{"id":"https://openalex.org/W2954043978","doi":"https://doi.org/10.1109/msr.2019.00089","title":"ConPan: A Tool to Analyze Packages in Software Containers","display_name":"ConPan: A Tool to Analyze Packages in Software Containers","publication_year":2019,"publication_date":"2019-05-01","ids":{"openalex":"https://openalex.org/W2954043978","doi":"https://doi.org/10.1109/msr.2019.00089","mag":"2954043978"},"language":"en","primary_location":{"id":"doi:10.1109/msr.2019.00089","is_oa":false,"landing_page_url":"https://doi.org/10.1109/msr.2019.00089","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2019 IEEE/ACM 16th International Conference on Mining Software Repositories (MSR)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5056738223","display_name":"Ahmed Zerouali","orcid":"https://orcid.org/0000-0002-2676-3730"},"institutions":[{"id":"https://openalex.org/I130929987","display_name":"University of Mons","ror":"https://ror.org/02qnnz951","country_code":"BE","type":"education","lineage":["https://openalex.org/I130929987"]}],"countries":["BE"],"is_corresponding":true,"raw_author_name":"Ahmed Zerouali","raw_affiliation_strings":["University of Mons, Belgium"],"affiliations":[{"raw_affiliation_string":"University of Mons, Belgium","institution_ids":["https://openalex.org/I130929987"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5045308977","display_name":"Valerio Cosentino","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Valerio Cosentino","raw_affiliation_strings":["Bitergia, Spain"],"affiliations":[{"raw_affiliation_string":"Bitergia, Spain","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5061131972","display_name":"Greg\u00f3rio Robles","orcid":"https://orcid.org/0000-0002-1442-6761"},"institutions":[{"id":"https://openalex.org/I182083151","display_name":"Universidad Rey Juan Carlos","ror":"https://ror.org/01v5cv687","country_code":"ES","type":"education","lineage":["https://openalex.org/I182083151"]}],"countries":["ES"],"is_corresponding":false,"raw_author_name":"Gregorio Robles","raw_affiliation_strings":["Universidad Rey Juan Carlos, Spain"],"affiliations":[{"raw_affiliation_string":"Universidad Rey Juan Carlos, Spain","institution_ids":["https://openalex.org/I182083151"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5066580987","display_name":"Jes\u00fas M. Gonz\u00e1lez-Barahona","orcid":"https://orcid.org/0000-0001-9682-460X"},"institutions":[{"id":"https://openalex.org/I182083151","display_name":"Universidad Rey Juan Carlos","ror":"https://ror.org/01v5cv687","country_code":"ES","type":"education","lineage":["https://openalex.org/I182083151"]}],"countries":["ES"],"is_corresponding":false,"raw_author_name":"Jesus M. Gonzalez-Barahona","raw_affiliation_strings":["Universidad Rey Juan Carlos, Spain"],"affiliations":[{"raw_affiliation_string":"Universidad Rey Juan Carlos, Spain","institution_ids":["https://openalex.org/I182083151"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5060239584","display_name":"Tom Mens","orcid":"https://orcid.org/0000-0003-3636-5020"},"institutions":[{"id":"https://openalex.org/I130929987","display_name":"University of Mons","ror":"https://ror.org/02qnnz951","country_code":"BE","type":"education","lineage":["https://openalex.org/I130929987"]}],"countries":["BE"],"is_corresponding":false,"raw_author_name":"Tom Mens","raw_affiliation_strings":["University of Mons, Belgium"],"affiliations":[{"raw_affiliation_string":"University of Mons, Belgium","institution_ids":["https://openalex.org/I130929987"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5056738223"],"corresponding_institution_ids":["https://openalex.org/I130929987"],"apc_list":null,"apc_paid":null,"fwci":1.0545,"has_fulltext":false,"cited_by_count":7,"citation_normalized_percentile":{"value":0.83211295,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":96},"biblio":{"volume":null,"issue":null,"first_page":"592","last_page":"596"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12127","display_name":"Software System Performance and Reliability","score":0.9988999962806702,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.998199999332428,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/devops","display_name":"DevOps","score":0.7590006589889526},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7336005568504333},{"id":"https://openalex.org/keywords/software-portability","display_name":"Software portability","score":0.730315625667572},{"id":"https://openalex.org/keywords/microservices","display_name":"Microservices","score":0.6606687903404236},{"id":"https://openalex.org/keywords/software-engineering","display_name":"Software engineering","score":0.6065603494644165},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.4925990700721741},{"id":"https://openalex.org/keywords/scripting-language","display_name":"Scripting language","score":0.45318976044654846},{"id":"https://openalex.org/keywords/variety","display_name":"Variety (cybernetics)","score":0.4175242781639099},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.3330736756324768},{"id":"https://openalex.org/keywords/software-deployment","display_name":"Software deployment","score":0.2149198055267334},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.20891261100769043},{"id":"https://openalex.org/keywords/cloud-computing","display_name":"Cloud