{"id":"W4417132535","doi":"10.1109/saner-c66551.2025.00018","title":"Usability of Static Application Security Testing Workflows","year":2025,"lang":"","type":"article","venue":"","topic":"Web Application Security Vulnerabilities","field":"Computer Science","cited_by":1,"is_retracted":false,"has_abstract":true,"ca_institutions":"McGill University","funders":"","keywords":"Usability; Workflow; Usability inspection; Key (lock); Cognitive walkthrough; Web usability; Vulnerability (computing); Pluralistic walkthrough","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.04397497,0.001863108,0.001287768,0.006751497,0.001680211,0.005365387,0.002384372,0.001216442,0.003206582],"category_scores_gemma":[0.1489605,0.001235713,0.00174982,0.002846309,0.001572041,0.003644813,0.003777659,0.001727161,0.001599705],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.002143629,"about_ca_system_score_gemma":0.003484873,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.006196049,"about_ca_topic_score_gemma":0.004967119,"domain_scores_codex":[0.9578497,0.01788886,0.005740565,0.003854875,0.01234533,0.002320767],"domain_scores_gemma":[0.791033,0.1342544,0.008853422,0.03049233,0.03135618,0.004010691],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"design_other","study_design_gemma":"observational","study_design_scores_codex":[0.005093451,0.002220561,0.07228243,0.004977568,0.0005130367,0.003918068,0.02763914,0.02390986,0.05795167,0.005166038,0.02411858,0.7722095],"study_design_scores_gemma":[0.001986507,0.009940503,0.2062712,0.009839052,0.001393547,0.008031159,0.0262602,0.278935,0.1820985,0.02662876,0.246094,0.002521506],"study_design_candidate":"observational","study_design_consensus":null,"genre_codex":"empirical","genre_gemma":"empirical","genre_scores_codex":[0.7642714,0.001978058,0.1589137,0.00196971,0.0005483378,0.002555187,0.002077474,0.05134273,0.01634324],"genre_scores_gemma":[0.8794574,0.0006652139,0.1073529,0.0004527103,0.00008641314,0.0007462422,0.002351644,0.005279044,0.003608457],"genre_candidate":"empirical","genre_consensus":"empirical","teacher_disagreement_score":0.04397497,"threshold_uncertainty_score":0.2325646,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.01941067974883095,"score_gpt":0.2874389405714528,"score_spread":0.2680282608226218,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}