ROADMAP 15.2 KB
Newer Older
MARCHE Claude's avatar
roadmap  
MARCHE Claude committed
1

MARCHE Claude's avatar
MARCHE Claude committed
2

3
=== Long-term Roadmap (see below for roadmap to next release) ===========
MARCHE Claude's avatar
MARCHE Claude committed
4

5
6
7
8
9
10
* Logic language
** support for higher-order logic
** rename andb, orb, xorb and notb into and, or, xor and not

* more libraries (theories and modules)

MARCHE Claude's avatar
roadmap    
MARCHE Claude committed
11
* A true Jessie3 front-end ?
12

13
14
15
16
17
* Why3ML
** Fast WP a la Leino
** assert qui ne donne pas une hypothese dans la suite -> "check"
   also: in a black box

MARCHE Claude's avatar
roadmap    
MARCHE Claude committed
18
* traceability: Partially done
MARCHE Claude's avatar
MARCHE Claude committed
19
  (Claude)
MARCHE Claude's avatar
MARCHE Claude committed
20
  DONE: traceability des hyp comme path dans le prog (depuis
21
22
23
  Frama-C en particulier)
  afficher les explications dans les outils en ligne de
  commande why3 et why3bench + le path
24
25

* Add more examples in the regression tests and in the proval gallery
Jean-Christophe Filliâtre's avatar
Jean-Christophe Filliâtre committed
26
27
28
  ** add all examples from the VSTTE 2012 competition (JCF, ANDREI)

* A literate programming tool for Why3 (JCF)
MARCHE Claude's avatar
MARCHE Claude committed
29

30
* Papers to write
Jean-Christophe Filliâtre's avatar
Jean-Christophe Filliâtre committed
31

MARCHE Claude's avatar
MARCHE Claude committed
32
  * DONE Encodings and transformations (Andrei+Francois)
33
  * DONE Why presentation at the IVL workshop of CADE:
34
35
    (http://research.microsoft.com/en-us/um/people/moskal/boogie2011/)
    deadline: May 1st
Jean-Christophe Filliâtre's avatar
Jean-Christophe Filliâtre committed
36
37
38
39
40
41
  * Caml code ?
  * logic language for talking to provers
  ** FOL + poly + alg + ind + rec ? + theories
  * VACID-0
  * system description (e.g. at CAD, TACAS)
  * rapports recherche ?
MARCHE Claude's avatar
MARCHE Claude committed
42

MARCHE Claude's avatar
MARCHE Claude committed
43
44
45
46
47
* IDE:
** edition, navigation (partially done)
** reimplement "hide proved goals" feature
  + suggested solution: replace model + filter_model by a custom model
  (JC + ?)
MARCHE Claude's avatar
MARCHE Claude committed
48
49
50

=== Roadmap for next release ========================

MARCHE Claude's avatar
MARCHE Claude committed
51
52
53
54
55
56
57
58
59
60
61
62
63
64
* stages
** M1. preuve d'un petit compilateur, pas de pb de lieur,
   eventuellement outils pour les preuves par recurrence
   a la Leino, + fct size automatique
** M2. Lieur en Why3, POPLmark challenge. vers
   un theorie et/ou un module réutilisable de lieurs
** (M2?) Stage Airbus, "TIP" avec Frama-C/Jessie ou WP/Why/Coq
   besoin du plugin Coq? 

* PRIORITAIRE, JCF et ANDREI, clone de module
** demarche: ecrire une API avec smart constructors garantissant
   le bon typage, et clone sera en premier lieu un de ces constructors
** cas d'utilisation: range d'entiers de Jessie, Flottants -> double ou single
   containeurs pour Adacore et Claire
65
66
67
68
NON PRIORITAIRE ?
** regions : strong update
** ghost code
** logic symbols used in programs
MARCHE Claude's avatar
MARCHE Claude committed
69
70

* extraction vers Caml
Jean-Christophe Filliâtre's avatar
Jean-Christophe Filliâtre committed
71
** PRIORITAIRE, JCF, ANDREI
MARCHE Claude's avatar
MARCHE Claude committed
72
73
74
75
76
77

* FRANCOIS new tools
** merge why3html and why3stats into a new executable why3report
** move -latex from why3replayer to why3report
** document why3report

