{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,9,11]],"date-time":"2025-09-11T19:30:13Z","timestamp":1757619013151,"version":"3.44.0"},"reference-count":40,"publisher":"Springer Science and Business Media LLC","issue":"7","license":[{"start":{"date-parts":[[2025,7,1]],"date-time":"2025-07-01T00:00:00Z","timestamp":1751328000000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2025,7,1]],"date-time":"2025-07-01T00:00:00Z","timestamp":1751328000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"funder":[{"DOI":"10.13039\/501100012456","name":"National Social Science Fund of China","doi-asserted-by":"publisher","award":["22CTQ029"],"award-info":[{"award-number":["22CTQ029"]}],"id":[{"id":"10.13039\/501100012456","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Scientometrics"],"published-print":{"date-parts":[[2025,7]]},"DOI":"10.1007\/s11192-025-05366-3","type":"journal-article","created":{"date-parts":[[2025,7,16]],"date-time":"2025-07-16T15:56:53Z","timestamp":1752681413000},"page":"3961-3985","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Identification of important software based on software dependency graph"],"prefix":"10.1007","volume":"130","author":[{"given":"Xiaotong","family":"Hu","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ziwei","family":"Chen","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-7552-6769","authenticated-orcid":false,"given":"Lingyun","family":"Situ","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xuelian","family":"Pan","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jin","family":"Shi","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2025,7,16]]},"reference":[{"key":"5366_CR1","doi-asserted-by":"publisher","first-page":"106365","DOI":"10.1016\/j.infsof.2020.106365","volume":"126","author":"A Abdellatif","year":"2020","unstructured":"Abdellatif, A., Zeng, Y., Elshafei, M., Shihab, E., & Shang, W. (2020). Simplifying the search of npm packages. Information and Software Technology, 126, 106365.","journal-title":"Information and Software Technology"},{"issue":"3","key":"5366_CR2","doi-asserted-by":"publisher","first-page":"59","DOI":"10.1007\/s10664-022-10278-4","volume":"28","author":"M Alfadel","year":"2023","unstructured":"Alfadel, M., Costa, D. E., & Shihab, E. (2023). Empirical analysis of security vulnerabilities in python packages. Empirical Software Engineering, 28(3), 59.","journal-title":"Empirical Software Engineering"},{"key":"5366_CR3","doi-asserted-by":"crossref","unstructured":"Borges, H., Hora, A., & Valente, M.T. (2016). Understanding the factors that impact the popularity of GitHub repositories. 2016 IEEE International Conference on Software Maintenance and Evolution (ICSME) (pp. 334\u2013344).","DOI":"10.1109\/ICSME.2016.31"},{"issue":"8","key":"5366_CR4","doi-asserted-by":"publisher","first-page":"2695","DOI":"10.1109\/TSE.2021.3068901","volume":"48","author":"MAR Chowdhury","year":"2021","unstructured":"Chowdhury, M. A. R., Abdalkareem, R., Shihab, E., & Adams, B. (2021). On the untriviality of trivial packages: An empirical study of npm javascript packages. IEEE Transactions on Software Engineering, 48(8), 2695\u20132708.","journal-title":"IEEE Transactions on Software Engineering"},{"key":"5366_CR5","doi-asserted-by":"crossref","unstructured":"Dey, T., & Mockus, A. (2018). Are software dependency supply chain metrics useful in predicting change of popularity of npm packages? Proceedings of the 14th International Conference on Predictive Models and Data Analytics in Software Engineering (pp. 66\u201369).","DOI":"10.1145\/3273934.3273942"},{"key":"5366_CR6","doi-asserted-by":"crossref","unstructured":"Fang, H., Herbsleb, J., & Vasilescu, B. (2024). Novelty begets popularity, but curbs participation-a macroscopic view of the python open-source ecosystem. Proceedings of the 46th IEEE\/ACM International Conference on Software Engineering (pp. 1\u201311).","DOI":"10.1145\/3597503.3608142"},{"key":"5366_CR7","doi-asserted-by":"publisher","first-page":"35","DOI":"10.2307\/3033543","volume":"40","author":"LC Freeman","year":"1977","unstructured":"Freeman, L. C. (1977). A set of measures of centrality based on betweenness. Sociometry, 40, 35\u201341.","journal-title":"Sociometry"},{"key":"5366_CR8","doi-asserted-by":"crossref","unstructured":"Han, J., Deng, S., Xia, X., Wang, D., & Yin, J. (2019). Characterization and prediction of popular projects on GitHub. 2019 IEEE 43rd Annual Computer Software and Applications Conference (COMPSAC) (Vol.