• α(a,t) = < a[0],…,a[t] >

  
  • I(a,t,s) ≡ t = length(s) ∧t \geqslant 0 ∧s = α(a,t)


slide: Abstraction function and representation invariant