Candle: A Verified Implementation of HOL Light (Extended Version)
Journal article, 2025

This paper presents a fully verified interactive theorem prover for higher-order logic, more specifically: a fully verified clone of HOL Light. Our verification proof of this new system results in an end-to-end correctness theorem that guarantees the soundness of the entire system down to the machine code that executes at runtime. Our theorem states that every exported fact produced by this machine-code program is valid in higher-order logic. Our implementation consists of a read-eval-print loop (REPL) that executes the CakeML compiler internally. Throughout this work, we have strived to make the REPL of the new system provide a user experience as close to HOL Light's as possible. To this end, we have, e.g., made the new system parse the same variant of OCaml syntax as HOL Light. All of the work described in this paper has been carried out in the HOL4 theorem prover.

Interactive theorem proving

Prover soundness

Higher-order logic

Author

Oskar Abrahamsson

University of Gothenburg

Chalmers, Computer Science and Engineering (Chalmers), Formal methods

Magnus Myreen

University of Gothenburg

Chalmers, Computer Science and Engineering (Chalmers), Formal methods

Ramana Kumar

University of Cambridge

Journal of Automated Reasoning

0168-7433 (ISSN) 1573-0670 (eISSN)

Vol. 69 4 32

Subject Categories (SSIF 2025)

Computer Engineering

Embedded Systems

Computer Systems

DOI

10.1007/s10817-025-09743-8

More information

Latest update

12/12/2025