{"id":"W3147362533","doi":"10.1007/s10664-021-09944-w","title":"Revisiting the VCCFinder approach for the identification of vulnerability-contributing commits","year":2021,"lang":"en","type":"article","venue":"Empirical Software Engineering","topic":"Software Engineering Research","field":"Computer Science","cited_by":14,"is_retracted":false,"has_abstract":true,"ca_institutions":"Université du Québec à Montréal","funders":"Fonds National de la Recherche Luxembourg; European Commission","keywords":"Commit; Computer science; Identification (biology); Vulnerability (computing); Replicate; Artificial intelligence; Machine learning; Replication (statistics); Software; Set (abstract data type); Software deployment; Data science; Software engineering; Computer security; Programming language; Database","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.01113192,0.0009017745,0.001182221,0.007992432,0.001363106,0.002496773,0.0032542,0.002480243,0.002007028],"category_scores_gemma":[0.05187663,0.0004783786,0.0009182373,0.002585086,0.001903447,0.00380573,0.00330746,0.003297958,0.001307981],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.001232031,"about_ca_system_score_gemma":0.003130806,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.004763141,"about_ca_topic_score_gemma":0.007726825,"domain_scores_codex":[0.9895902,0.003704948,0.0007252797,0.002583468,0.002861608,0.0005345481],"domain_scores_gemma":[0.9181747,0.04551781,0.007017333,0.01410743,0.0137367,0.001445949],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"design_other","study_design_gemma":"observational","study_design_scores_codex":[0.0006035688,0.001163068,0.1125926,0.0007908139,0.0002760876,0.0007455966,0.001853422,0.08489836,0.01362435,0.01540317,0.02618558,0.7418635],"study_design_scores_gemma":[0.00003636199,0.0001976444,0.01003846,0.0001697654,0.00004410754,0.0005205762,0.0005211318,0.9510382,0.01166337,0.01816056,0.007540364,0.0000694746],"study_design_candidate":"observational","study_design_consensus":null,"genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.1678416,0.0008728754,0.8099133,0.001716246,0.0002704246,0.0005636287,0.002296069,0.01237735,0.004148531],"genre_scores_gemma":[0.5666488,0.0001411701,0.4250371,0.0003754845,0.0001497364,0.00031259,0.003972861,0.0004073158,0.00295492],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.01113192,"threshold_uncertainty_score":0.05887198,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.03679435711364231,"score_gpt":0.3062734892830032,"score_spread":0.2694791321693609,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}