditional": false,
   "shipping_functions_named": [
    "rdf_term_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "owl_rule_symmetric_property_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 62,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_symmetric_property"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_symmetric",
    "holds_all"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_domain_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 129,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_domain"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cond_domain",
    "holds_all",
    "ig_wf_pred"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_range_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 208,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_range"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cond_range",
    "holds_all",
    "ig_wf_pred"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_dedup_pairs_memP",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 288,
   "unconditional": true,
   "shipping_functions_named": [
    "dedup_pairs_sorted_aux"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sameas_pairs_hold",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 307,
   "unconditional": false,
   "shipping_functions_named": [
    "sameas_pairs"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "holds_all",
    "sameas_pairs_hold"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "OWL.Semantics.Soundness"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_sameAs_symmetry_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 340,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_sameAs_symmetry"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_sameas_identity",
    "holds_all"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "decode_iri_list_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 386,
   "unconditional": false,
   "shipping_functions_named": [
    "decode_iri_list"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "holds_all",
    "ig_wf_sp",
    "seq_is"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_cls_oneof_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 455,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_cls_oneof"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_oneof",
    "holds_all",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_equivalent_class_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 515,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_equivalent_class"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_equivalent_class",
    "holds_all"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_equivalent_property_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 585,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_equivalent_property"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_equivalent_property",
    "holds_all"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_sameAs_reflexivity_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 647,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_sameAs_reflexivity"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_sameas_reflexive",
    "holds_all"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_differentFrom_symmetry_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 687,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_differentFrom_symmetry"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_differentfrom_symmetric",
    "holds_all"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_disjoint_with_propagation_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 744,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_disjoint_with_propagation"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_complementof_disjoint",
    "cond_disjointwith_symmetric",
    "holds_all"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_symmetric_metapredicates_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 850,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_symmetric_metapredicates"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_complementof_symmetric",
    "cond_disjointwith_symmetric",
    "cond_equivalentclass_symmetric",
    "cond_equivalentproperty_symmetric",
    "cond_inverseof_symmetric",
    "cond_propertydisjointwith_symmetric",
    "holds_all"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "decode_chain_pair_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 969,
   "unconditional": false,
   "shipping_functions_named": [
    "decode_chain_pair"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "holds_all",
    "ig_wf_sp",
    "seq_is"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_chain_to_transitive_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 1030,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_chain_to_transitive"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_chain2_transitive",
    "holds_all",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_scm_cls_restriction_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 1158,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_scm_cls_restriction"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_restriction_subclass_of_class",
    "holds_all"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_scm_eqc2_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 1409,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_scm_eqc2"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_mutual_subclass_equivalent",
    "holds_all",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_sameAs_replace_subject_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 1514,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_sameAs_replace_subject"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_sameas_identity",
    "holds_all",
    "ig_wf_subj"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_sameAs_replace_object_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 1589,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_sameAs_replace_object"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_sameas_identity",
    "holds_all",
    "ig_wf_obj"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_sameAs_replace_predicate_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 1673,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_sameAs_replace_predicate"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_sameas_identity",
    "holds_all",
    "ig_wf_pred"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_scm_eqp2_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 1742,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_scm_eqp2"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_mutual_subproperty_equivalent",
    "holds_all",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_sameAs_transitivity_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 1848,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_sameAs_transitivity"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_sameas_identity",
    "holds_all",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_transitive_property_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 1931,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_transitive_property"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_transitive",
    "holds_all",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_functional_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 2058,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_functional"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_functional",
    "cond_sameas_identity",
    "holds_all",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_inverse_functional_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 2179,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_inverse_functional"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_inverse_functional",
    "cond_sameas_identity",
    "graph_literal_match_exact",
    "holds_all",
    "ig_wf_po",
    "ig_wf_pred"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics",
    "OWL.Semantics.Soundness"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_inverse_of_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 2278,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_inverse_of"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_inverse_of",
    "holds_all"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_shares_key_values_semantic",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 2405,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_literal_term_eq_respecting",
    "holds_all",
    "shares_key_values_approx"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_pterms_agree",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 2451,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "owl_rule_prp_key_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 2471,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_prp_key"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_haskey",
    "cond_literal_term_eq_respecting",
    "cond_sameas_identity",
    "holds_all",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_scm_dom2_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 2598,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_scm_dom2"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_domain_subclass",
    "holds_all",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_scm_rng2_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 2687,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_scm_rng2"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_range_subclass",
    "holds_all",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_subprop_domain_range_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 2784,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_subprop_domain_range"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_domain_subprop",
    "cond_range_subprop",
    "holds_all",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_cls_int1_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 2938,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_cls_int1"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_intersection_of",
    "holds_all",
    "ig_wf_po_spec",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_cls_uni_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 3037,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_cls_uni"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_union_of",
    "holds_all",
    "ig_wf_sp",
    "no_disjoint_union"
   ],
   "declarative_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.RL.Refinement",
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_cls_hv1_witness_holds",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 3116,
   "unconditional": false,
   "shipping_functions_named": [
    "find_subjects_indexed",
    "owl_hasValue_iri",
    "owl_onProperty_iri",
    "rdf_type",
    "subject_to_term"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDF.Graph",
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cond_hasvalue",
    "holds_all",
    "ig_wf_po",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_cls_hv1_members_fold_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 3151,
   "unconditional": false,
   "shipping_functions_named": [
    "find_subjects_indexed",
    "owl_cls_hv1_emit",
    "owl_hasValue_iri",
    "owl_onProperty_iri",
    "rdf_type",
    "subject_to_term"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDF.Graph",
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cond_hasvalue",
    "holds_all",
    "ig_wf_po"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_cls_hv1_mid_step_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 3184,
   "unconditional": false,
   "shipping_functions_named": [
    "find_objects_indexed",
    "owl_cls_hv1_mid",
    "owl_hasValue_iri",
    "owl_onProperty_iri"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "cond_hasvalue",
    "holds_all",
    "ig_wf_po",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_cls_hv1_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 3217,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_cls_hv1"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_hasvalue",
    "holds_all",
    "ig_wf_po",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_cls_hv2_witness_holds",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 3286,
   "unconditional": false,
   "shipping_functions_named": [
    "find_subjects_indexed",
    "owl_hasValue_iri",
    "owl_onProperty_iri",
    "rdf_type",
    "subject_to_term"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDF.Graph",
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cond_hasvalue",
    "cond_literal_term_eq_respecting",
    "holds_all",
    "ig_wf_po",
    "ig_wf_pred",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_cls_hv2_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 3319,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_cls_hv2"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_hasvalue",
    "cond_literal_term_eq_respecting",
    "holds_all",
    "ig_wf_po",
    "ig_wf_pred",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_cls_avf_witness_holds",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 3441,
   "unconditional": false,
   "shipping_functions_named": [
    "find_objects_indexed",
    "find_subjects_indexed",
    "owl_allValuesFrom_iri",
    "owl_onProperty_iri",
    "rdf_type",
    "subject_to_term",
    "term_to_subject"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDF.Graph",
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cond_allvaluesfrom",
    "holds_all",
    "ig_wf_po",
    "ig_wf_sp",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_cls_avf_member_fold_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 3492,
   "unconditional": false,
   "shipping_functions_named": [
    "find_objects_indexed",
    "find_subjects_indexed",
    "owl_allValuesFrom_iri",
    "owl_cls_avf1_emit",
    "owl_onProperty_iri",
    "rdf_type",
    "subject_to_term"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDF.Graph",
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cond_allvaluesfrom",
    "holds_all",
    "ig_wf_po",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_cls_avf_prop_step_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 3530,
   "unconditional": false,
   "shipping_functions_named": [
    "find_objects_indexed",
    "owl_allValuesFrom_iri",
    "owl_cls_avf1_prop",
    "owl_onProperty_iri"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "cond_allvaluesfrom",
    "holds_all",
    "ig_wf_po",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_cls_avf1_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 3572,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_cls_avf1"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_allvaluesfrom",
    "holds_all",
    "ig_wf_po",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_prp_spo2_witness_holds",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 3630,
   "unconditional": false,
   "shipping_functions_named": [
    "find_objects_indexed",
    "owl_propertyChainAxiom",
    "term_to_subject"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDF.Graph",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "cond_chain2_compose",
    "holds_all",
    "ig_wf_sp",
    "seq_is",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_prp_spo2_mid_step_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 3673,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_chain2_mid",
    "owl_propertyChainAxiom",
    "term_to_subject"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDF.Graph"
   ],
   "declarative_relations_named": [
    "cond_chain2_compose",
    "holds_all",
    "ig_wf_sp",
    "seq_is"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_property_chain_2_sound",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 3707,
   "unconditional": false,
   "shipping_functions_named": [
    "owl_rule_property_chain_2"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "cond_chain2_compose",
    "holds_all",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_symmetric_property_entailed",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 3757,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_rule_symmetric_property"
   ],
   "shipping_modules": [
    "OWL.Closure"
   ],
   "declarative_relations_named": [
    "pilot_entails"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_domain_entailed",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 3776,
   "unconditional": true,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_domain"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "pilot_entails"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_range_entailed",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 3797,
   "unconditional": true,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_range"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "pilot_entails"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_sameAs_symmetry_entailed",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 3818,
   "unconditional": true,
   "shipping_functions_named": [
    "build_indexed",
    "owl_rule_sameAs_symmetry"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "pilot_entails"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "owl_rule_cls_oneof_entailed",
   "host_module": "OWL.Semantics.Soundness",
   "file": "formal/fstar/OWL.Semantics.Soundness.fst",
   "line": 3845,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "owl_rule_cls_oneof"
   ],
   "shipping_modules": [
    "OWL.Closure",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "pilot_entails"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_denot_subject_to_term",
   "host_module": "OWL.Semantics",
   "file": "formal/fstar/OWL.Semantics.fst",
   "line": 109,
   "unconditional": true,
   "shipping_functions_named": [
    "subject_to_term"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_denot_term_to_subject",
   "host_module": "OWL.Semantics",
   "file": "formal/fstar/OWL.Semantics.fst",
   "line": 112,
   "unconditional": false,
   "shipping_functions_named": [
    "term_to_subject"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdf_term_eq_denot",
   "host_module": "OWL.Semantics",
   "file": "formal/fstar/OWL.Semantics.fst",
   "line": 629,
   "unconditional": false,
   "shipping_functions_named": [
    "rdf_term_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [
    "cond_literal_term_eq_respecting"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "rev_length_lemma",
   "host_module": "Parser.CSVResults",
   "file": "formal/fstar/Parser.CSVResults.fst",
   "line": 76,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "nth_byte_append_left",
   "host_module": "Parser.FastString.Axioms",
   "file": "formal/fstar/Parser.FastString.Axioms.fst",
   "line": 60,
   "unconditional": false,
   "shipping_functions_named": [
    "nth_byte"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "drop_bytes_length",
   "host_module": "Parser.FastString.Axioms",
   "file": "formal/fstar/Parser.FastString.Axioms.fst",
   "line": 69,
   "unconditional": false,
   "shipping_functions_named": [
    "drop_bytes"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "drop_bytes_append_left",
   "host_module": "Parser.FastString.Axioms",
   "file": "formal/fstar/Parser.FastString.Axioms.fst",
   "line": 80,
   "unconditional": false,
   "shipping_functions_named": [
    "drop_bytes"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "drop_bytes_append_right",
   "host_module": "Parser.FastString.Axioms",
   "file": "formal/fstar/Parser.FastString.Axioms.fst",
   "line": 90,
   "unconditional": false,
   "shipping_functions_named": [
    "drop_bytes"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "take_bytes_append_left",
   "host_module": "Parser.FastString.Axioms",
   "file": "formal/fstar/Parser.FastString.Axioms.fst",
   "line": 100,
   "unconditional": false,
   "shipping_functions_named": [
    "take_bytes"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "take_bytes_self",
   "host_module": "Parser.FastString.Axioms",
   "file": "formal/fstar/Parser.FastString.Axioms.fst",
   "line": 109,
   "unconditional": true,
   "shipping_functions_named": [
    "take_bytes"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "nth_byte_some_of_lt",
   "host_module": "Parser.FastString.Axioms",
   "file": "formal/fstar/Parser.FastString.Axioms.fst",
   "line": 117,
   "unconditional": false,
   "shipping_functions_named": [
    "nth_byte"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "utf8_decode_all_aux_unfold",
   "host_module": "Parser.FastString.Axioms",
   "file": "formal/fstar/Parser.FastString.Axioms.fst",
   "line": 250,
   "unconditional": false,
   "shipping_functions_named": [
    "utf8_decode_all_aux",
    "utf8_decode_at"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_decode_all_aux_shift",
   "host_module": "Parser.FastString.Axioms",
   "file": "formal/fstar/Parser.FastString.Axioms.fst",
   "line": 271,
   "unconditional": false,
   "shipping_functions_named": [
    "utf8_decode_all_aux"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_decode_all_aux_encode",
   "host_module": "Parser.FastString.Axioms",
   "file": "formal/fstar/Parser.FastString.Axioms.fst",
   "line": 303,
   "unconditional": true,
   "shipping_functions_named": [
    "utf8_decode_all_aux",
    "utf8_enc_char"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "utf8_decode_all_utf8_bytes_identity",
   "host_module": "Parser.FastString.Axioms",
   "file": "formal/fstar/Parser.FastString.Axioms.fst",
   "line": 337,
   "unconditional": true,
   "shipping_functions_named": [
    "utf8_bytes",
    "utf8_decode_all"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "fs_byte_length_empty",
   "host_module": "Parser.FastString.Axioms",
   "file": "formal/fstar/Parser.FastString.Axioms.fsti",
   "line": 196,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_length_concat",
   "host_module": "Parser.FastString.Axioms",
   "file": "formal/fstar/Parser.FastString.Axioms.fsti",
   "line": 201,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_length_ascii_singleton",
   "host_module": "Parser.FastString.Axioms",
   "file": "formal/fstar/Parser.FastString.Axioms.fsti",
   "line": 206,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_at_concat",
   "host_module": "Parser.FastString.Axioms",
   "file": "formal/fstar/Parser.FastString.Axioms.fsti",
   "line": 214,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at",
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "fs_byte_sub_concat_left",
   "host_module": "Parser.FastString.Axioms",
   "file": "formal/fstar/Parser.FastString.Axioms.fsti",
   "line": 222,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "fs_byte_sub"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "fs_byte_sub_concat_right",
   "host_module": "Parser.FastString.Axioms",
   "file": "formal/fstar/Parser.FastString.Axioms.fsti",
   "line": 230,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "fs_byte_sub"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "fs_cp_at_ascii",
   "host_module": "Parser.FastString.Axioms",
   "file": "formal/fstar/Parser.FastString.Axioms.fsti",
   "line": 274,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at",
    "fs_byte_length",
    "fs_cp_at"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "fs_byte_at_ascii_singleton",
   "host_module": "Parser.FastString.Axioms",
   "file": "formal/fstar/Parser.FastString.Axioms.fsti",
   "line": 285,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_sub_self",
   "host_module": "Parser.FastString.Axioms",
   "file": "formal/fstar/Parser.FastString.Axioms.fsti",
   "line": 296,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length",
    "fs_byte_sub"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "fs_ascii_singleton_facts",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 45,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at",
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "fs_byte_at_quote",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 62,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_at"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_length_quote",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 65,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_at_lbrace",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 69,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_at"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_length_lbrace",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 72,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_at_rbrace",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 76,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_at"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_length_rbrace",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 79,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_at_lbracket",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 83,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_at"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_length_lbracket",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 86,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_at_rbracket",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 90,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_at"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_length_rbracket",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 93,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_at_colon",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 97,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_at"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_length_colon",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 100,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_at_comma",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 104,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_at"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_length_comma",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 107,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_at_lt",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 111,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_at"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_length_lt",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 114,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_at_gt",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 118,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_at"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_length_gt",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 121,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_at_space",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 125,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_at"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_length_space",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 128,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_at_newline",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 132,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_at"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_length_newline",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 135,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_at_backslash",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 139,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_at"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_length_backslash",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 142,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_one_char_list_of_string",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 163,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_codes_of_length",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 198,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_all_ascii_index",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 218,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_nth_byte_codes_of",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 229,
   "unconditional": false,
   "shipping_functions_named": [
    "nth_byte"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_string_utf8_bytes",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 249,
   "unconditional": true,
   "shipping_functions_named": [
    "utf8_bytes"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_string_byte_length",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 272,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_string_byte_at",
   "host_module": "Parser.FastString.BaseCases",
   "file": "formal/fstar/Parser.FastString.BaseCases.fst",
   "line": 283,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "concat_spec_nil",
   "host_module": "Parser.FastString.ConcatSpec",
   "file": "formal/fstar/Parser.FastString.ConcatSpec.fst",
   "line": 69,
   "unconditional": true,
   "shipping_functions_named": [
    "concat_spec"
   ],
   "shipping_modules": [
    "Parser.FastString.ConcatSpec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "concat_spec_singleton",
   "host_module": "Parser.FastString.ConcatSpec",
   "file": "formal/fstar/Parser.FastString.ConcatSpec.fst",
   "line": 73,
   "unconditional": true,
   "shipping_functions_named": [
    "concat_spec"
   ],
   "shipping_modules": [
    "Parser.FastString.ConcatSpec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "concat_spec_cons",
   "host_module": "Parser.FastString.ConcatSpec",
   "file": "formal/fstar/Parser.FastString.ConcatSpec.fst",
   "line": 77,
   "unconditional": true,
   "shipping_functions_named": [
    "concat_spec"
   ],
   "shipping_modules": [
    "Parser.FastString.ConcatSpec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_strcat_empty_l",
   "host_module": "Parser.FastString.ConcatSpec",
   "file": "formal/fstar/Parser.FastString.ConcatSpec.fst",
   "line": 129,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_strcat_empty_r",
   "host_module": "Parser.FastString.ConcatSpec",
   "file": "formal/fstar/Parser.FastString.ConcatSpec.fst",
   "line": 136,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_strcat_assoc",
   "host_module": "Parser.FastString.ConcatSpec",
   "file": "formal/fstar/Parser.FastString.ConcatSpec.fst",
   "line": 144,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "demo_fs_byte_length_ab",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 22,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_byte_at_after_prefix",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 38,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at",
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_one_char_list_of_string",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 81,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_one_char_byte_length",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 87,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_one_char_byte_at",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 92,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_at"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_string_byte_length",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 116,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_string_byte_at",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 130,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_at"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_quoted_content_byte_sub",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 151,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_sub"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ascii_utf8_bytes_length",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 237,
   "unconditional": true,
   "shipping_functions_named": [
    "utf8_enc_char"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ascii_string_byte_length",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 251,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_all_ascii_index",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 264,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ascii_utf8_bytes_at",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 281,
   "unconditional": true,
   "shipping_functions_named": [
    "nth_byte",
    "utf8_enc_char"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_ascii_string_byte_at",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 294,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ascii_string_byte_index",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 310,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fs_byte_sub_by_charcount",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 470,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_sub",
    "slice_chars",
    "take_chars",
    "utf8_enc_char"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "nth_byte_index",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 575,
   "unconditional": true,
   "shipping_functions_named": [
    "nth_byte"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_string_utf8_bytes_len",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 587,
   "unconditional": true,
   "shipping_functions_named": [
    "utf8_bytes"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_string_utf8_bytes_nth",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 614,
   "unconditional": true,
   "shipping_functions_named": [
    "nth_byte",
    "utf8_bytes"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_concatMap_utf8_enc_char_nth",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 630,
   "unconditional": true,
   "shipping_functions_named": [
    "nth_byte",
    "utf8_enc_char"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_utf8_bytes_build_string",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 648,
   "unconditional": true,
   "shipping_functions_named": [
    "utf8_bytes",
    "utf8_enc_char"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_list_of_build_string",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 682,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ascii_string_is_build_string",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 696,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "bc_codes_of_is_concatMap",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 756,
   "unconditional": true,
   "shipping_functions_named": [
    "utf8_enc_char"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "bc_utf8_decode_all_codes_of_identity",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 768,
   "unconditional": true,
   "shipping_functions_named": [
    "utf8_decode_all"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "bc_lemma_list_of_build_string",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 779,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ascii_string_is_build_string_bc",
   "host_module": "Parser.FastString.RoundTripLemmas",
   "file": "formal/fstar/Parser.FastString.RoundTripLemmas.fst",
   "line": 791,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "nth_byte_zero",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 188,
   "unconditional": true,
   "shipping_functions_named": [
    "nth_byte"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "nth_byte_succ",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 192,
   "unconditional": true,
   "shipping_functions_named": [
    "nth_byte"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "nth_byte_append",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 203,
   "unconditional": true,
   "shipping_functions_named": [
    "nth_byte"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "utf8_decode_at_shift",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 270,
   "unconditional": true,
   "shipping_functions_named": [
    "utf8_decode_at"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "utf8_enc_char_len_bounds",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 388,
   "unconditional": true,
   "shipping_functions_named": [
    "utf8_enc_char"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_concatMap_append",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 393,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "utf8_bytes_concat",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 402,
   "unconditional": true,
   "shipping_functions_named": [
    "utf8_bytes"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "utf8_bytes_ascii_singleton",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 414,
   "unconditional": false,
   "shipping_functions_named": [
    "utf8_bytes"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "utf8_bytes_singleton",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 431,
   "unconditional": false,
   "shipping_functions_named": [
    "utf8_bytes",
    "utf8_enc_char"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "utf8_decode_at_ascii",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 440,
   "unconditional": false,
   "shipping_functions_named": [
    "nth_byte",
    "utf8_decode_at"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "utf8_decode_encode_identity",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 450,
   "unconditional": true,
   "shipping_functions_named": [
    "utf8_decode_at",
    "utf8_enc_char"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "utf8_decode_all_aux_unfold",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 620,
   "unconditional": false,
   "shipping_functions_named": [
    "utf8_decode_all_aux",
    "utf8_decode_at"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "utf8_decode_all_aux_shift",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 641,
   "unconditional": false,
   "shipping_functions_named": [
    "utf8_decode_all_aux"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "utf8_decode_all_aux_encode",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 676,
   "unconditional": true,
   "shipping_functions_named": [
    "utf8_decode_all_aux",
    "utf8_enc_char"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "utf8_decode_all_concatMap_identity",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 704,
   "unconditional": true,
   "shipping_functions_named": [
    "utf8_decode_all",
    "utf8_enc_char"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "utf8_decode_all_utf8_bytes_identity",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 716,
   "unconditional": true,
   "shipping_functions_named": [
    "utf8_bytes",
    "utf8_decode_all"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "chars_take_drop_append",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 742,
   "unconditional": true,
   "shipping_functions_named": [
    "drop_chars",
    "take_chars"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "drop_chars_add",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 750,
   "unconditional": true,
   "shipping_functions_named": [
    "drop_chars"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "chars_split3",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 764,
   "unconditional": true,
   "shipping_functions_named": [
    "drop_chars",
    "slice_chars",
    "take_chars"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "drop_bytes_append_left",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 784,
   "unconditional": false,
   "shipping_functions_named": [
    "drop_bytes"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "drop_bytes_self",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 792,
   "unconditional": true,
   "shipping_functions_named": [
    "drop_bytes"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "take_bytes_append_left",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 799,
   "unconditional": false,
   "shipping_functions_named": [
    "take_bytes"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "take_bytes_self",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 807,
   "unconditional": true,
   "shipping_functions_named": [
    "take_bytes"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "bytes_split3_slice",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 814,
   "unconditional": true,
   "shipping_functions_named": [
    "slice_bytes"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "utf8_decode_all_slice_by_charcount",
   "host_module": "Parser.FastString.Spec",
   "file": "formal/fstar/Parser.FastString.Spec.fst",
   "line": 833,
   "unconditional": true,
   "shipping_functions_named": [
    "slice_bytes",
    "slice_chars",
    "take_chars",
    "utf8_decode_all",
    "utf8_enc_char"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "fs_byte_length_eq",
   "host_module": "Parser.FastString",
   "file": "formal/fstar/Parser.FastString.fst",
   "line": 117,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length",
    "utf8_bytes"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "fs_byte_at_eq",
   "host_module": "Parser.FastString",
   "file": "formal/fstar/Parser.FastString.fst",
   "line": 120,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_at",
    "nth_byte",
    "utf8_bytes"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "fs_byte_sub_eq",
   "host_module": "Parser.FastString",
   "file": "formal/fstar/Parser.FastString.fst",
   "line": 144,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_sub",
    "slice_bytes",
    "utf8_bytes",
    "utf8_decode_all"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "fs_find_byte_eq",
   "host_module": "Parser.FastString",
   "file": "formal/fstar/Parser.FastString.fst",
   "line": 150,
   "unconditional": true,
   "shipping_functions_named": [
    "find_byte",
    "fs_find_byte",
    "utf8_bytes"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "fs_cp_at_eq",
   "host_module": "Parser.FastString",
   "file": "formal/fstar/Parser.FastString.fst",
   "line": 154,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_cp_at",
    "utf8_bytes",
    "utf8_decode_at"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "fs_cp_len_eq",
   "host_module": "Parser.FastString",
   "file": "formal/fstar/Parser.FastString.fst",
   "line": 159,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_cp_len",
    "utf8_bytes",
    "utf8_decode_at"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "fs_byte_index_eq",
   "host_module": "Parser.FastString",
   "file": "formal/fstar/Parser.FastString.fst",
   "line": 193,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_at",
    "fs_byte_index"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_byte_index_at_middle",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 89,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_scan_iri_end_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 149,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "scan_iri_end"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_scan_iri_end_shift_from_start",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 217,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "scan_iri_end"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_scan_iri_end_shift_headroom",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 258,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "scan_iri_end"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_ptake_while_acc_pos_shift_headroom",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 341,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "ptake_while_acc"
   ],
   "shipping_modules": [
    "Parser.Combinators",
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_pws_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 379,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "pws"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_iri_raw_fastpath_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 414,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length",
    "parse_iri_raw",
    "scan_iri_end"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_iri_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 454,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length",
    "is_iri",
    "parse_iri",
    "parse_iri_raw",
    "scan_iri_end"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples",
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_subject_iri_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 496,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length",
    "is_iri",
    "parse_iri_raw",
    "parse_subject",
    "scan_iri_end"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples",
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_object_iri_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 518,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length",
    "is_iri",
    "parse_iri_raw",
    "parse_object",
    "scan_iri_end"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples",
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_iri_body_acc_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 579,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "parse_iri_body_acc"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_scan_iri_end_success_bound",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 692,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "scan_iri_end"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_scan_iri_end_result_eq",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 723,
   "unconditional": false,
   "shipping_functions_named": [
    "scan_iri_end"
   ],
   "shipping_modules": [
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_parse_iri_body_acc_success_bound",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 749,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "parse_iri_body_acc"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "nth_byte_append_left",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 989,
   "unconditional": false,
   "shipping_functions_named": [
    "nth_byte"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "nth_byte_none_of_ge",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 996,
   "unconditional": false,
   "shipping_functions_named": [
    "nth_byte"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "nth_byte_some_of_lt",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 1004,
   "unconditional": false,
   "shipping_functions_named": [
    "nth_byte"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "utf8_decode_at_join",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 1019,
   "unconditional": false,
   "shipping_functions_named": [
    "is_continuation",
    "utf8_decode_at"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_cp_at_at_middle",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 1089,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at",
    "fs_byte_length",
    "fs_cp_at",
    "is_continuation"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_byte_at_at_middle",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 1121,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at",
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_scan_bnode_body_cp_shift_headroom",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 1140,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at",
    "fs_byte_length",
    "is_continuation",
    "scan_bnode_body_cp"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.FastString.Spec",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_scan_string_fast_shift_headroom",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 1286,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "scan_string_fast"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_string_body_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 1323,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at",
    "fs_byte_length",
    "is_continuation",
    "parse_string_body"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.FastString.Spec",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_scan_string_fast_shift_hasescapes",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 1451,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "scan_string_fast"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_string_literal_fastpath_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 1486,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length",
    "parse_string_literal",
    "scan_string_fast"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_string_literal_escapepath_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 1521,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at",
    "fs_byte_index",
    "fs_byte_length",
    "is_continuation",
    "parse_string_body",
    "parse_string_literal",
    "scan_string_fast"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.FastString.Spec",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_ptake_while_scan_shift_headroom",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 1555,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "ptake_while_scan"
   ],
   "shipping_modules": [
    "Parser.Combinators",
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_ptake_while1_pos_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 1591,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "ptake_while1_pos",
    "ptake_while_scan"
   ],
   "shipping_modules": [
    "Parser.Combinators",
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_lang_tag_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 1618,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length",
    "is_alpha",
    "is_lang_char",
    "parse_lang_tag",
    "ptake_while_scan"
   ],
   "shipping_modules": [
    "Parser.Combinators",
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_datatype_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 1643,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length",
    "is_iri",
    "parse_datatype",
    "parse_iri_raw",
    "scan_iri_end"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples",
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_graph_label_iri_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 1692,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length",
    "is_iri",
    "parse_graph_label",
    "parse_iri_raw",
    "scan_iri_end"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads",
    "Parser.NTriples",
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_opt_graph_label_iri_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 1714,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length",
    "is_iri",
    "parse_iri_raw",
    "parse_opt_graph_label",
    "pws",
    "scan_iri_end"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads",
    "Parser.NTriples",
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_opt_graph_label_none_dot_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 1740,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length",
    "parse_opt_graph_label",
    "pws"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_skip_eol_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 1819,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at",
    "fs_byte_length",
    "skip_eol"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_nt_skip_to_eol_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 1926,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "nt_skip_to_eol"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_nq_skip_line_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 1976,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at",
    "fs_byte_length",
    "nq_skip_line"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_pws_noop",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 2207,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length",