MARCHE Claude's avatar
MARCHE Claude committed
78
79
* FRANCOIS
** document smoke detector
MARCHE Claude's avatar
MARCHE Claude committed
80
81
82
83
84
85
86
87

* CLAUDE provers
** fix support for newer Z3, CVC3 and Alt-Ergo, allow several version
  of them at the same time. Allow why3config --detect to find e.g z3
  under names like z3-3.2 (how ? command-line option ? e.g. -p z3 /usr/local/bin/z3-3.2)
** Ensure that we kill a prover after some time (ressurect %T ? with a
   meaning like twice the value of %t ?), because we cannot be sure they always
   honor their own -timeout option.
88
** fix CVC3 printer: prints predicate def using LAMBDA
Jean-Christophe Filliâtre's avatar
Jean-Christophe Filliâtre committed
89
90
91
** better use of Alt-Ergo's builtin theories: records, enumeration types
   (Alt-Ergo >= 0.94) => at least two drivers for Alt-Ergo, depending on its
   version number
MARCHE Claude's avatar
roadmap    
MARCHE Claude committed
92

MARCHE Claude's avatar
MARCHE Claude committed
93
94
95
96
97
98
* FRANCOIS CLAUDE, move Session module and its dependencies into the Why3 library
** but avoid duplication with session_ro
** avoid also duplication of type like prover_data record
** do not include task and transf in the data type, so that
   one can reload, and redetect provers
** session + session_ro -> session_data + session_dynamic
MARCHE Claude's avatar
roadmap    
MARCHE Claude committed
99

MARCHE Claude's avatar
MARCHE Claude committed
100

MARCHE Claude's avatar
MARCHE Claude committed
101
102
* efficiency issues
** understand problems when large number of goals (cf D Mentré examples)
MARCHE Claude's avatar
MARCHE Claude committed
103

MARCHE Claude's avatar
MARCHE Claude committed
104
105
* ALL fix bug and update the BTS
** reject global "val"s in typing environment for logic decls.
MARCHE Claude's avatar
MARCHE Claude committed
106

MARCHE Claude's avatar
MARCHE Claude committed
107
* DELAYED Coq plugin
MARCHE Claude's avatar
MARCHE Claude committed
108
109

* Coq realization of theories
110
111
112
113
114
115
116
117
118
** corriger l'incoherence, comprendre si on veut vraiment accepter

  function x : 'a
  (cf: en caml cela ne marche pas)

** make it really usable
** understand problems when trying to realize set.why.
   Status of equality, relation with clone module feature

MARCHE Claude's avatar
MARCHE Claude committed
119

MARCHE Claude's avatar
MARCHE Claude committed
120
* DOC:
121
** document new tools why3stats and others if any
MARCHE Claude's avatar
MARCHE Claude committed
122
123
124
125
126
** complete api.tex: explain how to build theories, apply
   transformations, write new functions on terms (A)
** complete manpages.tex: section "Drivers of external provers" (A+F)
** make the glossary available

MARCHE Claude's avatar
MARCHE Claude committed
127
128
129
130
* IDE:
** saving session
   * add "ctrl-S" to save the session explicitly
     (partially done, but no shortcut)
131
   * do not save if no change was made
MARCHE Claude's avatar
MARCHE Claude committed
132
133
** restore provers detection in the middle of a session.
  + todo: run detection immediately at start up if conf file absent or
MARCHE Claude's avatar
MARCHE Claude committed
134
    outdated. should become doable with the new Session module
MARCHE Claude's avatar
MARCHE Claude committed
135

MARCHE Claude's avatar
MARCHE Claude committed
136

137
=== Roadmap for release 0.71 ========================
MARCHE Claude's avatar
MARCHE Claude committed
138

