frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

GenAI-Accelerated TLA+ Challenge

https://foundation.tlapl.us/challenge/index.html
35•lemmster•8mo ago

Comments

Taikonerd•8mo ago
Using LLMs for formal specs / formal modeling makes a lot of sense to me. If an LLM can do the work of going from informal English-language specs to TLA+ / Dafny / etc, then it can hook into a very mature ecosystem of automated proof tools.

I'm picturing it something like this:

1. Human developer says, "if a user isn't authenticated, they shouldn't be able to place an order."

2. LLM takes this, and its knowledge of the codebase, and turns it into a formal spec -- like, "there is no code path where User.is_authenticated is false and Orders.place() is called."

3. Existing code analysis tools can confirm or find a counterexample.

omneity•8mo ago
A fascinating thought. But then who verifies that the TLA+ specification does indeed match the human specification?

I’m guessing using an LLM as a translator narrows the gap, and better LLMs will make it narrower eventually, but is there a way to quantify this? For example how would it compare to a human translating the spec into TLA+?

justanotheratom•8mo ago
maybe run it through few other LLMs depending on how much confidence you need - o3 pro, gemini 2.5 pro, claude 3.7, grok 3, etc..
svieira•8mo ago
Then you need to be able to formally prove the equivalence of various TLA+ programs (maybe that's a solved problem?)
omneity•8mo ago
No idea about SOTA but naively it doesn't seem like a very difficult problem:

- Ensure all TLA+ specs produced have the same inputs/outputs (domains, mostly a prompting problem and can solved with retries)

- That all TLA+ produce the same outputs for the same inputs (making them functionally equivalent in practice, might be computationally intensive)

Of course that assumes your input domains are countable but it's probably okay to sample from large ranges for a certain "level" of equivalence.

EDIT: Not sure how that will work with non-determinism though.

justanotheratom•8mo ago
I didn't mean generate separate TLA programs. Rather, other LLMs review and comment on whether this TLA program satisfies the user's specification.
Taikonerd•8mo ago
A fair question! I'd say it's not that different from using an LLM to write regular code: who verifies that the code the LLM wrote is indeed what you meant?
fmap•8mo ago
The usual way to check whether a definition is correct is to prove properties about it that you think should hold. TLA+ has good support for this, both with model checking as well as simple proofs.
frogmeister57•8mo ago
It makes a lot of sense only for graphics card sales people. For everyone else with a working neuron the sole idea is utter nonsense.
max_•8mo ago
Leslie Lamport said that he invented TLA+ so people could "think above the code".

It was meant as a tool for people to improve their thinking and description of systems.

LLM generation of TLA+ code is just intellectual masterbation.

It may get the work done for your boss. But you intellect will still remain bald — in which case you are better off not writing TLA+ at all.

warkdarrior•8mo ago
> [TLA+] was meant as a tool for people to improve their thinking and description of systems.

Why the speciesism? Why couldn't LLMs use TLA+ by translating a natural-language request into a TLA+ model and then checking it in TLA+?

jjmarr•8mo ago
Not the OP, but I would rather give a formal specification of my system to an AI and have it generate the code.

I believe the point is it's easier for a human to verify a system's correctness as expressed in TLA+ and verify code correctly matches the system than it is to correctly verify the entire code as a system at once.

Then, if my model of the system is flawed, TLA+ will tell me.

I'm an AI bull so if I give the LLM a natural language description, I'd like the LLM to explain the model instead of just writing the TLA+ code.

max_•8mo ago
TLA+ was invented in the first place because we Leslie Lamport thought natural language was a dubious tool for "specifying systems".

Yes an LLM may generate the TLA+ code even correctly, but model checking is not the end goal of TLA+

TLA+ plus is written to fully under how a system works at an abstract level.

Anyways, I guess you could just read the LLM generated TLA+ code. That would help you understand the abstraction of the system — but is the LLMs abstraction equal to your abstraction.

But vibe coded TLA+ sounds extremely dangerous especially in mission critical stuff where its required like Smart Contracts, Pacemakers, Aircraft software etc

frogmeister57•8mo ago
Using generative chatbots to write a formal spec is the most stupid idea ever. Specs are all about reasoning. You need to do the thinking to model the system in a very simplified manner. Formal methods and the generative BS are at the antipodes of reliability. This is an insult to reason. Please keep this nonsense away from the serious parts of CS.
siscia•8mo ago
Anyone who has tried to write formal verification will tell you that there is a WIDE gap between thinking and writing the specs.

Any tool that makes formal verification more accessible, should be welcome.

I believe the valuable part is how accessible we make thinking together with machines.

Us human are great at create innovative solutions, not so great at check and verify every single thing that can go wrong. Machines help with that.

kelseyfrog•8mo ago
Interesting. I've always wanted to formalize the US Constitution into TLA+ in order to find loopholes.