    "is_nt_ws",
    "pws"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_nquad_iri_nograph_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 2214,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length",
    "is_iri",
    "parse_iri",
    "parse_iri_raw",
    "parse_nquad",
    "parse_object",
    "parse_subject",
    "pws",
    "scan_iri_end"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads",
    "Parser.NTriples",
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_bnode_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 2313,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at",
    "fs_byte_length",
    "fs_cp_at",
    "is_bnode_start_cp",
    "is_continuation",
    "parse_bnode",
    "scan_bnode_body_cp"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.FastString.Spec",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_subject_bnode_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 2372,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at",
    "fs_byte_index",
    "fs_byte_length",
    "fs_cp_at",
    "is_bnode_start_cp",
    "is_continuation",
    "parse_subject",
    "scan_bnode_body_cp"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.FastString.Spec",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_object_bnode_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 2408,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at",
    "fs_byte_index",
    "fs_byte_length",
    "fs_cp_at",
    "is_bnode_start_cp",
    "is_continuation",
    "parse_object",
    "scan_bnode_body_cp"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.FastString.Spec",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_literal_plain_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 2492,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length",
    "parse_literal",
    "parse_string_literal"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_literal_lang_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 2519,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length",
    "is_alpha",
    "is_lang_char",
    "parse_literal",
    "parse_string_literal",
    "ptake_while_scan"
   ],
   "shipping_modules": [
    "Parser.Combinators",
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_literal_datatype_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 2620,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length",
    "parse_datatype",
    "parse_literal",
    "parse_string_literal",
    "rdf_dir_lang_string",
    "rdf_lang_string"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples",
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_object_literal_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 2667,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length",
    "parse_literal",
    "parse_object"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_graph_label_bnode_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 2693,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at",
    "fs_byte_index",
    "fs_byte_length",
    "fs_cp_at",
    "is_bnode_start_cp",
    "is_continuation",
    "parse_graph_label",
    "scan_bnode_body_cp"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.FastString.Spec",
    "Parser.NQuads",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_opt_graph_label_bnode_shift",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 2729,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at",
    "fs_byte_index",
    "fs_byte_length",
    "fs_cp_at",
    "is_bnode_start_cp",
    "is_continuation",
    "parse_opt_graph_label",
    "pws",
    "scan_bnode_body_cp"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.FastString.Spec",
    "Parser.NQuads",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_nquad_shift_generic",
   "host_module": "Parser.NTriples.Locality",
   "file": "formal/fstar/Parser.NTriples.Locality.fst",
   "line": 2800,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length",
    "is_iri",
    "parse_iri",
    "parse_nquad",
    "parse_object",
    "parse_opt_graph_label",
    "parse_subject",
    "pws"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads",
    "Parser.NTriples",
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_int_of_byte_of_int",
   "host_module": "RDF.Bytes",
   "file": "formal/fstar/RDF.Bytes.fst",
   "line": 66,
   "unconditional": true,
   "shipping_functions_named": [
    "byte_of_int",
    "int_of_byte"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_map_byte_roundtrip",
   "host_module": "RDF.Bytes",
   "file": "formal/fstar/RDF.Bytes.fst",
   "line": 168,
   "unconditional": true,
   "shipping_functions_named": [
    "byte_of_int",
    "byte_to_spec_byte"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_bytes_to_string_of_bytes_of_string",
   "host_module": "RDF.Bytes",
   "file": "formal/fstar/RDF.Bytes.fst",
   "line": 175,
   "unconditional": true,
   "shipping_functions_named": [
    "bytes_of_string",
    "bytes_to_string"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_write_u32_le_inverse",
   "host_module": "RDF.Bytes",
   "file": "formal/fstar/RDF.Bytes.fst",
   "line": 285,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_u32_le",
    "write_u32_le"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_lo_byte0",
   "host_module": "RDF.Bytes",
   "file": "formal/fstar/RDF.Bytes.fst",
   "line": 314,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_lo_byte1",
   "host_module": "RDF.Bytes",
   "file": "formal/fstar/RDF.Bytes.fst",
   "line": 318,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_lo_byte2",
   "host_module": "RDF.Bytes",
   "file": "formal/fstar/RDF.Bytes.fst",
   "line": 323,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_lo_byte3",
   "host_module": "RDF.Bytes",
   "file": "formal/fstar/RDF.Bytes.fst",
   "line": 328,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_hi_byte1",
   "host_module": "RDF.Bytes",
   "file": "formal/fstar/RDF.Bytes.fst",
   "line": 335,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_hi_byte2",
   "host_module": "RDF.Bytes",
   "file": "formal/fstar/RDF.Bytes.fst",
   "line": 339,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_hi_byte3",
   "host_module": "RDF.Bytes",
   "file": "formal/fstar/RDF.Bytes.fst",
   "line": 343,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_write_u64_le_decompose",
   "host_module": "RDF.Bytes",
   "file": "formal/fstar/RDF.Bytes.fst",
   "line": 350,
   "unconditional": false,
   "shipping_functions_named": [
    "write_u32_le",
    "write_u64_le"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_u64_decompose",
   "host_module": "RDF.Bytes",
   "file": "formal/fstar/RDF.Bytes.fst",
   "line": 367,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_u32_le",
    "parse_u64_le"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_write_u64_le_inverse",
   "host_module": "RDF.Bytes",
   "file": "formal/fstar/RDF.Bytes.fst",
   "line": 382,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_u64_le",
    "write_u64_le"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_n_bytes_inverse",
   "host_module": "RDF.Bytes",
   "file": "formal/fstar/RDF.Bytes.fst",
   "line": 417,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_n_bytes"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_parse_string_of_length_inverse",
   "host_module": "RDF.Bytes",
   "file": "formal/fstar/RDF.Bytes.fst",
   "line": 436,
   "unconditional": true,
   "shipping_functions_named": [
    "bytes_of_string",
    "parse_string_of_length"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_empty_issuer_wf",
   "host_module": "RDF.Canonical",
   "file": "formal/fstar/RDF.Canonical.fst",
   "line": 966,
   "unconditional": true,
   "shipping_functions_named": [
    "empty_issuer"
   ],
   "shipping_modules": [
    "RDF.Canonical"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_empty_temp_issuer_wf",
   "host_module": "RDF.Canonical",
   "file": "formal/fstar/RDF.Canonical.fst",
   "line": 969,
   "unconditional": true,
   "shipping_functions_named": [
    "empty_temp_issuer"
   ],
   "shipping_modules": [
    "RDF.Canonical"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_issue_fresh_preserves_wf",
   "host_module": "RDF.Canonical",
   "file": "formal/fstar/RDF.Canonical.fst",
   "line": 974,
   "unconditional": false,
   "shipping_functions_named": [
    "issue_fresh"
   ],
   "shipping_modules": [
    "RDF.Canonical"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_issue_fresh_label_shape",
   "host_module": "RDF.Canonical",
   "file": "formal/fstar/RDF.Canonical.fst",
   "line": 981,
   "unconditional": true,
   "shipping_functions_named": [
    "issue_fresh"
   ],
   "shipping_modules": [
    "RDF.Canonical"
   ],
   "declarative_relations_named": [
    "is_issuer_label"
   ],
   "declarative_modules": [
    "RDF.Canonical"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_issue_identifier_preserves_wf",
   "host_module": "RDF.Canonical",
   "file": "formal/fstar/RDF.Canonical.fst",
   "line": 995,
   "unconditional": false,
   "shipping_functions_named": [
    "issue_identifier"
   ],
   "shipping_modules": [
    "RDF.Canonical"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_issue_identifier_fresh_label_shape",
   "host_module": "RDF.Canonical",
   "file": "formal/fstar/RDF.Canonical.fst",
   "line": 1006,
   "unconditional": false,
   "shipping_functions_named": [
    "issue_identifier",
    "lookup_issued"
   ],
   "shipping_modules": [
    "RDF.Canonical"
   ],
   "declarative_relations_named": [
    "is_issuer_label"
   ],
   "declarative_modules": [
    "RDF.Canonical"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_cong_string_of_list",
   "host_module": "RDF.CottasStore.BaseWriter",
   "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
   "line": 1195,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_cong_hat3",
   "host_module": "RDF.CottasStore.BaseWriter",
   "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
   "line": 1200,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_cong_parse_hex",
   "host_module": "RDF.CottasStore.BaseWriter",
   "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
   "line": 1206,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_file_metadata_version_hex"
   ],
   "shipping_modules": [
    "Parquet.Footer"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_hex_pair_15",
   "host_module": "RDF.CottasStore.BaseWriter",
   "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
   "line": 1212,
   "unconditional": true,
   "shipping_functions_named": [
    "hex_digit_char"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_byte_to_hex_21",
   "host_module": "RDF.CottasStore.BaseWriter",
   "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
   "line": 1215,
   "unconditional": true,
   "shipping_functions_named": [
    "byte_of_int",
    "byte_to_hex"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_hex_pair_FA",
   "host_module": "RDF.CottasStore.BaseWriter",
   "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
   "line": 1222,
   "unconditional": true,
   "shipping_functions_named": [
    "hex_digit_char"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_byte_to_hex_250",
   "host_module": "RDF.CottasStore.BaseWriter",
   "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
   "line": 1225,
   "unconditional": true,
   "shipping_functions_named": [
    "byte_of_int",
    "byte_to_hex"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_hex_pair_06",
   "host_module": "RDF.CottasStore.BaseWriter",
   "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
   "line": 1232,
   "unconditional": true,
   "shipping_functions_named": [
    "hex_digit_char"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_byte_to_hex_6",
   "host_module": "RDF.CottasStore.BaseWriter",
   "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
   "line": 1235,
   "unconditional": true,
   "shipping_functions_named": [
    "byte_of_int",
    "byte_to_hex"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_version_field_bytes_eq",
   "host_module": "RDF.CottasStore.BaseWriter",
   "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
   "line": 1244,
   "unconditional": true,
   "shipping_functions_named": [
    "byte_of_int",
    "version_field_bytes"
   ],
   "shipping_modules": [
    "RDF.Bytes",
    "RDF.CottasStore.BaseWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_bytes_to_hex_unfold",
   "host_module": "RDF.CottasStore.BaseWriter",
   "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
   "line": 1247,
   "unconditional": true,
   "shipping_functions_named": [
    "byte_of_int",
    "byte_to_hex",
    "bytes_to_hex"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_version_field_hex_eq",
   "host_module": "RDF.CottasStore.BaseWriter",
   "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
   "line": 1259,
   "unconditional": true,
   "shipping_functions_named": [
    "bytes_to_hex",
    "version_field_bytes"
   ],
   "shipping_modules": [
    "RDF.Bytes",
    "RDF.CottasStore.BaseWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_version_hex_literal",
   "host_module": "RDF.CottasStore.BaseWriter",
   "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
   "line": 1270,
   "unconditional": true,
   "shipping_functions_named": [
    "cottas_format_version",
    "parse_file_metadata_version_hex"
   ],
   "shipping_modules": [
    "Parquet.Footer"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_version_field_roundtrip",
   "host_module": "RDF.CottasStore.BaseWriter",
   "file": "formal/fstar/RDF.CottasStore.BaseWriter.fst",
   "line": 1274,
   "unconditional": true,
   "shipping_functions_named": [
    "bytes_to_hex",
    "cottas_format_version",
    "parse_file_metadata_version_hex",
    "version_field_bytes"
   ],
   "shipping_modules": [
    "Parquet.Footer",
    "RDF.Bytes",
    "RDF.CottasStore.BaseWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "column_decode_sound",
   "host_module": "RDF.CottasStore.ColumnSeq",
   "file": "formal/fstar/RDF.CottasStore.ColumnSeq.fst",
   "line": 152,
   "unconditional": false,
   "shipping_functions_named": [
    "column_to_list",
    "probe_parquet_column_decode_in_row_group_seq"
   ],
   "shipping_modules": [
    "RDF.CottasStore.ColumnSeq"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "rg_could_contain_pair_sound",
   "host_module": "RDF.CottasStore.CompoundPresenceBitmap",
   "file": "formal/fstar/RDF.CottasStore.CompoundPresenceBitmap.fst",
   "line": 328,
   "unconditional": false,
   "shipping_functions_named": [
    "rg_could_contain_pair"
   ],
   "shipping_modules": [
    "RDF.CottasStore.CompoundPresenceBitmap"
   ],
   "declarative_relations_named": [
    "compound_built_correctly"
   ],
   "declarative_modules": [
    "RDF.CottasStore.CompoundPresenceBitmap"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_parse_n_u64s_one",
   "host_module": "RDF.CottasStore.CompoundPresenceWriter",
   "file": "formal/fstar/RDF.CottasStore.CompoundPresenceWriter.fst",
   "line": 197,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_n_u64s",
    "write_u64_le"
   ],
   "shipping_modules": [
    "RDF.Bytes",
    "RDF.CottasStore.CompoundPresenceWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_n_u64s_zero",
   "host_module": "RDF.CottasStore.CompoundPresenceWriter",
   "file": "formal/fstar/RDF.CottasStore.CompoundPresenceWriter.fst",
   "line": 203,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_n_u64s"
   ],
   "shipping_modules": [
    "RDF.CottasStore.CompoundPresenceWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_last_of_or_singleton_zero",
   "host_module": "RDF.CottasStore.CompoundPresenceWriter",
   "file": "formal/fstar/RDF.CottasStore.CompoundPresenceWriter.fst",
   "line": 207,
   "unconditional": true,
   "shipping_functions_named": [
    "last_of_or"
   ],
   "shipping_modules": [
    "RDF.CottasStore.CompoundPresenceWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_serialize_compound_presence_empty_shape",
   "host_module": "RDF.CottasStore.CompoundPresenceWriter",
   "file": "formal/fstar/RDF.CottasStore.CompoundPresenceWriter.fst",
   "line": 215,
   "unconditional": true,
   "shipping_functions_named": [
    "copo_magic",
    "copo_version",
    "serialize_compound_presence",
    "write_u32_le",
    "write_u64_le"
   ],
   "shipping_modules": [
    "RDF.Bytes",
    "RDF.CottasStore.CompoundPresenceWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_serialize_compound_presence_empty_case",
   "host_module": "RDF.CottasStore.CompoundPresenceWriter",
   "file": "formal/fstar/RDF.CottasStore.CompoundPresenceWriter.fst",
   "line": 264,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_compound_presence",
    "serialize_compound_presence"
   ],
   "shipping_modules": [
    "RDF.CottasStore.CompoundPresenceWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_n_u64s_serialize_u64_list",
   "host_module": "RDF.CottasStore.CompoundPresenceWriter",
   "file": "formal/fstar/RDF.CottasStore.CompoundPresenceWriter.fst",
   "line": 308,
   "unconditional": false,
   "shipping_functions_named": [
    "all_lt",
    "parse_n_u64s",
    "serialize_u64_list"
   ],
   "shipping_modules": [
    "RDF.CottasStore.CompoundPresenceWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_serialize_compound_presence",
   "host_module": "RDF.CottasStore.CompoundPresenceWriter",
   "file": "formal/fstar/RDF.CottasStore.CompoundPresenceWriter.fst",
   "line": 331,
   "unconditional": false,
   "shipping_functions_named": [
    "all_lt",
    "last_of_or",
    "parse_compound_presence",
    "serialize_compound_presence"
   ],
   "shipping_modules": [
    "RDF.CottasStore.CompoundPresenceWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_serialize_dict_empty_case",
   "host_module": "RDF.CottasStore.DictWriter",
   "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
   "line": 323,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_dict",
    "serialize_dict"
   ],
   "shipping_modules": [
    "RDF.CottasStore.DictWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_build_ids_acc_length",
   "host_module": "RDF.CottasStore.DictWriter",
   "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
   "line": 331,
   "unconditional": true,
   "shipping_functions_named": [
    "build_ids_acc"
   ],
   "shipping_modules": [
    "RDF.CottasStore.DictWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_ids_length",
   "host_module": "RDF.CottasStore.DictWriter",
   "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
   "line": 342,
   "unconditional": true,
   "shipping_functions_named": [
    "build_ids"
   ],
   "shipping_modules": [
    "RDF.CottasStore.DictWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_cum_final_mono",
   "host_module": "RDF.CottasStore.DictWriter",
   "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
   "line": 365,
   "unconditional": true,
   "shipping_functions_named": [
    "cum_final"
   ],
   "shipping_modules": [
    "RDF.CottasStore.DictWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_offs_acc_final",
   "host_module": "RDF.CottasStore.DictWriter",
   "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
   "line": 373,
   "unconditional": false,
   "shipping_functions_named": [
    "build_offs_acc",
    "cum_final"
   ],
   "shipping_modules": [
    "RDF.CottasStore.DictWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_n_offsets_build_offs_acc",
   "host_module": "RDF.CottasStore.DictWriter",
   "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
   "line": 389,
   "unconditional": false,
   "shipping_functions_named": [
    "build_offs_acc",
    "cum_final",
    "cum_offs",
    "parse_n_offsets"
   ],
   "shipping_modules": [
    "RDF.CottasStore.DictWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_tokens_from_offsets_build_data",
   "host_module": "RDF.CottasStore.DictWriter",
   "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
   "line": 411,
   "unconditional": false,
   "shipping_functions_named": [
    "build_data",
    "cum_final",
    "cum_offs",
    "parse_tokens_from_offsets"
   ],
   "shipping_modules": [
    "RDF.CottasStore.DictWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_cum_offs_length",
   "host_module": "RDF.CottasStore.DictWriter",
   "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
   "line": 444,
   "unconditional": false,
   "shipping_functions_named": [
    "cum_final",
    "cum_offs"
   ],
   "shipping_modules": [
    "RDF.CottasStore.DictWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_u64_le_append",
   "host_module": "RDF.CottasStore.DictWriter",
   "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
   "line": 460,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_u64_le"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_parse_u32_le_append",
   "host_module": "RDF.CottasStore.DictWriter",
   "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
   "line": 471,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_u32_le"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_parse_n_offsets_append",
   "host_module": "RDF.CottasStore.DictWriter",
   "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
   "line": 482,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_n_offsets"
   ],
   "shipping_modules": [
    "RDF.CottasStore.DictWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_offs_cons",
   "host_module": "RDF.CottasStore.DictWriter",
   "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
   "line": 504,
   "unconditional": false,
   "shipping_functions_named": [
    "build_offs",
    "cum_final",
    "tok_byte_len",
    "write_u64_le"
   ],
   "shipping_modules": [
    "RDF.Bytes",
    "RDF.CottasStore.DictWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_cum_offs_cons",
   "host_module": "RDF.CottasStore.DictWriter",
   "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
   "line": 528,
   "unconditional": false,
   "shipping_functions_named": [
    "cum_offs",
    "tok_byte_len"
   ],
   "shipping_modules": [
    "RDF.CottasStore.DictWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_cum_final_cons",
   "host_module": "RDF.CottasStore.DictWriter",
   "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
   "line": 538,
   "unconditional": false,
   "shipping_functions_named": [
    "cum_final",
    "tok_byte_len"
   ],
   "shipping_modules": [
    "RDF.CottasStore.DictWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_n_offsets_build_offs",
   "host_module": "RDF.CottasStore.DictWriter",
   "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
   "line": 551,
   "unconditional": false,
   "shipping_functions_named": [
    "build_offs",
    "cum_final",
    "cum_offs",
    "parse_n_offsets"
   ],
   "shipping_modules": [
    "RDF.CottasStore.DictWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_serialize_dict_cons",
   "host_module": "RDF.CottasStore.DictWriter",
   "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
   "line": 587,
   "unconditional": false,
   "shipping_functions_named": [
    "cum_final",
    "header_size",
    "id_size",
    "offset_size",
    "parse_dict",
    "serialize_dict"
   ],
   "shipping_modules": [
    "RDF.CottasStore.DictWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_serialize_dict",
   "host_module": "RDF.CottasStore.DictWriter",
   "file": "formal/fstar/RDF.CottasStore.DictWriter.fst",
   "line": 656,
   "unconditional": false,
   "shipping_functions_named": [
    "cum_final",
    "header_size",
    "id_size",
    "offset_size",
    "parse_dict",
    "serialize_dict"
   ],
   "shipping_modules": [
    "RDF.CottasStore.DictWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_n_u64s_one",
   "host_module": "RDF.CottasStore.OffsetsWriter",
   "file": "formal/fstar/RDF.CottasStore.OffsetsWriter.fst",
   "line": 201,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_n_u64s",
    "write_u64_le"
   ],
   "shipping_modules": [
    "RDF.Bytes",
    "RDF.CottasStore.OffsetsWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_n_u32s_zero",
   "host_module": "RDF.CottasStore.OffsetsWriter",
   "file": "formal/fstar/RDF.CottasStore.OffsetsWriter.fst",
   "line": 207,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_n_u32s"
   ],
   "shipping_modules": [
    "RDF.CottasStore.OffsetsWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_last_of_or_singleton_zero",
   "host_module": "RDF.CottasStore.OffsetsWriter",
   "file": "formal/fstar/RDF.CottasStore.OffsetsWriter.fst",
   "line": 211,
   "unconditional": true,
   "shipping_functions_named": [
    "last_of_or"
   ],
   "shipping_modules": [
    "RDF.CottasStore.OffsetsWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_serialize_offsets_empty_shape",
   "host_module": "RDF.CottasStore.OffsetsWriter",
   "file": "formal/fstar/RDF.CottasStore.OffsetsWriter.fst",
   "line": 219,
   "unconditional": true,
   "shipping_functions_named": [
    "coto_magic",
    "coto_version",
    "serialize_offsets",
    "write_u32_le",
    "write_u64_le"
   ],
   "shipping_modules": [
    "RDF.Bytes",
    "RDF.CottasStore.OffsetsWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_serialize_offsets_empty_case",
   "host_module": "RDF.CottasStore.OffsetsWriter",
   "file": "formal/fstar/RDF.CottasStore.OffsetsWriter.fst",
   "line": 261,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_offsets",
    "serialize_offsets"
   ],
   "shipping_modules": [
    "RDF.CottasStore.OffsetsWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_n_u64s_serialize_u64_list",
   "host_module": "RDF.CottasStore.OffsetsWriter",
   "file": "formal/fstar/RDF.CottasStore.OffsetsWriter.fst",
   "line": 297,
   "unconditional": false,
   "shipping_functions_named": [
    "all_lt",
    "parse_n_u64s",
    "serialize_u64_list"
   ],
   "shipping_modules": [
    "RDF.CottasStore.OffsetsWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_n_u32s_serialize_u32_list",
   "host_module": "RDF.CottasStore.OffsetsWriter",
   "file": "formal/fstar/RDF.CottasStore.OffsetsWriter.fst",
   "line": 317,
   "unconditional": false,
   "shipping_functions_named": [
    "all_lt",
    "parse_n_u32s",
    "serialize_u32_list"
   ],
   "shipping_modules": [
    "RDF.CottasStore.OffsetsWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_serialize_offsets",
   "host_module": "RDF.CottasStore.OffsetsWriter",
   "file": "formal/fstar/RDF.CottasStore.OffsetsWriter.fst",
   "line": 348,
   "unconditional": false,
   "shipping_functions_named": [
    "all_lt",
    "last_of_or",
    "parse_offsets",
    "serialize_offsets"
   ],
   "shipping_modules": [
    "RDF.CottasStore.OffsetsWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "presence_bit_index_bounded",
   "host_module": "RDF.CottasStore.OnDiskIndex",
   "file": "formal/fstar/RDF.CottasStore.OnDiskIndex.fst",
   "line": 322,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "replace_entry_length",
   "host_module": "RDF.CottasStore.PageCache.Bounds",
   "file": "formal/fstar/RDF.CottasStore.PageCache.Bounds.fst",
   "line": 68,
   "unconditional": true,
   "shipping_functions_named": [
    "replace_entry"
   ],
   "shipping_modules": [
    "RDF.CottasStore.PageCache"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "drop_entry_length",
   "host_module": "RDF.CottasStore.PageCache.Bounds",
   "file": "formal/fstar/RDF.CottasStore.PageCache.Bounds.fst",
   "line": 79,
   "unconditional": true,
   "shipping_functions_named": [
    "drop_entry"
   ],
   "shipping_modules": [
    "RDF.CottasStore.PageCache"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "drop_entry_length_present",
   "host_module": "RDF.CottasStore.PageCache.Bounds",
   "file": "formal/fstar/RDF.CottasStore.PageCache.Bounds.fst",
   "line": 97,
   "unconditional": false,
   "shipping_functions_named": [
    "drop_entry"
   ],
   "shipping_modules": [
    "RDF.CottasStore.PageCache"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "list_len_eq_length",
   "host_module": "RDF.CottasStore.PageCache.Bounds",
   "file": "formal/fstar/RDF.CottasStore.PageCache.Bounds.fst",
   "line": 112,
   "unconditional": true,
   "shipping_functions_named": [
    "list_len"
   ],
   "shipping_modules": [
    "RDF.CottasStore.PageCache"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "find_oldest_aux_found_some",
   "host_module": "RDF.CottasStore.PageCache.Bounds",
   "file": "formal/fstar/RDF.CottasStore.PageCache.Bounds.fst",
   "line": 121,
   "unconditional": true,
   "shipping_functions_named": [
    "find_oldest_aux"
   ],
   "shipping_modules": [
    "RDF.CottasStore.PageCache"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "find_oldest_nonempty",
   "host_module": "RDF.CottasStore.PageCache.Bounds",
   "file": "formal/fstar/RDF.CottasStore.PageCache.Bounds.fst",
   "line": 136,
   "unconditional": false,
   "shipping_functions_named": [
    "find_oldest"
   ],
   "shipping_modules": [
    "RDF.CottasStore.PageCache"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "find_oldest_aux_returns_present",
   "host_module": "RDF.CottasStore.PageCache.Bounds",
   "file": "formal/fstar/RDF.CottasStore.PageCache.Bounds.fst",
   "line": 154,
   "unconditional": true,
   "shipping_functions_named": [
    "find_oldest_aux",
    "key_eq"
   ],
   "shipping_modules": [
    "RDF.CottasStore.PageCache"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "find_oldest_present",
   "host_module": "RDF.CottasStore.PageCache.Bounds",
   "file": "formal/fstar/RDF.CottasStore.PageCache.Bounds.fst",
   "line": 180,
   "unconditional": false,
   "shipping_functions_named": [
    "find_oldest"
   ],
   "shipping_modules": [
    "RDF.CottasStore.PageCache"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "pcache_put_capacity_bound",
   "host_module": "RDF.CottasStore.PageCache.Bounds",
   "file": "formal/fstar/RDF.CottasStore.PageCache.Bounds.fst",
   "line": 210,
   "unconditional": false,
   "shipping_functions_named": [
    "pcache_put"
   ],
   "shipping_modules": [
    "RDF.CottasStore.PageCache"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "entries_after_bound",
   "host_module": "RDF.CottasStore.PageCache.Bounds",
   "file": "formal/fstar/RDF.CottasStore.PageCache.Bounds.fst",
   "line": 218,
   "unconditional": false,
   "shipping_functions_named": [
    "lookup_entry",
    "replace_entry"
   ],
   "shipping_modules": [
    "RDF.CottasStore.PageCache"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "entries_capped_bound",
   "host_module": "RDF.CottasStore.PageCache.Bounds",
   "file": "formal/fstar/RDF.CottasStore.PageCache.Bounds.fst",
   "line": 240,
   "unconditional": false,
   "shipping_functions_named": [
    "drop_entry",
    "find_oldest"
   ],
   "shipping_modules": [
    "RDF.CottasStore.PageCache"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "pcache_get_length",
   "host_module": "RDF.CottasStore.PageCache.Bounds",
   "file": "formal/fstar/RDF.CottasStore.PageCache.Bounds.fst",
   "line": 284,
   "unconditional": true,
   "shipping_functions_named": [
    "pcache_get"
   ],
   "shipping_modules": [
    "RDF.CottasStore.PageCache"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "pcache_decode_capacity_bound",
   "host_module": "RDF.CottasStore.PageCache.Bounds",
   "file": "formal/fstar/RDF.CottasStore.PageCache.Bounds.fst",
   "line": 305,
   "unconditional": false,
   "shipping_functions_named": [
    "pcache_decode_in_row_group"
   ],
   "shipping_modules": [
    "RDF.CottasStore.PageCache"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "filter_zipped_rows_limited_seq_bound",
   "host_module": "RDF.CottasStore.PageCache.Bounds",
   "file": "formal/fstar/RDF.CottasStore.PageCache.Bounds.fst",
   "line": 364,
   "unconditional": false,
   "shipping_functions_named": [
    "filter_zipped_rows_limited_seq"
   ],
   "shipping_modules": [
    "RDF.CottasStore"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "walk_candidate_rgs_search_limited_bound",
   "host_module": "RDF.CottasStore.PageCache.Bounds",
   "file": "formal/fstar/RDF.CottasStore.PageCache.Bounds.fst",
   "line": 418,
   "unconditional": false,
   "shipping_functions_named": [
    "walk_candidate_rgs_search_limited"
   ],
   "shipping_modules": [
    "RDF.CottasStore"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rg_contains_token_sound",
   "host_module": "RDF.CottasStore.PresenceBitmap",
   "file": "formal/fstar/RDF.CottasStore.PresenceBitmap.fst",
   "line": 197,
   "unconditional": false,
   "shipping_functions_named": [
    "rg_contains_token"
   ],
   "shipping_modules": [
    "RDF.CottasStore.PresenceBitmap"
   ],
   "declarative_relations_named": [
    "bitmap_built_correctly"
   ],
   "declarative_modules": [
    "RDF.CottasStore.PresenceBitmap"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_parse_serialize_presence_empty_case",
   "host_module": "RDF.CottasStore.PresenceWriter",
   "file": "formal/fstar/RDF.CottasStore.PresenceWriter.fst",
   "line": 165,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_presence",
    "serialize_presence"
   ],
   "shipping_modules": [
    "RDF.CottasStore.PresenceWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_serialize_presence",
   "host_module": "RDF.CottasStore.PresenceWriter",
   "file": "formal/fstar/RDF.CottasStore.PresenceWriter.fst",
   "line": 203,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_presence",
    "serialize_presence"
   ],
   "shipping_modules": [
    "RDF.CottasStore.PresenceWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_unflatten_flatten",
   "host_module": "RDF.CottasStore.SubjectOffsetsWriter",
   "file": "formal/fstar/RDF.CottasStore.SubjectOffsetsWriter.fst",
   "line": 122,
   "unconditional": true,
   "shipping_functions_named": [
    "flatten_ranges",
    "unflatten_ranges"
   ],
   "shipping_modules": [
    "RDF.CottasStore.SubjectOffsetsWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_flatten_length",
   "host_module": "RDF.CottasStore.SubjectOffsetsWriter",
   "file": "formal/fstar/RDF.CottasStore.SubjectOffsetsWriter.fst",
   "line": 128,
   "unconditional": true,
   "shipping_functions_named": [
    "flatten_ranges"
   ],
   "shipping_modules": [
    "RDF.CottasStore.SubjectOffsetsWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_flatten_all_lt",
   "host_module": "RDF.CottasStore.SubjectOffsetsWriter",
   "file": "formal/fstar/RDF.CottasStore.SubjectOffsetsWriter.fst",
   "line": 142,
   "unconditional": false,
   "shipping_functions_named": [
    "all_lt",
    "flatten_ranges",
    "ranges_all_lt"
   ],
   "shipping_modules": [
    "RDF.CottasStore.OffsetsWriter",
    "RDF.CottasStore.SubjectOffsetsWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_serialize_subject_offsets",
   "host_module": "RDF.CottasStore.SubjectOffsetsWriter",
   "file": "formal/fstar/RDF.CottasStore.SubjectOffsetsWriter.fst",
   "line": 227,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_subject_offsets",
    "ranges_all_lt",
    "serialize_subject_offsets"
   ],
   "shipping_modules": [
    "RDF.CottasStore.SubjectOffsetsWriter"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "tables_of_handle_agree",
   "host_module": "RDF.CottasStore",
   "file": "formal/fstar/RDF.CottasStore.fst",
   "line": 387,
   "unconditional": true,
   "shipping_functions_named": [
    "tables_of_handle"
   ],
   "shipping_modules": [
    "RDF.CottasStore"
   ],
   "declarative_relations_named": [
    "token_tables_agree_with"
   ],
   "declarative_modules": [
    "RDF.CottasStore"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "graph_bound_to_raw_token_agrees",
   "host_module": "RDF.CottasStore",
   "file": "formal/fstar/RDF.CottasStore.fst",
   "line": 442,
   "unconditional": false,
   "shipping_functions_named": [
    "graph_bound_to_raw_token_with",
    "tables_of_handle"
   ],
   "shipping_modules": [
    "RDF.CottasStore"
   ],
   "declarative_relations_named": [
    "token_tables_agree_with"
   ],
   "declarative_modules": [
    "RDF.CottasStore"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "build_qp_row_agrees",
   "host_module": "RDF.CottasStore",
   "file": "formal/fstar/RDF.CottasStore.fst",
   "line": 505,
   "unconditional": false,
   "shipping_functions_named": [
    "build_qp_row_with",
    "tables_of_handle"
   ],
   "shipping_modules": [
    "RDF.CottasStore"
   ],
   "declarative_relations_named": [
    "token_tables_agree_with"
   ],
   "declarative_modules": [
    "RDF.CottasStore"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "build_qp_row_default_graph",
   "host_module": "RDF.CottasStore",
   "file": "formal/fstar/RDF.CottasStore.fst",
   "line": 515,
   "unconditional": true,
   "shipping_functions_named": [
    "build_qp_row_with"
   ],
   "shipping_modules": [
    "RDF.CottasStore"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "finite_rdf_axioms_sound",
   "host_module": "RDF.Entailment.RDF.Spec",
   "file": "formal/fstar/RDF.Entailment.RDF.Spec.fst",
   "line": 247,
   "unconditional": false,
   "shipping_functions_named": [
    "rdf_axiomatic_triples"
   ],
   "shipping_modules": [
    "RDF.Vocabulary.Axioms"
   ],
   "declarative_relations_named": [
    "rdf_axiomatic"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDF.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "sep_bridge",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 73,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "licensed_by2",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Refinement",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Refinement",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs5_sep_free2",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 88,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs5_derives2",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs9_sep_free2",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 100,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs9_derives2",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs11_sep_free2",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 111,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs11_derives2",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_d_minimal_sep_free",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 127,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "datatype_set_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs_rule_subPropertyOf_preserves_sep",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 146,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_subPropertyOf"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_sep_free",
    "ig_wf_pred"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_domain_preserves_sep",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 153,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_domain"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_sep_free",
    "ig_wf_pred"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_range_preserves_sep",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 160,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_range"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_sep_free",
    "ig_wf_pred"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_subClassOf_preserves_sep",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 167,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_subClassOf"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_sep_free",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_container_membership_preserves_sep",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 184,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_container_membership"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_subClassOf_trans_preserves_sep",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 217,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_subClassOf_trans"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_sep_free",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_subPropertyOf_trans_preserves_sep",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 225,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_subPropertyOf_trans"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_sep_free",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_recognized_datatypes_preserves_sep",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 236,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_recognized_datatypes"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_class_subclass_resource_preserves_sep",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 246,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_class_subclass_resource"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_datatype_subclass_literal_preserves_sep",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 253,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_datatype_subclass_literal"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_resource_subject_preserves_sep",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 260,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_resource_subject"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_resource_object_preserves_sep",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 267,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_resource_object"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "step_preserves_sep_free",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 283,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_closure_step"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "closure_iter_preserves_sep_free",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 326,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_closure_chain_wf_step",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 339,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "graph_sep_free",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_closure_chain_wf_of_sep_free",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 346,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "closure_chain_wf",
    "graph_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.ModelTheory",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.ModelTheory",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_closure_chain_wf_empty",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 357,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "closure_chain_wf"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_closure_chain_wf_nonempty_instance",
   "host_module": "RDF.Entailment.RDFS.ChainWf",
   "file": "formal/fstar/RDF.Entailment.RDFS.ChainWf.fst",
   "line": 363,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "closure_chain_wf"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_object_ok_tt_free",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 172,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rho_df_object_ok",
    "term_tt_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_frag_tt_free",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 180,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_tt_free",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_object_to_subject",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 190,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rho_df_object_ok"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subj_term_iri",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 200,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs_conditions_imply_rho_df",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 243,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdfs_conditions",
    "rho_df_conditions"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rho_df_entails_implies_rdfs",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 246,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdfs_entails",
    "rho_df_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "step_domain",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 279,
   "unconditional": false,
   "shipping_functions_named": [
    "rdf_type",
    "rdfs_domain"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "herb_iext",
    "rho_df_closed"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "step_range",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 311,
   "unconditional": false,
   "shipping_functions_named": [
    "rdf_type",
    "rdfs_range"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "herb_iext",
    "rho_df_closed",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "step_sub_property",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 350,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_subPropertyOf"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "herb_iext",
    "rho_df_closed",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "step_sub_property_trans",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 386,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_subPropertyOf"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "herb_iext",
    "rho_df_closed"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "step_sub_class",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 419,
   "unconditional": false,
   "shipping_functions_named": [
    "rdf_type",
    "rdfs_subClassOf"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "herb_iext",
    "rho_df_closed"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "step_sub_class_trans",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 451,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_subClassOf"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "herb_iext",
    "rho_df_closed"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_herb_cond_domain",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 490,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_domain",
    "rho_df_closed"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_herb_cond_range",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 500,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_range",
    "rho_df_closed",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_herb_cond_sub_property",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 511,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_subPropertyOf",
    "rho_df_closed",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_herb_cond_sub_property_trans",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 522,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_subPropertyOf_trans",
    "rho_df_closed"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_herb_cond_sub_class",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 533,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_subClassOf",
    "rho_df_closed"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_herb_cond_sub_class_trans",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 544,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_subClassOf_trans",
    "rho_df_closed"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_herbrand_rho_df_conditions",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 561,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rho_df_closed",
    "rho_df_conditions",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rho_df_closed_complete",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 582,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_tt_free",
    "rho_df_closed",
    "rho_df_entails",
    "rho_df_frag_graph",
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rho_df_closed_sound",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 594,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rho_df_entails",
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rho_df_closed_iff",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 603,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_tt_free",
    "rho_df_closed",
    "rho_df_entails",
    "rho_df_frag_graph",
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subgraph_satisfies",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 624,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "is_subgraph",
    "satisfies"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rho_df_saturation_complete",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 630,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_tt_free",
    "is_subgraph",
    "rho_df_closed",
    "rho_df_entails",
    "rho_df_frag_graph",
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rho_df_saturation_sound",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 645,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rho_df_entails",
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rho_df_saturation_iff",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 662,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_tt_free",
    "is_subgraph",
    "rho_df_closed",
    "rho_df_entails",
    "rho_df_frag_graph",
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs_closure_rho_df_complete",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 697,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_closure"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_tt_free",
    "is_subgraph",
    "rho_df_closed",
    "rho_df_entails",
    "rho_df_frag_graph",
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rho_df_vocab_distinct",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 739,
   "unconditional": true,
   "shipping_functions_named": [
    "i_rdf_type",
    "i_rdfs_domain",
    "i_rdfs_range",
    "i_rdfs_subClassOf",
    "i_rdfs_subPropertyOf"
   ],
   "shipping_modules": [
    "RDF.Vocabulary.Axioms"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_selfloop_witness_frag",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 749,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_selfloop_witness_closed",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 756,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rho_df_closed"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_selfloop_not_in_herbrand",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 763,
   "unconditional": false,
   "shipping_functions_named": [
    "i_rdfs_subClassOf"
   ],
   "shipping_modules": [
    "RDF.Vocabulary.Axioms"
   ],
   "declarative_relations_named": [
    "herb_iext"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rho_df_not_entails_subclass_selfloop",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 769,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rho_df_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs_entails_subclass_selfloop",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 791,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdfs_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rho_df_entailment_strictly_stronger",
   "host_module": "RDF.Entailment.RDFS.Completeness",
   "file": "formal/fstar/RDF.Entailment.RDFS.Completeness.fst",
   "line": 822,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdfs_entails",
    "rho_df_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_add_triple_unchecked_extensive",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 85,
   "unconditional": true,
   "shipping_functions_named": [
    "add_triple_unchecked"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_emit_once_term_extensive",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 88,
   "unconditional": true,
   "shipping_functions_named": [
    "emit_once_term"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_emit_once_extensive",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 93,
   "unconditional": true,
   "shipping_functions_named": [