MARCHE Claude's avatar
MARCHE Claude committed
139
* DONE Final preparation:
MARCHE Claude's avatar
MARCHE Claude committed
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
** put on the web page
*** why3-0.71.tar.gz
*** manual in PDF: check that macro \todo is commented out
    in ./macros.tex
*** API doc in HTML (suggestion: http://why3.lri.fr/api/)
    Note: check that URL of API doc is correct in doc/api.tex line 9.
** What to put in the announcement:
*** traceability from front-ends work
    (see Krakatoa and Jessie of the next release 2.30 of Why2)
*** many new examples in examples/ and examples/programs
*** significantly improved efficiency of WP calculus
*** improved method for matching old and new goals in proof sessions
*** several bug fixes
*** see also the file CHANGES
** The last commit:
155
*** DONE increment the magic number in config
MARCHE Claude's avatar
MARCHE Claude committed
156
*** add a tag to the git repository
MARCHE Claude's avatar
MARCHE Claude committed
157
*** The next commit : increment why3 version
MARCHE Claude's avatar
MARCHE Claude committed
158

MARCHE Claude's avatar
MARCHE Claude committed
159
160
161
* misc
** DONE fix bug with term shapes, not taking triggers into account
** DONE remove prover coq-realize
MARCHE Claude's avatar
MARCHE Claude committed
162

MARCHE Claude's avatar
MARCHE Claude committed
163
164
165
166
167
168
169
170
171
172
* prover support
** DONE test/debug TPTP output, make Vampire work

* IDE:
** saving session
   * DONE add a "cancel" choice in the "ask" window

* DONE replayer: don't replay a goal that has changed, just display as an
  unsuccessful replay

MARCHE Claude's avatar
MARCHE Claude committed
173
174
175
* DONE reload: improve matching of new and old goals by use a kind a distance
  between some notion of shape of a goal

MARCHE Claude's avatar
MARCHE Claude committed
176
=== Roadmap for third release 0.70, july 2011 ========================
177

178
179
* Final preparation: put on the web page
** why3-0.70.tar.gz
180
** DONE manual in PDF: check that macro \todo can be commented out
181
   from ./macros.tex
182
183
** API doc in HTML (suggestion: http://why3.lri.fr/api/)
   Note: check that URL of API doc is correct in doc/api.tex line 9.
MARCHE Claude's avatar
MARCHE Claude committed
184
185
186
187
188
189
** What to put in the annoucement
   - WhyML VC generator to prove programs
   - new tool why3replayer
   - incompatible changes in syntax: function, predicate, and, or
   - session database in XML format instead of sqlite3
   - threads problem in IDE solved (by not using threads anymore)
MARCHE Claude's avatar
MARCHE Claude committed
190
   - IDE: not necessary to exit to change the input file: just use "reload"
191

192
* The last commit (A):
193
  ** DONE increment the magic number in config
194
195
  ** add a tag to the git repository
  ** The next commit : increment de why3 version
196

197
198
* DONE Distribution of examples: we should distribute those who have an xml file
  under git, and distribute the XML and Coq proofs (JC)
MARCHE Claude's avatar
MARCHE Claude committed
199

MARCHE Claude's avatar
MARCHE Claude committed
200
201
* DONE document "Make obsolete" (A+C)

202
* DONE update IDE section of starting.tex (C)
203

204
* DONE update doc for why3replayer
MARCHE Claude's avatar
MARCHE Claude committed
205

MARCHE Claude's avatar
MARCHE Claude committed
206
207
208
* DONE fix bug 12934 : Coq syntax
  https://gforge.inria.fr/tracker/index.php?func=detail&aid=12934&group_id=2990&atid=10293

209
* DONE document new IDE features (C)
MARCHE Claude's avatar
MARCHE Claude committed
210

211
212
* DONE doc: citer l'article Boogie 2011 quelque part

Andrei Paskevich's avatar
Andrei Paskevich committed
213
214
215
216
217
* DONE deplacer le bouton "Cancel" dans le menu "tools",
  le renommer en "make obsolete"

* DONE Check if remark in doc/api.tex line 80 is still valid (A)

218
219
* DONE put an up-to-date use_api.ml in the manual (C)

220
221
222
223
224
225
* DONE enlever les caracteres de tab des sources
  et les caracteres latin1 (A)

* DONE faire tourner headache pour refabriquer les headers (A)
  ** dans gappa.ml : ajouter Guillaume en dessous de l'entete

226
227
228
229
* DONE Rendre optionnel la question "would you like to save the session ?"
   (C) -> 3-state options (Yes/No/ask) dans la config
  + DONE dans le menu "file" : "save session" sans raccourci clavier

230
* DONE desactiver "Save" (et editable=false dans la fenetre)
231

232
233
* DONE mettre "Quit" en dernier (C)

234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
* DONE checkout frais, compilation (local ou non) et make bench chaque nuit sur moloch
  (?)

