Software model checking
Finite state software specifications
- Reactive systems (avionics, automotive, etc.)
- Hierarchical state machine specifications
- Statecharts (Harel), RSML (Leveson)
Not intended to help with proving consistency of specification and implementation