computing","score":0.11294835805892944}],"concepts":[{"id":"https://openalex.org/C9903902","wikidata":"https://www.wikidata.org/wiki/Q3025536","display_name":"DevOps","level":3,"score":0.7590006589889526},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7336005568504333},{"id":"https://openalex.org/C63000827","wikidata":"https://www.wikidata.org/wiki/Q3080428","display_name":"Software portability","level":2,"score":0.730315625667572},{"id":"https://openalex.org/C2778505942","wikidata":"https://www.wikidata.org/wiki/Q18344624","display_name":"Microservices","level":3,"score":0.6606687903404236},{"id":"https://openalex.org/C115903868","wikidata":"https://www.wikidata.org/wiki/Q80993","display_name":"Software engineering","level":1,"score":0.6065603494644165},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.4925990700721741},{"id":"https://openalex.org/C61423126","wikidata":"https://www.wikidata.org/wiki/Q187432","display_name":"Scripting language","level":2,"score":0.45318976044654846},{"id":"https://openalex.org/C136197465","wikidata":"https://www.wikidata.org/wiki/Q1729295","display_name":"Variety (cybernetics)","level":2,"score":0.4175242781639099},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3330736756324768},{"id":"https://openalex.org/C105339364","wikidata":"https://www.wikidata.org/wiki/Q2297740","display_name":"Software deployment","level":2,"score":0.2149198055267334},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.20891261100769043},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.11294835805892944},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/msr.2019.00089","is_oa":false,"landing_page_url":"https://doi.org/10.1109/msr.2019.00089","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2019 IEEE/ACM 16th International Conference on Mining Software Repositories (MSR)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.4099999964237213,"display_name":"Industry, innovation and infrastructure","id":"https://metadata.un.org/sdg/9"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":24,"referenced_works":["https://openalex.org/W1805474074","https://openalex.org/W1993114042","https://openalex.org/W2011301426","https://openalex.org/W2037786492","https://openalex.org/W2171859166","https://openalex.org/W2342249984","https://openalex.org/W2472803348","https://openalex.org/W2528321558","https://openalex.org/W2598200822","https://openalex.org/W2769066657","https://openalex.org/W2792590405","https://openalex.org/W2903126489","https://openalex.org/W2921999452","https://openalex.org/W2963620697","https://openalex.org/W3128261063","https://openalex.org/W3150635270","https://openalex.org/W4256420017","https://openalex.org/W4285719527","https://openalex.org/W6638282704","https://openalex.org/W6685149977","https://openalex.org/W6703928569","https://openalex.org/W6756857009","https://openalex.org/W6790614644","https://openalex.org/W6982728064"],"related_works":["https://openalex.org/W4361214931","https://openalex.org/W2790825102","https://openalex.org/W2889011733","https://openalex.org/W4200327854","https://openalex.org/W4387490256","https://openalex.org/W4306309376","https://openalex.org/W4283065844","https://openalex.org/W2884367066","https://openalex.org/W4229067906","https://openalex.org/W4309491067"],"abstract_inverted_index":{"Deploying":[0],"software":[1,10],"packages":[2,43,124],"and":[3,16,34,41,59,105,132,138,146,148],"services":[4],"into":[5],"containers":[6,37,53,104],"is":[7],"a":[8,144,159],"popular":[9,21],"engineering":[11],"practice":[12],"that":[13,44],"increases":[14],"portability":[15],"reusability.":[17],"Docker,":[18],"the":[19,48,52,84,99,121,149,156],"most":[20],"containerization":[22],"technology,":[23],"helps":[24],"DevOps":[25],"practitioners":[26,73],"in":[27,50,125,158],"their":[28,106,130],"daily":[29],"activities.":[30],"Despite":[31],"being":[32],"successfully":[33],"increasingly":[35],"employed,":[36],"may":[38],"include":[39],"buggy":[40],"vulnerable":[42],"put":[45],"at":[46],"risk":[47],"environments":[49],"which":[51],"have":[54],"been":[55],"deployed.":[56],"Existing":[57],"quality":[58],"security":[60,88,139],"monitoring":[61],"tools":[62],"provide":[63],"only":[64],"limited":[65],"support":[66],"to":[67,74,96,119,155],"analyze":[68],"Docker":[69,103,126],"containers,":[70,127],"thus":[71],"forcing":[72],"perform":[75],"additional":[76],"manual":[77],"work":[78],"or":[79],"develop":[80],"adhoc":[81],"scripts":[82],"when":[83],"analysis":[85,150],"goes":[86],"beyond":[87],"purposes.":[89],"This":[90],"limitation":[91],"also":[92],"affects":[93],"researchers":[94],"desiring":[95],"empirically":[97],"study":[98],"evolution":[100],"dynamics":[101],"of":[102,123,161],"contained":[107],"packages.":[108],"To":[109],"overcome":[110],"this":[111],"limitation,":[112],"we":[113],"present":[114],"ConPan,":[115],"an":[116],"automated":[117],"tool":[118],"inspect":[120],"characteristics":[122],"such":[128],"as":[129],"outdatedness":[131],"other":[133],"possible":[134],"flaws":[135],"(e.g.,":[136],"bugs":[137],"vulnerabilities).":[140],"ConPan":[141],"comes":[142],"with":[143],"CLI":[145],"API,":[147],"results":[151],"can":[152],"be":[153],"presented":[154],"user":[157],"variety":[160],"formats.":[162]},"counts_by_year":[{"year":2024,"cited_by_count":2},{"year":2023,"cited_by_count":2},{"year":2021,"cited_by_count":2},{"year":2020,"cited_by_count":1}],"updated_date":"2026-03-08T06:56:09.383167","created_date":"2025-10-10T00:00:00"}