    "emit_once"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs_rule_subPropertyOf_extensive",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 119,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_subPropertyOf"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs_rule_domain_extensive",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 169,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_domain"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs_rule_range_extensive",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 204,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_range"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs_rule_subClassOf_extensive",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 249,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_subClassOf"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs_rule_subClassOf_trans_extensive",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 287,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_subClassOf_trans"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs_rule_subPropertyOf_trans_extensive",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 328,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_subPropertyOf_trans"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs_rule_container_membership_extensive",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 369,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_container_membership"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs_rule_recognized_datatypes_extensive",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 397,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_recognized_datatypes"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs_rule_resource_subject_extensive",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 407,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_resource_subject"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs_rule_resource_object_extensive",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 417,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_resource_object"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs_rule_class_subclass_resource_extensive",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 431,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_class_subclass_resource"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs_rule_datatype_subclass_literal_extensive",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 445,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_datatype_subclass_literal"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_step_is_dedup_of_pre_dedup",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 485,
   "unconditional": true,
   "shipping_functions_named": [
    "graph_dedup_sort",
    "rdfs_closure_step"
   ],
   "shipping_modules": [
    "RDF.Graph",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_pre_dedup_extensive",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 489,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_d_minimal_sep_free",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 548,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "datatype_set_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs_rule_subPropertyOf_clean",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 558,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_subPropertyOf"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_clean"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rdfs_rule_domain_clean",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 579,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_domain"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_clean"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rdfs_rule_range_clean",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 600,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_range"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_clean"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rdfs_rule_subClassOf_clean",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 624,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_subClassOf"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_clean"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rdfs_rule_container_membership_clean",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 657,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_container_membership"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_clean"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rdfs_rule_subClassOf_trans_clean",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 694,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_subClassOf_trans"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_clean"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rdfs_rule_subPropertyOf_trans_clean",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 716,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_subPropertyOf_trans"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_clean"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rdfs_rule_recognized_datatypes_clean",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 740,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_recognized_datatypes"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_clean"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rdfs_rule_class_subclass_resource_clean",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 762,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_class_subclass_resource"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_clean"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rdfs_rule_datatype_subclass_literal_clean",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 782,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_datatype_subclass_literal"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_clean"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rdfs_rule_resource_subject_clean",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 802,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_resource_subject"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_clean"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rdfs_rule_resource_object_clean",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 825,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_resource_object"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_clean"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_pre_dedup_clean",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 854,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_clean"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_pre_dedup_full_sep_free",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 885,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_full_sep_free",
    "graph_obj_not_tt",
    "graph_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Indexed.KeyInjectivity"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_dedup_sorted_decorated_extensive",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 924,
   "unconditional": false,
   "shipping_functions_named": [
    "dedup_sorted_decorated_aux",
    "triple_to_key"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [
    "decoration_consistent",
    "no_dup_keys_combined"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.FixedPoint"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_map_snd_decorate",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 966,
   "unconditional": true,
   "shipping_functions_named": [
    "triple_to_key"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sortWith_memP_iff",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 982,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_graph_dedup_sort_extensive",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 996,
   "unconditional": false,
   "shipping_functions_named": [
    "graph_dedup_sort"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [
    "no_dup_keys"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.FixedPoint"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_step_extensive",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 1076,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_closure_step"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "no_dup_keys"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.FixedPoint"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_closure_iter_step_shift",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 1120,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_closure_step"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_saturated_stable_at",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 1127,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "closure_chain_canonical",
    "closure_chain_saturated"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.FixedPoint"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_saturated_stable",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 1144,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "closure_chain_canonical",
    "closure_chain_saturated"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.FixedPoint"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_no_repeats_subset_same_length_eq",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 1199,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_len_eq_saturated",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 1245,
   "unconditional": false,
   "shipping_functions_named": [
    "graph_len",
    "rdfs_closure_step"
   ],
   "shipping_modules": [
    "RDF.Graph",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "no_dup_keys",
    "step_saturated"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.FixedPoint"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_str_compare_trans_le",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 1290,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_str_compare_le_lt_trans",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 1301,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sorted_pairs_dt_append",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 1309,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "sorted_pairs_dt"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.FixedPoint"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sortWith_sorted_pairs_dt",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 1330,
   "unconditional": true,
   "shipping_functions_named": [
    "cmp_decorated_triple"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [
    "sorted_pairs_dt"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.FixedPoint"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_no_repeats_p_rev",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 1366,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_dedup_sorted_decorated_no_repeats",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 1405,
   "unconditional": false,
   "shipping_functions_named": [
    "dedup_sorted_decorated_aux"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [
    "decoration_consistent",
    "dedup_acc_inv",
    "sorted_pairs_dt"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.FixedPoint"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_graph_dedup_sort_no_repeats",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 1479,
   "unconditional": true,
   "shipping_functions_named": [
    "graph_dedup_sort"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs_closure_step_no_repeats",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 1504,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_closure_step"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_len_eq_saturated_gapB",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 1522,
   "unconditional": false,
   "shipping_functions_named": [
    "graph_len",
    "rdfs_closure_step"
   ],
   "shipping_modules": [
    "RDF.Graph",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "no_dup_keys",
    "step_saturated"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.FixedPoint"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_len_eq_saturated_sep_free",
   "host_module": "RDF.Entailment.RDFS.FixedPoint",
   "file": "formal/fstar/RDF.Entailment.RDFS.FixedPoint.fst",
   "line": 1556,
   "unconditional": false,
   "shipping_functions_named": [
    "graph_len",
    "rdfs_closure_step"
   ],
   "shipping_modules": [
    "RDF.Graph",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "graph_obj_not_tt",
    "graph_sep_free",
    "step_saturated"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.FixedPoint",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_subj_term_denot",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 76,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfD2_true",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 255,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_rdf_property",
    "holds_all",
    "rdfD2_derives",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDF.Spec",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDF.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs1_true",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 263,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_datatypes",
    "rdfs1_derives",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs2_true",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 267,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_domain",
    "holds_all",
    "rdfs2_derives",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs3_true",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 284,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_range",
    "holds_all",
    "rdfs3_derives",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs4a_true",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 302,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_resource",
    "rdfs4a_derives",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs4b_true",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 306,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_resource",
    "rdfs4b_derives",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs5_true",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 310,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_subPropertyOf_trans",
    "holds_all",
    "rdfs5_derives2",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs6_true",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 327,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_subPropertyOf_refl",
    "holds_all",
    "rdfs6_derives",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs7_true",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 340,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_subPropertyOf",
    "holds_all",
    "rdfs7_derives",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs8_true",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 355,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_class_subclass_resource",
    "holds_all",
    "rdfs8_derives",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs9_true",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 365,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_subClassOf",
    "holds_all",
    "rdfs9_derives2",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs10_true",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 385,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_subClassOf_refl",
    "holds_all",
    "rdfs10_derives",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs11_true",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 398,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_subClassOf_trans",
    "holds_all",
    "rdfs11_derives2",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs12_true",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 415,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_cmp_member",
    "holds_all",
    "rdfs12_derives",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs13_true",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 426,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_datatype_subclass_literal",
    "holds_all",
    "rdfs13_derives",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs_member_subproperty_true",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 440,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_cmp_member",
    "cond_rdfs_axioms",
    "rdfs_member_subproperty",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs_subClassOf_endpoint_refl_true",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 460,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_subClassOf_ic",
    "cond_subClassOf_refl",
    "holds_all",
    "rdfs_subClassOf_endpoint_refl",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs_subPropertyOf_endpoint_refl_true",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 480,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "cond_subPropertyOf_ip",
    "cond_subPropertyOf_refl",
    "holds_all",
    "rdfs_subPropertyOf_endpoint_refl",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs_licensed_true",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 505,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "holds_all",
    "rdfs_conditions",
    "rdfs_licensed",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "bridge",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 543,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "holds_all",
    "licensed_by2",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Refinement"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs_rule_subPropertyOf_preserves",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 552,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_subPropertyOf"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cond_subPropertyOf",
    "holds_all",
    "ig_wf_pred"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_domain_preserves",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 562,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_domain"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cond_domain",
    "holds_all",
    "ig_wf_pred"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_range_preserves",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 572,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_range"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cond_range",
    "holds_all",
    "ig_wf_pred"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_subClassOf_preserves",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 582,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_subClassOf"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cond_subClassOf",
    "holds_all",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_subClassOf_trans_preserves",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 592,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_subClassOf_trans"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cond_subClassOf_trans",
    "holds_all",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_subPropertyOf_trans_preserves",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 602,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_subPropertyOf_trans"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cond_subPropertyOf_trans",
    "holds_all",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_container_membership_preserves",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 612,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_container_membership"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cond_cmp_member",
    "cond_rdfs_axioms",
    "holds_all"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_recognized_datatypes_preserves",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 623,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_recognized_datatypes"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cond_datatypes_minimal",
    "holds_all"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_resource_subject_preserves",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 631,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_resource_subject"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cond_resource",
    "holds_all"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_resource_object_preserves",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 640,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_resource_object"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cond_resource",
    "holds_all"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_class_subclass_resource_preserves",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 649,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_class_subclass_resource"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cond_class_subclass_resource",
    "holds_all"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_datatype_subclass_literal_preserves",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 658,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_datatype_subclass_literal"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cond_datatype_subclass_literal",
    "holds_all"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_closure_step_sound",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 679,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_closure_step"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "holds_all",
    "ig_wf_sp",
    "rdfs_conditions"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_closure_iter_shift",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 739,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_closure_step"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_chain_shift",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 742,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_closure_step"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "closure_chain_wf"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "rdfs_closure_sound",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 756,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_closure"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "closure_chain_wf",
    "holds_all",
    "rdfs_conditions"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_closure_entails",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 777,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_closure"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "closure_chain_wf",
    "rdfs_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "rdf_property_axiom_closure_entails",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 796,
   "unconditional": true,
   "shipping_functions_named": [
    "rdf_property_axiom_closure"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "rdf_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "rdfs_reflexivity_axioms_preserves",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 835,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_reflexivity_axioms"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "holds_all",
    "rdfs_conditions"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_add_triples_if_new_holds",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 843,
   "unconditional": false,
   "shipping_functions_named": [
    "add_triples_if_new"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [
    "holds_all"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_closure_with_reflexivity_sound",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 855,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_closure_with_reflexivity"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "closure_chain_wf",
    "holds_all",
    "rdfs_conditions"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_closure_with_reflexivity_entails",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 873,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_closure_with_reflexivity"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "closure_chain_wf",
    "rdfs_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "reflexivity_needs_rdfs_Class",
   "host_module": "RDF.Entailment.RDFS.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.RDFS.ModelTheory.fst",
   "line": 912,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_Class",
    "rdfs_subClassOf"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "cond_subClassOf_refl",
    "icext"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_vocab_agree",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 88,
   "unconditional": true,
   "shipping_functions_named": [
    "i_rdf_Property",
    "i_rdf_type",
    "i_rdfs_Class",
    "i_rdfs_ContainerMembershipProperty",
    "i_rdfs_domain",
    "i_rdfs_member",
    "i_rdfs_range",
    "i_rdfs_subClassOf",
    "i_rdfs_subPropertyOf",
    "rdf_Property",
    "rdf_type",
    "rdfs_Class",
    "rdfs_ContainerMembershipProperty",
    "rdfs_domain",
    "rdfs_member",
    "rdfs_range",
    "rdfs_subClassOf",
    "rdfs_subPropertyOf"
   ],
   "shipping_modules": [
    "RDF.Vocabulary.Axioms",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_vocab_agree_rs2",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 106,
   "unconditional": true,
   "shipping_functions_named": [
    "i_rdfs_Datatype",
    "i_rdfs_Literal",
    "i_rdfs_Resource",
    "rdfs_Datatype",
    "rdfs_Literal",
    "rdfs_Resource"
   ],
   "shipping_modules": [
    "RDF.Vocabulary.Axioms",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_term_to_subject_subj_term",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 114,
   "unconditional": false,
   "shipping_functions_named": [
    "term_to_subject"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdf_property_axiom_matches",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 133,
   "unconditional": true,
   "shipping_functions_named": [
    "rdf_property_axiom_of_triple"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_add_triples_if_new_memP",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 138,
   "unconditional": true,
   "shipping_functions_named": [
    "add_triples_if_new"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_dedup_sorted_memP",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 150,
   "unconditional": true,
   "shipping_functions_named": [
    "dedup_sorted_aux"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_dedup_sorted_decorated_memP",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 167,
   "unconditional": true,
   "shipping_functions_named": [
    "dedup_sorted_decorated_aux"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_graph_dedup_sort_memP",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 185,
   "unconditional": true,
   "shipping_functions_named": [
    "graph_dedup_sort"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdf_property_axiom_closure_licensed",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 205,
   "unconditional": true,
   "shipping_functions_named": [
    "rdf_property_axiom_closure"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "rdfD2_derives"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDF.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDF.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_domain_licensed",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 252,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_domain"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_pred",
    "licensed_by2",
    "rdfs2_derives"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Refinement",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_range_licensed",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 303,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_range"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_pred",
    "licensed_by2",
    "rdfs3_derives"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Refinement",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_subPropertyOf_licensed",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 362,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_subPropertyOf"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_pred",
    "licensed_by2",
    "rdfs7_derives"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Refinement",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_find_objects_elim",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 453,
   "unconditional": false,
   "shipping_functions_named": [
    "find_objects_indexed"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_subClassOf_licensed",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 460,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_subClassOf"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "licensed_by2",
    "rdfs9_derives2"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Refinement",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_subClassOf_trans_licensed",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 517,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_subClassOf_trans"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "licensed_by2",
    "rdfs11_derives2"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Refinement",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_subPropertyOf_trans_licensed",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 575,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_subPropertyOf_trans"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "licensed_by2",
    "rdfs5_derives2"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Refinement",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rdf_member_iris",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 650,
   "unconditional": true,
   "shipping_functions_named": [
    "rdf_1",
    "rdf_2",
    "rdf_3",
    "rdf_4",
    "rdf_5"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "is_rdf_member_iri"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDF.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDF.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_container_membership_licensed",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 675,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_container_membership"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "rdfs_axiomatic",
    "rdfs_member_subproperty"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "selfloop_not_axiomatic",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 758,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdf_axiomatic",
    "rdfs_axiomatic",
    "rdfs_member_subproperty"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDF.Spec",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDF.Spec",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs_rule_recognized_datatypes_licensed",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 790,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_recognized_datatypes"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "rdfs1_derives"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_resource_subject_licensed",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 826,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_resource_subject"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "licensed_by",
    "rdfs4a_derives"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Refinement",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_resource_object_licensed",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 853,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_resource_object"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "licensed_by",
    "rdfs4b_derives"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Refinement",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_class_subclass_resource_licensed",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 881,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_class_subclass_resource"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "licensed_by",
    "rdfs8_derives"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Refinement",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_datatype_subclass_literal_licensed",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 911,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_datatype_subclass_literal"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "licensed_by",
    "rdfs13_derives"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Refinement",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_existsb_elim",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 981,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_snapshot_carries_elim",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 992,
   "unconditional": false,
   "shipping_functions_named": [
    "snapshot_carries"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_emit_once",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1011,
   "unconditional": false,
   "shipping_functions_named": [
    "emit_once"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "snapshot_subset"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Refinement"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_emit_once_grows_all",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1023,
   "unconditional": true,
   "shipping_functions_named": [
    "emit_once"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_emit_once_all",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1028,
   "unconditional": false,
   "shipping_functions_named": [
    "emit_once"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "snapshot_subset"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Refinement"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "fold_left_grows",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1044,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fold_left_reaches",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1057,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs_rule_recognized_datatypes_monotone",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1104,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_recognized_datatypes"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs_rule_recognized_datatypes_complete",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1112,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_recognized_datatypes",
    "recognized_datatypes"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "snapshot_subset"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Refinement"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_resource_subject_monotone",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1125,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_resource_subject"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs_rule_resource_subject_complete",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1133,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_resource_subject"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "snapshot_subset"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Refinement"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_resource_object_monotone",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1145,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_resource_object"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs_rule_resource_object_complete",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1153,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_resource_object"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "snapshot_subset"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Refinement"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_class_subclass_resource_monotone",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1165,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_class_subclass_resource"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs_rule_class_subclass_resource_complete",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1173,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_class_subclass_resource"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "snapshot_subset"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Refinement"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_datatype_subclass_literal_monotone",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1185,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_rule_datatype_subclass_literal"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs_rule_datatype_subclass_literal_complete",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1193,
   "unconditional": false,
   "shipping_functions_named": [
    "rdfs_rule_datatype_subclass_literal"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "snapshot_subset"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Refinement"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rs2_rows_complete_at_build_indexed",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1216,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "is_typed_as",
    "rdf_type",
    "rdfs_Class",
    "rdfs_Datatype",
    "rdfs_Literal",
    "rdfs_Resource",
    "rdfs_rule_class_subclass_resource",
    "rdfs_rule_datatype_subclass_literal",
    "rdfs_rule_recognized_datatypes",
    "rdfs_rule_resource_object",
    "rdfs_rule_resource_subject",
    "rdfs_subClassOf",
    "recognized_datatypes",
    "term_to_subject"
   ],
   "shipping_modules": [
    "RDF.Graph",
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "cons_if_new_iri_memP",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1354,
   "unconditional": true,
   "shipping_functions_named": [
    "cons_if_new_iri"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "cons_subject_iri_if_new_memP",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1357,
   "unconditional": true,
   "shipping_functions_named": [
    "cons_subject_iri_if_new"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "cons_term_iri_if_new_memP",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1363,
   "unconditional": true,
   "shipping_functions_named": [
    "cons_term_iri_if_new"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "collect_related_iris_source",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1380,
   "unconditional": true,
   "shipping_functions_named": [
    "collect_related_iris"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "harvest_source"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_class_typing_rdfs",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1429,
   "unconditional": false,
   "shipping_functions_named": [
    "is_class_type_object_rdfs",
    "rdfs_Class"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_property_typing_rdfs",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1438,
   "unconditional": false,
   "shipping_functions_named": [
    "is_property_type_object_rdfs",
    "rdf_Property"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_class_refl_licensed",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1452,
   "unconditional": false,
   "shipping_functions_named": [
    "is_class_type_object_rdfs",
    "rdfs_subClassOf"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "harvest_source",
    "rdfs_licensed"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Refinement",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_property_refl_licensed",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1482,
   "unconditional": false,
   "shipping_functions_named": [
    "is_property_type_object_rdfs",
    "rdfs_subPropertyOf"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "harvest_source",
    "rdfs_licensed"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Refinement",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_reflexivity_axioms_licensed",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1516,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_reflexivity_axioms"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "rdfs_licensed"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_reflexivity_axioms_owl_class_empty",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1561,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_reflexivity_axioms"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "owl_reflexivity_axioms_emit_owl_class",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1572,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_reflexivity_axioms"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "owl_reflexivity_axioms_not_rdfs_sound",
   "host_module": "RDF.Entailment.RDFS.Refinement",
   "file": "formal/fstar/RDF.Entailment.RDFS.Refinement.fst",
   "line": 1590,
   "unconditional": true,
   "shipping_functions_named": [
    "owl_reflexivity_axioms"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "rdfs_licensed"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rho_df_step_is_dedup_of_pre_dedup",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 138,
   "unconditional": true,
   "shipping_functions_named": [
    "graph_dedup_sort",
    "rho_df_closure_step",
    "rho_df_closure_step_pre_dedup"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "RDF.Graph"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_rho_df_closure_iter_shift",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 168,
   "unconditional": true,
   "shipping_functions_named": [
    "rho_df_closure_iter",
    "rho_df_closure_step"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_rho_df_chain_canonical_shift",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 171,
   "unconditional": false,
   "shipping_functions_named": [
    "rho_df_closure_step"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rho_df_pre_dedup_extensive",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 181,
   "unconditional": true,
   "shipping_functions_named": [
    "rho_df_closure_step_pre_dedup"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rho_df_step_extensive",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 200,
   "unconditional": false,
   "shipping_functions_named": [
    "rho_df_closure_step",
    "rho_df_closure_step_pre_dedup"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [
    "no_dup_keys"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.FixedPoint"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_rho_df_pre_dedup_clean",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 266,
   "unconditional": false,
   "shipping_functions_named": [
    "rho_df_closure_step_pre_dedup"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [
    "graph_clean"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rho_df_pre_dedup_no_dup_keys",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 285,
   "unconditional": false,
   "shipping_functions_named": [
    "rho_df_closure_step_pre_dedup"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [
    "graph_clean",
    "no_dup_keys"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.FixedPoint",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rho_df_step_clean",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 298,
   "unconditional": false,
   "shipping_functions_named": [
    "rho_df_closure_step"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [
    "graph_clean"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rho_df_closure_iter_clean",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 306,
   "unconditional": false,
   "shipping_functions_named": [
    "rho_df_closure_iter"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [
    "graph_clean"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_graph_clean_satisfiable",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 321,
   "unconditional": true,
   "shipping_functions_named": [
    "i_rdf_type",
    "i_rdfs_Class",
    "i_rdfs_Resource"
   ],
   "shipping_modules": [
    "RDF.Vocabulary.Axioms"
   ],
   "declarative_relations_named": [
    "graph_clean"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rho_df_clean_implies_chain_canonical",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 337,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_clean"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rho_df_closure_extensive_aux",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 348,
   "unconditional": false,
   "shipping_functions_named": [
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [
    "is_subgraph"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rho_df_closure_extensive",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 377,
   "unconditional": false,
   "shipping_functions_named": [
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [
    "graph_clean",
    "is_subgraph"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rho_df_closure_extensive_chain",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 385,
   "unconditional": false,
   "shipping_functions_named": [
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [
    "is_subgraph"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rho_df_chain_wf_shift",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 419,
   "unconditional": false,
   "shipping_functions_named": [
    "rho_df_closure_step"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rho_df_step_sound",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 425,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rho_df_closure_step"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "holds_all",
    "ig_wf_sp",
    "rho_df_conditions"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rho_df_closure_sound_aux",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 452,
   "unconditional": false,
   "shipping_functions_named": [
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [
    "holds_all",
    "rho_df_conditions"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rho_df_closure_sound",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 472,
   "unconditional": false,
   "shipping_functions_named": [
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [
    "rho_df_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_rdf_term_eq_sound",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 501,
   "unconditional": false,
   "shipping_functions_named": [
    "rdf_term_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [
    "rho_df_object_ok"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_fold_left_reaches_at",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 520,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fold_left_reaches_scoped",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 551,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_emit_once_term_grows",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 582,
   "unconditional": true,
   "shipping_functions_named": [
    "emit_once_term"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_emit_once_term_reaches",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 587,
   "unconditional": false,
   "shipping_functions_named": [
    "emit_once_term"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "rho_df_frag_graph",
    "rho_df_object_ok",
    "snapshot_subset"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.Refinement"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_find_objects_complete",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 625,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "find_objects_indexed"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "rdfs_rule_domain_reaches2",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 656,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_domain"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "is_subgraph",
    "rdfs2_derives",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.Spec",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec",
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_domain_reaches",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 752,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_domain"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "rdfs2_derives",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_subj_term_to_subject",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 764,
   "unconditional": false,
   "shipping_functions_named": [
    "term_to_subject"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rdfs_rule_range_reaches2",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 772,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_range"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "is_subgraph",
    "rdfs3_derives",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.Spec",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec",
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_range_reaches",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 876,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_range"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "rdfs3_derives",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_subPropertyOf_reaches2",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1010,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_subPropertyOf"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "is_subgraph",
    "rdfs7_derives",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.Spec",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec",
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_subPropertyOf_reaches",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1097,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_subPropertyOf"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "rdfs7_derives",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_subClassOf_trans_reaches2",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1132,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_subClassOf_trans"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "is_subgraph",
    "rdfs11_derives"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec",
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_subClassOf_trans_reaches",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1205,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_subClassOf_trans"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "rdfs11_derives"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_subPropertyOf_trans_reaches2",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1213,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_subPropertyOf_trans"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "is_subgraph",
    "rdfs5_derives"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec",
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_subPropertyOf_trans_reaches",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1276,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_subPropertyOf_trans"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "rdfs5_derives"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_subClassOf_reaches_iri2",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1311,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "i_rdf_type",
    "i_rdfs_subClassOf",
    "rdfs_rule_subClassOf"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDF.Vocabulary.Axioms",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "is_subgraph",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rdfs_rule_subClassOf_reaches_iri",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1409,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "i_rdf_type",
    "i_rdfs_subClassOf",
    "rdfs_rule_subClassOf"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDF.Vocabulary.Axioms",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_f1_witness_frag",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1464,
