Open NightLore opened 4 years ago
Possible metrics:
Metric TF (Truck Factor): "Algorithms for estimating truck factors: a comparative study"
and "A Comparison of Three Algorithms for Computing Truck Factors"
Metric TFDD (Truck Factor developers detachment): "On the abandonment and survival of open sourceprojects: An empirical investigation"
Papers sent by email.
----- "Algorithms for estimating truck factors: a comparative study" ----- Algorithms:
Results:
----- "A Comparison of Three Algorithms for Computing Truck Factors" -------- Algorithms:
Results:
----- "On the abandonment and survival of open source projects: An empirical investigation" ------
Results:
Github now explicitly mentions the vulnerabilities found in their security checking and security tab: The url: https://github.com/NightLore/DependencyVis/network/alerts
Refer to #1 for all readings
CVE: Automation Support for CVE Retrieval NVD
OSS Index API Rest API/Sonatype OSS Index
A master's thesis: https://www.researchgate.net/publication/279196437_In_Dependencies_We_Trust_How_vulnerable_are_dependencies_in_software_modules uses the following metrics: