<div dir="ltr">hey guys,<div><br></div><div>was took me some time to catch up with the topic. (checked the sources on github and saw the slides.) first i think your tool has very nice catches on what barriers of the existing tools has. and made a good effort to integrate these tools for better user experience... here come my thoughts what i had during the exploration.</div><div><br></div><div>- there will be demand for functionality what the current `scan-build` does. (run against a build command and get static html files.)</div><div>- there is need to extend the current `scan-build` functionality. (add bug tracking capabilities, suppression, support independent viewers, etc..)</div><div><br></div><div>and i think the problems/requirements can be partitioned into independent tools. or existing implementations could be reused to save efforts... (i think Anna told the same, but more english :))<br></div><div><br></div><div>talking about code... there is an <a href="http://reviews.llvm.org/D9600" target="_blank">ongoing</a> rewrite of `scan-build`... from this implementation you could reuse the build command interception (to create compilation database) which use ld_preload on linux and osx, and have compiler wrappers for windows... also has the code to run the static analyzer and generate .plist files (support interposition too)... and would glad to implement `clang-tidy` config file support if that make any sense for the static analyzer too... or we can also come up with more traditional approaches to create compiler like script which runs the SA or `clang-tidy` only, and could be used from makefiles directly. (as still many lint like tools does.)... have you thought about to use sqlite instead of postgresql? it would definitely lower the bar for non experienced users (and the python api is part of standard library).</div><div><br></div><div>regards,</div><div>Laszlo</div></div><div class="gmail_extra"><br><div class="gmail_quote">On Fri, Nov 13, 2015 at 12:44 AM, Anna Zaks <span dir="ltr"><<a href="mailto:ganna@apple.com" target="_blank">ganna@apple.com</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><div style="word-wrap:break-word"><br><div><span class=""><blockquote type="cite"><div>On Nov 11, 2015, at 9:07 AM, Dániel Krupp <<a href="mailto:daniel.krupp@ericsson.com" target="_blank">daniel.krupp@ericsson.com</a>> wrote:</div><br><div><div style="font-family:Helvetica;font-size:12px;font-style:normal;font-variant:normal;font-weight:normal;letter-spacing:normal;text-align:start;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px"><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)">Hi Anna,<u></u><u></u></span></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"><u></u> <u></u></span></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)">First, thanks for looking into this.<u></u><u></u></span></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)">We are open to any suggestions that you feel necessary to get this accepted to LLVM/Clang as a bug-tracking solution…<u></u><u></u></span></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"><u></u> <u></u></span></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><b><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)">></span>- What would it take for this to replace scan-build?...<u></u><u></u></b></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif">We’ve been mainly targeting (I mean test it on ) Linux, but Mac and Windows support can be easily added too.<u></u><u></u></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif">Since the whole thing is in python, the only  issue here could be the “build interposition”, as you pointed out. Other than that, it’s pretty much platform independent.<u></u><u></u></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><u></u> <u></u></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif">Regarding the “bug interposition”: CodeChecker uses the standard clang<span> </span><a href="http://clang.llvm.org/docs/JSONCompilationDatabase.html" style="color:purple;text-decoration:underline" target="_blank">JSON compilation database</a><span> </span>format as an input which you can pass like this (CodeChecker check -l <build_log.json>).</div></div></div></blockquote><div><br></div></span>Do we have to use the JSON compilation database or can this be made to work with the existing scan-build?</div><div><span class=""><br><blockquote type="cite"><div><div style="font-family:Helvetica;font-size:12px;font-style:normal;font-variant:normal;font-weight:normal;letter-spacing:normal;text-align:start;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px"><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><u></u><u></u></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif">You can generate this log, by any other tools, using<span> </span><a href="https://github.com/rizsotto/Bear" style="color:purple;text-decoration:underline" target="_blank">bear</a><span> </span>tool for example on Mac.</div></div></div></blockquote><div><br></div></span>CC-ing Laszlo who is working on a scan-build rewrite in Python. This is the rewrite I've mentioned in one of the previous emails. It is flexible so that it could use either build interposition (bear) or ccc-analyzer style build.