\u00a01, pp. 21\u201326).","DOI":"10.1109\/COMPSAC.2019.00013"},{"issue":"5","key":"5366_CR9","doi-asserted-by":"publisher","first-page":"102","DOI":"10.1007\/s10664-021-10071-9","volume":"27","author":"J Hejderup","year":"2022","unstructured":"Hejderup, J., Beller, M., Triantafyllou, K., & Gousios, G. (2022). Pr\u00e4zi: From package-based to call-based dependency networks. Empirical Software Engineering, 27(5), 102.","journal-title":"Empirical Software Engineering"},{"key":"5366_CR10","unstructured":"Hettrick, S., Antonioletti, M., Carr, L., Chue\u00a0Hong, N., Crouch, S., De\u00a0Roure, D.C. others (2014). UK research software survey 2014."},{"issue":"9","key":"5366_CR11","doi-asserted-by":"publisher","first-page":"2137","DOI":"10.1002\/asi.23538","volume":"67","author":"J Howison","year":"2016","unstructured":"Howison, J., & Bullard, J. (2016). Software in the scientific literature: Problems with seeing, finding, and using software mentioned in the biology literature. Journal of the Association for Information Science and Technology, 67(9), 2137\u20132155.","journal-title":"Journal of the Association for Information Science and Technology"},{"issue":"4","key":"5366_CR12","doi-asserted-by":"publisher","first-page":"90","DOI":"10.1007\/s10664-022-10131-8","volume":"27","author":"K Huang","year":"2022","unstructured":"Huang, K., Chen, B., Xu, C., Wang, Y., Shi, B., Peng, X., & Liu, Y. (2022). Characterizing usages, updates and risks of third-party libraries in java projects. Empirical Software Engineering, 27(4), 90.","journal-title":"Empirical Software Engineering"},{"key":"5366_CR13","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/s13278-019-0619-1","volume":"10","author":"G Korkmaz","year":"2020","unstructured":"Korkmaz, G., Kelling, C., Robbins, C., & Keller, S. (2020). Modeling the impact of Python and R packages using dependency and contributor networks. Social Network Analysis and Mining, 10, 1\u201312.","journal-title":"Social Network Analysis and Mining"},{"key":"5366_CR14","doi-asserted-by":"crossref","unstructured":"Kula, R.G., De\u00a0Roover, C., German, D.M., Ishio, T., & Inoue, K. (2018). A generalized model for visualizing library popularity, adoption, and diffusion within a software ecosystem. 2018 IEEE 25th International Conference on Software Analysis, Evolution and Reengineering (SANER) (pp. 288\u2013299).","DOI":"10.1109\/SANER.2018.8330217"},{"key":"5366_CR15","doi-asserted-by":"crossref","unstructured":"Larios\u00a0Vargas, E., Aniche, M., Treude, C., Bruntink, M., & Gousios, G. (2020). Selecting third-party libraries: The practitioners\u2019 perspective. Proceedings of the 28th ACM Joint Meeting on European Software Engineering Conference and Symposium on the Foundations of Software Engineering (pp. 245\u2013256).","DOI":"10.1145\/3368089.3409711"},{"key":"5366_CR16","doi-asserted-by":"crossref","unstructured":"Latendresse, J., Mujahid, S., Costa, D.E., & Shihab, E. (2022). Not all dependencies are equal: An empirical study on production dependencies in npm. Proceedings of the 37th IEEE\/ACM International Conference on Automated Software Engineering (pp. 1\u201312).","DOI":"10.1145\/3551349.3556896"},{"key":"5366_CR17","doi-asserted-by":"publisher","first-page":"3396","DOI":"10.1007\/s10664-020-09840-9","volume":"25","author":"D Lee","year":"2020","unstructured":"Lee, D., Rajbahadur, G. K., Lin, D., Sayagh, M., Bezemer, C.-P., & Hassan, A. E. (2020). An empirical study of the characteristics of popular Minecraft mods. Empirical Software Engineering, 25, 3396\u20133429.","journal-title":"Empirical Software Engineering"},{"issue":"1","key":"5366_CR18","doi-asserted-by":"publisher","first-page":"87","DOI":"10.1016\/j.joi.2017.12.001","volume":"12","author":"K Li","year":"2018","unstructured":"Li, K., & Yan, E. (2018). Co-mention network of R packages: Scientific impact and clustering structure. Journal of Informetrics, 12(1), 87\u2013100.","journal-title":"Journal of Informetrics"},{"key":"5366_CR19","doi-asserted-by":"crossref","unstructured":"Liu, C., Chen, S., Fan, L., Chen, B., Liu, Y., & Peng, X. (2022). Demystifying the vulnerability propagation and its evolution via dependency trees in the npm ecosystem. Proceedings of the 44th International Conference on Software Engineering (pp. 672\u2013684).","DOI":"10.1145\/3510003.3510142"},{"key":"5366_CR20","doi-asserted-by":"crossref","unstructured":"Ma, Y. (2018). Constructing supply chains in open source