   "unconditional": false,
   "shipping_functions_named": [
    "f1_witness",
    "i_rdfs_subPropertyOf"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "RDF.Vocabulary.Axioms"
   ],
   "declarative_relations_named": [
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_f1_bad_triple_not_frag",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1468,
   "unconditional": true,
   "shipping_functions_named": [
    "f1_bad_triple"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [
    "rho_df_frag_triple"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_f1_bad_triple_derived",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1477,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "f1_bad_triple",
    "f1_witness",
    "i_rdfs_subPropertyOf",
    "rdfs_rule_subPropertyOf"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "RDF.Indexed",
    "RDF.Vocabulary.Axioms",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rho_df_frag_preservation_fails",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1504,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "f1_bad_triple",
    "f1_witness",
    "i_rdfs_subPropertyOf",
    "rdfs_rule_subPropertyOf"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "RDF.Indexed",
    "RDF.Vocabulary.Axioms",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "rho_df_frag_graph",
    "rho_df_frag_triple"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rho_df_closure_step_no_repeats",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1550,
   "unconditional": true,
   "shipping_functions_named": [
    "rho_df_closure_step"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rho_df_len_eq_saturated",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1560,
   "unconditional": false,
   "shipping_functions_named": [
    "graph_len",
    "rho_df_closure_step",
    "rho_df_closure_step_pre_dedup"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "RDF.Graph"
   ],
   "declarative_relations_named": [
    "no_dup_keys"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.FixedPoint"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_after_row1_pre_dedup",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1580,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_subPropertyOf",
    "rho_df_closure_step_pre_dedup"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_after_row2_pre_dedup",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1594,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_domain",
    "rdfs_rule_subPropertyOf",
    "rho_df_closure_step_pre_dedup"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_after_row3_pre_dedup",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1607,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_domain",
    "rdfs_rule_range",
    "rdfs_rule_subPropertyOf",
    "rho_df_closure_step_pre_dedup"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_after_row4_pre_dedup",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1618,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_domain",
    "rdfs_rule_range",
    "rdfs_rule_subClassOf",
    "rdfs_rule_subPropertyOf",
    "rho_df_closure_step_pre_dedup"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_after_row5_pre_dedup",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1629,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_domain",
    "rdfs_rule_range",
    "rdfs_rule_subClassOf",
    "rdfs_rule_subClassOf_trans",
    "rdfs_rule_subPropertyOf",
    "rho_df_closure_step_pre_dedup"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_pre_dedup_in_c",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1647,
   "unconditional": false,
   "shipping_functions_named": [
    "rho_df_closure_step_pre_dedup"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [
    "no_dup_keys"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.FixedPoint"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_c_in_g1",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1670,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_subPropertyOf"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "is_subgraph"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_c_in_g2",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1677,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_domain",
    "rdfs_rule_subPropertyOf"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "is_subgraph"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_c_in_g3",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1686,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_domain",
    "rdfs_rule_range",
    "rdfs_rule_subPropertyOf"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "is_subgraph"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_c_in_g4",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1696,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_domain",
    "rdfs_rule_range",
    "rdfs_rule_subClassOf",
    "rdfs_rule_subPropertyOf"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "is_subgraph"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_c_in_g5",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1707,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rdfs_rule_domain",
    "rdfs_rule_range",
    "rdfs_rule_subClassOf",
    "rdfs_rule_subClassOf_trans",
    "rdfs_rule_subPropertyOf"
   ],
   "shipping_modules": [
    "RDF.Indexed",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "is_subgraph"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rho_df_closed_row_domain",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1729,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rho_df_closure_step_pre_dedup"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "no_dup_keys",
    "rdfs2_derives",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.FixedPoint",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rho_df_closed_row_range",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1744,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rho_df_closure_step_pre_dedup"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "no_dup_keys",
    "rdfs3_derives",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.FixedPoint",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rho_df_closed_row_subPropertyOf",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1765,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rho_df_closure_step_pre_dedup"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "no_dup_keys",
    "rdfs7_derives",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.FixedPoint",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rho_df_closed_row_subClassOf_trans",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1778,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rho_df_closure_step_pre_dedup"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "no_dup_keys",
    "rdfs11_derives",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.FixedPoint",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rho_df_closed_row_subPropertyOf_trans",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1794,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rho_df_closure_step_pre_dedup"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "no_dup_keys",
    "rdfs5_derives",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.FixedPoint",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_rho_df_closed_row_subClassOf",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1813,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "rho_df_closure_step_pre_dedup"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "no_dup_keys",
    "rdfs9_derives",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.FixedPoint",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rho_df_closure_closed",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1858,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "graph_len",
    "rho_df_closure",
    "rho_df_closure_step",
    "rho_df_closure_step_pre_dedup"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "RDF.Graph",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "ig_wf_sp",
    "no_dup_keys",
    "rho_df_closed",
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.FixedPoint"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "rho_df_closure_decides",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1905,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed",
    "graph_len",
    "rho_df_closure",
    "rho_df_closure_step",
    "rho_df_closure_step_pre_dedup"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "RDF.Graph",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "graph_tt_free",
    "ig_wf_sp",
    "no_dup_keys",
    "rho_df_entails",
    "rho_df_frag_graph",
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.RDFS.FixedPoint",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_is_rho_df_object_ok_correct",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1946,
   "unconditional": true,
   "shipping_functions_named": [
    "is_rho_df_object_ok"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [
    "rho_df_object_ok"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_is_rho_df_frag_triple_correct",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1963,
   "unconditional": true,
   "shipping_functions_named": [
    "is_rho_df_frag_triple"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [
    "rho_df_frag_triple"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_is_rho_df_frag_is_for_all",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1977,
   "unconditional": true,
   "shipping_functions_named": [
    "is_rho_df_frag",
    "is_rho_df_frag_triple"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_is_rho_df_frag_correct",
   "host_module": "RDF.Entailment.RDFS.RhoDFClosure",
   "file": "formal/fstar/RDF.Entailment.RDFS.RhoDFClosure.fst",
   "line": 1989,
   "unconditional": true,
   "shipping_functions_named": [
    "is_rho_df_frag"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [
    "rho_df_frag_graph"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_graph_sep_free_sp",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 104,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "graph_sp_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_vocab_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 118,
   "unconditional": true,
   "shipping_functions_named": [
    "i_rdf_Property",
    "i_rdf_type",
    "i_rdfs_Class",
    "i_rdfs_ContainerMembershipProperty",
    "i_rdfs_Datatype",
    "i_rdfs_Literal",
    "i_rdfs_Resource",
    "i_rdfs_domain",
    "i_rdfs_member",
    "i_rdfs_range",
    "i_rdfs_subClassOf",
    "i_rdfs_subPropertyOf"
   ],
   "shipping_modules": [
    "RDF.Vocabulary.Axioms"
   ],
   "declarative_relations_named": [
    "str_sep_free"
   ],
   "declarative_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_subj_term_obj_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 157,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "obj_label_sep_free",
    "subj_label_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subj_term_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 167,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "obj_label_sep_free",
    "subj_label_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfD2_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 191,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfD2_derives",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDF.Spec",
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDF.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs1_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 205,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "datatype_set_sep_free",
    "rdfs1_derives",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs2_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 215,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs2_derives",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs3_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 229,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs3_derives",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs4a_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 242,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs4a_derives",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs4b_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 254,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs4b_derives",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs5_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 268,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs5_derives",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs6_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 282,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs6_derives",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs7_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 292,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs7_derives",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs8_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 305,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs8_derives",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs9_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 317,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs9_derives",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs10_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 329,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs10_derives",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs11_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 340,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs11_derives",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs12_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 354,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs12_derives",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs13_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 365,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs13_derives",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs_subClassOf_endpoint_refl_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 380,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs_subClassOf_endpoint_refl",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs_subPropertyOf_endpoint_refl_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 400,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs_subPropertyOf_endpoint_refl",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_graph_sep_free_b_sound",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 448,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_iri_list_sep_free_b_sound",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 468,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "str_sep_free"
   ],
   "declarative_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_axiomatic_tables_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 477,
   "unconditional": true,
   "shipping_functions_named": [
    "container_membership_properties",
    "rdf_axiomatic_triples",
    "rdfs_axiomatic_triples"
   ],
   "shipping_modules": [
    "RDF.Vocabulary.Axioms",
    "RDFS.Closure"
   ],
   "declarative_relations_named": [
    "str_sep_free",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_triple_clean_full_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 519,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "triple_full_sep_free",
    "triple_obj_not_tt",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_graph_clean_full_sep_free",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 527,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_clean",
    "graph_full_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs2_obj_not_tt",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 548,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_obj_not_tt",
    "rdfs2_derives",
    "triple_obj_not_tt"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs3_obj_not_tt",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 558,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_obj_not_tt",
    "rdfs3_derives",
    "triple_obj_not_tt"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs7_obj_not_tt",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 569,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_obj_not_tt",
    "rdfs7_derives",
    "triple_obj_not_tt"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs9_sep_free2",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 583,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs9_derives2",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs9_obj_not_tt2",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 594,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_obj_not_tt",
    "rdfs9_derives2",
    "triple_obj_not_tt"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs11_sep_free2",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 605,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs11_derives2",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs11_obj_not_tt2",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 617,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_obj_not_tt",
    "rdfs11_derives2",
    "triple_obj_not_tt"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs5_sep_free2",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 629,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sep_free",
    "rdfs5_derives2",
    "triple_sep_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs5_obj_not_tt2",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 641,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_obj_not_tt",
    "rdfs5_derives2",
    "triple_obj_not_tt"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs1_obj_not_tt",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 655,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdfs1_derives",
    "triple_obj_not_tt"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs4a_obj_not_tt",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 667,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdfs4a_derives",
    "triple_obj_not_tt"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs4b_obj_not_tt",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 675,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdfs4b_derives",
    "triple_obj_not_tt"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs8_obj_not_tt",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 683,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdfs8_derives",
    "triple_obj_not_tt"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdfs13_obj_not_tt",
   "host_module": "RDF.Entailment.RDFS.SepFree",
   "file": "formal/fstar/RDF.Entailment.RDFS.SepFree.fst",
   "line": 691,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdfs13_derives",
    "triple_obj_not_tt"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.SepFree",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "relabelling",
   "host_module": "RDF.Entailment.Simple.Boundary",
   "file": "formal/fstar/RDF.Entailment.Simple.Boundary.fst",
   "line": 63,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rename_term_exact",
   "host_module": "RDF.Entailment.Simple.Boundary",
   "file": "formal/fstar/RDF.Entailment.Simple.Boundary.fst",
   "line": 90,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "term_exact"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rename_graph_exact",
   "host_module": "RDF.Entailment.Simple.Boundary",
   "file": "formal/fstar/RDF.Entailment.Simple.Boundary.fst",
   "line": 96,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_exact"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rename_subj_inst",
   "host_module": "RDF.Entailment.Simple.Boundary",
   "file": "formal/fstar/RDF.Entailment.Simple.Boundary.fst",
   "line": 112,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "subj_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rename_term_inst",
   "host_module": "RDF.Entailment.Simple.Boundary",
   "file": "formal/fstar/RDF.Entailment.Simple.Boundary.fst",
   "line": 120,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "term_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rename_triple_inst",
   "host_module": "RDF.Entailment.Simple.Boundary",
   "file": "formal/fstar/RDF.Entailment.Simple.Boundary.fst",
   "line": 137,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "triple_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subst_ext_subj",
   "host_module": "RDF.Entailment.Simple.Boundary",
   "file": "formal/fstar/RDF.Entailment.Simple.Boundary.fst",
   "line": 148,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "subj_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subst_ext_term",
   "host_module": "RDF.Entailment.Simple.Boundary",
   "file": "formal/fstar/RDF.Entailment.Simple.Boundary.fst",
   "line": 155,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "term_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subst_ext_triple",
   "host_module": "RDF.Entailment.Simple.Boundary",
   "file": "formal/fstar/RDF.Entailment.Simple.Boundary.fst",
   "line": 170,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "triple_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_memP_rename_intro",
   "host_module": "RDF.Entailment.Simple.Boundary",
   "file": "formal/fstar/RDF.Entailment.Simple.Boundary.fst",
   "line": 178,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_memP_rename_elim",
   "host_module": "RDF.Entailment.Simple.Boundary",
   "file": "formal/fstar/RDF.Entailment.Simple.Boundary.fst",
   "line": 186,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "spec_rename_specialises",
   "host_module": "RDF.Entailment.Simple.Boundary",
   "file": "formal/fstar/RDF.Entailment.Simple.Boundary.fst",
   "line": 204,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "spec_rename_generalises",
   "host_module": "RDF.Entailment.Simple.Boundary",
   "file": "formal/fstar/RDF.Entailment.Simple.Boundary.fst",
   "line": 233,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "simple_entails_rename_invariant",
   "host_module": "RDF.Entailment.Simple.Boundary",
   "file": "formal/fstar/RDF.Entailment.Simple.Boundary.fst",
   "line": 274,
   "unconditional": false,
   "shipping_functions_named": [
    "simple_entails"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "graph_exact"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "entails_ntriples_boundary",
   "host_module": "RDF.Entailment.Simple.Boundary",
   "file": "formal/fstar/RDF.Entailment.Simple.Boundary.fst",
   "line": 311,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_ntriples_strict"
   ],
   "shipping_modules": [
    "Parser.NTriples"
   ],
   "declarative_relations_named": [
    "graph_exact",
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_subj_term_is_subject_to_term",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 116,
   "unconditional": true,
   "shipping_functions_named": [
    "subject_to_term"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subj_term_injective",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 122,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subst_denot_subj",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 144,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "subj_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subst_denot_term",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 155,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "term_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subst_triple_holds",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 172,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "triple_holds",
    "triple_inst"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "interpolation_sound",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 183,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "simple_entailment_spec",
    "simple_entails_mt"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.ModelTheory",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_herb_denot_subj_id",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 238,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_herb_denot_term_id",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 244,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "term_tt_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_herbrand_satisfies",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 255,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_tt_free",
    "satisfies"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_herb_denot_is_subj_inst",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 270,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "subj_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_herb_denot_is_term_inst",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 279,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "term_inst",
    "term_tt_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_herbrand_reflects",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 292,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_tt_free",
    "satisfies",
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "interpolation_complete",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 328,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_tt_free",
    "simple_entailment_spec",
    "simple_entails_mt"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.ModelTheory",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "interpolation_lemma",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 338,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_tt_free",
    "simple_entailment_spec",
    "simple_entails_mt"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.ModelTheory",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "simple_entails_iff_model_theory",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 358,
   "unconditional": false,
   "shipping_functions_named": [
    "simple_entails"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "graph_exact",
    "graph_tt_free",
    "simple_entails_mt"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.ModelTheory",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_subject_bnode_mem",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 442,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "subject_has_bnode"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_term_bnodes_mem",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 448,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "term_has_bnode"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_triple_bnodes_mem",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 460,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "triple_has_bnode"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_graph_bnode_ids_mem",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 466,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_has_bnode"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_mem_triple_bnodes_subset",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 480,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_has_bnode",
    "triple_has_bnode"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_denot_subject_agree",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 507,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "subject_has_bnode"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_denot_term_agree",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 514,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "term_has_bnode"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_triple_holds_agree",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 526,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "triple_has_bnode",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "graph_bnodes_complete",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 532,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "assignments_agree_on",
    "holds_all"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_holds_all_append",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 561,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "holds_all"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_merge_assignment_g1",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 583,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_has_bnode"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_merge_assignment_g2",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 590,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "bnode_disjoint",
    "graph_has_bnode"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_merge_satisfies",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 600,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "bnode_disjoint",
    "holds_all"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "merge_satisfies_iff",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 625,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "bnode_disjoint",
    "satisfies"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "merge_entails_component",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 659,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "bnode_disjoint",
    "satisfies"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "merge_entails_iff",
   "host_module": "RDF.Entailment.Simple.ModelTheory",
   "file": "formal/fstar/RDF.Entailment.Simple.ModelTheory.fst",
   "line": 669,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "bnode_disjoint",
    "satisfies"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.Simple.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subj_terms_agree",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 52,
   "unconditional": true,
   "shipping_functions_named": [
    "subj_as_term"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_literal_eq_exact",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 66,
   "unconditional": false,
   "shipping_functions_named": [
    "literal_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [
    "lit_exact"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_subject_eq_identity",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 81,
   "unconditional": false,
   "shipping_functions_named": [
    "subject_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdf_term_eq_exact_identity",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 88,
   "unconditional": false,
   "shipping_functions_named": [
    "rdf_term_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [
    "term_exact"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_binding_extends_refl",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 130,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "binding_extends"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_binding_extends_trans",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 133,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "binding_extends"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_match_subj_complete",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 177,
   "unconditional": false,
   "shipping_functions_named": [
    "match_subj"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "binding_compat",
    "subj_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_match_term_complete",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 191,
   "unconditional": false,
   "shipping_functions_named": [
    "match_term"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "binding_compat",
    "bnd_total",
    "leq_reflexive",
    "term_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_match_triple_complete",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 220,
   "unconditional": false,
   "shipping_functions_named": [
    "match_triple"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "binding_compat",
    "bnd_total",
    "leq_reflexive",
    "triple_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_try_match_complete",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 239,
   "unconditional": false,
   "shipping_functions_named": [
    "try_match"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "all_matched",
    "binding_compat",
    "bnd_total",
    "leq_reflexive"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_try_alts_complete",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 253,
   "unconditional": false,
   "shipping_functions_named": [
    "try_alts"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "all_matched",
    "binding_compat",
    "bnd_total",
    "leq_reflexive",
    "triple_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_simple_leq_reflexive",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 297,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "leq_reflexive"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_simple_bnd_total",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 300,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "bnd_total"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_simple_leq_always_identity",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 306,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "leq_always_identity"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_simple_leq_exact_identity",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 314,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "leq_exact_identity"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_simple_entails_unfold",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 320,
   "unconditional": true,
   "shipping_functions_named": [
    "simple_entails",
    "try_match"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "simple_entails_complete",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 328,
   "unconditional": false,
   "shipping_functions_named": [
    "simple_entails"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_match_subj_sound",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 355,
   "unconditional": false,
   "shipping_functions_named": [
    "match_subj"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "binding_exact",
    "binding_extends",
    "subj_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_match_term_sound",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 372,
   "unconditional": false,
   "shipping_functions_named": [
    "match_term"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "binding_exact",
    "binding_extends",
    "leq_exact_identity",
    "term_exact",
    "term_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_match_triple_sound",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 418,
   "unconditional": false,
   "shipping_functions_named": [
    "match_triple"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "binding_exact",
    "binding_extends",
    "leq_exact_identity",
    "triple_exact",
    "triple_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_try_match_sound",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 450,
   "unconditional": false,
   "shipping_functions_named": [
    "try_match"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "binding_exact",
    "graph_exact",
    "leq_exact_identity",
    "search_witness"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_try_alts_sound",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 465,
   "unconditional": false,
   "shipping_functions_named": [
    "try_alts"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "binding_exact",
    "graph_exact",
    "is_subgraph",
    "leq_exact_identity",
    "search_witness",
    "triple_exact"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "simple_entails_sound",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 510,
   "unconditional": false,
   "shipping_functions_named": [
    "simple_entails"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "graph_exact",
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "entails_with_complete",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 535,
   "unconditional": false,
   "shipping_functions_named": [
    "entails_with"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "bnd_total",
    "leq_reflexive",
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "entails_with_sound",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 548,
   "unconditional": false,
   "shipping_functions_named": [
    "entails_with"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "graph_exact",
    "leq_exact_identity",
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "simple_entails_iff_spec",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 564,
   "unconditional": false,
   "shipping_functions_named": [
    "simple_entails"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "graph_exact",
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_se1_lit_wf",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 628,
   "unconditional": true,
   "shipping_functions_named": [
    "literal_wf"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "simple_entails_se1_regression",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 644,
   "unconditional": false,
   "shipping_functions_named": [
    "simple_entails"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "simple_entails_se1_positive_regression",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 688,
   "unconditional": true,
   "shipping_functions_named": [
    "simple_entails"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_spec_is_instance_subgraph",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 719,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "instance_subgraph_form",
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_match_subj_ground_sound",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 746,
   "unconditional": false,
   "shipping_functions_named": [
    "match_subj"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_match_term_ground_sound",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 753,
   "unconditional": false,
   "shipping_functions_named": [
    "match_term"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "leq_always_identity"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_match_triple_ground_sound",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 780,
   "unconditional": false,
   "shipping_functions_named": [
    "match_triple"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "leq_always_identity"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_try_match_ground_sound",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 794,
   "unconditional": false,
   "shipping_functions_named": [
    "try_match"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "graph_ground",
    "is_subgraph",
    "leq_always_identity"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_try_alts_ground_sound",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 805,
   "unconditional": false,
   "shipping_functions_named": [
    "try_alts"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "graph_ground",
    "is_subgraph",
    "leq_always_identity"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement",
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_subj_inst_ground_refl",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 835,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "subj_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_term_inst_ground_refl",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 841,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "term_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_triple_inst_ground_refl",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 854,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "triple_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "simple_entails_sound_ground",
   "host_module": "RDF.Entailment.Simple.Refinement",
   "file": "formal/fstar/RDF.Entailment.Simple.Refinement.fst",
   "line": 867,
   "unconditional": false,
   "shipping_functions_named": [
    "simple_entails"
   ],
   "shipping_modules": [
    "RDF.Entailment.Simple"
   ],
   "declarative_relations_named": [
    "graph_ground",
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_mem_triple_append",
   "host_module": "RDF.Graph.Executable",
   "file": "formal/fstar/RDF.Graph.Executable.fst",
   "line": 218,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_remove_absent",
   "host_module": "RDF.Graph.Executable",
   "file": "formal/fstar/RDF.Graph.Executable.fst",
   "line": 229,
   "unconditional": true,
   "shipping_functions_named": [
    "graph_remove"
   ],
   "shipping_modules": [
    "RDF.Graph.Executable"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_bind_preserves_existing",
   "host_module": "RDF.Graph.Executable",
   "file": "formal/fstar/RDF.Graph.Executable.fst",
   "line": 521,
   "unconditional": true,
   "shipping_functions_named": [
    "apply_bind"
   ],
   "shipping_modules": [
    "RDF.Graph.Executable"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_key_order_cmp_zero_iff_eq",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 65,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_key_order_cmp_antisym",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 71,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_key_order_cmp_trans",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 77,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_key_order_cmp_trans_le",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 88,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_dkey_is_key_order_cmp",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 102,
   "unconditional": true,
   "shipping_functions_named": [
    "cmp_by_decorated_key"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_partition_pred_memP",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 134,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_partition_pred_memP_forall",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 143,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sorted_pairs_append",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 153,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "sorted_pairs"
   ],
   "declarative_modules": [
    "RDF.Indexed.Completeness"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sortWith_sorted_pairs",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 177,
   "unconditional": true,
   "shipping_functions_named": [
    "cmp_by_decorated_key"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "sorted_pairs"
   ],
   "declarative_modules": [
    "RDF.Indexed.Completeness"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_group_exists",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 227,
   "unconditional": true,
   "shipping_functions_named": [
    "group_sorted_decorated_aux"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_forall_lt_trans",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 267,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_group_sorted",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 296,
   "unconditional": false,
   "shipping_functions_named": [
    "group_sorted_decorated_aux"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "group_sorted_inv",
    "sorted_kv_desc"
   ],
   "declarative_modules": [
    "RDF.Indexed.Completeness"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_rev_cons",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 354,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sorted_kv_snoc",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 361,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "sorted_kv"
   ],
   "declarative_modules": [
    "RDF.Indexed.Completeness"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rev_desc_to_asc",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 373,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "sorted_kv",
    "sorted_kv_desc"
   ],
   "declarative_modules": [
    "RDF.Indexed.Completeness"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sorted_kv_append",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 396,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "sorted_kv"
   ],
   "declarative_modules": [
    "RDF.Indexed.Completeness"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_take_prefix_acc_append",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 416,
   "unconditional": true,
   "shipping_functions_named": [
    "take_prefix_acc"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_take_prefix_append",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 430,
   "unconditional": true,
   "shipping_functions_named": [
    "take_prefix"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_take_prefix_acc_length",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 436,
   "unconditional": false,
   "shipping_functions_named": [
    "take_prefix_acc"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_take_prefix_length",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 448,
   "unconditional": false,
   "shipping_functions_named": [
    "take_prefix"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_slt_lookup_complete",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 473,
   "unconditional": false,
   "shipping_functions_named": [
    "bucket_lookup",
    "sorted_list_to_tree_fuel"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "sorted_kv"
   ],
   "declarative_modules": [
    "RDF.Indexed.Completeness"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_build_bucket_complete",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 518,
   "unconditional": false,
   "shipping_functions_named": [
    "bucket_lookup",
    "build_bucket"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_build_indexed_complete_pred",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 545,
   "unconditional": true,
   "shipping_functions_named": [
    "bucket_lookup",
    "build_indexed"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_build_indexed_complete_subj",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 583,
   "unconditional": true,
   "shipping_functions_named": [
    "bucket_lookup",
    "build_indexed",
    "subject_to_key"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_build_indexed_complete_sp",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 597,
   "unconditional": true,
   "shipping_functions_named": [
    "bucket_lookup",
    "build_indexed",
    "sp_key"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_build_indexed_complete_obj",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 611,
   "unconditional": true,
   "shipping_functions_named": [
    "bucket_lookup",
    "build_indexed",
    "term_to_key_opt"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_build_indexed_complete_po",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 625,
   "unconditional": true,
   "shipping_functions_named": [
    "bucket_lookup",
    "build_indexed",
    "po_key_opt"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_build_indexed_complete_so",
   "host_module": "RDF.Indexed.Completeness",
   "file": "formal/fstar/RDF.Indexed.Completeness.fst",
   "line": 639,
   "unconditional": true,
   "shipping_functions_named": [
    "bucket_lookup",
    "build_indexed",
    "so_key_opt"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_count_sep_append",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 55,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sep_split_unique",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 71,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subject_key_sep_free",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 96,
   "unconditional": false,
   "shipping_functions_named": [
    "subject_to_key"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "str_sep_free",
    "subj_label_sep_free"
   ],
   "declarative_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_subject_to_key_injective",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 111,
   "unconditional": false,
   "shipping_functions_named": [
    "subject_to_key"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sp_key_decomposes",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 134,
   "unconditional": true,
   "shipping_functions_named": [
    "sp_key",
    "subject_to_key"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "sp_key_injective_one_sided",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 146,
   "unconditional": false,
   "shipping_functions_named": [
    "sp_key"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "str_sep_free",
    "subj_label_sep_free"
   ],
   "declarative_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_build_indexed_wf_sp",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 187,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "graph_sp_sep_free",
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_count_sep_b_eq",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 220,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_graph_sp_sep_free_b_sound",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 235,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_sp_sep_free"
   ],
   "declarative_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_wf_sp_nonempty_instance",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 259,
   "unconditional": true,
   "shipping_functions_named": [
    "build_indexed"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_build_indexed_wf_subj",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 275,
   "unconditional": true,
   "shipping_functions_named": [
    "build_indexed"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "ig_wf_subj"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_term_to_key_opt_injective",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 311,
   "unconditional": false,
   "shipping_functions_named": [
    "term_to_key_opt"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subject_to_key_eq_term_to_key_opt",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 342,
   "unconditional": true,
   "shipping_functions_named": [
    "subject_to_key",
    "subject_to_term",
    "term_to_key_opt"
   ],
   "shipping_modules": [
    "RDF.Graph",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_build_indexed_wf_obj",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 351,
   "unconditional": true,
   "shipping_functions_named": [
    "build_indexed"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "ig_wf_obj"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_po_key_eq_po_key_opt",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 388,
   "unconditional": true,
   "shipping_functions_named": [
    "po_key",
    "po_key_opt",
    "subject_to_term"
   ],
   "shipping_modules": [
    "RDF.Graph",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_term_to_subject_roundtrip",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 396,
   "unconditional": false,
   "shipping_functions_named": [
    "subject_to_term",
    "term_to_subject"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_po_key_opt_some_iff_term_to_subject_some",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 412,
   "unconditional": true,
   "shipping_functions_named": [
    "po_key_opt",
    "term_to_subject"
   ],
   "shipping_modules": [
    "RDF.Graph",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_po_key_decomposes",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 423,
   "unconditional": true,
   "shipping_functions_named": [
    "po_key",
    "subject_to_key"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "po_key_injective_one_sided",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 430,