* DONE IDE: reload
  (claude)

* DONE BD : se passer de sqlite3
  (Claude)
  Solution: un unique fichier XML, qui est ecrit mais pas
  tres souvent (pas plus d'une fois par seconde)
  ne pas oublier neanmoins de mettre une action dans Timeout
  qui enregistre au bout d'un moment
  pb: n'est pas independant de l'IDE, peut-on faire un module
  independant de l'IDE ? qui serait utilisé par why3bench ?

* DONE IDE: avoir des transformations non codees en dur
  (Claude d'abord)

* DONE Bug des md5
  (Claude. pas reproductible ? Pb de duplication des buts ?)
MARCHE Claude's avatar
MARCHE Claude committed
254

255
* DONE IDE: no more threads
MARCHE Claude's avatar
roadmap    
MARCHE Claude committed
256

257
258
259
260
261
* DONE proof replay
  ** DONE IDE: replay all obsolete but previously successful proofs
  ** DONE in why3replay in whybench
  ** DONE add replay of existing proofs in "make bench" to detect regression
  ** DONE add automatic recompilation, install and bench every night on moloch
Jean-Christophe Filliâtre's avatar
Jean-Christophe Filliâtre committed
262

263
* DONE IDE: implement "inline" (use transformation inline_goal)
Jean-Christophe Filliâtre's avatar
Jean-Christophe Filliâtre committed
264
  ** problem 1: detect that transformation did nothing
MARCHE Claude's avatar
MARCHE Claude committed
265
  ** DONE problem 2: reimport from db does apply inline correctly
MARCHE Claude's avatar
MARCHE Claude committed
266

267
268
* DONE IDE: debug "remove" et "clean" qui provoquent des segfaults !!

Jean-Christophe Filliâtre's avatar
Jean-Christophe Filliâtre committed
269
270
* IDE: ajouter "invalid" comme cas de resultats de preuve
  (utiliser call_provers.proof_result dans gmain)
271
  DONE
MARCHE Claude's avatar
MARCHE Claude committed
272
273


274
=== Roadmap for second release 0.64 ========================================
275

Jean-Christophe Filliâtre's avatar
Jean-Christophe Filliâtre committed
276
277
* fix local installation
  ** fix local executables names (DONE)
278

Jean-Christophe Filliâtre's avatar
Jean-Christophe Filliâtre committed
279
280
281
282
283
284
285
* fix problems with .why.conf (DONE)
  ** if we distribute the current state, users who already have a ~/.why.conf
     will get a error message because of missing loadpath to modules
     Done? - the magic number will force to not use the old ~/.why.conf of
             the user
  ** generally speaking, we should rethink the design of that .why.conf: avoid
     absolute paths,
286
     Partially done - libdir, datadir, loadpath, ... are not written in
Jean-Christophe Filliâtre's avatar
Jean-Christophe Filliâtre committed
287
     why.conf if they correspond to the default value.
288
289


290
* IDE, file names in DB: use only file names relative to the db file
291
  DONE
292

Jean-Christophe Filliâtre's avatar
Jean-Christophe Filliâtre committed
293
=== Roadmap for December 2010 ================================================
MARCHE Claude's avatar
roadmap  
MARCHE Claude committed
294
295
296

