Small Changes, Big Trouble: Demystifying and Parsing License Variants for Incompatibility Detection in the PyPI Ecosystem
Fuente:
arXiv
Saved in:
| Main Authors: | Xu, Weiwei, Ye, Hengzhi, Gao, Kai, Zhou, Minghui |
|---|---|
| Format: | Preprint |
| Published: |
2025
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
PyRadar: Towards Automatically Retrieving and Validating Source Code Repository Information for PyPI Packages
by: Gao, Kai, et al.
Published: (2024)
by: Gao, Kai, et al.
Published: (2024)
Less is More? An Empirical Study on Configuration Issues in Python PyPI Ecosystem
by: Peng, Yun, et al.
Published: (2023)
by: Peng, Yun, et al.
Published: (2023)
Exploring the SECURITY.md in the Dependency Chain: Preliminary Analysis of the PyPI Ecosystem
by: Termphaiboon, Chayanid, et al.
Published: (2025)
by: Termphaiboon, Chayanid, et al.
Published: (2025)
Modeling Dependency-Propagated Ecosystem Impact of Changes in Maintenance Activities: Evaluating Support Strategies in the PyPI Network
by: Tsakpinis, Alexandros, et al.
Published: (2026)
by: Tsakpinis, Alexandros, et al.
Published: (2026)
Analyzing the Usage of Donation Platforms for PyPI Libraries
by: Tsakpinis, Alexandros, et al.
Published: (2025)
by: Tsakpinis, Alexandros, et al.
Published: (2025)
A Machine Learning-Based Approach For Detecting Malicious PyPI Packages
by: Samaana, Haya, et al.
Published: (2024)
by: Samaana, Haya, et al.
Published: (2024)
Analyzing the Availability of E-Mail Addresses for PyPI Libraries
by: Tsakpinis, Alexandros, et al.
Published: (2026)
by: Tsakpinis, Alexandros, et al.
Published: (2026)
DySec: A Machine Learning-based Dynamic Analysis for Detecting Malicious Packages in PyPI Ecosystem
by: Mehedi, Sk Tanzir, et al.
Published: (2025)
by: Mehedi, Sk Tanzir, et al.
Published: (2025)
Analyzing the Accessibility of GitHub Repositories for PyPI and NPM Libraries
by: Tsakpinis, Alexandros, et al.
Published: (2024)
by: Tsakpinis, Alexandros, et al.
Published: (2024)
Detecting Malicious Source Code in PyPI Packages with LLMs: Does RAG Come in Handy?
by: Ibiyo, Motunrayo, et al.
Published: (2025)
by: Ibiyo, Motunrayo, et al.
Published: (2025)
CHASE: LLM Agents for Dissecting Malicious PyPI Packages
by: Toda, Takaaki, et al.
Published: (2026)
by: Toda, Takaaki, et al.
Published: (2026)
How Maintainable is Proficient Code? A Case Study of Three PyPI Libraries
by: Febriyanti, Indira, et al.
Published: (2024)
by: Febriyanti, Indira, et al.
Published: (2024)
The Readability Spectrum: Patterns, Issues, and Prompt Effects in LLM-Generated Code
by: Ye, Hengzhi, et al.
Published: (2026)
by: Ye, Hengzhi, et al.
Published: (2026)
Cutting the Gordian Knot: Detecting Malicious PyPI Packages via a Knowledge-Mining Framework
by: Guo, Wenbo, et al.
Published: (2026)
by: Guo, Wenbo, et al.
Published: (2026)
LiCoEval: Evaluating LLMs on License Compliance in Code Generation
by: Xu, Weiwei, et al.
Published: (2024)
by: Xu, Weiwei, et al.
Published: (2024)
Many Hands Make Light Work: An LLM-based Multi-Agent System for Detecting Malicious PyPI Packages
by: Zeshan, Muhammad Umar, et al.
Published: (2026)
by: Zeshan, Muhammad Umar, et al.
Published: (2026)
A governance horizon for ethical-use constraints in open-weight AI models
by: Xu, Weiwei, et al.
Published: (2026)
by: Xu, Weiwei, et al.
Published: (2026)
Hidden Licensing Risks in the LLMware Ecosystem
by: Wang, Bo, et al.
Published: (2026)
by: Wang, Bo, et al.
Published: (2026)
Revealing the value of Repository Centrality in lifespan prediction of Open Source Software Projects
by: He, Runzhi, et al.
Published: (2024)
by: He, Runzhi, et al.
Published: (2024)
Investigating Notable Metadata Practices in PyPI Libraries: An Empirical Study about Repository and Donation Platform URLs
by: Tsakpinis, Alexandros, et al.
Published: (2026)
by: Tsakpinis, Alexandros, et al.
Published: (2026)
From OSS to Open Source AI: an Exploratory Study of Collaborative Development Paradigm Divergence
by: Ye, Hengzhi, et al.
Published: (2026)
by: Ye, Hengzhi, et al.