From Sketch to Masterpiece: Understanding Stable Diffusion Img2Img

1•bozhou•6m ago•0 comments

How do I fight 250 duplicate Amazon listings with fake reviews?

https://travelhead.medium.com/amazons-dirty-secret-the-chinese-marketplace-manipulation-destroyin...
2•travelhead•6m ago•0 comments

ClaudePad

https://github.com/marshallrichards/ClaudePad
2•ray__•10m ago•0 comments

I built a light that reacts to radio waves [video]

https://www.youtube.com/watch?v=moBCOEiqiPs
1•codetheweb•11m ago•0 comments

One year of Kash Patel running the FBI

https://www.nytimes.com/interactive/2026/01/22/magazine/trump-kash-patel-fbi-agents.html
3•osnium123•11m ago•2 comments

CEOs Say AI Is Making Work More Efficient. Employees Tell a Different Story

https://www.wsj.com/lifestyle/workplace/ceos-say-ai-is-making-work-more-efficient-employees-tell-...
2•1vuio0pswjnm7•14m ago•0 comments

"A public origin record for a phase‑resonance hybrid computing architecture"

1•LUMENPIXEL•16m ago•0 comments

Amazon planning job cuts next week after axing 14,000 due to AI: report

https://nypost.com/2026/01/22/business/amazon-planning-thousands-of-job-cuts-next-week-after-axin...
4•1vuio0pswjnm7•16m ago•0 comments

Tell HN: Cursor agent force-pushed despite explicit "ask for permission" rules

1•xinbenlv•16m ago•0 comments

ChatGPT gives answers. Agentic AI makes decisions

https://chungmoo.substack.com/p/chatgpt-gives-answers-agentic-ai
1•chungmoo•19m ago•0 comments

GM announces end of Chevy Bolt (for the second time)

https://techcrunch.com/2026/01/22/gm-to-end-chevy-bolt-ev-production-next-year-move-china-made-bu...
1•LanceJones•25m ago•0 comments

I Asked 4 AIs to Define a Fake Term. Only 1 Refused to Lie

https://chungmoo.substack.com/p/i-asked-4-ais-to-define-a-fake-term
1•chungmoo•25m ago•0 comments

Software sell-off sparked by AI sets stage for potential big year of M&A

https://www.cnbc.com/2026/01/22/selloff-in-software-from-ai-sets-stage-for-potential-big-year-of-...
1•1vuio0pswjnm7•26m ago•0 comments

24 Hour Timelapse of all FedEx Airplanes in the USA (2009) [video]

https://www.youtube.com/watch?v=0xEczrGIy08
1•radeeyate•27m ago•0 comments

Robotics Needs World Models

https://www.signalfire.com/blog/missing-piece-in-robotics-a-world-model
1•zviugfd•28m ago•0 comments

PolyShapr

https://chambercode.com/music/polyshapr/
1•gregsadetsky•29m ago•0 comments

The US national debt will soon be growing faster than the economy itself

https://fortune.com/2026/01/22/how-big-national-debt-when-recession-financial-crisis-could-hit/
5•testing22321•30m ago•0 comments

US officially exists World Health Organization

https://abcnews.go.com/Health/us-officially-exits-world-health-organization-accusing-agency/story...
6•testing22321•32m ago•1 comments

USA Exits WHO

https://www.hhs.gov/press-room/united-states-completes-who-withdrawal.html
11•Swizec•35m ago•0 comments

What Is Control Flow Analysis for Lambda Calculus? [audio]

https://podcasts.apple.com/us/podcast/what-is-control-flow-analysis-for-lambda-calculus/id1493036...
1•matt_d•38m ago•1 comments

Show HN: Extracting React apps from Figma Make's undocumented binary format

https://albertsikkema.com/ai/development/tools/reverse-engineering/2026/01/23/reverse-engineering...
2•albertsikkema•38m ago•3 comments

ClickHouse launches natively integrated Postgres managed service

https://clickhouse.com/blog/postgres-managed-by-clickhouse
2•saisrirampur•40m ago•0 comments

What it's like to dissect a cadaver (2022)

https://alok.github.io/2022/11/09/dissection/
2•Gegenkraft•41m ago•0 comments

Blogroll.club – a curated collection of blogs and personal sites

https://blogroll.club
2•Curiositry•44m ago•0 comments

Feral cats and foxes have driven many Australian mammals to extinction

https://theconversation.com/yes-feral-cats-and-foxes-really-have-driven-many-australian-mammals-t...
1•defrost•45m ago•0 comments

Common bad arguments for the correct answer to the Monty Hall Problem

https://link.springer.com/article/10.1007/s11229-025-05389-6
1•mellosouls•49m ago•1 comments

VidBee: Free Open Source Video Downloader

https://vidbee.org/
1•jonbaer•49m ago•0 comments

Remotion: Make Videos Programmatically

https://www.remotion.dev/
1•jonbaer•50m ago•0 comments

Show HN: Audio AI had a wild day – 5 major open-source / real-time TTS drops

https://github.com/FlashLabs-AI-Corp/FlashLabs-Chroma
1•pratik227•53m ago•0 comments

TikTok deal finalized to stop US ban: Oracle, Silver Lake, MGX to hold 15% each

https://www.reuters.com/world/china/tiktok-reaches-deal-new-us-joint-venture-avoid-american-ban-2...
4•aarondong•53m ago•0 comments