</div><div><br></div><div>Ideally, we would have a component that would have the parity in capabilities with scan-build (or better). Laszlo has made a lot of progress on this. We could use that component for interposition and have a bug management system on top of it.</div><div><span class=""><br><blockquote type="cite"><div><div style="font-family:Helvetica;font-size:12px;font-style:normal;font-variant:normal;font-weight:normal;letter-spacing:normal;text-align:start;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px"><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><u></u><u></u></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif">Currently the built in logger (based on LD_PRELOAD) supports compilation logging on Linux smoothly. We could add a (bash script) based logger too, that would be platform independent.</div></div></div></blockquote><div><br></div></span>How would the bash script logger work?</div><div><span class=""><br><blockquote type="cite"><div><div style="font-family:Helvetica;font-size:12px;font-style:normal;font-variant:normal;font-weight:normal;letter-spacing:normal;text-align:start;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px"><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><u></u><u></u></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><u></u> <u></u></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif">We can do some testing on windows, but any help testing on Mac is welcome (as we don’t use Macs).<u></u><u></u></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><u></u> <u></u></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><b>> Is licensing compatible?<u></u><u></u></b></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif">It should be. Except for<span> </span><a href="http://initd.org/psycopg/license/" style="color:purple;text-decoration:underline" target="_blank">psycopg</a><span> </span>(the postgres database connector) we not relying on any GPL or LGPL stuff.<u></u><u></u></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><u></u> <u></u></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif">If psycopg is a problem this could be replaced to another postgres connector, such as<span> </span><a href="https://pypi.python.org/pypi/pg8000" style="color:purple;text-decoration:underline" target="_blank">pg8000</a><span> </span>with BSD license.<u></u><u></u></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><u></u> <u></u></div></div></div></blockquote><div><br></div></span>It is a problem. (I cannot test this until it's free of LGPL.) Good to hear that we can switch to using an alternate method.</div><div><br></div><div><span class=""><blockquote type="cite"><div><div style="font-family:Helvetica;font-size:12px;font-style:normal;font-variant:normal;font-weight:normal;letter-spacing:normal;text-align:start;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px"><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif">I collected here the licenses of the dependencies. All dependencies are run-time dependencies (except for the thrift compiler) and are used without modification.<u></u><u></u></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><u></u> <u></u></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><b>Javascript dependencies<u></u><u></u></b></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)">*codemirror (<a href="https://codemirror.net/" style="color:purple;text-decoration:underline" target="_blank">https://codemirror.net/</a><span> </span>MIT licence)<u></u><u></u></span></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)">*jsplumb (community edition, MIT<span> </span><a href="https://jsplumbtoolkit.com/license#community" style="color:purple;text-decoration:underline" target="_blank">https://jsplumbtoolkit.com/license#community</a>)<u></u><u></u></span></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)">*marked (BSD like<span> </span><a href="https://github.com/chjj/marked/blob/master/LICENSE" style="color:purple;text-decoration:underline" target="_blank">https://github.com/chjj/marked/blob/master/LICENSE</a>)<u></u><u></u></span></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)">*dojotoolkit (new BSD license<span> </span><a href="https://dojotoolkit.org/license.html" style="color:purple;text-decoration:underline" target="_blank">https://dojotoolkit.org/license.html</a>)<u></u><u></u></span></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"><u></u> <u></u></span></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><b><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)">Python dependencies<u></u><u></u></span></b></div><div style="margin:0cm 0cm 0.0001pt 36pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Symbol;color:rgb(51,51,51)"><span>·<span style="font-style:normal;font-variant:normal;font-weight:normal;font-size:7pt;line-height:normal;font-family:'Times New Roman'">        <span> </span></span></span></span><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(51,51,51)"><a href="https://www.python.org/" style="color:purple;text-decoration:underline" target="_blank"><span