   "unconditional": false,
   "shipping_functions_named": [
    "po_key"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "str_sep_free",
    "subj_label_sep_free"
   ],
   "declarative_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_build_indexed_wf_po",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 468,
   "unconditional": false,
   "shipping_functions_named": [
    "build_indexed"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "graph_po_sep_free",
    "ig_wf_po"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_literal_sep_free_b_sound",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 550,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "literal_sep_free"
   ],
   "declarative_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_literal_key_decomposes_1",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 576,
   "unconditional": true,
   "shipping_functions_named": [
    "lit_key_dir_part",
    "lit_key_lang_part",
    "term_to_key_total",
    "unit_sep"
   ],
   "shipping_modules": [
    "RDF.Graph",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_literal_key_decomposes_2",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 589,
   "unconditional": true,
   "shipping_functions_named": [
    "lit_key_dir_part",
    "lit_key_lang_part",
    "unit_sep"
   ],
   "shipping_modules": [
    "RDF.Graph",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_literal_key_decomposes_3",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 598,
   "unconditional": true,
   "shipping_functions_named": [
    "lit_key_dir_part",
    "lit_key_lang_part",
    "unit_sep"
   ],
   "shipping_modules": [
    "RDF.Graph",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_literal_prefix_sep_free",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 608,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "str_sep_free"
   ],
   "declarative_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_lit_key_lang_part_sep_free",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 617,
   "unconditional": false,
   "shipping_functions_named": [
    "lit_key_lang_part"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [
    "str_sep_free"
   ],
   "declarative_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_lit_key_dir_part_injective",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 640,
   "unconditional": false,
   "shipping_functions_named": [
    "lit_key_dir_part"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_lit_key_lang_part_injective",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 658,
   "unconditional": false,
   "shipping_functions_named": [
    "lit_key_lang_part"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_literal_key_injective",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 687,
   "unconditional": false,
   "shipping_functions_named": [
    "term_to_key_total"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [
    "literal_sep_free"
   ],
   "declarative_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_triple_term_key_decomposes_1",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 755,
   "unconditional": true,
   "shipping_functions_named": [
    "subject_to_key",
    "term_to_key_total",
    "unit_sep"
   ],
   "shipping_modules": [
    "RDF.Graph",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_triple_term_key_decomposes_2",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 763,
   "unconditional": true,
   "shipping_functions_named": [
    "term_to_key_total",
    "unit_sep"
   ],
   "shipping_modules": [
    "RDF.Graph",
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_triple_term_prefix_sep_free",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 773,
   "unconditional": false,
   "shipping_functions_named": [
    "subject_to_key"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "str_sep_free"
   ],
   "declarative_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_term_to_key_total_injective",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 781,
   "unconditional": false,
   "shipping_functions_named": [
    "term_to_key_total"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [
    "term_sep_free"
   ],
   "declarative_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_triple_to_key_injective",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 901,
   "unconditional": false,
   "shipping_functions_named": [
    "triple_to_key"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [
    "triple_full_sep_free"
   ],
   "declarative_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_graph_full_sep_free_no_dup_keys",
   "host_module": "RDF.Indexed.KeyInjectivity",
   "file": "formal/fstar/RDF.Indexed.KeyInjectivity.fst",
   "line": 954,
   "unconditional": false,
   "shipping_functions_named": [
    "triple_to_key"
   ],
   "shipping_modules": [
    "RDF.Graph"
   ],
   "declarative_relations_named": [
    "graph_full_sep_free"
   ],
   "declarative_modules": [
    "RDF.Indexed.KeyInjectivity"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "string_compare_zero_iff_eq",
   "host_module": "RDF.Indexed.StringOrder",
   "file": "formal/fstar/RDF.Indexed.StringOrder.fsti",
   "line": 33,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "string_compare_antisym",
   "host_module": "RDF.Indexed.StringOrder",
   "file": "formal/fstar/RDF.Indexed.StringOrder.fsti",
   "line": 38,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "string_compare_trans",
   "host_module": "RDF.Indexed.StringOrder",
   "file": "formal/fstar/RDF.Indexed.StringOrder.fsti",
   "line": 42,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_append_aux_eq",
   "host_module": "RDF.List.Helpers",
   "file": "formal/fstar/RDF.List.Helpers.fst",
   "line": 53,
   "unconditional": true,
   "shipping_functions_named": [
    "append_aux"
   ],
   "shipping_modules": [
    "RDF.List.Helpers"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_append_tr_eq",
   "host_module": "RDF.List.Helpers",
   "file": "formal/fstar/RDF.List.Helpers.fst",
   "line": 80,
   "unconditional": true,
   "shipping_functions_named": [
    "append_tr"
   ],
   "shipping_modules": [
    "RDF.List.Helpers"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rev_rev_app",
   "host_module": "RDF.List.Helpers",
   "file": "formal/fstar/RDF.List.Helpers.fst",
   "line": 117,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_concatMap_aux_eq",
   "host_module": "RDF.List.Helpers",
   "file": "formal/fstar/RDF.List.Helpers.fst",
   "line": 126,
   "unconditional": true,
   "shipping_functions_named": [
    "concatMap_aux"
   ],
   "shipping_modules": [
    "RDF.List.Helpers"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_concatMap_tr_eq",
   "host_module": "RDF.List.Helpers",
   "file": "formal/fstar/RDF.List.Helpers.fst",
   "line": 155,
   "unconditional": true,
   "shipping_functions_named": [
    "concatMap_tr"
   ],
   "shipping_modules": [
    "RDF.List.Helpers"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_assoc_tr_eq",
   "host_module": "RDF.List.Helpers",
   "file": "formal/fstar/RDF.List.Helpers.fst",
   "line": 185,
   "unconditional": true,
   "shipping_functions_named": [
    "assoc_tr"
   ],
   "shipping_modules": [
    "RDF.List.Helpers"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "cong_string_of_list",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 144,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "split_lines_acc_reconstruct",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 177,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "split_lines_acc_pending_no_nl",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 211,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "split_complete_lines_reconstruct",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 245,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "split_complete_lines_carry_no_nl",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 268,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "split_lines_acc_no_nl",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 287,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "split_complete_lines_no_newline",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 303,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "split_complete_lines_extend_carry",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 326,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "split_lines_acc_ends_in_newline",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 342,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "split_complete_lines_ends_in_newline",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 362,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "empty_string_concat_left",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 436,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "stream_parse_single_chunk_shape",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 453,
   "unconditional": true,
   "shipping_functions_named": [
    "dataset_finalise",
    "fs_byte_length",
    "parse_nquads_acc"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads",
    "RDF.Graph.Executable"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_fs_byte_index_concat",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 530,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_byte_index_at_middle",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 551,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "empty_string_concat_right",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 564,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "parse_nquads_acc_concat_line_empty_complete",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 603,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length",
    "parse_nquads_acc"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "parse_nquads_acc_concat_line_empty_carry",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 617,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length",
    "parse_nquads_acc"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "theorem_stream_eq_batch_single_chunk_no_newline",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 657,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_stream_eq_batch_single_chunk_ends_in_newline",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 670,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_stream_eq_batch_single_chunk",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 690,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_skip_comment_shift",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 960,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length",
    "nt_skip_to_eol",
    "skip_comment"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_nq_skip_line_shift_exact",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 980,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at",
    "fs_byte_length",
    "nq_skip_line"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_nquads_acc_blank_step_shift",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 1203,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "parse_nquads_acc"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [
    "blank_line_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_parse_nquads_acc_skip_blanks",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 1250,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "parse_nquads_acc"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [
    "blank_chain_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_parse_nquads_acc_comment_step_shift",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 1318,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "parse_nquads_acc"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [
    "comment_line_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_parse_nquads_acc_quad_fail_step_shift",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 1382,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_at",
    "fs_byte_length",
    "parse_nquad",
    "parse_nquads_acc"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [
    "quad_fail_line_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_parse_nquads_acc_quad_ok_step_shift",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 1477,
   "unconditional": false,
   "shipping_functions_named": [
    "dataset_add_quad",
    "fs_byte_length",
    "parse_iri",
    "parse_nquad",
    "parse_nquads_acc",
    "parse_object",
    "parse_opt_graph_label",
    "parse_subject"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [
    "quad_ok_line_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_parse_nquads_acc_line_step_shift",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 1619,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "parse_nquads_acc"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [
    "lw_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_parse_nquads_acc_restart",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 1670,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "parse_nquads_acc"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [
    "chain_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_parse_nquads_acc_full_via_chain",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 1711,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "parse_nquads_acc"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [
    "chain_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_parse_nquads_acc_concat_line_general",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 1756,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "parse_nquads_acc"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [
    "chain_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_stream_eq_batch_single_chunk_general",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 1839,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [
    "chain_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "string_concat_assoc",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 1994,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "stream_fold_eq_batch",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2068,
   "unconditional": false,
   "shipping_functions_named": [
    "dataset_finalise",
    "fs_byte_length",
    "parse_nquads_acc"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads",
    "RDF.Graph.Executable"
   ],
   "declarative_relations_named": [
    "stream_fold_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_stream_eq_batch",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2119,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "stream_fold_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lw_pos_shift",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2170,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lw_end_shift",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2176,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lw_wf_extend_right_blank",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2196,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "lw_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lw_wf_extend_right_comment",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2212,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "lw_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lw_wf_extend_right_quadfail",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2227,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "lw_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lw_wf_extend_right_quadok",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2241,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "lw_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lw_wf_extend_right",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2275,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "lw_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lw_wf_shift_left_blank",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2292,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [
    "lw_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lw_wf_shift_left_comment",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2306,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [
    "lw_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lw_wf_shift_left_quadfail",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2321,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [
    "lw_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lw_wf_shift_left_quadok",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2344,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [
    "lw_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lw_wf_shift_left",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2382,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [
    "lw_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lw_ds_step_shift",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2398,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [
    "lw_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "chain_wf_extend_right",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2419,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "chain_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "chain_end_shift",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2432,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "chain_wf_shift_left",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2445,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [
    "chain_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "chain_ds_fold_shift",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2462,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [
    "chain_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "chain_wf_append",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2482,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "chain_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "chain_ds_fold_append",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2496,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "chain_append",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2511,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [
    "chain_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lw_ds_step_via_parse_nquad",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2551,
   "unconditional": true,
   "shipping_functions_named": [
    "dataset_add_quad",
    "parse_nquad"
   ],
   "shipping_modules": [
    "Parser.NQuads"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lw_ds_step_extend_right",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2559,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "lw_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "stream_consume_single_chunk_shape",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2757,
   "unconditional": true,
   "shipping_functions_named": [
    "fold_nquads_acc",
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "fold_nquads_acc_empty",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2774,
   "unconditional": true,
   "shipping_functions_named": [
    "fold_nquads_acc"
   ],
   "shipping_modules": [
    "Parser.NQuads"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_stream_consume_single_chunk_no_newline",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2793,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_stream_consume_single_chunk_ends_in_newline",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2806,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_stream_consume_single_chunk",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2823,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fold_nquads_acc_eq_parse_nquads_acc",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2879,
   "unconditional": true,
   "shipping_functions_named": [
    "fold_nquads_acc",
    "parse_nquads_acc"
   ],
   "shipping_modules": [
    "Parser.NQuads"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "stream_consume_dataset_fold_eq_batch",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2937,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "parse_nquads_acc"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [
    "stream_fold_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "stream_consume_dataset_eq_batch_raw",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2971,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "parse_nquads_acc"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [
    "stream_fold_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_stream_consume_dataset_eq_batch",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 2991,
   "unconditional": false,
   "shipping_functions_named": [
    "dataset_finalise"
   ],
   "shipping_modules": [
    "RDF.Graph.Executable"
   ],
   "declarative_relations_named": [
    "stream_fold_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_fold_nquads_acc_blank_step_shift",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 3132,
   "unconditional": false,
   "shipping_functions_named": [
    "fold_nquads_acc",
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [
    "blank_line_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_fold_nquads_acc_comment_step_shift",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 3155,
   "unconditional": false,
   "shipping_functions_named": [
    "fold_nquads_acc",
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [
    "comment_line_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_fold_nquads_acc_quad_fail_step_shift",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 3180,
   "unconditional": false,
   "shipping_functions_named": [
    "fold_nquads_acc",
    "fs_byte_at",
    "fs_byte_length",
    "parse_nquad"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [
    "quad_fail_line_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_fold_nquads_acc_quad_ok_step_shift",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 3213,
   "unconditional": false,
   "shipping_functions_named": [
    "fold_nquads_acc",
    "fs_byte_length",
    "parse_iri",
    "parse_nquad",
    "parse_object",
    "parse_opt_graph_label",
    "parse_subject"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [
    "quad_ok_line_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_fold_nquads_acc_line_step_shift",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 3261,
   "unconditional": false,
   "shipping_functions_named": [
    "fold_nquads_acc",
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [
    "lw_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_fold_nquads_acc_restart",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 3286,
   "unconditional": false,
   "shipping_functions_named": [
    "fold_nquads_acc",
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [
    "chain_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_fold_nquads_acc_full_via_chain",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 3312,
   "unconditional": false,
   "shipping_functions_named": [
    "fold_nquads_acc",
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [
    "chain_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "fold_nquads_acc_concat_line_general",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 3336,
   "unconditional": false,
   "shipping_functions_named": [
    "fold_nquads_acc",
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [
    "chain_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "stream_consume_generic_fold_eq_batch",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 3380,
   "unconditional": false,
   "shipping_functions_named": [
    "fold_nquads_acc",
    "fs_byte_length"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NQuads"
   ],
   "declarative_relations_named": [
    "stream_fold_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_stream_consume_eq_batch",
   "host_module": "RDF.NQuads.Streaming",
   "file": "formal/fstar/RDF.NQuads.Streaming.fst",
   "line": 3429,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "stream_fold_wf"
   ],
   "declarative_modules": [
    "RDF.NQuads.Streaming"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_nq_subject_to_string_same_shape_iri",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 317,
   "unconditional": false,
   "shipping_functions_named": [
    "nq_subject_to_string"
   ],
   "shipping_modules": [
    "RDF.NQuads.Serialize"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_nq_subject_to_string_same_shape_bnode",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 326,
   "unconditional": false,
   "shipping_functions_named": [
    "nq_subject_to_string"
   ],
   "shipping_modules": [
    "RDF.NQuads.Serialize"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_nq_subject_to_string_cross_shape",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 339,
   "unconditional": true,
   "shipping_functions_named": [
    "nq_subject_to_string"
   ],
   "shipping_modules": [
    "RDF.NQuads.Serialize"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_nq_subject_to_string_injective",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 348,
   "unconditional": false,
   "shipping_functions_named": [
    "nq_subject_to_string"
   ],
   "shipping_modules": [
    "RDF.NQuads.Serialize"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_nq_term_to_string_same_shape_iri",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 365,
   "unconditional": false,
   "shipping_functions_named": [
    "nq_term_to_string"
   ],
   "shipping_modules": [
    "RDF.NQuads.Serialize"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_nq_term_to_string_same_shape_bnode",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 374,
   "unconditional": false,
   "shipping_functions_named": [
    "nq_term_to_string"
   ],
   "shipping_modules": [
    "RDF.NQuads.Serialize"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_nq_term_to_string_cross_shape",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 382,
   "unconditional": true,
   "shipping_functions_named": [
    "nq_term_to_string"
   ],
   "shipping_modules": [
    "RDF.NQuads.Serialize"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_nq_term_to_string_injective",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 393,
   "unconditional": false,
   "shipping_functions_named": [
    "nq_term_to_string"
   ],
   "shipping_modules": [
    "RDF.NQuads.Serialize"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_nq_objects_injective_pointwise",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 417,
   "unconditional": false,
   "shipping_functions_named": [
    "nq_term_to_string"
   ],
   "shipping_modules": [
    "RDF.NQuads.Serialize"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_extract_middle",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 481,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length",
    "fs_byte_sub"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "checkpoint_a_closed_triple_round_trip",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 612,
   "unconditional": true,
   "shipping_functions_named": [
    "nq_line_for_triple_default_graph",
    "parse_triple"
   ],
   "shipping_modules": [
    "Parser.NTriples",
    "RDF.NQuads.Serialize"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_scan_iri_end_build_string",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 780,
   "unconditional": false,
   "shipping_functions_named": [
    "is_iri_body_char",
    "scan_iri_end"
   ],
   "shipping_modules": [
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_iri_raw_build_string",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 830,
   "unconditional": true,
   "shipping_functions_named": [
    "is_iri_body_char",
    "parse_iri_raw"
   ],
   "shipping_modules": [
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_iri_build_string",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 862,
   "unconditional": false,
   "shipping_functions_named": [
    "is_iri_body_char",
    "parse_iri"
   ],
   "shipping_modules": [
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_term_iri_round_trip_build_string",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 875,
   "unconditional": false,
   "shipping_functions_named": [
    "is_iri_body_char",
    "nq_term_to_string",
    "parse_object"
   ],
   "shipping_modules": [
    "Parser.NTriples",
    "RDF.NQuads.Serialize"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_term_iri_round_trip",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 952,
   "unconditional": false,
   "shipping_functions_named": [
    "is_iri_body_char",
    "nq_term_to_string",
    "parse_object"
   ],
   "shipping_modules": [
    "Parser.NTriples",
    "RDF.NQuads.Serialize"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_iri_round_trip",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 1032,
   "unconditional": false,
   "shipping_functions_named": [
    "is_iri_body_char",
    "parse_iri"
   ],
   "shipping_modules": [
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_subject_iri_round_trip_build_string",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 1052,
   "unconditional": false,
   "shipping_functions_named": [
    "is_iri_body_char",
    "nq_subject_to_string",
    "parse_subject"
   ],
   "shipping_modules": [
    "Parser.NTriples",
    "RDF.NQuads.Serialize"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_subject_iri_round_trip",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 1072,
   "unconditional": false,
   "shipping_functions_named": [
    "is_iri_body_char",
    "nq_subject_to_string",
    "parse_subject"
   ],
   "shipping_modules": [
    "Parser.NTriples",
    "RDF.NQuads.Serialize"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_scan_iri_end_bracket_witness",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 1096,
   "unconditional": false,
   "shipping_functions_named": [
    "is_iri_body_char",
    "scan_iri_end"
   ],
   "shipping_modules": [
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_iri_bracket_shift_prereqs",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 1126,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length",
    "is_iri_body_char",
    "parse_iri_raw",
    "scan_iri_end"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_pws_one_space",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 1177,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_index",
    "fs_byte_length",
    "is_nt_ws",
    "pws"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_build_string_utf8_bytes_general",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 1266,
   "unconditional": true,
   "shipping_functions_named": [
    "utf8_bytes",
    "utf8_enc_char"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_build_string_byte_length_general",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 1279,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length",
    "utf8_enc_char"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_utf8_enc_char_iri_safe",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 1292,
   "unconditional": false,
   "shipping_functions_named": [
    "is_iri_body_char",
    "is_iri_forbidden_codepoint",
    "utf8_enc_char"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "nth_byte_index_iri",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 1304,
   "unconditional": true,
   "shipping_functions_named": [
    "nth_byte"
   ],
   "shipping_modules": [
    "Parser.FastString.Spec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_scan_iri_end_one_char_walk",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 1315,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "is_iri_body_char",
    "scan_iri_end"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_scan_iri_end_build_string_utf8",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 1359,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "is_iri_body_char",
    "scan_iri_end"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_list_of_build_string_general",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 1401,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_string_is_build_string_general",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 1408,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_parse_iri_raw_build_string_utf8",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 1420,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length",
    "is_iri_body_char",
    "parse_iri_raw"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_iri_build_string_utf8",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 1450,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "is_iri_body_char",
    "parse_iri"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_term_iri_round_trip_build_string_utf8",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 1464,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "is_iri_body_char",
    "nq_term_to_string",
    "parse_object"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples",
    "RDF.NQuads.Serialize"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_term_iri_round_trip_utf8",
   "host_module": "RDF.NTriples.RoundTrip",
   "file": "formal/fstar/RDF.NTriples.RoundTrip.fst",
   "line": 1493,
   "unconditional": false,
   "shipping_functions_named": [
    "fs_byte_length",
    "is_iri_body_char",
    "nq_term_to_string",
    "parse_object"
   ],
   "shipping_modules": [
    "Parser.FastString",
    "Parser.NTriples",
    "RDF.NQuads.Serialize"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_trivial_rdf_conditions",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 110,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdf_conditions"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_trivial_rdfs_conditions",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 113,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdfs_conditions"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_trivial_owl_rl_pilot_conditions",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 116,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "owl_rl_pilot_conditions"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_rdf_conditions_satisfiable",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 119,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdf_conditions"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_rdfs_conditions_satisfiable",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 123,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdfs_conditions"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_owl_rl_pilot_conditions_satisfiable",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 127,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "owl_rl_pilot_conditions"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_memP_obj_is_iri",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 200,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sep_denot_iri",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 212,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sep_holds_of_iri_object",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 219,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sep_rdf_axioms",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 224,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdf_axiomatic",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDF.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDF.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sep_rdfs_axioms",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 236,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdfs_axiomatic",
    "triple_holds"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_separating_rdf_conditions",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 254,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdf_conditions"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_separating_rdfs_conditions",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 261,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdfs_conditions"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_separating_rejects",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 275,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "satisfies"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_everything_satisfies_empty",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 283,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "satisfies"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_rdfs_conditions_nontrivially_satisfiable",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 291,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdfs_conditions",
    "satisfies"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_rdf_conditions_nontrivially_satisfiable",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 298,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdf_conditions",
    "satisfies"
   ],
   "declarative_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics",
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_rdfs_entails_not_everything",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 311,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdfs_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_rdf_entails_not_everything",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 318,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "rdf_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.RDFS.ModelTheory"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_owl_separating_conditions",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 352,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "owl_rl_pilot_conditions"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_owl_separating_rejects",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 355,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "satisfies"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_owl_rl_pilot_conditions_nontrivially_satisfiable",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 365,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "owl_rl_pilot_conditions",
    "satisfies"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_pilot_entails_not_everything",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 372,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "pilot_entails"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_graph_exact_witness",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 398,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_exact",
    "lit_exact",
    "triple_exact"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [
    "term_exact"
   ],
   "class": "local_refinement"
  },
  {
   "name": "theorem_graph_exact_not_universal",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 417,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_exact"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_binding_exact_witness",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 436,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "binding_exact"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_leq_hypotheses_satisfiable",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 440,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "leq_exact_identity",
    "leq_reflexive"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_bnd_total_satisfiable",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 450,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "bnd_total"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Refinement"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_smap_exact_witness",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 467,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "ptrm_exact",
    "seq_exact",
    "smap_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_ig_wf_pred_witness",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 504,
   "unconditional": true,
   "shipping_functions_named": [
    "bucket_lookup"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "ig_wf_pred"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_ig_wf_sp_not_universal",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 530,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_ig_wf_sp_satisfiable_degenerately",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 570,
   "unconditional": true,
   "shipping_functions_named": [
    "bucket_lookup",
    "sp_key"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_sp_key_not_injective",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 586,
   "unconditional": true,
   "shipping_functions_named": [
    "sp_key"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ig_wf_sp_of_empty",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 644,
   "unconditional": true,
   "shipping_functions_named": [
    "build_indexed"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_closure_chain_wf_n0_of_empty",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 648,
   "unconditional": true,
   "shipping_functions_named": [
    "build_indexed"
   ],
   "shipping_modules": [
    "RDF.Indexed"
   ],
   "declarative_relations_named": [
    "ig_wf_sp"
   ],
   "declarative_modules": [
    "OWL.Semantics"
   ],
   "independent_formalisation_modules": [
    "OWL.Semantics"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_closure_step_of_empty_is_nonempty",
   "host_module": "RDF.Semantics.HypothesisWitness",
   "file": "formal/fstar/RDF.Semantics.HypothesisWitness.fst",
   "line": 654,
   "unconditional": true,
   "shipping_functions_named": [
    "rdfs_closure_step"
   ],
   "shipping_modules": [
    "RDFS.Closure"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_u8_roundtrip",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 124,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_u8",
    "write_u8"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_lstring_roundtrip",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 161,
   "unconditional": false,
   "shipping_functions_named": [
    "field_byte_len",
    "parse_lstring",
    "serialize_lstring"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_term_ok_tripleterm",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 434,
   "unconditional": true,
   "shipping_functions_named": [
    "term_ok"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_lstring_length",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 467,
   "unconditional": true,
   "shipping_functions_named": [
    "field_byte_len",
    "max_field_chars",
    "serialize_lstring"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_term_length",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 474,
   "unconditional": true,
   "shipping_functions_named": [
    "max_field_chars",
    "serialize_term",
    "term_ok"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_term_roundtrip",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 520,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_term",
    "serialize_term",
    "term_ok"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_subject_roundtrip",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 563,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_subject",
    "serialize_subject",
    "subject_ok"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_triple_roundtrip",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 575,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_triple",
    "serialize_triple",
    "triple_ok"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_graph_opt_roundtrip",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 589,
   "unconditional": false,
   "shipping_functions_named": [
    "graph_opt_ok",
    "parse_graph_opt",
    "serialize_graph_opt"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_delta_entry_payload_roundtrip",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 601,
   "unconditional": false,
   "shipping_functions_named": [
    "delta_entry_ok",
    "parse_delta_entry_payload",
    "serialize_delta_entry_payload"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_subject_length_bound",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 655,
   "unconditional": true,
   "shipping_functions_named": [
    "max_field_chars",
    "serialize_subject",
    "subject_ok"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_graph_opt_length_bound",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 665,
   "unconditional": true,
   "shipping_functions_named": [
    "graph_opt_ok",
    "max_field_chars",
    "serialize_graph_opt"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_triple_length_bound",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 674,
   "unconditional": true,
   "shipping_functions_named": [
    "max_field_chars",
    "serialize_triple",
    "triple_ok"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_delta_entry_payload_length",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 687,
   "unconditional": true,
   "shipping_functions_named": [
    "delta_entry_ok",
    "serialize_delta_entry_payload"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_delta_entry_frame_ok",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 732,
   "unconditional": true,
   "shipping_functions_named": [
    "delta_entry_frame_ok",
    "delta_entry_ok"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_delta_entry_roundtrip",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 742,
   "unconditional": false,
   "shipping_functions_named": [
    "delta_entry_ok",
    "parse_delta_entry",
    "serialize_delta_entry"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_ops_roundtrip",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 921,
   "unconditional": false,
   "shipping_functions_named": [
    "delta_batch_ops_ok",
    "parse_n_delta_entries",
    "serialize_ops"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_write_u64_le_length",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 939,
   "unconditional": true,
   "shipping_functions_named": [
    "write_u64_le"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_batch_body_length",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 945,
   "unconditional": true,
   "shipping_functions_named": [
    "delta_batch_ok",
    "serialize_delta_batch_body",
    "serialize_ops"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_delta_batch_frame_ok",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 957,
   "unconditional": true,
   "shipping_functions_named": [
    "delta_batch_ok",
    "serialize_delta_batch_body"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_delta_batch_body_roundtrip",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 961,
   "unconditional": false,
   "shipping_functions_named": [
    "delta_batch_ok",
    "parse_delta_batch_body",
    "serialize_delta_batch_body"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_delta_batch_roundtrip",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 978,
   "unconditional": false,
   "shipping_functions_named": [
    "delta_batch_ok",
    "parse_delta_batch",
    "serialize_delta_batch"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_log_header_roundtrip",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 1042,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_log_header",
    "serialize_log_header"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_u32_le_length",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 1060,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_u32_le"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_parse_n_bytes_length",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 1068,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_n_bytes"
   ],
   "shipping_modules": [
    "RDF.Bytes"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_parse_delta_batch_shrinks",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 1079,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_delta_batch"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_parse_log_batches_roundtrip",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 1142,
   "unconditional": false,
   "shipping_functions_named": [
    "delta_batches_ok",
    "parse_log_batches",
    "serialize_delta_batches"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_log_roundtrip",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 1154,
   "unconditional": false,
   "shipping_functions_named": [
    "delta_batches_ok",
    "parse_log",
    "serialize_log"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_compacted_epoch_roundtrip",
   "host_module": "RDF.Store.Columnar.DeltaLog",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaLog.fst",
   "line": 1292,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_compacted_epoch",
    "serialize_compacted_epoch"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaLog"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_subject_eq_symm",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 277,
   "unconditional": true,
   "shipping_functions_named": [
    "subject_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subject_eq_trans",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 283,
   "unconditional": false,
   "shipping_functions_named": [
    "subject_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subject_eq_congruent",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 290,
   "unconditional": false,
   "shipping_functions_named": [
    "subject_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_lang_tag_eq_symm",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 297,
   "unconditional": true,
   "shipping_functions_named": [
    "lang_tag_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_lang_tag_eq_trans",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 299,
   "unconditional": false,
   "shipping_functions_named": [
    "lang_tag_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_lang_tag_option_eq_symm",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 302,
   "unconditional": true,
   "shipping_functions_named": [
    "lang_tag_option_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_lang_tag_option_eq_trans",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 309,
   "unconditional": false,
   "shipping_functions_named": [
    "lang_tag_option_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_literal_eq_symm",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 316,
   "unconditional": true,
   "shipping_functions_named": [
    "literal_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_literal_eq_trans",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 319,
   "unconditional": false,
   "shipping_functions_named": [
    "literal_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdf_term_eq_symm",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 323,
   "unconditional": true,
   "shipping_functions_named": [
    "rdf_term_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdf_term_eq_trans",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 337,
   "unconditional": false,
   "shipping_functions_named": [
    "rdf_term_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdf_term_eq_congruent",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 351,
   "unconditional": false,
   "shipping_functions_named": [
    "rdf_term_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_bound_matches_congruent",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 367,
   "unconditional": false,
   "shipping_functions_named": [
