aws-samples / amazon-rekognition-ppe
Source Code Overview

Analysis scope, overview of main, test, generated, deployment, build, and other code.

Source Code Analysis Scope
Files includes and excluded from analyses
txt
snap
  • 11 extensions are included in analyses: js, json, txt, py, md, yaml, css, gitignore, xml, html, snap
  • 5 criteria are used to exclude files from analysis:
    • exclude files with path like ".*/[.][a-zA-Z0-9_]+.*" (Hidden files and folders) (4 files).
    • exclude files with path like ".*/git[-]history[.]txt" (Git history) (1 file).
    • exclude files with path like ".*/git[-][a-zA-Z0-9_]+[.]txt" (Git data exports for sokrates analyses) (0 files).
    • exclude files with path like ".*[.]txt" (Text files) (5 files).
    • exclude files with path like ".*/sokrates_conventions[.]json" (Sokrates scoping conventions) (1 file).
Overview of Analyzed Files
Basic stats on analyzed files
Intro
For analysis purposes we separate files in scope into several categories: main, test, generated, deployment and build, and other.

  • The main category contains all manually created source code files that are being used in the production.
  • Files in the main category are used as input for other analyses: logical decomposition, concerns, duplication, file size, unit size, and conditional complexity.
  • Test source code files are used only for testing of the product. These files are normally not deployed to production.
  • Build and deployment source code files are used to configure or support build and deployment process.
  • Generated source code files are automatically generated files that have not been manually changed after generation.
  • While a source code folder may contain a number of files, we are primarily interested in the source code files that are being written and maintained by developers.
  • Files containing binaries, documentation, or third-party libraries, for instance, are excluded from analysis. The exception are third-party libraries that have been changed by developers.

main223 LOC (<1%) 5 files
test0 LOC (0%) 0 files
generated48694 LOC (48%) 4 files
build and deployment0 LOC (0%) 0 files
other51432 LOC (51%) 41 files
Main Code
All manually created or maintained source code that defines logic of the product that is run in a production environment.
Explore:   circles  |  sunburst
  • The following criteria are used to filter files:
    • files with paths like ".*".
  • 5 files match defined criteria (223 lines of code, 100.0% vs. main code). All matches are in *.py files.


*.py223 LOC (100%) 5 files
Generated Code
Automatically generated files, not manually changed after generation.
Explore:   circles  |  sunburst
  • The following criteria are used to filter files:
    • files with paths like ".*/package[-]lock[.]json".
  • 4 files match defined criteria (48,694 lines of code, 21835.9% vs. main code). All matches are in *.json files.


*.json48694 LOC (100%) 4 files
Other Code
snap
Explore:   circles  |  sunburst
  • The following criteria are used to filter files:
    • files with paths like ".*[.]md".
    • files with paths like ".*[.]json".
    • files with paths like ".*[.]txt".
    • files with paths like ".*/README[.][a-z0-9]+".
    • files with paths like ".*/[Dd]emos?/.*".
    • files with paths like ".*/[.]gitignore".
  • 41 files match defined criteria (51,432 lines of code, 23063.7% vs. main code):
    • 12 *.json files (49,696 lines of code)
    • 20 *.js files (848 lines of code)
    • 1 *.yaml files (306 lines of code)
    • 1 *.css files (297 lines of code)
    • 5 *.md files (186 lines of code)
    • 1 *.snap files (81 lines of code)
    • 1 *.html files (18 lines of code)
  • " *.json" is biggest, containing 96.62% of code.
  • " *.html" is smallest, containing 0.03% of code.


*.json49696 LOC (96%) 12 files
*.js848 LOC (1%) 20 files
*.yaml306 LOC (<1%) 1 files
*.css297 LOC (<1%) 1 files
*.md186 LOC (<1%) 5 files
*.snap81 LOC (<1%) 1 files
*.html18 LOC (<1%) 1 files
Analyzers
Info about analyzers used for source code examinations.
  • *.py files are analyzed with PythonAnalyzer:
    • All basic standard analyses supported (source code overview, duplication, file size, concerns, findings, metrics, controls)
    • Advanced code cleaning (empty lines and comments removed for LOC calculations, additional cleaning for duplication calculations)
    • Unit size analysis
    • Conditional complexity analysis
    • Basic heuristic dependency analysis


2022-01-31 16:25