style="color:rgb(64,120,192);text-decoration:none">Python2</span></a> (> 2.7) (Python Software Foundation )<span> </span><a href="https://www.python.org/download/releases/2.7/license/" style="color:purple;text-decoration:underline" target="_blank">https://www.python.org/download/releases/2.7/license/</a>)<u></u><u></u></span></div><div style="margin:0cm 0cm 0.0001pt 36pt;font-size:12pt;font-family:'Times New Roman',serif;line-height:19.2pt"><span style="font-size:11pt;font-family:Symbol;color:rgb(51,51,51)"><span>·<span style="font-style:normal;font-variant:normal;font-weight:normal;font-size:7pt;line-height:normal;font-family:'Times New Roman'">        <span> </span></span></span></span><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(51,51,51)"><a href="https://pypi.python.org/pypi/alembic" style="color:purple;text-decoration:underline" target="_blank"><span style="color:rgb(64,120,192);text-decoration:none">Alembic</span></a> (>=0.8.2) (MIT)<u></u><u></u></span></div><div style="margin:0cm 0cm 0.0001pt 36pt;font-size:12pt;font-family:'Times New Roman',serif;line-height:19.2pt"><span style="font-size:11pt;font-family:Symbol;color:rgb(51,51,51)"><span>·<span style="font-style:normal;font-variant:normal;font-weight:normal;font-size:7pt;line-height:normal;font-family:'Times New Roman'">        <span> </span></span></span></span><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(51,51,51)"><a href="http://www.sqlalchemy.org/" style="color:purple;text-decoration:underline" target="_blank"><span style="color:rgb(64,120,192);text-decoration:none">SQLAlchemy</span></a> (> 1.0.2) (MIT)<u></u><u></u></span></div><div style="margin:0cm 0cm 0.0001pt 36pt;font-size:12pt;font-family:'Times New Roman',serif;line-height:19.2pt"><span style="font-size:11pt;font-family:Symbol;color:rgb(51,51,51)"><span>·<span style="font-style:normal;font-variant:normal;font-weight:normal;font-size:7pt;line-height:normal;font-family:'Times New Roman'">        <span> </span></span></span></span><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(51,51,51)"><a href="http://initd.org/psycopg/" title="psycopg2" style="color:purple;text-decoration:underline" target="_blank"><span style="color:rgb(64,120,192);text-decoration:none">psycopg2</span></a> (> 2.5.4) (LGPL<span> </span><a href="http://initd.org/psycopg/license/" style="color:purple;text-decoration:underline" target="_blank">http://initd.org/psycopg/license/</a>)<u></u><u></u></span></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><b><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)">Other dependencies<u></u><u></u></span></b></div><div style="margin:0cm 0cm 0.0001pt 36pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:10pt;font-family:Symbol;color:rgb(31,73,125)"><span>·<span style="font-style:normal;font-variant:normal;font-weight:normal;font-size:7pt;line-height:normal;font-family:'Times New Roman'">        <span> </span></span></span></span><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(51,51,51)"><a href="http://clang-analyzer.llvm.org/" style="color:purple;text-decoration:underline" target="_blank"><span style="color:rgb(64,120,192);text-decoration:none">Clang Static analyzer</span></a> </span><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"><u></u><u></u></span></div><ul type="disc" style="margin-bottom:0cm"><li class="MsoNormal" style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif;color:rgb(51,51,51);line-height:19.2pt"><span style="font-size:11pt;font-family:Calibri,sans-serif"><a href="http://www.postgresql.org/" title="PostgreSql" style="color:purple;text-decoration:underline" target="_blank"><span style="color:rgb(64,120,192);text-decoration:none">Postgresql</span></a> (> 9.3.5) (BSD like<span> </span><a href="http://www.postgresql.org/about/licence/" style="color:purple;text-decoration:underline" target="_blank">http://www.postgresql.org/about/licence/</a>)<u></u><u></u></span></li></ul><div style="margin:0cm 0cm 0.0001pt 36pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:10pt;font-family:Symbol;color:rgb(31,73,125)"><span>·<span style="font-style:normal;font-variant:normal;font-weight:normal;font-size:7pt;line-height:normal;font-family:'Times New Roman'">        <span> </span></span></span></span><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)">Thrift (compilation dependency) (Apache v2.0<span> </span><a href="https://thrift.apache.org/" style="color:purple;text-decoration:underline" target="_blank">https://thrift.apache.org/</a>)<u></u><u></u></span></div><div style="margin:0cm 0cm 0.0001pt 36pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:10pt;font-family:Symbol;color:rgb(31,73,125)"><span>·<span style="font-style:normal;font-variant:normal;font-weight:normal;font-size:7pt;line-height:normal;font-family:'Times New Roman'">        <span> </span></span></span></span><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)">Bzip2 is used for test project only (can be removed) (BSD like<span> </span><a href="http://www.bzip.org/" style="color:purple;text-decoration:underline" target="_blank">http://www.bzip.org/</a>)<u></u><u></u></span></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"><u></u> <u></u></span></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><b><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"><u></u> <u></u></span></b></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><b><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)">Could you suggest which dependencies are problematic? We will investigate how to replace those.