aws-samples / devsecops-cicd
Conditional Complexity

The distribution of complexity of units (measured with McCabe index).

Intro
  • Conditional complexity (also called cyclomatic complexity) is a term used to measure the complexity of software. The term refers to the number of possible paths through a program function. A higher value ofter means higher maintenance and testing costs (infosecinstitute.com).
  • Conditional complexity is calculated by counting all conditions in the program that can affect the execution path (e.g. if statement, loops, switches, and/or operators, try and catch blocks...).
  • Conditional complexity is measured at the unit level (methods, functions...).
  • Units are classified in four categories based on the measured McCabe index: 1-5 (simple units), 6-10 (medium complex units), 11-25 (complex units), 26+ (very complex units).
Learn more...
Conditional Complexity Overall
  • There are 29 units with 356 lines of code in units (8.7% of code).
    • 0 very complex units (0 lines of code)
    • 0 complex units (0 lines of code)
    • 1 medium complex units (92 lines of code)
    • 1 simple units (34 lines of code)
    • 27 very simple units (230 lines of code)
0% | 0% | 25% | 9% | 64%
Legend:
51+
26-50
11-25
6-10
1-5
Alternative Visuals
Conditional Complexity per Extension
51+
26-50
11-25
6-10
1-5
py0% | 0% | 65% | 0% | 34%
java0% | 0% | 0% | 15% | 84%
Conditional Complexity per Logical Component
primary logical decomposition
51+
26-50
11-25
6-10
1-5
lambda-functions0% | 0% | 65% | 0% | 34%
workshop/workshop-java-repo-vulnerable/src/main/java/com0% | 0% | 0% | 20% | 79%
workshop/workshop-java-repo/src/main/java/org0% | 0% | 0% | 0% | 100%
Most Complex Units
Top 20 most complex units
Unit# linesMcCabe index# params
def process_message()
in lambda-functions/import_findings_security_hub.py
92 21 1
private List processEventsInBucket()
in workshop/workshop-java-repo-vulnerable/src/main/java/com/shipmentEvents/handlers/EventHandler.java
34 8 3
private void processShipmentUpdates()
in workshop/workshop-java-repo-vulnerable/src/main/java/com/shipmentEvents/handlers/EventHandler.java
27 5 1
public void pathTraversal1()
in workshop/workshop-java-repo-vulnerable/src/main/java/com/shipmentEvents/handlers/EventHandler.java
23 5 1
private boolean isValidFile()
in workshop/workshop-java-repo-vulnerable/src/main/java/com/shipmentEvents/handlers/EventHandler.java
12 4 1
private static String loadIndex()
in workshop/workshop-java-repo/src/main/java/org/example/Application.java
12 3 0
def import_finding_to_sh()
in lambda-functions/securityhub.py
42 2 17
def lambda_handler()
in lambda-functions/import_findings_security_hub.py
7 2 2
public String handleRequest()
in workshop/workshop-java-repo-vulnerable/src/main/java/com/shipmentEvents/handlers/EventHandler.java
10 2 2
private void deleteProcessedFiles()
in workshop/workshop-java-repo-vulnerable/src/main/java/com/shipmentEvents/handlers/EventHandler.java
7 2 1
private String decode()
in workshop/workshop-java-repo-vulnerable/src/main/java/com/shipmentEvents/handlers/EventHandler.java
8 2 2
public String Input()
in workshop/workshop-java-repo-vulnerable/src/main/java/com/handlingformsubmission/GreetingController.java
11 2 2
public void handle()
in workshop/workshop-java-repo/src/main/java/org/example/Application.java
12 2 4
public static AmazonS3 getS3Client()
in workshop/workshop-java-repo-vulnerable/src/main/java/com/shipmentEvents/util/S3ClientUtil.java
3 1 0
public static AmazonS3 getS3Client()
in workshop/workshop-java-repo-vulnerable/src/main/java/com/shipmentEvents/handlers/EventHandler.java
3 1 0
public static void main()
in workshop/workshop-java-repo-vulnerable/src/main/java/com/handlingformsubmission/HandlingFormSubmissionApplication.java
3 1 1
public String helloForm()
in workshop/workshop-java-repo-vulnerable/src/main/java/com/handlingformsubmission/GreetingController.java
4 1 1
public String greetingSubmit()
in workshop/workshop-java-repo-vulnerable/src/main/java/com/handlingformsubmission/GreetingController.java
4 1 2
public String index()
in workshop/workshop-java-repo-vulnerable/src/main/java/com/handlingformsubmission/GreetingController.java
4 1 1
public void header()
in workshop/workshop-java-repo-vulnerable/src/main/java/com/handlingformsubmission/GreetingController.java
4 1 2