Jev와 CodeGraph를 활용한 보안 리뷰
typesafe-security-review 프로젝트는 Jev의 확률 판단을 코드 그래프와 OWASP/CWE 데이터와 결합해 저비용 보안 스캔에 활용합니다.
이 게시물은 Jev 모델이 보안 설문지 응답 분류(구현됨/해당 없음/미구현)에서 Claude와 비교하여 더 정확한 결과를 위해 튜닝이 필요했음을 논의합니다.
#Jev security questionnaire response categorization (implemented, N/A, not implemented) given the question+response then a ground truth eval. - Claude initially performed better with little direction - Jev questions needed tuning to provide a more accurate response. Once tuned,