software. Proceedings of the 40th International Conference on Software Engineering: Companion Proceeedings (pp. 458\u2013459).","DOI":"10.1145\/3183440.3183454"},{"key":"5366_CR21","doi-asserted-by":"publisher","first-page":"103669","DOI":"10.1016\/j.cose.2023.103669","volume":"139","author":"AG M\u00e1rquez","year":"2024","unstructured":"M\u00e1rquez, A. G., Varela-Vaca, \u00c1. J., L\u00f3pez, M. T. G., Galindo, J. A., & Benavides, D. (2024). Vulnerability impact analysis in software project dependencies based on satisfiability modulo theories (SMT). Computers & Security, 139, 103669.","journal-title":"Computers & Security"},{"key":"5366_CR22","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/s11432-017-9240-4","volume":"60","author":"H Mei","year":"2017","unstructured":"Mei, H. (2017). Understanding \u201csoftware-defined\u2019\u2019 from an OS perspective: Technical challenges and research issues. Science China Information Sciences, 60, 1\u20133.","journal-title":"Science China Information Sciences"},{"issue":"7563","key":"5366_CR23","doi-asserted-by":"publisher","first-page":"65","DOI":"10.1038\/nature14604","volume":"524","author":"F Morone","year":"2015","unstructured":"Morone, F., & Makse, H. A. (2015). Influence maximization in complex networks through optimal percolation. Nature, 524(7563), 65\u201368.","journal-title":"Nature"},{"key":"5366_CR24","doi-asserted-by":"publisher","DOI":"10.1016\/j.jss.2022.111588","volume":"198","author":"S Mujahid","year":"2023","unstructured":"Mujahid, S., Abdalkareem, R., & Shihab, E. (2023). What are the characteristics of highly-selected packages? A case study on the npm ecosystem. Journal of Systems and Software, 198, Article 111588.","journal-title":"Journal of Systems and Software"},{"key":"5366_CR25","doi-asserted-by":"crossref","unstructured":"Mujahid, S., Costa, D.E., Abdalkareem, R., & Shihab, E. (2023). Where to go now? finding alternatives for declining packages in the npm ecosystem. 2023 38th IEEE\/ACM International Conference on Automated Software Engineering (ASE) (pp. 1628\u20131639).","DOI":"10.1109\/ASE56229.2023.00119"},{"issue":"6","key":"5366_CR26","doi-asserted-by":"publisher","first-page":"3618","DOI":"10.1109\/TEM.2021.3122012","volume":"69","author":"S Mujahid","year":"2021","unstructured":"Mujahid, S., Costa, D. E., Abdalkareem, R., Shihab, E., Saied, M. A., & Adams, B. (2021). Toward using package centrality trend to identify packages in decline. IEEE Transactions on Engineering Management, 69(6), 3618\u20133632.","journal-title":"IEEE Transactions on Engineering Management"},{"key":"5366_CR27","doi-asserted-by":"crossref","unstructured":"Ohm, M., Sykosch, A., & Meier, M. (2020). Towards detection of software supply chain attacks by forensic artifacts. Proceedings of the 15th International Conference on Availability, Reliability and Security (pp. 1\u20136).","DOI":"10.1145\/3407023.3409183"},{"issue":"10","key":"5366_CR28","doi-asserted-by":"publisher","first-page":"2272","DOI":"10.1109\/TSE.2019.2946357","volume":"47","author":"W Pan","year":"2019","unstructured":"Pan, W., Ming, H., Chang, C. K., Yang, Z., & Kim, D.-K. (2019). Elementrank: Ranking java software classes and packages using a multilayer complex network-based approach. IEEE Transactions on Software Engineering, 47(10), 2272\u20132295.","journal-title":"IEEE Transactions on Software Engineering"},{"issue":"2","key":"5366_CR29","doi-asserted-by":"publisher","first-page":"481","DOI":"10.1016\/j.joi.2018.03.005","volume":"12","author":"X Pan","year":"2018","unstructured":"Pan, X., Yan, E., Cui, M., & Hua, W. (2018). Examining the usage, citation, and diffusion patterns of bibliometric mapping software: A comparative study of three tools. Journal of Informetrics, 12(2), 481\u2013493.","journal-title":"Journal of Informetrics"},{"issue":"1","key":"5366_CR30","doi-asserted-by":"publisher","first-page":"397","DOI":"10.1016\/j.joi.2019.02.002","volume":"13","author":"X Pan","year":"2019","unstructured":"Pan, X., Yan, E., Cui, M., & Hua, W. (2019). How important is software to library and information science research? A content analysis of full-text publications. Journal of Informetrics, 13(1), 397\u2013406.","journal-title":"Journal of Informetrics"},{"issue":"6","key":"5366_CR31","doi-asserted-by":"publisher","first-page":"139","DOI":"10.1007\/s10664-023-10355-2","volume":"28","author":"R Paramitha","year":"2023","unstructured":"Paramitha, R., & Massacci, F. (2023). Technical leverage analysis in the python ecosystem. Empirical Software Engineering, 28(6), 139.","journal-title":"Empirical Software Engineering"},{"key":"5366_CR32","volume-title":"Encyclopedia of Biostatistics","author":"TL Saaty","year":"2005","unstructured":"Saaty, T. L. (2005). Analytic hierarchy process. Encyclopedia of Biostatistics. McGraw-Hill."},{"issue":"9","key":"5366_CR33","first-page":"e2265","volume":"32","author":"M Saini","year":"2020","unstructured":"Saini, M., Verma, R., Singh, A., & Chahal, K. K. (2020). Investigating diversity and impact of the popularity metrics for ranking software packages. Journal of Software, 32(9), e2265.","journal-title":"Journal of Software"},{"key":"5366_CR34","doi-asserted-by":"publisher","first-page":"5027","DOI":"10.1109\/TSE.2023.3324950","volume":"11","author":"C Soto-Valero","year":"2023","unstructured":"Soto-Valero, C., Tiwari, D., Toady, T., & Baudry, B. (2023). Automatic specialization of third-party Java dependencies. IEEE Transactions on Software Engineering, 11, 5027.","journal-title":"IEEE Transactions on Software Engineering"},{"key":"5366_CR35","doi-asserted-by":"crossref","unstructured":"Zahan, N., Zimmermann, T., Godefroid, P., Murphy, B., Maddila, C., & Williams, L. (2022). What are weak links in the npm supply chain? Proceedings of the 44th International Conference on Software Engineering: Software Engineering in Practice (pp. 331\u2013340).","DOI":"10.1145\/3510457.3513044"},{"issue":"5","key":"5366_CR36","doi-asserted-by":"publisher","first-page":"107","DOI":"10.1007\/s10664-022-10154-1","volume":"27","author":"A Zerouali","year":"2022","unstructured":"Zerouali, A., Mens, T., Decan, A., & De Roover, C. (2022). On the impact of security vulnerabilities in the npm and rubygems dependency networks. Empirical Software Engineering, 27(5), 107.","journal-title":"Empirical Software Engineering"},{"key":"5366_CR37","doi-asserted-by":"crossref","unstructured":"Zerouali, A., Mens, T., Robles, G., & Gonzalez-Barahona, J.M. (2019). On the diversity of software package popularity metrics: An empirical study of npm. 2019 IEEE 26th International Conference on Software Analysis, Evolution and Reengineering (SANER) (pp. 589\u2013593).","DOI":"10.1109\/SANER.2019.8667997"},{"key":"5366_CR38","doi-asserted-by":"crossref","unstructured":"Zhan, X., Fan, L., Chen, S., We, F., Liu, T., Luo, X., Liu, Y. (2021). Atvhunter: Reliable version detection of third-party libraries for vulnerability identification in android applications. 2021 IEEE\/ACM 43rd International Conference on Software Engineering (ICSE) (pp. 1695\u20131707).","DOI":"10.1109\/ICSE43902.2021.00150"},{"issue":"1","key":"5366_CR39","doi-asserted-by":"publisher","first-page":"27823","DOI":"10.1038\/srep27823","volume":"6","author":"J-X Zhang","year":"2016","unstructured":"Zhang, J.-X., Chen, D.-B., Dong, Q., & Zhao, Z.-D. (2016). Identifying a set of influential spreaders in complex networks. Scientific Reports, 6(1), 27823.","journal-title":"Scientific Reports"},{"key":"5366_CR40","unstructured":"Zimmermann, M., Staicu, C.-A., Tenny, C., & Pradel, M. (2019). Small world with high risks: A study of security threats in the npm ecosystem. 28th Usenix Security Symposium (Usenix security 19) (pp. 995\u20131010)."}],"container-title":["Scientometrics"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11192-025-05366-3.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s11192-025-05366-3\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11192-025-05366-3.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,9,7]],"date-time":"2025-09-07T12:42:57Z","timestamp":1757248977000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s11192-025-05366-3"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,7]]},"references-count":40,"journal-issue":{"issue":"7","published-print":{"date-parts":[[2025,7]]}},"alternative-id":["5366"],"URL":"https:\/\/doi.org\/10.1007\/s11192-025-05366-3","relation":{},"ISSN":["0138-9130","1588-2861"],"issn-type":[{"type":"print","value":"0138-9130"},{"type":"electronic","value":"1588-2861"}],"subject":[],"published":{"date-parts":[[2025,7]]},"assertion":[{"value":"7 December 2024","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"10 June 2025","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"16 July 2025","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"The authors declare that they have no Conflicts of interest.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Conflicts of interest"}}]}}