</span></b></div></div></div></blockquote><div><br></div></span><div>I do not know if there are other licensing issues. They all look OK to me but I am not an expert.</div><div><br></div><div>Ideally, we'd also want to smooth out the installation process as much as possible.</div><div><div class="h5"><div><br></div><blockquote type="cite"><div><div style="font-family:Helvetica;font-size:12px;font-style:normal;font-variant:normal;font-weight:normal;letter-spacing:normal;text-align:start;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px"><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><b><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"><u></u><u></u></span></b></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><b><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)">Could you help in testing and/or making it Mac compatible? I suggest first running it on a standard JSON build db using the –l option.</span></b></div></div></div></blockquote><blockquote type="cite"><div><div style="font-family:Helvetica;font-size:12px;font-style:normal;font-variant:normal;font-weight:normal;letter-spacing:normal;text-align:start;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px"><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><b><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"><u></u><u></u></span></b></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"><u></u> <u></u></span></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif">Regards,<u></u><u></u></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif">Daniel<u></u><u></u></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"><u></u> <u></u></span></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"><u></u> <u></u></span></div><div><div style="border-style:solid none none;border-top-color:rgb(181,196,223);border-top-width:1pt;padding:3pt 0cm 0cm"><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><b><span style="font-size:10pt;font-family:Tahoma,sans-serif">From:</span></b><span style="font-size:10pt;font-family:Tahoma,sans-serif"><span> </span><a href="mailto:ganna@apple.com" target="_blank">ganna@apple.com</a> [<a href="mailto:ganna@apple.com" target="_blank">mailto:ganna@apple.com</a>]<span> </span><br><b>Sent:</b><span> </span>2015. november 10. 19:20<br><b>To:</b><span> </span>Dániel Krupp<br><b>Cc:</b><span> </span><a href="mailto:cfe-dev@lists.llvm.org" target="_blank">cfe-dev@lists.llvm.org</a><br><b>Subject:</b><span> </span>Re: [cfe-dev] codechecker into clang/LLVM?<u></u><u></u></span></div></div></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><u></u> <u></u></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif">Hi Daniel,<u></u><u></u></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><u></u> <u></u></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif">Sorry for taking so long to reply!<u></u><u></u></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><u></u> <u></u></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif">The clang static analyzer is definitely missing a bug tracking system and I believe this project has a good potential to fill that need. Here are a couple of concerns that immediately jump into mind:<u></u><u></u></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><u></u> <u></u></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif">- What would it take for this to replace scan-build? Can scan-build be used instead of the interposition module you use? For example, can we control the build interposition method by some option and the bug tracking would be an add-on on top of that? I suspect that your solution does not work on all platforms that scan-build currently supports (Mac and Windows come to mind). That is the main concern here. There are also projects that might not build with the type of interposition you use. I am not sure if you are aware of the scan-build rewrite (in Python) effort, where all these issues were raised as well.<u></u><u></u></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><u></u> <u></u></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif">- Is licensing compatible? The llvm codebase tries to stay clear of any dependencies on GPL or LGPL licenses because there are companies who are involved with the project and cannot use software tainted with those licenses. <u></u><u></u></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><u></u> <u></u></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif">- The list of dependencies is large, which is a concern if this was to replace scan-build.<u></u><u></u></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><u></u> <u></u></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif">Anna.