We are excited to announce that we have formally verified
@openvm_org's Keccak and SHA-2 circuits using
@leanprover, proving that each circuit constrains exactly the hashing algorithm specified by
@NIST for every possible input.
Here's what we proved and why we did it: