Finding Bugs is Only the Beginning


CodeSonar discovers and explains software defects and provides code understanding capabilities that assist with investigation of defects.

How does one judge the quality of a static analysis tool? It’s meaningful to talk about the quality of the lists produced by the tool. What is the precision? The recall?

