4 ms·KeY: Deductive Verification of Software (re: Proving TimSort Bug in Java,Python)2 points by amund 12y ago