Score
Designs, implements, and debugs programs and libraries written in the JavaScript language to create interactive client-side web features, manipulate the DOM, handle user events, and manage asynchronous control flow (callbacks, promises, async/await). Builds and maintains server-side JavaScript applications and tooling (e.g., Node.js services, build scripts, command-line tools), integrates with package managers and bundlers, and optimizes code for performance and cross-browser/platform compatibility.
Answer Set Programming (ASP) developers traditionally rely on external frontend technologies to construct user interfaces, creating a barrier to rapid prototyping and tight integration of declarative logic with interactive behavior. Method: This paper introduces Clinguin, the first system enabling native interactive UI modeling directly within ASP. It extends ASP with declarative UI predicates—such as `ui/2` for interface structure and `on_event/3` for event handling—unifying UI specification and interaction logic under ASP’s logical rule formalism. Built as an extension of Clingo, Clinguin compiles ASP source code directly into dynamic, browser-executable web interfaces. Contribution/Results: Clinguin significantly lowers the UI development threshold for ASP applications: interactive prototypes can be generated from just a few lines of ASP code. The system is fully integrated into the Clingo toolchain and publicly available as open-source software.
本文探讨了直线路线异步编程的设计空间,通过分析几种现有语言的差异,明确了九个设计维度,以帮助理解不同语言在异步函数调用、任务生命周期及取消处理等方面的语义。
This study systematically uncovers, for the first time, security risks arising from JavaScript (JS) inclusions in Chrome extensions—highlighting critical environmental differences from regular web contexts and a longstanding lack of comprehensive empirical analysis. To address this gap, we propose a hybrid static-dynamic analysis framework: static analysis combines abstract syntax tree (AST) parsing with inter-procedural data-flow path tracing; dynamic analysis integrates runtime script-injection detection and network request monitoring. Applied to 36,324 real-world extensions, our framework identifies 350,784 JS inclusions, confirms 22 exploitable remote script loading vulnerabilities, and reveals widespread reliance on high-risk, outdated libraries (e.g., jQuery 1.x, Underscore 1.4.x) across mainstream extensions. These findings fill a critical gap in browser extension JS supply-chain security research and provide an empirical foundation and methodological support for extension vetting, automated vulnerability detection, and security governance.
This work addresses the inefficiency of modern JavaScript compilers, which often waste substantial computational resources by indiscriminately applying all downlevel transformations regardless of the actual language features used. To mitigate this, the authors propose a conditional transpilation mechanism that precisely detects and dynamically tracks the set of language features employed at the script level, triggering transformations only for those features that require them. Implemented within the Google Closure Compiler, the approach integrates feature set construction, strategic pass ordering, and post-transpilation feature validation to significantly reduce unnecessary abstract syntax tree (AST) traversals. Empirical evaluation on large-scale production codebases demonstrates that the proposed method effectively decreases compilation time while reducing both memory consumption and computational overhead.
Web application testing (WAT) faces fundamental challenges including dynamic content, asynchronous interactions, and cross-environment compatibility. This paper presents a systematic literature review of WAT research from 2014 to 2024. Methodologically, it introduces the first comprehensive taxonomy—categorizing approaches into model-based, crawler-based, AI-driven, and security-oriented testing—and conducts a longitudinal comparative analysis. Integrating bibliometric analysis, methodological synthesis, and empirical evaluation of widely adopted tools, it constructs a decade-long evolutionary map of WAT. Furthermore, the work proposes a standardized evaluation framework and identifies key open problems, notably asynchronous behavior modeling and cross-platform reliability validation. The contributions provide an authoritative, evidence-based reference for industrial tool selection and academic research direction setting, bridging practice and theory in modern WAT.
为了解决LLM代理在现有软件界面上效率低下的问题,研究提出了一种名为String的新操作系统,通过将工具知识转化为Markdown文件形式提供给代理使用,从而提高其工作效率。
研究评估了三种基于LLM的智能IDE(Copilot、Cursor和Windsurf)在从零开始生成五个全栈Web应用时的表现,发现它们在常见模式生成上成熟度高,但在分布式架构生成中错误较多。
Current code-generation agents fail to meet functional requirements in over 70% of web application scenarios, primarily due to the absence of automated deployment, browser-level validation, and a feedback loop for iterative repair. This work proposes TDDev, a novel framework that establishes the first fully automated test-driven development (TDD) pipeline by integrating structured acceptance test generation, browser-interaction simulation for validation, and failure-triggered repair signals within a multi-agent collaborative architecture. Empirical evaluation demonstrates that TDDev improves generation quality by 34–48 percentage points, and user studies confirm it eliminates the need for manual intervention entirely. Furthermore, the study reveals that alignment between model generation style and TDD strategy is critical: misalignment not only nullifies performance gains but also inflates token consumption by up to 25-fold.
This study investigates whether large language models can generate executable formal specifications in JavaScript that faithfully capture the behavior of real-world systems, and systematically evaluates the impact of programming language choice, specification structure, and prompting strategies on fidelity. To this end, we introduce JS-SAM—the first executable JavaScript specification backend based on the SAM pattern—and conduct controlled experiments on the SysMoBench benchmark to disentangle the effects of language, contract, and prompting. Our findings reveal that specification contracts, rather than the host language itself, primarily govern fidelity; JS-SAM-generated specifications, when semantically mapped to TLA+, achieve fidelity comparable to native TLA+ specifications; only system consistency validation effectively discriminates model performance; and semantic understanding remains the principal bottleneck for complex protocols such as consensus algorithms. This work establishes a complementary verification paradigm pairing JS-SAM with TLA+.
This work addresses logical redundancy, state fragmentation, and poor maintainability arising from front-end/back-end heterogeneity in AI-generated web applications by proposing a backend-driven hypermedia application model. The approach uniquely integrates Kotlin’s statically typed HTML DSL with a reactive signal mechanism, enabling automatic synchronization between UI and backend state through type-safe custom HTML attributes and builder patterns, thereby substantially reducing reliance on JavaScript. Built upon HtmlFlow extensions, Datastar data attributes, and the Spring MVC architecture, the method demonstrates in the Petclinic case study a near-complete elimination of client-side scripting, enhanced type safety, and the realization of an isomorphic reactive interaction paradigm across frontend and backend.