• Home
  • Search
  • Fix-it: An extensible code auto-fix component in Review Bot
  • Cite Icon20
  • https://doi.org/10.1109/scam.2013.6648198Copy DOI Icon

Fix-it: An extensible code auto-fix component in Review Bot

  • Sep 1, 2013
  • Vipin Balachandran
Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

Coding standard violations, defect patterns and non-conformance to best practices are abundant in checked-in source code. This often leads to unmaintainable code and potential bugs in later stages of software life cycle. It is important to detect and correct these issues early in the development cycle, when it is less expensive to fix. Even though static analysis techniques such as tool-assisted code review are effective in addressing this problem, there is significant amount of human effort involved in identifying the source code issues and fixing it. Review Bot is a tool designed to reduce the human effort and improve the quality in code reviews by generating automatic reviews using static analysis output. In this paper, we propose an extension to Review Bot- addition of a component called Fix-it for the auto-correction of various source code issues using Abstract Syntax Tree (AST) transformations. Fix-it uses built-in fixes to automatically fix various issues reported by the auto-reviewer component in Review Bot, thereby reducing the human effort to greater extent. Fix-it is designed to be highly extensible-users can add support for the detection of new defect patterns using XPath or XQuery and provide fixes for it based on AST transformations written in a high-level programming language. It allows the user to treat the AST as a DOM tree and run XQuery UPDATE expressions to perform AST transformations as part of a fix. Fix-it also includes a designer application which enables Review Bot administrators to design new defect patterns and fixes. The developer feedback on a stand-alone prototype indicates the possibility of significant human effort reduction in code reviews using Fix-it.

Similar Papers
  • Dissertation

Data flow and heap analysis with application to privilege escalation vulnerability scanning and software theft detection

  • Jan 01, 2013
  • Ping-Fai Chan
  • Conference Article
  • Citations77

Integrating Static and Dynamic Analysis for Detecting Vulnerabilities

  • Jan 01, 2006
  • Ashish Aggarwal +1
  • Conference Article
  • Citations17

Peer code review in open source communitiesusing reviewboard

  • Oct 21, 2012
  • Amiangshu Bosu +1
  • PDF
  • Research Article
  • Citations5

An Approach for Detecting Feasible Paths Based on Minimal SSA Representation and Symbolic Execution

  • Jun 10, 2021
  • Applied Sciences
  • Abdalla Wasef Marashdih +2
  • PDF
  • Research Article
  • Citations1

Risk management at the stages of the life cycle of NPP projects

  • Jan 01, 2023
  • E3S Web of Conferences
  • Mohammad Ashraideh +1
  • Research Article
  • Citations177

Automatically Recommending Peer Reviewers in Modern Code Review

  • Jun 01, 2016
  • IEEE Transactions on Software Engineering
  • Motahareh Bahrami Zanjani +2
  • Book Chapter
  • Citations3

A Model for Security Vulnerability Pattern

  • Jan 01, 2006
  • Hyungwoo Kang +3
  • PDF
  • Research Article
  • Citations67

Malware Classification Using Probability Scoring and Machine Learning

  • Jan 01, 2019
  • IEEE Access
  • Di Xue +4
  • PDF
  • Research Article
  • Citations4

Predicting Software Flaws with Low Complexity Models based on Static Analysis Data

  • Apr 14, 2018
  • Journal of Information Systems Engineering & Management
  • Paulo Meirelles +4
  • Research Article
  • Citations28

Affect Recognition in Code Review: An In-situ Biometric Study of Reviewer’s Affect

  • Oct 08, 2019
  • Journal of Systems and Software
  • Hana Vrzakova +3
  • Conference Article
  • Citations15

DTS - A Software Defects Testing System

  • Sep 01, 2008
  • Zhao Hong Yang +3
  • Conference Article
  • Citations23

Rebasing in Code Review Considered Harmful: A Large-Scale Empirical Investigation

  • Sep 01, 2019
  • Matheus Paixao +1
  • Research Article
  • Citations7

Empirical analysis of security-related code reviews in npm packages

  • May 19, 2023
  • Journal of Systems and Software
  • Mahmoud Alfadel +4
  • Research Article

Money management practices followed by selected homemakers in different stages of life cycle

  • Jan 15, 2022
  • INTERNATIONAL JOURNAL OF AGRICULTURAL SCIENCES
  • Madhuri Kulkarni +1
  • Research Article

An Integrated Cybersecurity Framework for Software Development and Risk‐Aware Practices in the SDLC

  • Dec 28, 2025
  • Journal of Software: Evolution and Process
  • Hussein A Al Hashimi
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.