The Use of Automated Code Review in Security-Focused Software Projects

No Thumbnail Available

Date

2024

Journal Title

Journal ISSN

Volume Title

Publisher

Saudi Digital Library

Abstract

This research into automated and manual code checking in security and non-security projects sough to understand the level of usage of each form of code checking processes using a sample of repositories in GitHub. The role of automated tools in security-focused projects versus non-by security ones has not been fully explored. Evaluating the use of both automated and manual code checking in a sample of GitHub repositories found a domination of automated code checking tools in security projects compared to a low use in non-security projects. Security issues identified in non-security projects tended to be ignored. It takes longer for the issues that have been identified in non-security projects to be addressed the fast response times for security projects indicate that developers are seeing to respond faster to identified issues and therefore automated code reviews can provide the rapid and immediate identification of issues. This is seen as to the reason why automated code checking has been adopted more rapidly for security projects than for non-security projects.

Description

السلام عليكم , سبب الرفض غير واضح وانا اضن بحثي ينطبق على الظوابط والاليات التي انبنت عليها المكتبه الرقمية السعودية التي تدعم الكفائات. قبل اتخاذ اي اجراء الرجاء الاطلاع على كشف الدرجات كي يوضح ما اثبت دراستي البحثيه وموافي للشروط والضوابط

Keywords

automated and manual code, non-security projects, manual code checking in security, Manual code review, non-security projects, repositories

Citation

Alsaqer, A. (2024). Qualitative and quantitative analysis of automated code review platforms (Master’s thesis, Queensland University of Technology). Queensland University of Technology.

Collections

Endorsement

Review

Supplemented By

Referenced By

Copyright owned by the Saudi Digital Library (SDL) © 2025