    "bound_matches"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaMerge"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_mem_matches_bound_acc",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 384,
   "unconditional": true,
   "shipping_functions_named": [
    "bound_matches",
    "triple_matches_bound_acc"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaMerge",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_mem_triple_rev_acc",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 419,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_mem_triple_rev",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 426,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_mem_triple_matches_bound",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 432,
   "unconditional": true,
   "shipping_functions_named": [
    "bound_matches",
    "triple_matches_bound"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaMerge",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_mem_triple_append",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 437,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_triple_eq_congruent",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 447,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_mem_triple_congruent",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 455,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_mem_triple_filter_tombstone",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 468,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_mem_filter_tombstoned",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 484,
   "unconditional": true,
   "shipping_functions_named": [
    "filter_tombstoned"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaMerge"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_triple_eq_symm",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 492,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_mem_graph_add",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 498,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_mem_graph_remove",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 512,
   "unconditional": true,
   "shipping_functions_named": [
    "graph_remove"
   ],
   "shipping_modules": [
    "RDF.Graph.Executable"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_state_agrees_init",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 539,
   "unconditional": true,
   "shipping_functions_named": [
    "delta_resolved_empty"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaMerge"
   ],
   "declarative_relations_named": [
    "state_agrees"
   ],
   "declarative_modules": [
    "RDF.Store.Columnar.DeltaMerge"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_state_agrees_elim",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 547,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "state_agrees"
   ],
   "declarative_modules": [
    "RDF.Store.Columnar.DeltaMerge"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_state_agrees_step",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 565,
   "unconditional": false,
   "shipping_functions_named": [
    "apply_entry_ref_step",
    "apply_entry_to_delta"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaMerge"
   ],
   "declarative_relations_named": [
    "state_agrees"
   ],
   "declarative_modules": [
    "RDF.Store.Columnar.DeltaMerge"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_apply_entries_state_agrees",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 601,
   "unconditional": false,
   "shipping_functions_named": [
    "apply_entries_ref",
    "fold_entries_for_graph"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaMerge"
   ],
   "declarative_relations_named": [
    "state_agrees"
   ],
   "declarative_modules": [
    "RDF.Store.Columnar.DeltaMerge"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_merge_on_read_matches_apply_entries",
   "host_module": "RDF.Store.Columnar.DeltaMerge",
   "file": "formal/fstar/RDF.Store.Columnar.DeltaMerge.fst",
   "line": 630,
   "unconditional": true,
   "shipping_functions_named": [
    "apply_entries_ref",
    "delta_resolved_empty",
    "fold_entries_for_graph",
    "merge_on_read",
    "triple_matches_bound"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.DeltaMerge",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "row_positions_for_count_sound",
   "host_module": "RDF.Store.Columnar.OffsetIndex",
   "file": "formal/fstar/RDF.Store.Columnar.OffsetIndex.fst",
   "line": 374,
   "unconditional": false,
   "shipping_functions_named": [
    "row_positions_for"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.OffsetIndex"
   ],
   "declarative_relations_named": [
    "offsets_built_correctly"
   ],
   "declarative_modules": [
    "RDF.Store.Columnar.OffsetIndex"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "row_positions_for_opt_noinfo_when_handle_absent",
   "host_module": "RDF.Store.Columnar.OffsetIndex",
   "file": "formal/fstar/RDF.Store.Columnar.OffsetIndex.fst",
   "line": 398,
   "unconditional": true,
   "shipping_functions_named": [
    "row_positions_for_opt"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.OffsetIndex"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "row_positions_for_opt_noinfo_when_pred_unbound",
   "host_module": "RDF.Store.Columnar.OffsetIndex",
   "file": "formal/fstar/RDF.Store.Columnar.OffsetIndex.fst",
   "line": 404,
   "unconditional": true,
   "shipping_functions_named": [
    "row_positions_for_opt"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.OffsetIndex"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "range_for_subject_count_sound",
   "host_module": "RDF.Store.Columnar.SubjectOffsetIndex",
   "file": "formal/fstar/RDF.Store.Columnar.SubjectOffsetIndex.fst",
   "line": 230,
   "unconditional": false,
   "shipping_functions_named": [
    "range_for_subject",
    "subject_range_count"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.SubjectOffsetIndex"
   ],
   "declarative_relations_named": [
    "subject_offsets_built_correctly"
   ],
   "declarative_modules": [
    "RDF.Store.Columnar.SubjectOffsetIndex"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "range_for_subject_opt_noinfo_when_handle_absent",
   "host_module": "RDF.Store.Columnar.SubjectOffsetIndex",
   "file": "formal/fstar/RDF.Store.Columnar.SubjectOffsetIndex.fst",
   "line": 250,
   "unconditional": true,
   "shipping_functions_named": [
    "range_for_subject_opt"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.SubjectOffsetIndex"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "range_for_subject_opt_noinfo_when_subject_unbound",
   "host_module": "RDF.Store.Columnar.SubjectOffsetIndex",
   "file": "formal/fstar/RDF.Store.Columnar.SubjectOffsetIndex.fst",
   "line": 256,
   "unconditional": true,
   "shipping_functions_named": [
    "range_for_subject_opt"
   ],
   "shipping_modules": [
    "RDF.Store.Columnar.SubjectOffsetIndex"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_literal_term_eq_refl",
   "host_module": "RDF.Term",
   "file": "formal/fstar/RDF.Term.fsti",
   "line": 478,
   "unconditional": true,
   "shipping_functions_named": [
    "literal_term_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_literal_term_eq_identity",
   "host_module": "RDF.Term",
   "file": "formal/fstar/RDF.Term.fsti",
   "line": 482,
   "unconditional": false,
   "shipping_functions_named": [
    "literal_term_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_join_canon_term_eq",
   "host_module": "RDF.Term",
   "file": "formal/fstar/RDF.Term.fsti",
   "line": 535,
   "unconditional": false,
   "shipping_functions_named": [
    "join_canon_term",
    "rdf_term_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_subject_eq_refl",
   "host_module": "RDF.Term",
   "file": "formal/fstar/RDF.Term.fsti",
   "line": 558,
   "unconditional": true,
   "shipping_functions_named": [
    "subject_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_literal_eq_refl",
   "host_module": "RDF.Term",
   "file": "formal/fstar/RDF.Term.fsti",
   "line": 564,
   "unconditional": true,
   "shipping_functions_named": [
    "literal_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdf_term_eq_refl",
   "host_module": "RDF.Term",
   "file": "formal/fstar/RDF.Term.fsti",
   "line": 568,
   "unconditional": true,
   "shipping_functions_named": [
    "rdf_term_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_triple_eq_refl",
   "host_module": "RDF.Triple",
   "file": "formal/fstar/RDF.Triple.fsti",
   "line": 38,
   "unconditional": true,
   "shipping_functions_named": [
    "triple_eq"
   ],
   "shipping_modules": [
    "RDF.Triple"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ts_abbreviate_iri_pname_safe",
   "host_module": "RDF.Turtle.Serialize",
   "file": "formal/fstar/RDF.Turtle.Serialize.fst",
   "line": 142,
   "unconditional": true,
   "shipping_functions_named": [
    "ts_abbreviate_iri"
   ],
   "shipping_modules": [
    "RDF.Turtle.Serialize"
   ],
   "declarative_relations_named": [
    "compacts_to_pname_safe"
   ],
   "declarative_modules": [
    "RDF.Turtle.Serialize"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "schema_stable_check_sound",
   "host_module": "RDFS.SchemaSplit",
   "file": "formal/fstar/RDFS.SchemaSplit.fst",
   "line": 263,
   "unconditional": false,
   "shipping_functions_named": [
    "schema_stable_check"
   ],
   "shipping_modules": [
    "RDFS.SchemaSplit"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "schema_stable_check_complete",
   "host_module": "RDFS.SchemaSplit",
   "file": "formal/fstar/RDFS.SchemaSplit.fst",
   "line": 271,
   "unconditional": false,
   "shipping_functions_named": [
    "schema_stable_check"
   ],
   "shipping_modules": [
    "RDFS.SchemaSplit"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "emit_edge_shape",
   "host_module": "RDFS.SchemaSplit",
   "file": "formal/fstar/RDFS.SchemaSplit.fst",
   "line": 713,
   "unconditional": false,
   "shipping_functions_named": [
    "emit_edge"
   ],
   "shipping_modules": [
    "RDFS.SchemaSplit"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "emit_from_node_shape",
   "host_module": "RDFS.SchemaSplit",
   "file": "formal/fstar/RDFS.SchemaSplit.fst",
   "line": 719,
   "unconditional": false,
   "shipping_functions_named": [
    "emit_from_node"
   ],
   "shipping_modules": [
    "RDFS.SchemaSplit"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "sc_bfs_visited_grows",
   "host_module": "RDFS.SchemaSplit",
   "file": "formal/fstar/RDFS.SchemaSplit.fst",
   "line": 742,
   "unconditional": true,
   "shipping_functions_named": [
    "sc_bfs"
   ],
   "shipping_modules": [
    "RDFS.SchemaSplit"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "witness_stable_holds",
   "host_module": "RDFS.SchemaSplit",
   "file": "formal/fstar/RDFS.SchemaSplit.fst",
   "line": 795,
   "unconditional": true,
   "shipping_functions_named": [
    "schema_stable_check",
    "witness_stable"
   ],
   "shipping_modules": [
    "RDFS.SchemaSplit"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "witness_reflective_violates",
   "host_module": "RDFS.SchemaSplit",
   "file": "formal/fstar/RDFS.SchemaSplit.fst",
   "line": 798,
   "unconditional": true,
   "shipping_functions_named": [
    "schema_stable_check",
    "witness_reflective"
   ],
   "shipping_modules": [
    "RDFS.SchemaSplit"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_mem_triple_append_left",
   "host_module": "RIF.Core.Eval",
   "file": "formal/fstar/RIF.Core.Eval.fst",
   "line": 516,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_add_one_triple_tracking_preserves",
   "host_module": "RIF.Core.Eval",
   "file": "formal/fstar/RIF.Core.Eval.fst",
   "line": 527,
   "unconditional": false,
   "shipping_functions_named": [
    "add_one_triple_tracking"
   ],
   "shipping_modules": [
    "RIF.Core.Eval"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_add_triples_tracking_preserves",
   "host_module": "RIF.Core.Eval",
   "file": "formal/fstar/RIF.Core.Eval.fst",
   "line": 536,
   "unconditional": false,
   "shipping_functions_named": [
    "add_triples_tracking"
   ],
   "shipping_modules": [
    "RIF.Core.Eval"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_fire_head_per_bindings_preserves",
   "host_module": "RIF.Core.Eval",
   "file": "formal/fstar/RIF.Core.Eval.fst",
   "line": 549,
   "unconditional": false,
   "shipping_functions_named": [
    "fire_head_per_bindings"
   ],
   "shipping_modules": [
    "RIF.Core.Eval"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_fire_rule_preserves",
   "host_module": "RIF.Core.Eval",
   "file": "formal/fstar/RIF.Core.Eval.fst",
   "line": 568,
   "unconditional": false,
   "shipping_functions_named": [
    "fire_rule"
   ],
   "shipping_modules": [
    "RIF.Core.Eval"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_one_round_aux_preserves",
   "host_module": "RIF.Core.Eval",
   "file": "formal/fstar/RIF.Core.Eval.fst",
   "line": 580,
   "unconditional": false,
   "shipping_functions_named": [
    "one_round_aux"
   ],
   "shipping_modules": [
    "RIF.Core.Eval"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_one_round_preserves",
   "host_module": "RIF.Core.Eval",
   "file": "formal/fstar/RIF.Core.Eval.fst",
   "line": 596,
   "unconditional": false,
   "shipping_functions_named": [
    "one_round"
   ],
   "shipping_modules": [
    "RIF.Core.Eval"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_fixpoint_preserves",
   "host_module": "RIF.Core.Eval",
   "file": "formal/fstar/RIF.Core.Eval.fst",
   "line": 602,
   "unconditional": false,
   "shipping_functions_named": [
    "fixpoint"
   ],
   "shipping_modules": [
    "RIF.Core.Eval"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_fixpoint_extends",
   "host_module": "RIF.Core.Eval",
   "file": "formal/fstar/RIF.Core.Eval.fst",
   "line": 619,
   "unconditional": true,
   "shipping_functions_named": [
    "fixpoint"
   ],
   "shipping_modules": [
    "RIF.Core.Eval"
   ],
   "declarative_relations_named": [
    "graph_subset"
   ],
   "declarative_modules": [
    "RIF.Core.Eval"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "rif_fixpoint_extensive",
   "host_module": "RIF.Core.Refinement",
   "file": "formal/fstar/RIF.Core.Refinement.fst",
   "line": 108,
   "unconditional": true,
   "shipping_functions_named": [
    "fixpoint"
   ],
   "shipping_modules": [
    "RIF.Core.Eval"
   ],
   "declarative_relations_named": [
    "graph_subset"
   ],
   "declarative_modules": [
    "RIF.Core.Eval"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "rif_one_round_extensive",
   "host_module": "RIF.Core.Refinement",
   "file": "formal/fstar/RIF.Core.Refinement.fst",
   "line": 117,
   "unconditional": true,
   "shipping_functions_named": [
    "one_round"
   ],
   "shipping_modules": [
    "RIF.Core.Eval"
   ],
   "declarative_relations_named": [
    "graph_subset"
   ],
   "declarative_modules": [
    "RIF.Core.Eval"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "rif_fire_rule_extensive",
   "host_module": "RIF.Core.Refinement",
   "file": "formal/fstar/RIF.Core.Refinement.fst",
   "line": 133,
   "unconditional": true,
   "shipping_functions_named": [
    "fire_rule"
   ],
   "shipping_modules": [
    "RIF.Core.Eval"
   ],
   "declarative_relations_named": [
    "graph_subset"
   ],
   "declarative_modules": [
    "RIF.Core.Eval"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_graph_subset_trans",
   "host_module": "RIF.Core.Refinement",
   "file": "formal/fstar/RIF.Core.Refinement.fst",
   "line": 149,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_subset"
   ],
   "declarative_modules": [
    "RIF.Core.Eval"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_mem_triple_append_or",
   "host_module": "RIF.Core.Refinement",
   "file": "formal/fstar/RIF.Core.Refinement.fst",
   "line": 168,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "add_one_triple_tracking_licensed",
   "host_module": "RIF.Core.Refinement",
   "file": "formal/fstar/RIF.Core.Refinement.fst",
   "line": 175,
   "unconditional": true,
   "shipping_functions_named": [
    "add_one_triple_tracking"
   ],
   "shipping_modules": [
    "RIF.Core.Eval"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "add_triples_tracking_licensed",
   "host_module": "RIF.Core.Refinement",
   "file": "formal/fstar/RIF.Core.Refinement.fst",
   "line": 182,
   "unconditional": true,
   "shipping_functions_named": [
    "add_triples_tracking"
   ],
   "shipping_modules": [
    "RIF.Core.Eval"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "fire_head_per_bindings_licensed",
   "host_module": "RIF.Core.Refinement",
   "file": "formal/fstar/RIF.Core.Refinement.fst",
   "line": 238,
   "unconditional": true,
   "shipping_functions_named": [
    "fire_head_per_bindings"
   ],
   "shipping_modules": [
    "RIF.Core.Eval"
   ],
   "declarative_relations_named": [
    "rif_bindings_derive"
   ],
   "declarative_modules": [
    "RIF.Core.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "fire_rule_licensed",
   "host_module": "RIF.Core.Refinement",
   "file": "formal/fstar/RIF.Core.Refinement.fst",
   "line": 260,
   "unconditional": true,
   "shipping_functions_named": [
    "fire_rule"
   ],
   "shipping_modules": [
    "RIF.Core.Eval"
   ],
   "declarative_relations_named": [
    "rif_rule_derives"
   ],
   "declarative_modules": [
    "RIF.Core.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_one_round_aux_licensed",
   "host_module": "RIF.Core.Refinement",
   "file": "formal/fstar/RIF.Core.Refinement.fst",
   "line": 282,
   "unconditional": false,
   "shipping_functions_named": [
    "one_round_aux"
   ],
   "shipping_modules": [
    "RIF.Core.Eval"
   ],
   "declarative_relations_named": [
    "graph_subset",
    "rif_derives"
   ],
   "declarative_modules": [
    "RIF.Core.Eval",
    "RIF.Core.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "one_round_licensed",
   "host_module": "RIF.Core.Refinement",
   "file": "formal/fstar/RIF.Core.Refinement.fst",
   "line": 314,
   "unconditional": true,
   "shipping_functions_named": [
    "one_round"
   ],
   "shipping_modules": [
    "RIF.Core.Eval"
   ],
   "declarative_relations_named": [
    "rif_derives"
   ],
   "declarative_modules": [
    "RIF.Core.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "fixpoint_licensed",
   "host_module": "RIF.Core.Refinement",
   "file": "formal/fstar/RIF.Core.Refinement.fst",
   "line": 333,
   "unconditional": true,
   "shipping_functions_named": [
    "fixpoint"
   ],
   "shipping_modules": [
    "RIF.Core.Eval"
   ],
   "declarative_relations_named": [
    "rif_derives"
   ],
   "declarative_modules": [
    "RIF.Core.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "rif_term_eq_refl",
   "host_module": "RIF.Core.Syntax",
   "file": "formal/fstar/RIF.Core.Syntax.fst",
   "line": 273,
   "unconditional": true,
   "shipping_functions_named": [
    "rif_term_eq"
   ],
   "shipping_modules": [
    "RIF.Core.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rif_term_list_eq_refl",
   "host_module": "RIF.Core.Syntax",
   "file": "formal/fstar/RIF.Core.Syntax.fst",
   "line": 281,
   "unconditional": true,
   "shipping_functions_named": [
    "rif_term_list_eq"
   ],
   "shipping_modules": [
    "RIF.Core.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_saturate_extends",
   "host_module": "RIF.Core.Tests",
   "file": "formal/fstar/RIF.Core.Tests.fst",
   "line": 282,
   "unconditional": true,
   "shipping_functions_named": [
    "saturate_with_program"
   ],
   "shipping_modules": [
    "RIF.Core.Tests"
   ],
   "declarative_relations_named": [
    "graph_subset"
   ],
   "declarative_modules": [
    "RIF.Core.Eval"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_parse_none_yields_false",
   "host_module": "RIF.Core.Tests",
   "file": "formal/fstar/RIF.Core.Tests.fst",
   "line": 306,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_rif_program",
    "run_rif_select_rows"
   ],
   "shipping_modules": [
    "Parser.RIFXML",
    "RIF.Core.Tests"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "take_zero",
   "host_module": "Regex.Derivative",
   "file": "formal/fstar/Regex.Derivative.fst",
   "line": 42,
   "unconditional": true,
   "shipping_functions_named": [
    "take_n"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "drop_zero",
   "host_module": "Regex.Derivative",
   "file": "formal/fstar/Regex.Derivative.fst",
   "line": 43,
   "unconditional": true,
   "shipping_functions_named": [
    "drop_n"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "take_cons",
   "host_module": "Regex.Derivative",
   "file": "formal/fstar/Regex.Derivative.fst",
   "line": 45,
   "unconditional": true,
   "shipping_functions_named": [
    "take_n"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "drop_cons",
   "host_module": "Regex.Derivative",
   "file": "formal/fstar/Regex.Derivative.fst",
   "line": 48,
   "unconditional": true,
   "shipping_functions_named": [
    "drop_n"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "cat_shift",
   "host_module": "Regex.Derivative",
   "file": "formal/fstar/Regex.Derivative.fst",
   "line": 83,
   "unconditional": false,
   "shipping_functions_named": [
    "cat_try",
    "deriv",
    "mem"
   ],
   "shipping_modules": [
    "Regex.Derivative",
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "star_shift",
   "host_module": "Regex.Derivative",
   "file": "formal/fstar/Regex.Derivative.fst",
   "line": 98,
   "unconditional": false,
   "shipping_functions_named": [
    "cat_try",
    "deriv",
    "mem",
    "star_try"
   ],
   "shipping_modules": [
    "Regex.Derivative",
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "deriv_cat_w",
   "host_module": "Regex.Derivative",
   "file": "formal/fstar/Regex.Derivative.fst",
   "line": 111,
   "unconditional": false,
   "shipping_functions_named": [
    "deriv",
    "mem"
   ],
   "shipping_modules": [
    "Regex.Derivative",
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "deriv_star_w",
   "host_module": "Regex.Derivative",
   "file": "formal/fstar/Regex.Derivative.fst",
   "line": 123,
   "unconditional": false,
   "shipping_functions_named": [
    "deriv",
    "mem"
   ],
   "shipping_modules": [
    "Regex.Derivative",
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "deriv_correct",
   "host_module": "Regex.Derivative",
   "file": "formal/fstar/Regex.Derivative.fst",
   "line": 136,
   "unconditional": true,
   "shipping_functions_named": [
    "deriv",
    "mem"
   ],
   "shipping_modules": [
    "Regex.Derivative",
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "deriv_word_correct",
   "host_module": "Regex.Derivative",
   "file": "formal/fstar/Regex.Derivative.fst",
   "line": 175,
   "unconditional": true,
   "shipping_functions_named": [
    "deriv_word",
    "mem"
   ],
   "shipping_modules": [
    "Regex.Derivative",
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "matches_correct",
   "host_module": "Regex.Derivative",
   "file": "formal/fstar/Regex.Derivative.fst",
   "line": 183,
   "unconditional": true,
   "shipping_functions_named": [
    "matches",
    "mem"
   ],
   "shipping_modules": [
    "Regex.Derivative",
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "insert_regex_ok",
   "host_module": "Regex.Exec",
   "file": "formal/fstar/Regex.Exec.fst",
   "line": 318,
   "unconditional": true,
   "shipping_functions_named": [
    "insert_regex",
    "mem",
    "mem_alt_list"
   ],
   "shipping_modules": [
    "Regex.Exec",
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "alt_flatten_ok",
   "host_module": "Regex.Exec",
   "file": "formal/fstar/Regex.Exec.fst",
   "line": 329,
   "unconditional": true,
   "shipping_functions_named": [
    "alt_flatten",
    "mem",
    "mem_alt_list"
   ],
   "shipping_modules": [
    "Regex.Exec",
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "rebuild_alt_ok",
   "host_module": "Regex.Exec",
   "file": "formal/fstar/Regex.Exec.fst",
   "line": 337,
   "unconditional": true,
   "shipping_functions_named": [
    "mem",
    "mem_alt_list",
    "rebuild_alt"
   ],
   "shipping_modules": [
    "Regex.Exec",
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "has_universal_ok",
   "host_module": "Regex.Exec",
   "file": "formal/fstar/Regex.Exec.fst",
   "line": 345,
   "unconditional": false,
   "shipping_functions_named": [
    "has_universal",
    "mem_alt_list"
   ],
   "shipping_modules": [
    "Regex.Exec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "ealt_ok",
   "host_module": "Regex.Exec",
   "file": "formal/fstar/Regex.Exec.fst",
   "line": 351,
   "unconditional": true,
   "shipping_functions_named": [
    "ealt",
    "mem"
   ],
   "shipping_modules": [
    "Regex.Exec",
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "insert_regex_and_ok",
   "host_module": "Regex.Exec",
   "file": "formal/fstar/Regex.Exec.fst",
   "line": 366,
   "unconditional": true,
   "shipping_functions_named": [
    "insert_regex",
    "mem",
    "mem_and_list"
   ],
   "shipping_modules": [
    "Regex.Exec",
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "and_flatten_ok",
   "host_module": "Regex.Exec",
   "file": "formal/fstar/Regex.Exec.fst",
   "line": 377,
   "unconditional": true,
   "shipping_functions_named": [
    "and_flatten",
    "mem",
    "mem_and_list"
   ],
   "shipping_modules": [
    "Regex.Exec",
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "rebuild_and_ok",
   "host_module": "Regex.Exec",
   "file": "formal/fstar/Regex.Exec.fst",
   "line": 384,
   "unconditional": true,
   "shipping_functions_named": [
    "mem",
    "mem_and_list",
    "rebuild_and"
   ],
   "shipping_modules": [
    "Regex.Exec",
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "has_empty_ok",
   "host_module": "Regex.Exec",
   "file": "formal/fstar/Regex.Exec.fst",
   "line": 391,
   "unconditional": false,
   "shipping_functions_named": [
    "has_empty",
    "mem_and_list"
   ],
   "shipping_modules": [
    "Regex.Exec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "eand_ok",
   "host_module": "Regex.Exec",
   "file": "formal/fstar/Regex.Exec.fst",
   "line": 397,
   "unconditional": true,
   "shipping_functions_named": [
    "eand",
    "mem"
   ],
   "shipping_modules": [
    "Regex.Exec",
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "cat_shift_gen",
   "host_module": "Regex.Exec",
   "file": "formal/fstar/Regex.Exec.fst",
   "line": 412,
   "unconditional": false,
   "shipping_functions_named": [
    "cat_try",
    "mem"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "star_shift_gen",
   "host_module": "Regex.Exec",
   "file": "formal/fstar/Regex.Exec.fst",
   "line": 422,
   "unconditional": false,
   "shipping_functions_named": [
    "cat_try",
    "mem",
    "star_try"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "nderiv_cat_w",
   "host_module": "Regex.Exec",
   "file": "formal/fstar/Regex.Exec.fst",
   "line": 433,
   "unconditional": false,
   "shipping_functions_named": [
    "mem",
    "nderiv"
   ],
   "shipping_modules": [
    "Regex.Exec",
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "nderiv_star_w",
   "host_module": "Regex.Exec",
   "file": "formal/fstar/Regex.Exec.fst",
   "line": 443,
   "unconditional": false,
   "shipping_functions_named": [
    "mem",
    "nderiv"
   ],
   "shipping_modules": [
    "Regex.Exec",
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "nderiv_correct",
   "host_module": "Regex.Exec",
   "file": "formal/fstar/Regex.Exec.fst",
   "line": 451,
   "unconditional": true,
   "shipping_functions_named": [
    "mem",
    "nderiv"
   ],
   "shipping_modules": [
    "Regex.Exec",
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "run_word_norm_correct",
   "host_module": "Regex.Exec",
   "file": "formal/fstar/Regex.Exec.fst",
   "line": 481,
   "unconditional": true,
   "shipping_functions_named": [
    "mem",
    "run_word_norm"
   ],
   "shipping_modules": [
    "Regex.Exec",
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "matches_norm_correct",
   "host_module": "Regex.Exec",
   "file": "formal/fstar/Regex.Exec.fst",
   "line": 491,
   "unconditional": true,
   "shipping_functions_named": [
    "matches_norm",
    "mem"
   ],
   "shipping_modules": [
    "Regex.Exec",
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "matches_norm_eq_proven",
   "host_module": "Regex.Exec",
   "file": "formal/fstar/Regex.Exec.fst",
   "line": 498,
   "unconditional": true,
   "shipping_functions_named": [
    "matches",
    "matches_norm"
   ],
   "shipping_modules": [
    "Regex.Derivative",
    "Regex.Exec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "nullable_correct",
   "host_module": "Regex.Syntax",
   "file": "formal/fstar/Regex.Syntax.fst",
   "line": 181,
   "unconditional": true,
   "shipping_functions_named": [
    "mem",
    "nullable"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "smart_alt_ok",
   "host_module": "Regex.Syntax",
   "file": "formal/fstar/Regex.Syntax.fst",
   "line": 251,
   "unconditional": true,
   "shipping_functions_named": [
    "mem",
    "smart_alt"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "smart_and_ok",
   "host_module": "Regex.Syntax",
   "file": "formal/fstar/Regex.Syntax.fst",
   "line": 266,
   "unconditional": true,
   "shipping_functions_named": [
    "mem",
    "smart_and"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "smart_not_ok",
   "host_module": "Regex.Syntax",
   "file": "formal/fstar/Regex.Syntax.fst",
   "line": 276,
   "unconditional": true,
   "shipping_functions_named": [
    "mem",
    "smart_not"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "take_all",
   "host_module": "Regex.Syntax",
   "file": "formal/fstar/Regex.Syntax.fst",
   "line": 309,
   "unconditional": true,
   "shipping_functions_named": [
    "take_n"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "drop_all",
   "host_module": "Regex.Syntax",
   "file": "formal/fstar/Regex.Syntax.fst",
   "line": 312,
   "unconditional": true,
   "shipping_functions_named": [
    "drop_n"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "drop_below",
   "host_module": "Regex.Syntax",
   "file": "formal/fstar/Regex.Syntax.fst",
   "line": 317,
   "unconditional": false,
   "shipping_functions_named": [
    "drop_n"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "cat_empty_left",
   "host_module": "Regex.Syntax",
   "file": "formal/fstar/Regex.Syntax.fst",
   "line": 325,
   "unconditional": true,
   "shipping_functions_named": [
    "cat_try"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "cat_empty_right",
   "host_module": "Regex.Syntax",
   "file": "formal/fstar/Regex.Syntax.fst",
   "line": 329,
   "unconditional": true,
   "shipping_functions_named": [
    "cat_try"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "cat_eps_left",
   "host_module": "Regex.Syntax",
   "file": "formal/fstar/Regex.Syntax.fst",
   "line": 335,
   "unconditional": true,
   "shipping_functions_named": [
    "cat_try",
    "mem"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "cat_eps_right_below",
   "host_module": "Regex.Syntax",
   "file": "formal/fstar/Regex.Syntax.fst",
   "line": 344,
   "unconditional": false,
   "shipping_functions_named": [
    "cat_try"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "cat_eps_right",
   "host_module": "Regex.Syntax",
   "file": "formal/fstar/Regex.Syntax.fst",
   "line": 351,
   "unconditional": true,
   "shipping_functions_named": [
    "cat_try",
    "mem"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "smart_cat_ok",
   "host_module": "Regex.Syntax",
   "file": "formal/fstar/Regex.Syntax.fst",
   "line": 357,
   "unconditional": true,
   "shipping_functions_named": [
    "mem",
    "smart_cat"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "star_try_empty",
   "host_module": "Regex.Syntax",
   "file": "formal/fstar/Regex.Syntax.fst",
   "line": 367,
   "unconditional": true,
   "shipping_functions_named": [
    "star_try"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "star_empty_lang",
   "host_module": "Regex.Syntax",
   "file": "formal/fstar/Regex.Syntax.fst",
   "line": 371,
   "unconditional": true,
   "shipping_functions_named": [
    "mem"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "star_try_eps",
   "host_module": "Regex.Syntax",
   "file": "formal/fstar/Regex.Syntax.fst",
   "line": 376,
   "unconditional": true,
   "shipping_functions_named": [
    "star_try"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "star_eps_lang",
   "host_module": "Regex.Syntax",
   "file": "formal/fstar/Regex.Syntax.fst",
   "line": 380,
   "unconditional": true,
   "shipping_functions_named": [
    "mem"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "smart_star_ok",
   "host_module": "Regex.Syntax",
   "file": "formal/fstar/Regex.Syntax.fst",
   "line": 392,
   "unconditional": true,
   "shipping_functions_named": [
    "mem",
    "smart_star"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "ranges_cmp_eq",
   "host_module": "Regex.Syntax",
   "file": "formal/fstar/Regex.Syntax.fst",
   "line": 407,
   "unconditional": false,
   "shipping_functions_named": [
    "ranges_cmp"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "regex_cmp_eq",
   "host_module": "Regex.Syntax",
   "file": "formal/fstar/Regex.Syntax.fst",
   "line": 414,
   "unconditional": false,
   "shipping_functions_named": [
    "regex_cmp"
   ],
   "shipping_modules": [
    "Regex.Syntax"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "take_capped_aux_at_cap",
   "host_module": "SPARQL.Eval.Limits",
   "file": "formal/fstar/SPARQL.Eval.Limits.fst",
   "line": 82,
   "unconditional": false,
   "shipping_functions_named": [
    "is_enabled",
    "take_capped_aux"
   ],
   "shipping_modules": [
    "SPARQL.Eval.Limits"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "take_capped_aux_length_le",
   "host_module": "SPARQL.Eval.Limits",
   "file": "formal/fstar/SPARQL.Eval.Limits.fst",
   "line": 94,
   "unconditional": false,
   "shipping_functions_named": [
    "is_enabled",
    "take_capped_aux"
   ],
   "shipping_modules": [
    "SPARQL.Eval.Limits"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "take_capped_length_le_cap",
   "host_module": "SPARQL.Eval.Limits",
   "file": "formal/fstar/SPARQL.Eval.Limits.fst",
   "line": 112,
   "unconditional": false,
   "shipping_functions_named": [
    "is_enabled",
    "take_capped"
   ],
   "shipping_modules": [
    "SPARQL.Eval.Limits"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "take_capped_aux_unlimited",
   "host_module": "SPARQL.Eval.Limits",
   "file": "formal/fstar/SPARQL.Eval.Limits.fst",
   "line": 118,
   "unconditional": false,
   "shipping_functions_named": [
    "no_cap",
    "take_capped_aux"
   ],
   "shipping_modules": [
    "SPARQL.Eval.Limits"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "take_capped_unlimited_id",
   "host_module": "SPARQL.Eval.Limits",
   "file": "formal/fstar/SPARQL.Eval.Limits.fst",
   "line": 126,
   "unconditional": true,
   "shipping_functions_named": [
    "no_cap",
    "take_capped"
   ],
   "shipping_modules": [
    "SPARQL.Eval.Limits"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "disabled_never_expires",
   "host_module": "SPARQL.Eval.TimeBudget",
   "file": "formal/fstar/SPARQL.Eval.TimeBudget.fst",
   "line": 84,
   "unconditional": false,
   "shipping_functions_named": [
    "is_disabled",
    "is_expired"
   ],
   "shipping_modules": [
    "SPARQL.Eval.TimeBudget"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "enabled_expires_at_deadline",
   "host_module": "SPARQL.Eval.TimeBudget",
   "file": "formal/fstar/SPARQL.Eval.TimeBudget.fst",
   "line": 91,
   "unconditional": false,
   "shipping_functions_named": [
    "is_disabled",
    "is_expired"
   ],
   "shipping_modules": [
    "SPARQL.Eval.TimeBudget"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "choose_access_path_no_handle_is_full_scan",
   "host_module": "SPARQL.Plan.AccessPath",
   "file": "formal/fstar/SPARQL.Plan.AccessPath.fst",
   "line": 200,
   "unconditional": true,
   "shipping_functions_named": [
    "choose_access_path"
   ],
   "shipping_modules": [
    "SPARQL.Plan.AccessPath"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "choose_access_path_unbound_pred_is_full_scan",
   "host_module": "SPARQL.Plan.AccessPath",
   "file": "formal/fstar/SPARQL.Plan.AccessPath.fst",
   "line": 209,
   "unconditional": true,
   "shipping_functions_named": [
    "choose_access_path"
   ],
   "shipping_modules": [
    "SPARQL.Plan.AccessPath"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "choose_access_path_for_pattern_unbound_pred_is_full_scan",
   "host_module": "SPARQL.Plan.AccessPath",
   "file": "formal/fstar/SPARQL.Plan.AccessPath.fst",
   "line": 219,
   "unconditional": false,
   "shipping_functions_named": [
    "choose_access_path_for_pattern"
   ],
   "shipping_modules": [
    "SPARQL.Plan.AccessPath"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "drop_skips_identity_when_no_skips",
   "host_module": "SPARQL.Plan.AccessPath",
   "file": "formal/fstar/SPARQL.Plan.AccessPath.fst",
   "line": 233,
   "unconditional": false,
   "shipping_functions_named": [
    "drop_skips"
   ],
   "shipping_modules": [
    "SPARQL.Plan.AccessPath"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "rg_can_match_all_unbound_is_true",
   "host_module": "SPARQL.Plan.Pruning",
   "file": "formal/fstar/SPARQL.Plan.Pruning.fst",
   "line": 243,
   "unconditional": true,
   "shipping_functions_named": [
    "rg_can_match"
   ],
   "shipping_modules": [
    "SPARQL.Plan.Pruning"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_json_val_of_term_roundtrip",
   "host_module": "SPARQL.Protocol.RoundTrip",
   "file": "formal/fstar/SPARQL.Protocol.RoundTrip.fst",
   "line": 325,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_binding_value"
   ],
   "shipping_modules": [
    "Parser.JSONResults"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_json_val_of_row_roundtrip",
   "host_module": "SPARQL.Protocol.RoundTrip",
   "file": "formal/fstar/SPARQL.Protocol.RoundTrip.fst",
   "line": 366,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_binding_row"
   ],
   "shipping_modules": [
    "Parser.JSONResults"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_json_val_of_vars_roundtrip",
   "host_module": "SPARQL.Protocol.RoundTrip",
   "file": "formal/fstar/SPARQL.Protocol.RoundTrip.fst",
   "line": 384,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_json_val_of_rows_roundtrip",
   "host_module": "SPARQL.Protocol.RoundTrip",
   "file": "formal/fstar/SPARQL.Protocol.RoundTrip.fst",
   "line": 400,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_binding_row"
   ],
   "shipping_modules": [
    "Parser.JSONResults"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_json_val_of_response_roundtrip",
   "host_module": "SPARQL.Protocol.RoundTrip",
   "file": "formal/fstar/SPARQL.Protocol.RoundTrip.fst",
   "line": 420,
   "unconditional": true,
   "shipping_functions_named": [
    "json_get_array",
    "json_get_field",
    "json_get_string_array",
    "parse_binding_row"
   ],
   "shipping_modules": [
    "Parser.JSON",
    "Parser.JSONResults"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_json_val_of_bool_roundtrip",
   "host_module": "SPARQL.Protocol.RoundTrip",
   "file": "formal/fstar/SPARQL.Protocol.RoundTrip.fst",
   "line": 455,
   "unconditional": true,
   "shipping_functions_named": [
    "json_get_bool"
   ],
   "shipping_modules": [
    "Parser.JSON"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_concat_spec_two",
   "host_module": "SPARQL.Protocol.RoundTrip",
   "file": "formal/fstar/SPARQL.Protocol.RoundTrip.fst",
   "line": 494,
   "unconditional": true,
   "shipping_functions_named": [
    "concat_spec"
   ],
   "shipping_modules": [
    "Parser.FastString.ConcatSpec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_serialise_response_json_empty_literal",
   "host_module": "SPARQL.Protocol.RoundTrip",
   "file": "formal/fstar/SPARQL.Protocol.RoundTrip.fst",
   "line": 539,
   "unconditional": true,
   "shipping_functions_named": [
    "serialise_response_json"
   ],
   "shipping_modules": [
    "SPARQL.Protocol"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_serialise_response_json_two_empty_rows_literal",
   "host_module": "SPARQL.Protocol.RoundTrip",
   "file": "formal/fstar/SPARQL.Protocol.RoundTrip.fst",
   "line": 551,
   "unconditional": true,
   "shipping_functions_named": [
    "serialise_response_json"
   ],
   "shipping_modules": [
    "SPARQL.Protocol"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_srj_single_row",
   "host_module": "SPARQL.Protocol.RoundTrip",
   "file": "formal/fstar/SPARQL.Protocol.RoundTrip.fst",
   "line": 617,
   "unconditional": true,
   "shipping_functions_named": [
    "json_row",
    "json_var_list",
    "serialise_response_json"
   ],
   "shipping_modules": [
    "SPARQL.Protocol"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_json_rows_body_acc_is_rev_acc",
   "host_module": "SPARQL.Protocol.RoundTrip",
   "file": "formal/fstar/SPARQL.Protocol.RoundTrip.fst",
   "line": 737,
   "unconditional": true,
   "shipping_functions_named": [
    "json_rows_body_acc"
   ],
   "shipping_modules": [
    "SPARQL.Protocol"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_body_pieces_eq",
   "host_module": "SPARQL.Protocol.RoundTrip",
   "file": "formal/fstar/SPARQL.Protocol.RoundTrip.fst",
   "line": 751,
   "unconditional": true,
   "shipping_functions_named": [
    "json_rows_body_acc"
   ],
   "shipping_modules": [
    "SPARQL.Protocol"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_concat_chunks",
   "host_module": "SPARQL.Protocol.RoundTrip",
   "file": "formal/fstar/SPARQL.Protocol.RoundTrip.fst",
   "line": 764,
   "unconditional": true,
   "shipping_functions_named": [
    "concat_spec"
   ],
   "shipping_modules": [
    "Parser.FastString.ConcatSpec"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_srj_n_rows",
   "host_module": "SPARQL.Protocol.RoundTrip",
   "file": "formal/fstar/SPARQL.Protocol.RoundTrip.fst",
   "line": 809,
   "unconditional": true,
   "shipping_functions_named": [
    "json_var_list",
    "serialise_response_json"
   ],
   "shipping_modules": [
    "SPARQL.Protocol"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_build_indexed_wf_so_weak",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 218,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_memP_tmb_acc",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 238,
   "unconditional": false,
   "shipping_functions_named": [
    "triple_matches_bound_acc"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_memP_triple_matches_bound",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 252,
   "unconditional": false,
   "shipping_functions_named": [
    "triple_matches_bound"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_pick_smaller_bucket_sound",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 265,
   "unconditional": false,
   "shipping_functions_named": [
    "pick_smaller_bucket"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bucket_cand_sound"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_ig_search_sound",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 276,
   "unconditional": false,
   "shipping_functions_named": [
    "ig_search"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_store_search_sound",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 344,
   "unconditional": false,
   "shipping_functions_named": [
    "graph_to_store",
    "store_search"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_build_indexed_selective_wf_pred",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 379,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_indexed_selective_wf_subj_weak",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 396,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_indexed_selective_wf_obj_weak",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 413,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_indexed_selective_wf_sp_weak",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 430,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_indexed_selective_wf_po_weak",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 447,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_indexed_selective_wf_so_weak",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 464,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ig_search_sound_selective",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 489,
   "unconditional": false,
   "shipping_functions_named": [
    "ig_search"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_store_search_sound_for",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 559,
   "unconditional": false,
   "shipping_functions_named": [
    "graph_to_store_for",
    "group_graph_pattern",
    "store_search"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_subject_eq_ident",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 604,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_tmb_acc_complete",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 612,
   "unconditional": false,
   "shipping_functions_named": [
    "triple_matches_bound_acc"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_triple_matches_bound_complete",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 626,
   "unconditional": false,
   "shipping_functions_named": [
    "triple_matches_bound"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_pick_smaller_bucket_complete",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 640,
   "unconditional": false,
   "shipping_functions_named": [
    "pick_smaller_bucket"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bucket_cand_complete"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_build_indexed_selective_complete_pred",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 652,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_indexed_selective_complete_subj",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 669,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_indexed_selective_complete_sp",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 686,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_indexed_selective_complete_obj",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 703,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_indexed_selective_complete_po",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 720,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_build_indexed_selective_complete_so",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 737,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ig_search_complete_selective",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 758,
   "unconditional": false,
   "shipping_functions_named": [
    "ig_search"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bound_obj_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_ig_search_complete",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 838,
   "unconditional": false,
   "shipping_functions_named": [
    "ig_search"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bound_obj_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_store_search_complete",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 843,
   "unconditional": false,
   "shipping_functions_named": [
    "graph_to_store",
    "store_search"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bound_obj_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_store_search_complete_for",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 850,
   "unconditional": false,
   "shipping_functions_named": [
    "graph_to_store_for",
    "group_graph_pattern",
    "store_search"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bound_obj_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_bound_pred_from_obj",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 866,
   "unconditional": false,
   "shipping_functions_named": [
    "bound_object_of_pattern",
    "bound_predicate_of_pattern"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "theorem_tp_match_instantiates_ext",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 881,
   "unconditional": false,
   "shipping_functions_named": [
    "instantiate_tp",
    "tp_match"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "binding_extends",
    "ptrm_exact",
    "smap_exact",
    "term_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_eval_single_tp_store_default_eq",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 917,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_single_tp_store",
    "eval_single_tp_store_default"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_eval_single_tp_sound",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 925,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_single_tp_store_default",
    "graph_to_store",
    "tp_match"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_choose_best_tp_cover",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 953,
   "unconditional": true,
   "shipping_functions_named": [
    "choose_best_tp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_memP_concatMap_tr",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 982,
   "unconditional": false,
   "shipping_functions_named": [
    "concatMap_tr"
   ],
   "shipping_modules": [
    "RDF.List.Helpers"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_eval_bgp_store_unfold",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1018,
   "unconditional": true,
   "shipping_functions_named": [
    "choose_best_tp",
    "concatMap_tr",
    "eval_bgp_store_from_mu_fuel",
    "eval_single_tp_store"
   ],
   "shipping_modules": [
    "RDF.List.Helpers",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_eval_bgp_store_step",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1042,
   "unconditional": false,
   "shipping_functions_named": [
    "choose_best_tp",
    "eval_bgp_store_from_mu_fuel",
    "eval_single_tp_store"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "theorem_eval_bgp_sound_fuel",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1069,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp_store_from_mu_fuel",
    "graph_to_store"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "bgp_subgraph_clause",
    "binding_extends",
    "graph_frag",
    "smap_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement",
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_eval_bgp_subgraph",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1134,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "bgp_subgraph_clause",
    "graph_frag"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_instantiate_bgp_subset",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1144,
   "unconditional": false,
   "shipping_functions_named": [
    "instantiate_bgp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_subgraph_clause"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_bgp_sol_spec_from_subgraph_clause",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1168,
   "unconditional": false,
   "shipping_functions_named": [
    "instantiate_tp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_sol_spec",
    "bgp_subgraph_clause"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement",
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_eval_bgp_instantiates_into_graph",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1180,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp",
    "instantiate_bgp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "graph_frag"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_graph_to_store_sound",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1217,
   "unconditional": true,
   "shipping_functions_named": [
