{"id":15241,"identifier":"FK2/AHYGMN","persistentUrl":"https://doi.org/10.60507/FK2/AHYGMN","protocol":"doi","authority":"10.60507","separator":"/","publisher":"bonndata","publicationDate":"2026-01-22","storageIdentifier":"file://10.60507/FK2/AHYGMN","metadataLanguage":"de-DE","datasetType":"dataset","datasetVersion":{"id":560,"datasetId":15241,"datasetPersistentId":"doi:10.60507/FK2/AHYGMN","datasetType":"dataset","storageIdentifier":"file://10.60507/FK2/AHYGMN","versionNumber":1,"internalVersionNumber":15,"versionMinorNumber":0,"versionState":"RELEASED","latestVersionPublishingState":"RELEASED","lastUpdateTime":"2026-01-22T11:46:50Z","releaseTime":"2026-01-22T11:46:50Z","createTime":"2026-01-14T12:26:52Z","publicationDate":"2026-01-22","citationDate":"2026-01-22","license":{"name":"CC BY 4.0","uri":"http://creativecommons.org/licenses/by/4.0","iconUri":"https://licensebuttons.net/l/by/4.0/88x31.png"},"fileAccessRequest":true,"metadataBlocks":{"citation":{"displayName":"Citation Metadata","name":"citation","fields":[{"typeName":"title","multiple":false,"typeClass":"primitive","value":"Replication Data for \"Insecure Ingredients? Exploring Dependency Update Patterns of Bundled JavaScript Packages on the Web\""},{"typeName":"author","multiple":true,"typeClass":"compound","value":[{"authorName":{"typeName":"authorName","multiple":false,"typeClass":"primitive","value":"Swierzy, Ben"},"authorAffiliation":{"typeName":"authorAffiliation","multiple":false,"typeClass":"primitive","value":"University of Bonn"},"authorIdentifierScheme":{"typeName":"authorIdentifierScheme","multiple":false,"typeClass":"controlledVocabulary","value":"ORCID"},"authorIdentifier":{"typeName":"authorIdentifier","multiple":false,"typeClass":"primitive","value":"https://orcid.org/0009-0003-0485-4791","expandedvalue":{"personName":"Swierzy, Ben","@id":"https://orcid.org/0009-0003-0485-4791","scheme":"ORCID","@type":"https://schema.org/Person"}}}]},{"typeName":"datasetContact","multiple":true,"typeClass":"compound","value":[{"datasetContactName":{"typeName":"datasetContactName","multiple":false,"typeClass":"primitive","value":"Swierzy, Ben"},"datasetContactAffiliation":{"typeName":"datasetContactAffiliation","multiple":false,"typeClass":"primitive","value":"University of Bonn"},"datasetContactEmail":{"typeName":"datasetContactEmail","multiple":false,"typeClass":"primitive","value":"swierzy@cs.uni-bonn.de"}}]},{"typeName":"dsDescription","multiple":true,"typeClass":"compound","value":[{"dsDescriptionValue":{"typeName":"dsDescriptionValue","multiple":false,"typeClass":"primitive","value":"This dataset contains replication data for the paper \"Insecure Ingredients? Exploring Dependency Update Patterns of Bundled JavaScript Packages on the Web\". This includes metadata of the 6 weeks of Tranco top 100k scans. This does not include the dataset of JavaScript files (for legal reasons). For access to the scraped files, please message the corresponding author."}}]},{"typeName":"subject","multiple":true,"typeClass":"controlledVocabulary","value":["Computer and Information Science"]},{"typeName":"subjectRefinement","multiple":true,"typeClass":"compound","value":[{"subjectRefinementValue":{"typeName":"subjectRefinementValue","multiple":false,"typeClass":"primitive","value":"Computer Science: Software Engineering and Programming Languages [409-02]"}},{"subjectRefinementValue":{"typeName":"subjectRefinementValue","multiple":false,"typeClass":"primitive","value":"Computer Science: Security and Dependability [409-03]"}}]},{"typeName":"freeKeyword","multiple":true,"typeClass":"compound","value":[{"freeKeywordValue":{"typeName":"freeKeywordValue","multiple":false,"typeClass":"primitive","value":"internet measurement"}},{"freeKeywordValue":{"typeName":"freeKeywordValue","multiple":false,"typeClass":"primitive","value":"javascript"}},{"freeKeywordValue":{"typeName":"freeKeywordValue","multiple":false,"typeClass":"primitive","value":"bundles"}}]},{"typeName":"publication","multiple":true,"typeClass":"compound","value":[{"publicationRelationType":{"typeName":"publicationRelationType","multiple":false,"typeClass":"controlledVocabulary","value":"IsSupplementTo"},"publicationCitation":{"typeName":"publicationCitation","multiple":false,"typeClass":"primitive","value":"Ben Swierzy, Marc Ohm, and Michael Meier. 