API trustworthiness: an ontological approach for software library adoption

被引:4
|
作者
Eghan, Ellis E. [1 ]
Alqahtani, Sultan S. [1 ]
Forbes, Christopher [1 ]
Rilling, Juergen [1 ]
机构
[1] Concordia Univ, Dept Comp Sci & Software Engn, Montreal, PQ, Canada
关键词
Software quality; Trustworthiness; Code reuse; License violations; API breaking changes; Software security vulnerabilities; SEMANTIC WEB; PATTERNS;
D O I
10.1007/s11219-018-9428-4
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
The globalization of the software industry has led to an emerging trend where software systems depend increasingly on the use of external open-source external libraries and application programming interfaces (APIs). While a significant body of research exists on identifying and recommending potentially reusable libraries to end users, very little is known on the potential direct and indirect impact of these external library recommendations on the quality and trustworthiness of a client's project. In our research, we introduce a novel Ontological Trustworthiness Assessment Model (OntTAM), which supports (1) the automated analysis and assessment of quality attributes related to the trustworthiness of libraries and APIs in open-source systems and (2) provides developers with additional insights into the potential impact of reused libraries and APIs on the quality and trustworthiness of their project. We illustrate the applicability of our approach, by assessing the trustworthiness of libraries in terms of their API breaking changes, security vulnerabilities, and license violations and their potential impact on client projects.
引用
收藏
页码:969 / 1014
页数:46
相关论文
共 50 条
  • [1] API trustworthiness: an ontological approach for software library adoption
    Ellis E. Eghan
    Sultan S. Alqahtani
    Christopher Forbes
    Juergen Rilling
    [J]. Software Quality Journal, 2019, 27 : 969 - 1014
  • [2] Library adoption in public software repositories
    Krohn, Rachel
    Weninger, Tim
    [J]. JOURNAL OF BIG DATA, 2019, 6 (01)
  • [3] Library adoption in public software repositories
    Rachel Krohn
    Tim Weninger
    [J]. Journal of Big Data, 6
  • [4] Towards an Approach for Trustworthiness Assessment of Software as a Service
    Medeiros, Nadia
    Ivaki, Naghmeh
    Costa, Pedro
    Vieira, Marco
    [J]. 2017 IEEE 1ST INTERNATIONAL CONFERENCE ON EDGE COMPUTING (IEEE EDGE), 2017, : 220 - 223
  • [5] An Approach for Trustworthiness Benchmarking using Software Metrics
    Medeiros, Nadia
    Ivaki, Naghmeh
    Costa, Pedro
    Vieira, Marco
    [J]. 2018 IEEE 23RD PACIFIC RIM INTERNATIONAL SYMPOSIUM ON DEPENDABLE COMPUTING (PRDC), 2018, : 84 - 93
  • [6] Model-checking software library API usage rules
    Fu Song
    Tayssir Touili
    [J]. Software & Systems Modeling, 2016, 15 : 961 - 985
  • [7] Model-checking software library API usage rules
    Song, Fu
    Touili, Tayssir
    [J]. SOFTWARE AND SYSTEMS MODELING, 2016, 15 (04): : 961 - 985
  • [8] Software Reuse : Ontological Approach to Feature Modeling
    Matcha, Vinod Babu
    Reddy, Prasad P. V. G. D.
    Hari, Ch. V. M. K.
    Srinivas, G.
    SanjeevaRao, N.
    Jayachand, B.
    Kumar, J. N. V. R. Swarup
    SriRamGanesh, G.
    Krishna, N. V. R. V. Vamsi
    Pradeep, I. Kali
    Ramesh, Ch.
    [J]. INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2009, 9 (08): : 262 - 268
  • [9] Comparing functionality of software systems: An ontological approach
    Reinhartz-Berger, Iris
    Sturm, Arnon
    Wand, Yair
    [J]. DATA & KNOWLEDGE ENGINEERING, 2013, 87 : 320 - 338
  • [10] Ontological approach to knowledge management in software maintenance
    Serna Montoya, Edgar
    [J]. REVISTA FACULTAD DE INGENIERIA-UNIVERSIDAD DE ANTIOQUIA, 2010, (55): : 184 - 193