    "graph_to_store"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "store_search_sound"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_graph_to_store_for_sound",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1227,
   "unconditional": true,
   "shipping_functions_named": [
    "graph_to_store_for",
    "group_graph_pattern"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "store_search_sound"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_eval_single_tp_sound_at",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1239,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_single_tp_store_default",
    "tp_match"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "store_search_sound"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_eval_bgp_store_sound_fuel",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1264,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp_store_from_mu_fuel"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "bgp_subgraph_clause",
    "binding_extends",
    "graph_frag",
    "smap_exact",
    "store_search_sound"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement",
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_eval_bgp_store_subgraph",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1328,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp_store"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "bgp_subgraph_clause",
    "graph_frag",
    "store_search_sound"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_eval_bgp_store_instantiates_into_graph",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1334,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp_store",
    "instantiate_bgp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "graph_frag",
    "store_search_sound"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_eval_bgp_store_for_instantiates_into_graph",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1350,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp_store",
    "graph_to_store_for",
    "group_graph_pattern",
    "instantiate_bgp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "graph_frag"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_term_exact_subject",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1373,
   "unconditional": true,
   "shipping_functions_named": [
    "subject_to_term"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "term_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_term_exact_iri",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1383,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "term_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_term_exact_bnode",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1386,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "term_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_bound_subject_mono",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1395,
   "unconditional": false,
   "shipping_functions_named": [
    "bound_subject_of_pattern"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "binding_extends"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_bound_predicate_mono",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1415,
   "unconditional": false,
   "shipping_functions_named": [
    "bound_predicate_of_pattern"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "binding_extends"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_bound_object_mono",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1431,
   "unconditional": false,
   "shipping_functions_named": [
    "bound_object_of_pattern"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "binding_extends"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_bound_obj_from_pred",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1452,
   "unconditional": false,
   "shipping_functions_named": [
    "bound_object_of_pattern",
    "bound_predicate_of_pattern"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_bound_object_exact",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1462,
   "unconditional": false,
   "shipping_functions_named": [
    "bound_object_of_pattern"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "ptrm_exact",
    "smap_exact",
    "term_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_sm_bind_sval",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1477,
   "unconditional": true,
   "shipping_functions_named": [
    "sm_bind"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sm_bind_extends",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1481,
   "unconditional": false,
   "shipping_functions_named": [
    "sm_bind"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "binding_extends"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_sm_bind_under",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1486,
   "unconditional": false,
   "shipping_functions_named": [
    "sm_bind"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "binding_extends"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_try_bind_subject_complete",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1497,
   "unconditional": false,
   "shipping_functions_named": [
    "bound_subject_of_pattern",
    "try_bind_subject"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "binding_extends",
    "smap_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_try_bind_term_complete",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1529,
   "unconditional": false,
   "shipping_functions_named": [
    "bound_object_of_pattern",
    "try_bind_term"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "binding_extends",
    "smap_exact",
    "term_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_tp_match_complete",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1558,
   "unconditional": false,
   "shipping_functions_named": [
    "instantiate_tp",
    "tp_match"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "binding_extends",
    "smap_exact",
    "term_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_bound_holds_of_instantiate",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1598,
   "unconditional": false,
   "shipping_functions_named": [
    "instantiate_tp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "binding_extends"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_tp_bound_obj_exact",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1613,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "bound_obj_exact",
    "ptrm_exact",
    "smap_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement",
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_graph_to_store_complete",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1630,
   "unconditional": true,
   "shipping_functions_named": [
    "graph_to_store"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "store_search_complete"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_graph_to_store_for_complete",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1639,
   "unconditional": true,
   "shipping_functions_named": [
    "graph_to_store_for",
    "group_graph_pattern"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "store_search_complete"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_eval_single_tp_complete_at",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1660,
   "unconditional": false,
   "shipping_functions_named": [
    "instantiate_tp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "binding_extends",
    "graph_frag",
    "single_tp_goal",
    "smap_exact",
    "store_search_complete",
    "tp_frag"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement",
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_memP_concatMap_tr_intro",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1685,
   "unconditional": false,
   "shipping_functions_named": [
    "concatMap_tr"
   ],
   "shipping_modules": [
    "RDF.List.Helpers"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_eval_bgp_store_step_intro",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1695,
   "unconditional": false,
   "shipping_functions_named": [
    "choose_best_tp",
    "eval_bgp_store_from_mu_fuel",
    "eval_single_tp_store"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "theorem_eval_bgp_store_complete_fuel",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1731,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "bgp_complete_goal",
    "bgp_frag",
    "bgp_subgraph_clause",
    "binding_extends",
    "graph_frag",
    "smap_exact",
    "store_search_complete"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement",
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_eval_bgp_store_complete",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1796,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp_store"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "bgp_subgraph_clause",
    "binding_extends",
    "graph_frag",
    "smap_exact",
    "store_search_complete"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement",
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_eval_bgp_complete",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1804,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "bgp_subgraph_clause",
    "binding_extends",
    "graph_frag",
    "smap_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement",
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_instantiate_tp_mono",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1830,
   "unconditional": false,
   "shipping_functions_named": [
    "instantiate_tp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "binding_extends"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_instantiate_bgp_agree",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1839,
   "unconditional": false,
   "shipping_functions_named": [
    "instantiate_bgp",
    "instantiate_tp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "binding_extends"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_subgraph_clause_of_instantiated",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1858,
   "unconditional": false,
   "shipping_functions_named": [
    "instantiate_bgp",
    "instantiate_tp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_subgraph_clause"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_eval_bgp_store_complete_answer",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1883,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp_store",
    "instantiate_bgp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "bgp_subgraph_clause",
    "graph_frag",
    "store_search_complete",
    "store_search_sound"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_eval_bgp_store_complete_from_subset",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1908,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp_store",
    "instantiate_bgp",
    "instantiate_tp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "graph_frag",
    "store_search_complete",
    "store_search_sound"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_eval_bgp_complete_from_subset",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1924,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp",
    "instantiate_bgp",
    "instantiate_tp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "graph_frag"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_eval_bgp_store_for_complete_from_subset",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 1942,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp_store",
    "graph_to_store_for",
    "group_graph_pattern",
    "instantiate_bgp",
    "instantiate_tp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "graph_frag"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_try_bind_subject_domain",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 2006,
   "unconditional": false,
   "shipping_functions_named": [
    "pattern_subject_var",
    "try_bind_subject"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_try_bind_term_domain",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 2034,
   "unconditional": false,
   "shipping_functions_named": [
    "pattern_term_var",
    "try_bind_term"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_tp_match_domain",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 2061,
   "unconditional": false,
   "shipping_functions_named": [
    "tp_match",
    "tp_vars"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_eval_single_tp_store_domain",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 2088,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_single_tp_store",
    "tp_vars"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "tp_frag"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_bgp_vars_cover",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 2116,
   "unconditional": false,
   "shipping_functions_named": [
    "tp_vars"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_eval_bgp_store_domain_fuel",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 2157,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp_store_from_mu_fuel"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_dom_grow_clause",
    "bgp_frag"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_eval_bgp_domain",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 2195,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp",
    "sm_empty"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_dom_grow_clause",
    "bgp_frag"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_eval_bgp_dom_clause",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 2210,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_dom_clause",
    "bgp_frag"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_eval_bgp_full_spec",
   "host_module": "SPARQL11.Algebra.BGPRefinement",
   "file": "formal/fstar/SPARQL11.Algebra.BGPRefinement.fst",
   "line": 2223,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp",
    "instantiate_tp",
    "tp_vars"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "bgp_sol_spec",
    "graph_frag"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.BGPRefinement",
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_assoc_some_mem",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 200,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sm_compatible_sound",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 215,
   "unconditional": false,
   "shipping_functions_named": [
    "sm_compatible"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "smap_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_sm_compatible_sound",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 226,
   "unconditional": false,
   "shipping_functions_named": [
    "sm_compatible"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "compatible_spec",
    "smap_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement",
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_sm_compatible_complete",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 244,
   "unconditional": false,
   "shipping_functions_named": [
    "sm_compatible"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "compatible_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_sm_merge_is_merge",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 280,
   "unconditional": true,
   "shipping_functions_named": [
    "sm_merge"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "is_merge"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_domains_disjoint_sound",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 287,
   "unconditional": false,
   "shipping_functions_named": [
    "domains_disjoint"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "dom_disjoint_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_domains_disjoint_complete",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 301,
   "unconditional": false,
   "shipping_functions_named": [
    "domains_disjoint"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "dom_disjoint_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_mult_append",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 318,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_memP_append",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 326,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_union_is_append",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 339,
   "unconditional": true,
   "shipping_functions_named": [
    "union"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_union_card",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 346,
   "unconditional": true,
   "shipping_functions_named": [
    "union"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "union_card_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_union_sound",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 353,
   "unconditional": false,
   "shipping_functions_named": [
    "union"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "in_union_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_union_complete",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 359,
   "unconditional": false,
   "shipping_functions_named": [
    "union"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_filter_sound",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 374,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_expr_ebv",
    "filter_solutions"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "theorem_filter_complete",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 386,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_expr_ebv",
    "filter_solutions"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "theorem_filter_card",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 407,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "fexpr_congr",
    "filter_card_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement",
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_assoc_tr_congr",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 479,
   "unconditional": false,
   "shipping_functions_named": [
    "assoc_tr"
   ],
   "shipping_modules": [
    "RDF.List.Helpers"
   ],
   "declarative_relations_named": [
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_sm_lookup_congr",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 485,
   "unconditional": false,
   "shipping_functions_named": [
    "sm_lookup"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_fx_ctx_get_congr",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 490,
   "unconditional": false,
   "shipping_functions_named": [
    "fx_ctx_get"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_eval_expr_congr",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 507,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_expr_with_base"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_eval_coalesce_congr",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 568,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_coalesce_with_base"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_eval_geof_args_congr",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 578,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_geof_args_with_base"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_eval_in_congr",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 588,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_in_with_base"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_eval_concat_congr",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 598,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_concat_with_base"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_eval_expr_opt_congr",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 609,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_expr_with_base"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_eval_expr_ebv_transparent_congr",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 627,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_eval_expr_ebv_transparent_congr",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 634,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "fexpr_congr"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_filter_card_eval_expr_with_base",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 644,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "filter_card_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_substitute_existentials_noop",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 667,
   "unconditional": false,
   "shipping_functions_named": [
    "expr_has_existential",
    "substitute_existentials"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_substitute_existentials_list_noop",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 715,
   "unconditional": false,
   "shipping_functions_named": [
    "expr_list_has_existential",
    "substitute_existentials_list"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_substitute_existentials_opt_noop",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 727,
   "unconditional": false,
   "shipping_functions_named": [
    "expr_opt_has_existential",
    "substitute_existentials_opt"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "theorem_filter_with_graph_is_filter_solutions",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 740,
   "unconditional": false,
   "shipping_functions_named": [
    "expr_has_existential",
    "filter_solutions",
    "filter_solutions_with_graph"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_dedup_acc_sound",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 759,
   "unconditional": true,
   "shipping_functions_named": [
    "list_deduplicate_sm_acc"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_distinct_sound",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 769,
   "unconditional": false,
   "shipping_functions_named": [
    "distinct_solutions"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sr1_same_mapping",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 785,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sr1_sm_equal_agrees",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 794,
   "unconditional": true,
   "shipping_functions_named": [
    "sm_equal"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sr1_distinct_dedups",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 798,
   "unconditional": true,
   "shipping_functions_named": [
    "distinct_solutions"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_sr1_witness_now_card_conformant",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 810,
   "unconditional": true,
   "shipping_functions_named": [
    "distinct_solutions"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "distinct_card_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_sm_equal_matches_smap_eq_on_witness",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 846,
   "unconditional": true,
   "shipping_functions_named": [
    "sm_equal"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_memP_filter_map_acc",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 855,
   "unconditional": true,
   "shipping_functions_named": [
    "list_filter_map_acc"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_memP_filter_map",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 868,
   "unconditional": true,
   "shipping_functions_named": [
    "list_filter_map"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_memP_concatMap",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 874,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_seq_exact_memP",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 884,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "seq_exact",
    "smap_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_seq_wf_memP",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 896,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "seq_wf"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_join_nested_loop_unfold",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 929,
   "unconditional": true,
   "shipping_functions_named": [
    "join_nested_loop"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_join_nested_loop_sound",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 940,
   "unconditional": false,
   "shipping_functions_named": [
    "join_nested_loop"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "in_join_spec",
    "seq_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement",
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_join_nested_loop_complete",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 965,
   "unconditional": false,
   "shipping_functions_named": [
    "join_nested_loop"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "compatible_spec",
    "is_merge"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_concatMap_nil_f",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 982,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_join_is_nested_loop_no_shared_vars",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 993,
   "unconditional": false,
   "shipping_functions_named": [
    "join",
    "join_nested_loop",
    "sm_domain",
    "vars_intersect"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_join_is_nested_loop_empty",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 999,
   "unconditional": false,
   "shipping_functions_named": [
    "join",
    "join_nested_loop"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_strcat_left_neq",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1022,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_strcat_right_neq",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1026,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sr2_nq_differs",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1035,
   "unconditional": false,
   "shipping_functions_named": [
    "nq_term_to_string"
   ],
   "shipping_modules": [
    "RDF.NQuads.Serialize"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_sr2_witness_keys_now_agree",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1058,
   "unconditional": false,
   "shipping_functions_named": [
    "rdf_term_eq",
    "sm_compatible",
    "sm_join_key"
   ],
   "shipping_modules": [
    "RDF.Term",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "theorem_join_key_no_finer_than_compatibility",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1076,
   "unconditional": false,
   "shipping_functions_named": [
    "rdf_term_eq",
    "sm_join_key"
   ],
   "shipping_modules": [
    "RDF.Term",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_project_lookup",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1085,
   "unconditional": true,
   "shipping_functions_named": [
    "project"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_project_is_proj",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1095,
   "unconditional": true,
   "shipping_functions_named": [
    "project"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "is_proj"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_project_solutions_acc_memP",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1099,
   "unconditional": true,
   "shipping_functions_named": [
    "project",
    "project_solutions_acc"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_project_solutions_acc_length",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1110,
   "unconditional": true,
   "shipping_functions_named": [
    "project_solutions_acc"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_project_solutions_length",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1121,
   "unconditional": true,
   "shipping_functions_named": [
    "project_solutions"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_project_solutions_spec",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1128,
   "unconditional": true,
   "shipping_functions_named": [
    "project",
    "project_solutions"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "theorem_project_solutions_sound",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1135,
   "unconditional": false,
   "shipping_functions_named": [
    "project_solutions"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "in_project_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_is_proj_unique",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1160,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "is_proj",
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_is_proj_congr_target",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1168,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "is_proj",
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_project_card",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1177,
   "unconditional": true,
   "shipping_functions_named": [
    "project_solutions"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "project_card_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_minus_unfold",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1216,
   "unconditional": true,
   "shipping_functions_named": [
    "minus"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_existsb_memP",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1221,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_memP_filter",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1229,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_not_compatible_of_engine",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1240,
   "unconditional": false,
   "shipping_functions_named": [
    "sm_compatible"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "compatible_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_minus_sound",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1249,
   "unconditional": false,
   "shipping_functions_named": [
    "minus"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "in_minus_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_minus_complete",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1266,
   "unconditional": false,
   "shipping_functions_named": [
    "minus"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "compatible_spec",
    "dom_disjoint_spec",
    "smap_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement",
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_filter_map_nil_all_none",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1289,
   "unconditional": false,
   "shipping_functions_named": [
    "list_filter_map"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_left_join_empty_right",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1338,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_expr_ebv",
    "left_join"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "in_leftjoin_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_left_join_empty_left",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1344,
   "unconditional": true,
   "shipping_functions_named": [
    "left_join"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_fx_bind_rows_length",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1354,
   "unconditional": true,
   "shipping_functions_named": [
    "fx_bind_rows"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_fx_bind_rows_rowwise",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1382,
   "unconditional": true,
   "shipping_functions_named": [
    "er_to_term",
    "eval_expr_fwd",
    "fx_bind_rows",
    "fx_ctx_put",
    "sm_bind"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "theorem_sm_bind_is_extend",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1404,
   "unconditional": false,
   "shipping_functions_named": [
    "sm_bind"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "is_extend_at"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_binding_extends_refl",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1418,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "binding_extends"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_binding_extends_trans",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1420,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "binding_extends"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_smap_exact_sval",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1456,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "smap_exact",
    "term_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_try_bind_term_instantiates",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1471,
   "unconditional": false,
   "shipping_functions_named": [
    "bound_object_of_pattern",
    "try_bind_term"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "binding_extends",
    "ptrm_exact",
    "smap_exact",
    "term_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_try_bind_subject_instantiates",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1508,
   "unconditional": false,
   "shipping_functions_named": [
    "bound_subject_of_pattern",
    "try_bind_subject"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "binding_extends",
    "smap_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_tp_match_instantiates",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1538,
   "unconditional": false,
   "shipping_functions_named": [
    "instantiate_tp",
    "tp_match"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "binding_extends",
    "ptrm_exact",
    "smap_exact",
    "term_exact"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_filter_partition_count",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1614,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sortWith_mult",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1624,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_mult_is_filter_length",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1665,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sort_solutions_permutation_pointwise",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1675,
   "unconditional": true,
   "shipping_functions_named": [
    "order_condition",
    "sort_solutions"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "theorem_sort_solutions_permutation",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1682,
   "unconditional": true,
   "shipping_functions_named": [
    "order_condition",
    "sort_solutions"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_totality_on_weaken",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1780,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "totality_on"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_partition_bool_memP",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1791,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_partition_bool_memP_forall",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1801,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sorted_by_cons_hi",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1812,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "sorted_by"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sorted_by_append",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1831,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "sorted_by"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sortWith_sorted_by",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1856,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "sorted_by",
    "totality_on"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_sort_solutions_sorted",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1901,
   "unconditional": false,
   "shipping_functions_named": [
    "compare_on_conditions",
    "order_condition",
    "sort_solutions"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "sorted_by",
    "totality_on",
    "transitivity_on"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_sparql_order_iri_totality",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1974,
   "unconditional": true,
   "shipping_functions_named": [
    "sparql_order"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sparql_order_iri_trans",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 1983,
   "unconditional": false,
   "shipping_functions_named": [
    "sparql_order"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sparql_order_numeric_frag_totality",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2015,
   "unconditional": false,
   "shipping_functions_named": [
    "sparql_order"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "er_num_plain"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_sparql_order_numeric_frag_trans",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2050,
   "unconditional": false,
   "shipping_functions_named": [
    "sparql_order"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "er_num_plain"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Refinement"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_list_drop_length",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2077,
   "unconditional": true,
   "shipping_functions_named": [
    "list_drop"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_list_take_length",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2086,
   "unconditional": true,
   "shipping_functions_named": [
    "list_take"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_list_drop_index",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2096,
   "unconditional": false,
   "shipping_functions_named": [
    "list_drop"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_list_take_index",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2106,
   "unconditional": false,
   "shipping_functions_named": [
    "list_take"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_slice_solutions_window",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2122,
   "unconditional": false,
   "shipping_functions_named": [
    "slice_solutions"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_slice_solutions_length",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2144,
   "unconditional": true,
   "shipping_functions_named": [
    "slice_solutions"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_lang_tag_eq_symm",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2182,
   "unconditional": true,
   "shipping_functions_named": [
    "lang_tag_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_lang_tag_eq_trans",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2185,
   "unconditional": false,
   "shipping_functions_named": [
    "lang_tag_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_lang_tag_option_eq_symm",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2188,
   "unconditional": true,
   "shipping_functions_named": [
    "lang_tag_option_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_lang_tag_option_eq_trans",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2195,
   "unconditional": false,
   "shipping_functions_named": [
    "lang_tag_option_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_literal_eq_symm",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2203,
   "unconditional": true,
   "shipping_functions_named": [
    "literal_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_literal_eq_trans",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2206,
   "unconditional": false,
   "shipping_functions_named": [
    "literal_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subject_eq_symm",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2210,
   "unconditional": true,
   "shipping_functions_named": [
    "subject_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subject_eq_trans",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2216,
   "unconditional": false,
   "shipping_functions_named": [
    "subject_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdf_term_eq_symm",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2223,
   "unconditional": true,
   "shipping_functions_named": [
    "rdf_term_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_rdf_term_eq_trans",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2231,
   "unconditional": false,
   "shipping_functions_named": [
    "rdf_term_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sm_equal_symm",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2250,
   "unconditional": true,
   "shipping_functions_named": [
    "sm_equal"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sm_submap_extra_binding",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2253,
   "unconditional": false,
   "shipping_functions_named": [
    "sm_domain",
    "sm_submap"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_sm_submap_refl",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2261,
   "unconditional": false,
   "shipping_functions_named": [
    "sm_domain",
    "sm_submap"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_sm_equal_refl",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2272,
   "unconditional": false,
   "shipping_functions_named": [
    "sm_domain",
    "sm_equal"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_sm_submap_lookup",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2277,
   "unconditional": false,
   "shipping_functions_named": [
    "rdf_term_eq",
    "sm_lookup",
    "sm_submap"
   ],
   "shipping_modules": [
    "RDF.Term",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_sm_submap_trans",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2287,
   "unconditional": false,
   "shipping_functions_named": [
    "sm_submap"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sm_equal_trans",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2303,
   "unconditional": false,
   "shipping_functions_named": [
    "sm_equal"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sm_mem_witness",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2310,
   "unconditional": false,
   "shipping_functions_named": [
    "sm_equal",
    "sm_mem"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_dedup_acc_append",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2323,
   "unconditional": true,
   "shipping_functions_named": [
    "list_deduplicate_sm_acc"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_dedup_core_complete",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2347,
   "unconditional": false,
   "shipping_functions_named": [
    "list_deduplicate_sm_acc",
    "sm_domain",
    "sm_equal"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "theorem_distinct_complete",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2395,
   "unconditional": false,
   "shipping_functions_named": [
    "distinct_solutions",
    "sm_domain",
    "sm_equal"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_dc_witness_rdf_term_eq",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2460,
   "unconditional": true,
   "shipping_functions_named": [
    "rdf_term_eq"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_dc_witness_term_id_eqb_false",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2464,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_dc_distinct_dedups",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2468,
   "unconditional": true,
   "shipping_functions_named": [
    "distinct_solutions"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_dc_mult_witness_omega",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2474,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_dc_mult_witness_res",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2479,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_sr3_distinct_card_spec_false",
   "host_module": "SPARQL11.Algebra.Refinement",
   "file": "formal/fstar/SPARQL11.Algebra.Refinement.fst",
   "line": 2491,
   "unconditional": true,
   "shipping_functions_named": [
    "distinct_solutions"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "distinct_card_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "lemma_lit_id_eqb_sound",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 311,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subj_id_eqb_sound",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 314,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_term_id_eqb_sound",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 318,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_term_id_eqb_complete",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 328,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_term_id_eqb_refl",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 335,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_smap_eq_refl",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 347,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_smap_eq_sym",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 349,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_smap_eq_trans",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 352,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sval_none_outside_dom",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 375,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_agrees_on_mem",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 383,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_opt_term_id_eqb_sound",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 391,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_smap_eqb_sound",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 398,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_agrees_on_of_smap_eq",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 418,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_smap_eqb_complete",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 430,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_compatible_empty_l",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 451,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "compatible_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_compatible_empty_r",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 452,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "compatible_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_compatible_of_disjoint",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 458,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "compatible_spec",
    "dom_disjoint_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_compatible_refl",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 467,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "compatible_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_compatible_sym",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 468,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "compatible_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_compatible_congr_l",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 473,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "compatible_spec",
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_assoc_append",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 498,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_merge_canonical_is_merge",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 506,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "is_merge"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_merge_unique",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 513,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "is_merge",
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_merge_comm_compatible",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 519,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "compatible_spec",
    "is_merge"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_merge_extends_l",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 530,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "is_merge"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_merge_extends_r",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 534,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "compatible_spec",
    "is_merge"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_merge_dom",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 542,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "is_merge"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_merge_compatible_l",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 548,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "compatible_spec",
    "is_merge"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_occurs_memP",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 572,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "occurs"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_join_comm_witness",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 599,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "compatible_spec",
    "in_join_spec",
    "is_merge"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_join_comm_spec",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 606,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "in_join_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_mult_congr",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 710,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_mult_pos_implies_occurs",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 726,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "occurs"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_occurs_witness_implies_mult_pos",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 735,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "smap_eq"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_mult_pos_iff_occurs",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 749,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "occurs"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_bgp_empty",
   "host_module": "SPARQL11.Algebra.Spec",
   "file": "formal/fstar/SPARQL11.Algebra.Spec.fst",
   "line": 828,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "bgp_sol_spec"
   ],
   "declarative_modules": [
    "SPARQL11.Algebra.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_substitute_pattern_preserves_size",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 4976,
   "unconditional": true,
   "shipping_functions_named": [
    "group_graph_pattern",
    "pattern_size",
    "substitute_pattern"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_lateral_substitute_preserves_size",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 5031,
   "unconditional": true,
   "shipping_functions_named": [
    "group_graph_pattern",
    "lateral_substitute",
    "pattern_size"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_rewrite_query_bnodes_pattern_preserves_size",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 5890,
   "unconditional": true,
   "shipping_functions_named": [
    "group_graph_pattern",
    "pattern_size",
    "rewrite_query_bnodes_pattern"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_union_assoc",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7436,
   "unconditional": true,
   "shipping_functions_named": [
    "union"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_union_nil_l",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7448,
   "unconditional": true,
   "shipping_functions_named": [
    "union"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_union_nil_r",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7451,
   "unconditional": true,
   "shipping_functions_named": [
    "union"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_filter_append",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7459,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_filter_union",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7469,
   "unconditional": true,
   "shipping_functions_named": [
    "filter_solutions",
    "union"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_offset_zero",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7479,
   "unconditional": true,
   "shipping_functions_named": [
    "slice_solutions"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_list_drop_zero",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7483,
   "unconditional": true,
   "shipping_functions_named": [
    "list_drop"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_list_take_nil",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7487,
   "unconditional": true,
   "shipping_functions_named": [
    "list_take"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_filter_mem",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7492,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_assoc_none_of_domain",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7526,
   "unconditional": false,
   "shipping_functions_named": [
    "sm_domain"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sm_compatible_extra_binding",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7536,
   "unconditional": false,
   "shipping_functions_named": [
    "sm_compatible"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sm_compatible_refl",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7544,
   "unconditional": false,
   "shipping_functions_named": [
    "sm_compatible",
    "sm_domain"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_sm_compatible_not_refl_with_dup_keys",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7557,
   "unconditional": true,
   "shipping_functions_named": [
    "sm_compatible"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sm_merge_empty_r",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7563,
   "unconditional": true,
   "shipping_functions_named": [
    "sm_merge"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sm_merge_aux_lookup",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7580,
   "unconditional": true,
   "shipping_functions_named": [
    "sm_merge_aux"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_sm_merge_empty_l",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7593,
   "unconditional": true,
   "shipping_functions_named": [
    "sm_lookup",
    "sm_merge"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_sm_merge_empty_l_not_structural_identity",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7604,
   "unconditional": true,
   "shipping_functions_named": [
    "sm_merge"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_domains_disjoint_empty_l",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7613,
   "unconditional": true,
   "shipping_functions_named": [
    "domains_disjoint"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_filter_true",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7628,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_join_empty_l",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7635,
   "unconditional": true,
   "shipping_functions_named": [
    "join"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_concatMap_nil",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7639,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_join_empty_r",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7646,
   "unconditional": true,
   "shipping_functions_named": [
    "join"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_minus_empty_r",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7664,
   "unconditional": true,
   "shipping_functions_named": [
    "minus"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_union_length",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7671,
   "unconditional": true,
   "shipping_functions_named": [
    "union"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_concatMap_all_nil",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7679,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ig_search_empty",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7690,
   "unconditional": true,
   "shipping_functions_named": [
    "ig_search"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_store_search_empty",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7698,
   "unconditional": true,
   "shipping_functions_named": [
    "graph_to_store",
    "store_search"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_eval_single_tp_empty",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7702,
   "unconditional": true,
   "shipping_functions_named": [
    "eval_single_tp_store",
    "graph_to_store"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_eval_bgp_store_empty_fuel",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7716,
   "unconditional": true,
   "shipping_functions_named": [
    "eval_bgp_store_from_mu_fuel",
    "graph_to_store"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_bgp_empty_graph",
   "host_module": "SPARQL11.Algebra",
   "file": "formal/fstar/SPARQL11.Algebra.fst",
   "line": 7731,
   "unconditional": true,
   "shipping_functions_named": [
    "eval_bgp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ground_implies_tt_free",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 232,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_tt_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [
    "graph_ground"
   ],
   "class": "local_refinement"
  },
  {
   "name": "lemma_smap_ground_lookup",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 285,
   "unconditional": false,
   "shipping_functions_named": [
    "sm_lookup"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "smap_ground",
    "term_ground"
   ],
   "declarative_modules": [
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_bound_subject_ground",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 293,
   "unconditional": false,
   "shipping_functions_named": [
    "bound_subject_of_pattern"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "smap_ground",
    "subject_ground"
   ],
   "declarative_modules": [
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_bound_object_ground",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 304,
   "unconditional": false,
   "shipping_functions_named": [
    "bound_object_of_pattern"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "smap_ground",
    "term_ground"
   ],
   "declarative_modules": [
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_instantiate_tp_ground",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 320,
   "unconditional": false,
   "shipping_functions_named": [
    "instantiate_tp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "smap_ground",
    "tp_ground_positions",
    "triple_ground"
   ],
   "declarative_modules": [
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_instantiate_bgp_ground",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 340,
   "unconditional": false,
   "shipping_functions_named": [
    "instantiate_bgp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_ground_positions",
    "smap_ground"
   ],
   "declarative_modules": [
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [
    "graph_ground"
   ],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_subj_inst_id",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 371,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "subj_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_term_inst_id",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 373,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "term_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_triple_inst_id",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 385,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "triple_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_subgraph_implies_spec",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 392,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "is_subgraph",
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_triple_inst_ground",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 412,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "triple_ground",
    "triple_inst"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec",
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_spec_ground_implies_subgraph",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 423,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "is_subgraph",
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [
    "graph_ground"
   ],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ground_entailment_collapse",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 439,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "is_subgraph",
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [
    "graph_ground"
   ],
   "class": "local_refinement"
  },
  {
   "name": "lemma_term_tt_free_bridge",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 455,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "term_tt_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_graph_frag_tt_free",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 458,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_frag",
    "graph_tt_free"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec",
    "SPARQL11.Algebra.BGPRefinement"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_tt_free_subset",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 464,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "graph_tt_free",
    "is_subgraph"
   ],
   "declarative_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_decides_hyps_suffices",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 500,
   "unconditional": false,
   "shipping_functions_named": [
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure"
   ],
   "declarative_relations_named": [
    "graph_tt_free",
    "rho_df_decides_hyps",
    "rho_df_entails",
    "simple_entailment_spec"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "RDF.Entailment.Simple.Spec",
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [
    "RDF.Entailment.Simple.Spec"
   ],
   "ambiguous_identifiers": [],
   "class": "w3c_refinement"
  },
  {
   "name": "theorem_rdfs_regime_bgp_sound",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 532,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp",
    "instantiate_bgp",
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "graph_frag",
    "rho_df_decides_hyps",
    "rho_df_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "SPARQL11.Algebra.BGPRefinement",
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_rdfs_regime_bgp_complete_conditional",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 583,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp",
    "instantiate_bgp",
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "eval_bgp_complete_at",
    "rho_df_decides_hyps",
    "rho_df_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [
    "graph_ground"
   ],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_rdfs_regime_bgp_exact",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 606,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp",
    "instantiate_bgp",
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "eval_bgp_complete_at",
    "graph_frag",
    "rho_df_decides_hyps",
    "rho_df_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "SPARQL11.Algebra.BGPRefinement",
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [
    "graph_ground"
   ],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_eval_pattern_bgp_is_selective_store",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 645,
   "unconditional": true,
   "shipping_functions_named": [
    "eval_bgp_store",
    "eval_pattern",
    "graph_to_store_for"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_ask_bgp_gives_solution",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 650,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "theorem_rdfs_regime_ask_sound",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 662,
   "unconditional": false,
   "shipping_functions_named": [
    "instantiate_bgp",
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "graph_frag",
    "rho_df_decides_hyps",
    "rho_df_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "SPARQL11.Algebra.BGPRefinement",
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_rdfs_regime_ask_complete_conditional",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 684,
   "unconditional": false,
   "shipping_functions_named": [
    "instantiate_bgp",
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "eval_bgp_complete_at",
    "rho_df_decides_hyps",
    "rho_df_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [
    "graph_ground"
   ],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_ask_pattern_gives_solution",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 730,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp_store",
    "graph_to_store_for"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "theorem_rdfs_regime_bgp_sound_selective",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 747,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp_store",
    "graph_to_store_for",
    "instantiate_bgp",
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "graph_frag",
    "rho_df_decides_hyps",
    "rho_df_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "SPARQL11.Algebra.BGPRefinement",
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_rdfs_regime_ask_pattern_sound",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 768,
   "unconditional": false,
   "shipping_functions_named": [
    "instantiate_bgp",
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "graph_frag",
    "rho_df_decides_hyps",
    "rho_df_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "SPARQL11.Algebra.BGPRefinement",
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_eval_ask_query_bgp_shape",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 797,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_ask_query",
    "query"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "theorem_rdfs_regime_ask_query_sound",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 814,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_ask_query",
    "instantiate_bgp",
    "query",
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "graph_frag",
    "rho_df_decides_hyps",
    "rho_df_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "SPARQL11.Algebra.BGPRefinement",
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_rdfs_regime_bgp_complete_conditional_selective",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 854,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp_store",
    "graph_to_store_for",
    "instantiate_bgp",
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "eval_bgp_store_complete_at",
    "rho_df_decides_hyps",
    "rho_df_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [
    "graph_ground"
   ],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_rdfs_regime_ask_query_complete_conditional",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 873,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_ask_query",
    "instantiate_bgp",
    "query",
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "eval_bgp_store_complete_at",
    "rho_df_decides_hyps",
    "rho_df_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [
    "graph_ground"
   ],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_regime_answer_is_subgraph",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 958,
   "unconditional": false,
   "shipping_functions_named": [
    "instantiate_bgp",
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "rho_df_decides_hyps",
    "rho_df_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [
    "graph_ground"
   ],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_rdfs_regime_bgp_complete",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 981,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp",
    "instantiate_bgp",
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "bgp_instantiable",
    "graph_frag",
    "rho_df_decides_hyps",
    "rho_df_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "SPARQL11.Algebra.BGPRefinement",
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [
    "graph_ground"
   ],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_rdfs_regime_bgp_exact_answer",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 1005,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp",
    "instantiate_bgp",
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "bgp_instantiable",
    "graph_frag",
    "rho_df_decides_hyps",
    "rho_df_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "SPARQL11.Algebra.BGPRefinement",
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [
    "graph_ground"
   ],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_rdfs_regime_ask_complete",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 1034,
   "unconditional": false,
   "shipping_functions_named": [
    "instantiate_bgp",
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "bgp_instantiable",
    "graph_frag",
    "rho_df_decides_hyps",
    "rho_df_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "SPARQL11.Algebra.BGPRefinement",
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [
    "graph_ground"
   ],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_rdfs_regime_bgp_complete_selective",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 1061,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_bgp_store",
    "graph_to_store_for",
    "instantiate_bgp",
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "bgp_instantiable",
    "graph_frag",
    "rho_df_decides_hyps",
    "rho_df_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "SPARQL11.Algebra.BGPRefinement",
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [
    "graph_ground"
   ],
   "class": "internal_refinement"
  },
  {
   "name": "theorem_rdfs_regime_ask_query_complete",
   "host_module": "SPARQL11.EntailmentRegime.RDFS",
   "file": "formal/fstar/SPARQL11.EntailmentRegime.RDFS.fst",
   "line": 1089,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_ask_query",
    "instantiate_bgp",
    "query",
    "rho_df_closure"
   ],
   "shipping_modules": [
    "RDF.Entailment.RDFS.RhoDFClosure",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [
    "bgp_frag",
    "bgp_instantiable",
    "graph_frag",
    "rho_df_decides_hyps",
    "rho_df_entails"
   ],
   "declarative_modules": [
    "RDF.Entailment.RDFS.Completeness",
    "SPARQL11.Algebra.BGPRefinement",
    "SPARQL11.EntailmentRegime.RDFS"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [
    "graph_ground"
   ],
   "class": "internal_refinement"
  },
  {
   "name": "lemma_ebv_checked_is_spec",
   "host_module": "SPARQL11.Expression.Refinement",
   "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
   "line": 149,
   "unconditional": true,
   "shipping_functions_named": [
    "ebv_checked"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ebv_matches_spec_some",
   "host_module": "SPARQL11.Expression.Refinement",
   "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
   "line": 158,
   "unconditional": false,
   "shipping_functions_named": [
    "ebv"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ebv_typeerror_folds_false",
   "host_module": "SPARQL11.Expression.Refinement",
   "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
   "line": 170,
   "unconditional": false,
   "shipping_functions_named": [
    "ebv"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ebv_langstring_agrees",
   "host_module": "SPARQL11.Expression.Refinement",
   "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
   "line": 187,
   "unconditional": false,
   "shipping_functions_named": [
    "ebv",
    "ebv_checked",
    "rdf_lang_string"
   ],
   "shipping_modules": [
    "RDF.Term",
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_and_matches_spec_when_no_error",
   "host_module": "SPARQL11.Expression.Refinement",
   "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
   "line": 237,
   "unconditional": false,
   "shipping_functions_named": [
    "ebv"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_or_matches_spec_when_no_error",
   "host_module": "SPARQL11.Expression.Refinement",
   "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
   "line": 247,
   "unconditional": false,
   "shipping_functions_named": [
    "ebv"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_not_matches_spec_when_no_error",
   "host_module": "SPARQL11.Expression.Refinement",
   "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
   "line": 257,
   "unconditional": false,
   "shipping_functions_named": [
    "ebv"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_eval_and_matches_spec",
   "host_module": "SPARQL11.Expression.Refinement",
   "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
   "line": 276,
   "unconditional": true,
   "shipping_functions_named": [
    "eval_expr_with_base"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_eval_or_matches_spec",
   "host_module": "SPARQL11.Expression.Refinement",
   "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
   "line": 286,
   "unconditional": true,
   "shipping_functions_named": [
    "eval_expr_with_base"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_eval_not_matches_spec",
   "host_module": "SPARQL11.Expression.Refinement",
   "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
   "line": 296,
   "unconditional": true,
   "shipping_functions_named": [
    "eval_expr_with_base"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_eval_and_true_error_agrees",
   "host_module": "SPARQL11.Expression.Refinement",
   "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
   "line": 312,
   "unconditional": true,
   "shipping_functions_named": [
    "eval_expr_with_base"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_eval_or_false_error_agrees",
   "host_module": "SPARQL11.Expression.Refinement",
   "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
   "line": 323,
   "unconditional": true,
   "shipping_functions_named": [
    "eval_expr_with_base"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_eval_not_error_agrees",
   "host_module": "SPARQL11.Expression.Refinement",
   "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
   "line": 335,
   "unconditional": true,
   "shipping_functions_named": [
    "eval_expr_with_base"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_eq_num_matches_spec",
   "host_module": "SPARQL11.Expression.Refinement",
   "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
   "line": 360,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [
    "value_compare"
   ],
   "class": "unclassified"
  },
  {
   "name": "lemma_eq_plain_string_matches_spec",
   "host_module": "SPARQL11.Expression.Refinement",
   "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
   "line": 365,
   "unconditional": false,
   "shipping_functions_named": [
    "xsd_string"
   ],
   "shipping_modules": [
    "RDF.Term"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [
    "value_compare"
   ],
   "class": "local_refinement"
  },
  {
   "name": "lemma_eq_dec_reflexive",
   "host_module": "SPARQL11.Expression.Refinement",
   "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
   "line": 383,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_to_scaled"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [
    "value_compare"
   ],
   "class": "local_refinement"
  },
  {
   "name": "lemma_eq_dbl_reflexive",
   "host_module": "SPARQL11.Expression.Refinement",
   "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
   "line": 388,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_double_to_scaled"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [
    "value_compare"
   ],
   "class": "local_refinement"
  },
  {
   "name": "lemma_eq_literal_different_datatype_typeerror",
   "host_module": "SPARQL11.Expression.Refinement",
   "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
   "line": 400,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [
    "value_compare"
   ],
   "class": "unclassified"
  },
  {
   "name": "lemma_eq_literal_same_datatype_diff_lang",
   "host_module": "SPARQL11.Expression.Refinement",
   "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
   "line": 409,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [
    "value_compare"
   ],
   "class": "unclassified"
  },
  {
   "name": "lemma_eval_eq_num_matches_spec",
   "host_module": "SPARQL11.Expression.Refinement",
   "file": "formal/fstar/SPARQL11.Expression.Refinement.fst",
   "line": 418,
   "unconditional": false,
   "shipping_functions_named": [
    "eval_expr_with_base"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ask_bgp_fuel_cost_n5_fits_entry_fuel",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 181,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_path_primary_iri",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 219,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_path_primary"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_path_elt_iri",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 225,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_path_elt",
    "parse_peek"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_path_elt_or_inverse_iri",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 233,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_path_elt_or_inverse",
    "parse_peek"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_path_sequence_iri",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 241,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_path_sequence",
    "parse_peek"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_path_alternative_iri",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 250,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_path_alternative",
    "parse_peek"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_verb_iri",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 261,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_peek",
    "parse_verb"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_verb_var",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 269,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_verb"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_parse_verb_1",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 277,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_peek",
    "parse_verb"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_object_with_extras_1",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 289,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_object_with_extras"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_parse_annotations_dot",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 301,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_annotations"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_parse_object_list_simple_1",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 309,
   "unconditional": false,
   "shipping_functions_named": [
    "fulltext_query_pred",
    "ggp_add_triple",
    "group_graph_pattern",
    "parse_object_list_simple"
   ],
   "shipping_modules": [
    "SPARQL.FullText",
    "SPARQL11.Algebra",
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_pred_obj_list_1",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 324,
   "unconditional": false,
   "shipping_functions_named": [
    "fulltext_query_pred",
    "ggp_add_triple",
    "group_graph_pattern",
    "parse_pred_obj_list"
   ],
   "shipping_modules": [
    "SPARQL.FullText",
    "SPARQL11.Algebra",
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_subject_with_extras_1",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 337,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_subject_with_extras"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ggp_add_triple_acc",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 358,
   "unconditional": true,
   "shipping_functions_named": [
    "ggp_add_triple"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ggp_join_acc_empty",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 367,
   "unconditional": true,
   "shipping_functions_named": [
    "ggp_join"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_triples_block_unfold_one_triple",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 391,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_peek",
    "parse_triples_block"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_parse_triples_block_bgp",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 426,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_triples_block"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ggp_body_step1",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 477,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_ggp_body"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_ggp_body_step2",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 497,
   "unconditional": true,
   "shipping_functions_named": [
    "parse_ggp_body"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_parse_group_graph_pattern_ask_bgp",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 505,
   "unconditional": false,
   "shipping_functions_named": [
    "parse_group_graph_pattern"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_parse_ask_body_1",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 528,
   "unconditional": false,
   "shipping_functions_named": [
    "default_modifier",
    "parse_ask_body"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lemma_resolve_bgp_tokens_fixed",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 552,
   "unconditional": false,
   "shipping_functions_named": [
    "resolve_relative_iri_tokens"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_resolve_expected_tokens_fixed",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 574,
   "unconditional": false,
   "shipping_functions_named": [
    "resolve_relative_iri_tokens"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "lemma_parse_select_query_ask_bgp",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 589,
   "unconditional": false,
   "shipping_functions_named": [
    "default_modifier",
    "parse_select_query",
    "resolve_relative_iri_tokens"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "parse_select_query_token_level",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 618,
   "unconditional": false,
   "shipping_functions_named": [
    "default_modifier",
    "parse_select_query"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "parse_select_query_token_level_query",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 641,
   "unconditional": false,
   "shipping_functions_named": [
    "default_modifier",
    "parse_select_query",
    "query"
   ],
   "shipping_modules": [
    "SPARQL11.Algebra",
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "fs_sub_of_concat",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 796,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length",
    "fs_byte_sub"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "fs_sub_of_concat_literal",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 803,
   "unconditional": true,
   "shipping_functions_named": [
    "fs_byte_length",
    "fs_byte_sub"
   ],
   "shipping_modules": [
    "Parser.FastString"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "ask_keyword_recovered_from_prefix",
   "host_module": "SPARQL11.Parser.AskBgpRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.AskBgpRoundTrip.fst",
   "line": 825,
   "unconditional": true,
   "shipping_functions_named": [
    "substring"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "index_append",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 104,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "index_concat_at",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 117,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "all_ascii_append",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 140,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "ascii_string_concat",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 148,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "peek_at_offset",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 156,
   "unconditional": false,
   "shipping_functions_named": [
    "at_end",
    "peek_char"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "peek_at_space",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 201,
   "unconditional": false,
   "shipping_functions_named": [
    "at_end",
    "peek_char"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "next_token_le_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 257,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_and_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 271,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "var_chars_end_stop",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 283,
   "unconditional": false,
   "shipping_functions_named": [
    "at_end",
    "peek_char",
    "scan_var_chars_end"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "var_name_empty",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 289,
   "unconditional": false,
   "shipping_functions_named": [
    "scan_var_chars_end",
    "scan_var_name"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "next_token_qmark_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 296,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_lt_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 320,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_dot_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 333,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_lbrace_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 349,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_rbrace_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 360,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_lparen_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 371,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_rparen_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 382,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_lbracket_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 393,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_rbracket_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 404,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_semi_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 415,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_comma_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 426,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_star_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 437,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_slash_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 448,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_eq_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 459,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_plus_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 470,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_minus_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 481,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_bang_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 493,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_caret_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 505,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_pipe_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 517,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_gt_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 529,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_ge_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 542,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_hathat_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 555,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_ne_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 568,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_or_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 581,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "peek_char_concat_right",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 685,
   "unconditional": false,
   "shipping_functions_named": [
    "peek_char"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_skip_space",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 704,
   "unconditional": false,
   "shipping_functions_named": [
    "at_end",
    "char_code",
    "is_ws",
    "next_token",
    "peek_char"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "next_token_at_end",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 726,
   "unconditional": false,
   "shipping_functions_named": [
    "at_end",
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "next_token_head_pre",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 751,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "string_concat_assoc",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 785,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "print_tokens_length_bound",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 912,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "empty_concat_identity",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 925,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "concat_empty_right",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 934,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "tokenize_single_fragment_token",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 959,
   "unconditional": true,
   "shipping_functions_named": [
    "tokenize"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "combine_step",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 1012,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token",
    "tokenize_loop"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "tokenize_loop_step_bridge",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 1146,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token",
    "tokenize_loop"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "concat_right_of_eq",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 1169,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "length_of_eq",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 1172,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "next_token_input_of_eq",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 1175,
   "unconditional": false,
   "shipping_functions_named": [
    "next_token"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "tokenize_loop_input_of_eq",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 1179,
   "unconditional": false,
   "shipping_functions_named": [
    "tokenize_loop"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "concat_regroup3",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 1187,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "space_tail_empty_length",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 1198,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "tokenize_loop_fragment",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 1225,
   "unconditional": false,
   "shipping_functions_named": [
    "tokenize_loop"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "tokenize_fragment_roundtrip",
   "host_module": "SPARQL11.Parser.TokenRoundTrip",
   "file": "formal/fstar/SPARQL11.Parser.TokenRoundTrip.fst",
   "line": 1364,
   "unconditional": true,
   "shipping_functions_named": [
    "tokenize"
   ],
   "shipping_modules": [
    "SPARQL11.Parser"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "mem_map_containment",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fst",
   "line": 22,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "acl_lookup_after_remove",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fst",
   "line": 29,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "meta_lookup_after_remove",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fst",
   "line": 36,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "init_segs_append",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fst",
   "line": 43,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "agent_in_any_group_intro",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fst",
   "line": 127,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "mem_names_append",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fst",
   "line": 138,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "header_value_append",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fst",
   "line": 146,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "link_target_present",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fst",
   "line": 166,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "storage_walk_sound_aux",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fst",
   "line": 179,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_02_02_content_type_required",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 485,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_03_01_slash_denotes_container",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 494,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_03_02_slash_pair_distinct",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 505,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_04_03_storage_type_link",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 514,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_04_07_owner_link",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 525,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_04_04_storage_description_link",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 536,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_04_08_containment_iff_enumerated",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 546,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_04_08_containment_is_hierarchy",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 555,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_04_11_auxiliaries_deleted_with_subject",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 565,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_04_12_auxiliary_links_advertised",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 576,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [
    "store"
   ],
   "declarative_modules": [
    "LWS.Core.Spec"
   ],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_04_13_at_most_one_description",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 586,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_04_14_description_authorized_as_subject",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 597,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_05_01_unsupported_method_405",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 605,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_05_02_post_assigns_uri",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 615,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_05_04_allow_header",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 629,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_05_05_accept_headers",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 642,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_05_07_intermediate_container",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 655,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_05_09_post_missing_target_404",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 668,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_05_11_containment_edit_409",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 679,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_05_13_n3_patch_accepted",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 691,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_05_19_ill_formed_patch_422",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 706,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_05_20_patch_operations",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 718,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_05_24_delete_root_405",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 730,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_05_25_delete_removes_containment",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 741,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_05_27_delete_non_empty_container_409",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 751,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_wac_01_no_acl_denies",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 764,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_wac_02_match_resource_agent_mode",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 772,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_wac_03_default_is_inherited",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 782,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_wac_04_agent_group",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 791,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_wac_07_wac_allow_header",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 800,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_02_06_client_content_type",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 861,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_wac_09_client_acl_from_links",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 874,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_wac_08_client_reads_wac_allow",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 884,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "solid_cl_01_storage_walk_sound",
   "host_module": "Solid.Protocol.Spec",
   "file": "formal/fstar/Solid.Protocol.Spec.fsti",
   "line": 895,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "zeros_len",
   "host_module": "Tableau.CountingOracle",
   "file": "formal/fstar/Tableau.CountingOracle.fst",
   "line": 1047,
   "unconditional": true,
   "shipping_functions_named": [
    "zeros"
   ],
   "shipping_modules": [
    "Tableau.CountingOracle"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "vscale_len",
   "host_module": "Tableau.CountingOracle",
   "file": "formal/fstar/Tableau.CountingOracle.fst",
   "line": 1050,
   "unconditional": true,
   "shipping_functions_named": [
    "vscale"
   ],
   "shipping_modules": [
    "Tableau.CountingOracle"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "vadd_len",
   "host_module": "Tableau.CountingOracle",
   "file": "formal/fstar/Tableau.CountingOracle.fst",
   "line": 1054,
   "unconditional": false,
   "shipping_functions_named": [
    "vadd"
   ],
   "shipping_modules": [
    "Tableau.CountingOracle"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "comb_len",
   "host_module": "Tableau.CountingOracle",
   "file": "formal/fstar/Tableau.CountingOracle.fst",
   "line": 1062,
   "unconditional": false,
   "shipping_functions_named": [
    "all_len",
    "comb_coeffs"
   ],
   "shipping_modules": [
    "Tableau.CountingOracle"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lin_dot_zeros",
   "host_module": "Tableau.CountingOracle",
   "file": "formal/fstar/Tableau.CountingOracle.fst",
   "line": 1075,
   "unconditional": true,
   "shipping_functions_named": [
    "lin_dot",
    "zeros"
   ],
   "shipping_modules": [
    "Tableau.CountingOracle"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lin_dot_vscale",
   "host_module": "Tableau.CountingOracle",
   "file": "formal/fstar/Tableau.CountingOracle.fst",
   "line": 1081,
   "unconditional": true,
   "shipping_functions_named": [
    "lin_dot",
    "vscale"
   ],
   "shipping_modules": [
    "Tableau.CountingOracle"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "lin_dot_vadd",
   "host_module": "Tableau.CountingOracle",
   "file": "formal/fstar/Tableau.CountingOracle.fst",
   "line": 1089,
   "unconditional": false,
   "shipping_functions_named": [
    "lin_dot",
    "vadd"
   ],
   "shipping_modules": [
    "Tableau.CountingOracle"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "comb_dot",
   "host_module": "Tableau.CountingOracle",
   "file": "formal/fstar/Tableau.CountingOracle.fst",
   "line": 1100,
   "unconditional": false,
   "shipping_functions_named": [
    "all_len",
    "comb_coeffs",
    "lin_dot",
    "weighted_lhs"
   ],
   "shipping_modules": [
    "Tableau.CountingOracle"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "mult_mono",
   "host_module": "Tableau.CountingOracle",
   "file": "formal/fstar/Tableau.CountingOracle.fst",
   "line": 1115,
   "unconditional": false,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "weighted_ge",
   "host_module": "Tableau.CountingOracle",
   "file": "formal/fstar/Tableau.CountingOracle.fst",
   "line": 1119,
   "unconditional": false,
   "shipping_functions_named": [
    "lin_sat",
    "valid_mults",
    "weighted_lhs",
    "weighted_rhs"
   ],
   "shipping_modules": [
    "Tableau.CountingOracle"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "farkas_sound",
   "host_module": "Tableau.CountingOracle",
   "file": "formal/fstar/Tableau.CountingOracle.fst",
   "line": 1149,
   "unconditional": false,
   "shipping_functions_named": [
    "farkas_check",
    "lin_sat"
   ],
   "shipping_modules": [
    "Tableau.CountingOracle"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "mk_row_len",
   "host_module": "Tableau.CountingOracle",
   "file": "formal/fstar/Tableau.CountingOracle.fst",
   "line": 1175,
   "unconditional": true,
   "shipping_functions_named": [
    "mk_row"
   ],
   "shipping_modules": [
    "Tableau.CountingOracle"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  },
  {
   "name": "class_size_unsat_sound",
   "host_module": "Tableau.CountingOracle",
   "file": "formal/fstar/Tableau.CountingOracle.fst",
   "line": 1654,
   "unconditional": false,
   "shipping_functions_named": [
    "build_lin_system",
    "class_size_unsat",
    "lin_sat"
   ],
   "shipping_modules": [
    "Tableau.CountingOracle"
   ],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "algorithm_correctness"
  },
  {
   "name": "filter_complement_length",
   "host_module": "XForms.Bind",
   "file": "formal/fstar/XForms.Bind.fst",
   "line": 205,
   "unconditional": true,
   "shipping_functions_named": [],
   "shipping_modules": [],
   "declarative_relations_named": [],
   "declarative_modules": [],
   "independent_formalisation_modules": [],
   "ambiguous_identifiers": [],
   "class": "local_refinement"
  }
 ],
 "totals": {
  "modules": 224,
  "files": 236,
  "assume_val_active": 81,
  "assume_other_active": 4,
  "admissions_active": 0,
  "lax_or_admit_pragmas": 0,
  "modules_with_w3c_refinement_theorem": 11,
  "modules_with_algorithm_correctness_theorem": 45,
  "modules_with_internal_refinement_theorem": 23,
  "modules_merely_tot": 122,
  "w3c_refinement_theorem_count": 322,
  "internal_refinement_theorem_count": 163,
  "algorithm_correctness_theorem_count": 364,
  "unclassified_lemma_count": 3,
  "pure_formalisation_modules": [
   "OWL.RL.Refinement",
   "OWL.RL.Spec",
   "OWL.Semantics",
   "OWL.Semantics.MemLemmas",
   "OWL.Semantics.Soundness",
   "RDF.Entailment.RDF.Spec",
   "RDF.Entailment.RDFS.ModelTheory",
   "RDF.Entailment.RDFS.Refinement",
   "RDF.Entailment.RDFS.SepFree",
   "RDF.Entailment.RDFS.Spec",
   "RDF.Entailment.Simple.ModelTheory",
   "RDF.Entailment.Simple.Refinement",
   "RDF.Entailment.Simple.Spec",
   "RDF.Indexed.KeyInjectivity",
   "RDF.Semantics.HypothesisWitness",
   "SPARQL11.Algebra.Refinement",
   "SPARQL11.Algebra.Spec"
  ],
  "lemma_count": 1767,
  "tiers": {
   "algorithm-correctness": 29,
   "internal-refinement": 13,
   "local-lemmas-only": 13,
   "merely-tot": 122,
   "specification-and-proof": 17,
   "unclassified": 19,
   "w3c-refinement": 11
  }
 },
 "commit": "c618f71d2"
}
