Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

All this is discoverable in static code analysis. It is entirely possible to make tools that check the docs cover all these cases. There are probably tools they can buy to do it.

Google should check it all, every release.



That's actually a great idea. Can you recommend one such tool? I'd like to run it on the Android framework source and see what else I've been missing.


Coverity's Prevent[1]? I use it for C++, and while it's not free, the pricing is /very/ reasonable.

[1] http://www.coverity.com/html/prevent-for-java.html




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: