{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T15:45:38Z","timestamp":1750347938497,"version":"3.40.3"},"publisher-location":"Cham","reference-count":10,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783031213878"},{"type":"electronic","value":"9783031213885"}],"license":[{"start":{"date-parts":[[2022,1,1]],"date-time":"2022-01-01T00:00:00Z","timestamp":1640995200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2022,1,1]],"date-time":"2022-01-01T00:00:00Z","timestamp":1640995200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2022]]},"DOI":"10.1007\/978-3-031-21388-5_7","type":"book-chapter","created":{"date-parts":[[2022,11,13]],"date-time":"2022-11-13T20:22:02Z","timestamp":1668370922000},"page":"90-107","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":3,"title":["Analysing the\u00a0Relationship Between Dependency Definition and\u00a0Updating Practice When Using Third-Party Libraries"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-7332-2041","authenticated-orcid":false,"given":"Kristiina","family":"Rahkema","sequence":"first","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2400-501X","authenticated-orcid":false,"given":"Dietmar","family":"Pfahl","sequence":"additional","affiliation":[]}],"member":"297","published-online":{"date-parts":[[2022,11,14]]},"reference":[{"key":"7_CR1","doi-asserted-by":"crossref","unstructured":"Decan, A., Mens, T., Constantinou, E.: On the evolution of technical lag in the NPM package dependency network. In: 2018 IEEE International Conference on Software Maintenance and Evolution (ICSME), pp. 404\u2013414. IEEE (2018)","DOI":"10.1109\/ICSME.2018.00050"},{"key":"7_CR2","doi-asserted-by":"crossref","unstructured":"Derr, E., Bugiel, S., Fahl, S., Acar, Y., Backes, M.: Keep me updated: an empirical study of third-party library updatability on android. In: Proceedings of the 2017 ACM SIGSAC Conference on Computer and Communications Security, pp. 2187\u20132200 (2017)","DOI":"10.1145\/3133956.3134059"},{"key":"7_CR3","unstructured":"Ilseman, M.: Swift ABI Stability Manifesto (2022), github.com. https:\/\/github.com\/apple\/swift\/blob\/main\/docs\/ABIStabilityManifesto.md. Accessed 17 Aug 2022"},{"key":"7_CR4","doi-asserted-by":"publisher","unstructured":"Kikas, R., Gousios, G., Dumas, M., Pfahl, D.: Structure and evolution of package dependency networks. In: 2017 IEEE\/ACM 14th International Conference on Mining Software Repositories (MSR), pp. 102\u2013112 (2017). https:\/\/doi.org\/10.1109\/MSR.2017.55","DOI":"10.1109\/MSR.2017.55"},{"issue":"1","key":"7_CR5","doi-asserted-by":"publisher","first-page":"384","DOI":"10.1007\/s10664-017-9521-5","volume":"23","author":"RG Kula","year":"2018","unstructured":"Kula, R.G., German, D.M., Ouni, A., Ishio, T., Inoue, K.: Do developers update their library dependencies? Empir. Softw. Eng. 23(1), 384\u2013417 (2018)","journal-title":"Empir. Softw. Eng."},{"key":"7_CR6","unstructured":"OWASP: M5: Insufficient Cryptography (2016). https:\/\/owasp.org\/www-project-mobile-top-10\/2016-risks\/m5-insufficient-cryptography. Accessed 3 Mar 2022"},{"key":"7_CR7","doi-asserted-by":"publisher","unstructured":"Rahkema, K., Pfahl, D.: Analysis of Dependency Networks of Package Managers Used in iOS Development, June 2022. https:\/\/doi.org\/10.36227\/techrxiv.20088539.v1","DOI":"10.36227\/techrxiv.20088539.v1"},{"key":"7_CR8","doi-asserted-by":"crossref","unstructured":"Rahkema, K., Pfahl, D.: Dataset: dependency networks of open source libraries available through CocoaPods, Carthage and Swift PM. In: 2022 IEEE\/ACM 19th International Conference on Mining Software Repositories (MSR), pp. 393\u2013397. IEEE (2022)","DOI":"10.1145\/3524842.3528016"},{"key":"7_CR9","doi-asserted-by":"crossref","unstructured":"Salza, P., Palomba, F., Di Nucci, D., D\u2019Uva, C., De Lucia, A., Ferrucci, F.: Do developers update third-party libraries in mobile apps? In: Proceedings of the 26th Conference on Program Comprehension, pp. 255\u2013265 (2018)","DOI":"10.1145\/3196321.3196341"},{"key":"7_CR10","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"95","DOI":"10.1007\/978-3-319-90421-4_6","volume-title":"New Opportunities for Software Reuse","author":"A Zerouali","year":"2018","unstructured":"Zerouali, A., Constantinou, E., Mens, T., Robles, G., Gonz\u00e1lez-Barahona, J.: An empirical analysis of technical lag in NPM package dependencies. In: Capilla, R., Gallina, B., Cetina, C. (eds.) ICSR 2018. LNCS, vol. 10826, pp. 95\u2013110. Springer, Cham (2018). https:\/\/doi.org\/10.1007\/978-3-319-90421-4_6"}],"container-title":["Lecture Notes in Computer Science","Product-Focused Software Process Improvement"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-21388-5_7","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,11,14]],"date-time":"2022-11-14T00:04:15Z","timestamp":1668384255000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-21388-5_7"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022]]},"ISBN":["9783031213878","9783031213885"],"references-count":10,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-21388-5_7","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2022]]},"assertion":[{"value":"14 November 2022","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"PROFES","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Product-Focused Software Process Improvement","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Jyv\u00e4skyl\u00e4","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Finland","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2022","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"21 November 2022","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"23 November 2022","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"23","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"profes2022","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/www.jyu.fi\/it\/en\/research\/scholarly-events\/profes2022","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Single-blind","order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"EasyChair","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"75","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"24","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"9","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"32% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"2.9","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"No","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"6 poster paper and 8 workshop and tutorial papers included in this proceedings","order":10,"name":"additional_info_on_review_process","label":"Additional Info on Review Process","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}}]}}