2026. Insecure Ingredients? Exploring Dependency Update Patterns of Bundled JavaScript Packages on the Web. In 2026 IEEE/ACM 48th International Conference on Software Engineering (ICSE ’26), April 12–18, 2026, Rio de Janeiro, Brazil. ACM, New York, NY, USA, 13 pages. https://doi.org/10.1145/3744916.3787780"},"publicationIDType":{"typeName":"publicationIDType","multiple":false,"typeClass":"controlledVocabulary","value":"doi"},"publicationIDNumber":{"typeName":"publicationIDNumber","multiple":false,"typeClass":"primitive","value":"10.1145/3744916.3787780"},"publicationURL":{"typeName":"publicationURL","multiple":false,"typeClass":"primitive","value":"https://dl.acm.org/doi/abs/10.1145/3744916.3787780"}},{"publicationRelationType":{"typeName":"publicationRelationType","multiple":false,"typeClass":"controlledVocabulary","value":"IsSupplementTo"},"publicationCitation":{"typeName":"publicationCitation","multiple":false,"typeClass":"primitive","value":"Swierzy, Ben, Marc Ohm, and Michael Meier. \"Insecure Ingredients? Exploring Dependency Update Patterns of Bundled JavaScript Packages on the Web.\" arXiv preprint arXiv:2512.15447 (2025)."},"publicationIDType":{"typeName":"publicationIDType","multiple":false,"typeClass":"controlledVocabulary","value":"doi"},"publicationIDNumber":{"typeName":"publicationIDNumber","multiple":false,"typeClass":"primitive","value":"10.48550/arXiv.2512.15447"},"publicationURL":{"typeName":"publicationURL","multiple":false,"typeClass":"primitive","value":"https://arxiv.org/abs/2512.15447"}}]},{"typeName":"language","multiple":true,"typeClass":"controlledVocabulary","value":["English"]},{"typeName":"depositor","multiple":false,"typeClass":"primitive","value":"Swierzy, Ben"},{"typeName":"dateOfDeposit","multiple":false,"typeClass":"primitive","value":"2026-01-14"},{"typeName":"dateOfCollection","multiple":true,"typeClass":"compound","value":[{"dateOfCollectionStart":{"typeName":"dateOfCollectionStart","multiple":false,"typeClass":"primitive","value":"2024-10-31"},"dateOfCollectionEnd":{"typeName":"dateOfCollectionEnd","multiple":false,"typeClass":"primitive","value":"2024-12-12"}}]},{"typeName":"kindOfData","multiple":true,"typeClass":"primitive","value":["machine-readable text"]},{"typeName":"relatedMaterial","multiple":true,"typeClass":"primitive","value":["GitHub Repository: https://github.com/BlobbyBob/AletheiaJSVersionDetection","Crawler (used for creation): https://doi.org/10.60507/FK2/F4VQRH","Dolospy (used for analysis): https://doi.org/10.60507/FK2/LYIDHI"]},{"typeName":"dataSources","multiple":true,"typeClass":"primitive","value":["Landing pages of Tranco top 100k domains. List available at https://tranco-list.eu/list/G6LKK"]}]},"codeMeta20":{"displayName":"Software Metadata (CodeMeta v2.0)","name":"codeMeta20","fields":[]}},"files":[{"label":"metadata.tar.gz","restricted":false,"version":1,"datasetVersionId":560,"dataFile":{"id":15259,"persistentId":"doi:10.60507/FK2/AHYGMN/R4XFKI","pidURL":"https://doi.org/10.60507/FK2/AHYGMN/R4XFKI","filename":"metadata.tar.gz","contentType":"application/gzip","friendlyType":"Gzip Archive","filesize":1809050789,"storageIdentifier":"file://19bbc97dd5c-aa2badab17ee","rootDataFileId":-1,"md5":"2a11f768a8e533cd920d22ffbe01faaa","checksum":{"type":"MD5","value":"2a11f768a8e533cd920d22ffbe01faaa"},"tabularData":false,"creationDate":"2026-01-14","publicationDate":"2026-01-22","fileAccessRequest":true}},{"label":"readme.txt","restricted":false,"version":1,"datasetVersionId":560,"dataFile":{"id":15264,"persistentId":"doi:10.60507/FK2/AHYGMN/KFQGLU","pidURL":"https://doi.org/10.60507/FK2/AHYGMN/KFQGLU","filename":"readme.txt","contentType":"text/plain","friendlyType":"Plain Text","filesize":3889,"storageIdentifier":"file://19bbceb3773-40f9439d588c","rootDataFileId":-1,"md5":"1287f04b66bbfc77685ad9544a3ac46e","checksum":{"type":"MD5","value":"1287f04b66bbfc77685ad9544a3ac46e"},"tabularData":false,"creationDate":"2026-01-14","publicationDate":"2026-01-22","fileAccessRequest":true}}],"citation":"Swierzy, Ben, 2026, \"Replication Data for \"Insecure Ingredients? Exploring Dependency Update Patterns of Bundled JavaScript Packages on the Web\"\", https://doi.org/10.60507/FK2/AHYGMN, bonndata, V1"}}