Published: (2026)
SourceBroken: A large-scale analysis on the (un)reliability of SourceRank in the PyPI ecosystem
by: Montaruli, Biagio, et al.
Published: (2025)
by: Montaruli, Biagio, et al.
Published: (2025)
Forecasting the Maintained Score from the OpenSSF Scorecard: A Study of GitHub Repositories Linked to PyPI Packages
by: Tsakpinis, Alexandros, et al.
Published: (2026)
by: Tsakpinis, Alexandros, et al.
Published: (2026)
Code Clone Detection via an AlphaFold-Inspired Framework
by: Jia, Changguo, et al.
Published: (2025)
by: Jia, Changguo, et al.
Published: (2025)
Predicting Abandonment of Open Source Software Projects with An Integrated Feature Framework
by: Xu, Yiming, et al.
Published: (2025)
by: Xu, Yiming, et al.
Published: (2025)
Killing Two Birds with One Stone: Malicious Package Detection in NPM and PyPI using a Single Model of Malicious Behavior Sequence
by: Zhang, Junan, et al.
Published: (2023)
by: Zhang, Junan, et al.
Published: (2023)
Characterising Open Source Co-opetition in Company-hosted Open Source Software Projects: The Cases of PyTorch, TensorFlow, and Transformers
by: Osborne, Cailean, et al.
Published: (2024)
by: Osborne, Cailean, et al.
Published: (2024)
Decide: Knowledge-Based Version Incompatibility Detection in Deep Learning Stacks
by: Zhou, Zihan, et al.
Published: (2024)
by: Zhou, Zihan, et al.
Published: (2024)
Package Dashboard: A Cross-Ecosystem Framework for Dual-Perspective Analysis of Software Packages
by: Liu, Ziheng, et al.
Published: (2025)
by: Liu, Ziheng, et al.
Published: (2025)
Analyzing C/C++ Library Migrations at the Package-level: Prevalence, Domains, Targets and Rationals across Seven Package Management Tools
by: Gu, Haiqiao, et al.
Published: (2025)
by: Gu, Haiqiao, et al.
Published: (2025)
Demystifying the Characteristics for Smart Contract Upgrades
by: Liu, Ye, et al.
Published: (2024)
by: Liu, Ye, et al.
Published: (2024)
Cross-ecosystem categorization: A manual-curation protocol for the categorization of Java Maven libraries along Python PyPI Topics
by: Paramitha, Ranindya, et al.
Published: (2024)
by: Paramitha, Ranindya, et al.
Published: (2024)
Demystifying the DAO Governance Process
by: Ma, Junjie, et al.
Published: (2024)
by: Ma, Junjie, et al.
Published: (2024)
TGMM: Combining Parse Tree with GPU for Scalable Multilingual and Multi-Granularity Code Clone Detection
by: Ye, Yuhang, et al.
Published: (2024)
by: Ye, Yuhang, et al.
Published: (2024)
Demystifying and Detecting Cryptographic Defects in Ethereum Smart Contracts
by: Zhang, Jiashuo, et al.
Published: (2024)
by: Zhang, Jiashuo, et al.
Published: (2024)
From Hugging Face to GitHub: Tracing License Drift in the Open-Source AI Ecosystem
by: Jewitt, James, et al.
Published: (2025)
by: Jewitt, James, et al.
Published: (2025)
Impact of Log Parsing on Deep Learning-Based Anomaly Detection
by: Khan, Zanis Ali, et al.
Published: (2023)
by: Khan, Zanis Ali, et al.
Published: (2023)
Token Interdependency Parsing (Tipping) -- Fast and Accurate Log Parsing
by: Hashemi, Shayan, et al.
Published: (2024)
by: Hashemi, Shayan, et al.
Published: (2024)
LILAC: Log Parsing using LLMs with Adaptive Parsing Cache
by: Jiang, Zhihan, et al.
Published: (2023)
by: Jiang, Zhihan, et al.
Published: (2023)
DeepParse: Hybrid Log Parsing with LLM-Synthesized Regex Masks
by: Shetaia, Amir, et al.
Published: (2026)
by: Shetaia, Amir, et al.
Published: (2026)
Similar Items
-
PyRadar: Towards Automatically Retrieving and Validating Source Code Repository Information for PyPI Packages
by: Gao, Kai, et al.
Published: (2024) -
Less is More? An Empirical Study on Configuration Issues in Python PyPI Ecosystem
by: Peng, Yun, et al.
Published: (2023) -
Exploring the SECURITY.md in the Dependency Chain: Preliminary Analysis of the PyPI Ecosystem
by: Termphaiboon, Chayanid, et al.
Published: (2025) -
Modeling Dependency-Propagated Ecosystem Impact of Changes in Maintenance Activities: Evaluating Support Strategies in the PyPI Network
by: Tsakpinis, Alexandros, et al.
Published: (2026) -
Analyzing the Usage of Donation Platforms for PyPI Libraries
by: Tsakpinis, Alexandros, et al.
Published: (2025)