How can formal methods be used to ensure the separation logic (one important aspect is the separation of information between different levels of classified information)? Do you know of any projects where they try this?

