Skip to content

Snapshot v0.3.0

Frozen snapshot v0.3.0

  • Freeze ID: 61d0025957ba… (SHA-256 of reports/freeze.json)
  • Benchmark revision b7269a5b507c, release v0.3.0, claim scope release
  • Fixture revision 1b1b8d5cd90d…

The third immutable DataFlowBench snapshot: the cross-language direct-flow breadth baseline plus propagation kernels in ten languages — Java, JavaScript, TypeScript, Python, Kotlin, C#, Go, C, C++, and Rust — with CodeQL evidence for all ten, on the taint track under the benchmark-controlled model profile.

Core denominators differ by language and are never pooled: C and Rust have 15-template (30-assertion) cores, because their exception-catch cell has no semantics-preserving native construct, and the other eight have 16-template (32-assertion) cores. Language-only constructs are reported separately in language-extension tiers.

  • Scope: release
  • Tracks: taint
  • Score tiers: calibration core language-extension
  • Model profiles: benchmark-controlled
  • Exclusions: none

Freeze manifest: reports/freeze.json — every case, fixture, normalized report, and raw-evidence file is digest-bound; cargo run -- validate-freeze reports/freeze.json re-verifies all of it.

Continue to analyzers, languages, semantic templates, or case evidence.