<u></u><u></u></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><u></u> <u></u></div></div><div><blockquote style="margin-top:5pt;margin-bottom:5pt"><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif">On Oct 22, 2015, at 7:14 AM, Dániel Krupp via cfe-dev <<a href="mailto:cfe-dev@lists.llvm.org" style="color:purple;text-decoration:underline" target="_blank">cfe-dev@lists.llvm.org</a>> wrote:<u></u><u></u></div></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><u></u> <u></u></div><div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">Hello All,<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif"> <u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">Scan-build, the current bug viewer Clang Static Analyzer front-end tool has some scalability issues and limitations.<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">For example, scan-build creates static HTML reports, storing whole source files as many times as they are included in a report.<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">Incremental bug reporting (show only new bugs compared to a baseline) and false positive suppression is not supported either.<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif"> <u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">To address these issues, back in July we published CodeChecker on GitHub (<span> </span><a href="https://github.com/Ericsson/codechecker" style="color:purple;text-decoration:underline" target="_blank"><span style="color:windowtext;text-decoration:none">https://github.com/Ericsson/codechecker</span></a><span> </span>),<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">a new defect storage and management infrastructure for Clang Static Analyzer (written in python). We also gave a talk about this in Euro LLVM 2015 (<a href="http://llvm.org/devmtg/2015-04/" style="color:purple;text-decoration:underline" target="_blank"><span style="color:purple">http://llvm.org/devmtg/2015-04/</span></a>).<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif"> <u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">The most important features are the following:<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">     - scalable dynamic web based defect viewer (instead of static html)<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">     - a new command line tool for analyzing projects which is usable in CI scripts<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">     - a PostgreSQL based defect storage & management<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">     - incremental bug reporting (show only new bugs compared to a baseline)<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">     - suppression of false positives<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">     - better integration with build systems (through the LD_PRELOAD mechanism)<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">     - Apache Thrift API based server-client model for storing bugs and viewing results.<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">     - It is possible to connect multiple bug viewers. Currently a web-based viewer and a command line viewer are provided.<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif"> <u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">Since its publication we have fixed many errors, addressed user-feedbacks and now I think it is mature enough.<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif"> <u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif"> <u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">We could release the tool under LLVM license.<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif"> <u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">If you agree, this tool could be part of the llvm/clang source tree, possibly besides scan-build (or a separate llvm repository?).<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">I am not sure about the official process.<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">Can anyone help with this?<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif"> <u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">Regards,<u></u><u></u></span></div></div><div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:11pt;font-family:Calibri,sans-serif">Daniel<u></u><u></u></span></div></div><div style="margin:0cm 0cm 0.0001pt;font-size:12pt;font-family:'Times New Roman',serif"><span style="font-size:9pt;font-family:Helvetica,sans-serif">_______________________________________________<br>cfe-dev mailing list<br></span><a href="mailto:cfe-dev@lists.llvm.org" style="color:purple;text-decoration:underline" target="_blank"><span style="font-size:9pt;font-family:Helvetica,sans-serif;color:purple">cfe-dev@lists.llvm.org</span></a><span style="font-size:9pt;font-family:Helvetica,sans-serif"><br></span><a href="http://lists.llvm.org/cgi-bin/mailman/listinfo/cfe-dev" style="color:purple;text-decoration:underline" target="_blank"><span style="font-size:9pt;font-family:Helvetica,sans-serif;color:purple">http://lists.llvm.org/cgi-bin/mailman/listinfo/cfe-dev</span></a></div></div></blockquote></div></div></div></blockquote></div></div></div><br></div></blockquote></div><br></div>