== Documentation ==

MARCHE Claude's avatar
MARCHE Claude committed
297
1 Introduction (done: suppressed)
298
2 getting started (Claude: done, to be read by others)
MARCHE Claude's avatar
MARCHE Claude committed
299
3 Syntax, tutorial (done: Andrei)
300
4 tutorial for API:
301
** build a task (Claude: done, to be read by others)
MARCHE Claude's avatar
roadmap    
MARCHE Claude committed
302
303
304
305
306
** call a prover (Claude: done, to be read by others)
** apply a transformation (a completer plus tard)
** develop a new transformation (a completer plus tard)
5 syntax reference (a completer plus tard par typage et semantique)
6 Standard lib of theories:
307
  (Claude: done, although quite sparse, to be read by others)
308
7 Manpages
309
310
7.1 Compilation, Installation (done)
7.2 external provers (done)
MARCHE Claude's avatar
roadmap    
MARCHE Claude committed
311
312
313
314
7.3 why3config (done)
7.4 why3 (done)
7.5 whyml (done)
7.6 IDE (done)
François Bobot's avatar
François Bobot committed
315
7.7 whybench (done, to be read by others)
MARCHE Claude's avatar
roadmap    
MARCHE Claude committed
316
317
318
7.8 why.conf (done)
7.9 drivers (to be done later)
7.10 transformations (done)
319
8 API: Andrei + Francois
320
  (should we really add that in the doc ?)
MARCHE Claude's avatar
roadmap    
MARCHE Claude committed
321
322
** on remplace par la version HTML a mettre sur la forge INRIA (Francois)
** TODO: mettre un titre au HTML engendré
MARCHE Claude's avatar
roadmap  
MARCHE Claude committed
323
324
325
326
327

== IDE ==

(Claude)

MARCHE Claude's avatar
MARCHE Claude committed
328
329
330
331
* database, session save and restore (done)
* Coq output (done)
* Gappa output (done)
* debug hide goals (TODO)
332
* add "context" options (partially done)
MARCHE Claude's avatar
roadmap    
MARCHE Claude committed
333
** semantics not clear, should be clarified, documented and
334
   implemented accordingly
MARCHE Claude's avatar
MARCHE Claude committed
335
* add transf "inline goal" (to be done later)
336
* add button "remove"
MARCHE Claude's avatar
MARCHE Claude committed
337
338
339
** removing goals: done
** removing transformation: done, but subgoals stay in db (not critical)
* add button "replay" (to be done later)
340
** semantics: replay obsolete proofs
MARCHE Claude's avatar
roadmap  
MARCHE Claude committed
341
342
343

== Misc ==

MARCHE Claude's avatar
MARCHE Claude committed
344
345
346
* README (done)
* INSTALL (done)
* LICENSE (done)
MARCHE Claude's avatar
roadmap    
MARCHE Claude committed
347
* OCAML-LICENSE (done)
348
* TODO: licence pour les boomy icons
MARCHE Claude's avatar
MARCHE Claude committed
349

MARCHE Claude's avatar
roadmap    
MARCHE Claude committed
350
351
* debuguer cpulimit pour gappa (pb de return code)

MARCHE Claude's avatar
MARCHE Claude committed
352
* option --version a tous les executables (done, except IDE: bug 11604)
353
** + affichage dans l'IDE (done)
MARCHE Claude's avatar
roadmap    
MARCHE Claude committed
354
* Builtin arrays in provers (done)
MARCHE Claude's avatar
MARCHE Claude committed
355
* make install (done)
MARCHE Claude's avatar
roadmap    
MARCHE Claude committed
356
* make distrib (done)
MARCHE Claude's avatar
MARCHE Claude committed
357
* "make -j" (done)
358
* META for ocamlfind (done)
MARCHE Claude's avatar
MARCHE Claude committed
359
* headers (done)
MARCHE Claude's avatar
roadmap  
MARCHE Claude committed
360

MARCHE Claude's avatar
MARCHE Claude committed
361
362
363
364
365
366
== Mails announcement ==

----------------------- Why-discuss list ---------------------------

We are happy to announce the first public release of Why3, also known
as the Why platform next generation. It is a new project, independent
MARCHE Claude's avatar
MARCHE Claude committed
367
from Why versions 2.xx.
Andrei Paskevich's avatar
roadmap    
Andrei Paskevich committed
368
369

The home web page of Why3 is http://why3.gforge.inria.fr, where you
370
can find the source distribution and the manual. See the manual for
MARCHE Claude's avatar
MARCHE Claude committed
371
372
installation instructions and contact information.

MARCHE Claude's avatar
MARCHE Claude committed
373
The main new features with respect to Why 2.xx are the following.
MARCHE Claude's avatar
MARCHE Claude committed
374
375
376
377

1) Completely redesigned input syntax for logic declarations

* new syntax for terms and formulas
Andrei Paskevich's avatar
roadmap    
Andrei Paskevich committed
378
379
380
* enumerated and algebraic data types, pattern matching
* recursive definitions of logic functions and predicates,
  with termination checking
MARCHE Claude's avatar
MARCHE Claude committed
381
* inductive definitions of predicates
Andrei Paskevich's avatar
roadmap    
Andrei Paskevich committed
382
383
* declarations are structured in components called "theories",
  which can be reused and instantiated
MARCHE Claude's avatar
MARCHE Claude committed
384
385
386
387
388
389
390

2) More generic handling of goals and lemmas to prove

* concept of proof task
* generic concept of task transformation
* generic approach for communicating with external provers

Andrei Paskevich's avatar
roadmap    
Andrei Paskevich committed
391
3) Source code organized as a library with a documented API,
MARCHE Claude's avatar
MARCHE Claude committed
392
to allow access to Why3 features programmatically.
MARCHE Claude's avatar
MARCHE Claude committed
393
394
395
396
397
398

4) GUI with new features w.r.t. the former GWhy

* session save and restore
* prover calls in parallel
* splitting, and more generally applying task transformations, on demand
399
* ability to edit proofs for interactive provers (Coq only for the moment)
MARCHE Claude's avatar
MARCHE Claude committed
400
401
402
403
404
405
406
407
  on any subtask

5) Extensible architecture via plugins

* users can define new transformations
* users can add connections to additional provers


Andrei Paskevich's avatar
roadmap    
Andrei Paskevich committed
408
Beware that some Why features are not yet available in Why3:
MARCHE Claude's avatar
MARCHE Claude committed
409
410

* There is a VC generator distributed in Why3 in an experimental stage
Andrei Paskevich's avatar
roadmap    
Andrei Paskevich committed
411
412
  and intentionally undocumented in the current documentation (the input
  syntax for programs may change a lot in the future).
MARCHE Claude's avatar
MARCHE Claude committed
413
414
415
416

* There is no front-end for other languages like C or Java. However,
  the last release Why 2.28 is able to use Why3 as a back-end

MARCHE Claude's avatar
MARCHE Claude committed
417
418
419
420
421
422
423
424
Notice that Why3 is expected to replace Why2 in the future. As such,
it is the project where improvements and new features will be
implemented. As this is the first public release of Why3, it is likely
that missing features, and possibly bugs, will raise soon. Please
report those in the bug tracker, we will do our best to fix them and
provide new releases in a short time.


MARCHE Claude's avatar
MARCHE Claude committed
425
426
427
428
429
430
431
432



--------------------- Frama-C list ----------------------------


The first release of Why3, also known as the Why platform next
generation, is publicly available. Why3 is a new project, independent
MARCHE Claude's avatar
MARCHE Claude committed
433
from Why. The detailed announcement is attached below.
MARCHE Claude's avatar
MARCHE Claude committed
434
435
436
437
438
439
440
441

The Jessie plugin of the Why release 2.28 has the ability to use Why3
as back-end. You must install both Why 2.28 and Why3 for this to work.

Using the Why3 GUI on a C file is done as follows
  frama-c -jessie -jessie-atp why3ide <file>.c
(You can also run it in batch mode using
  frama-c -jessie -jessie-atp why3 <file>.c
442
and process the generated Why3 file "<file>.jessie/why/<file>_why3.why"
MARCHE Claude's avatar
MARCHE Claude committed
443
444
445
446
447
448
449
with Why3 batch tools).

The main new features of interest in the GUI are

* new provers available
* calling provers in parallel
* splitting on demand
MARCHE Claude's avatar
MARCHE Claude committed
450
* ability to call Coq on a given VC to provide a proof script. Incidentally,
MARCHE Claude's avatar
MARCHE Claude committed
451
  this feature can be used to analyse the VC to understand why it is
452
  not proved automatically.
MARCHE Claude's avatar
MARCHE Claude committed
453
454
455
456
457
458
459
460
* proof session saved and restored at startup

Any question, remark or bug report concerning only Why3 should be done
using the Why3 public discussion list and bug tracker.




MARCHE Claude's avatar
roadmap  
MARCHE Claude committed
461