All Topics  
Source lines of code

 

   Email Print
   Bookmark   Link

 

Source lines of code


 
 

Source lines of code (SLOC) is a software metricSoftware metric

A software metric is a measure of some property of a piece of software or its specifications....
 used to measure the size of a software programComputer software

Software fundamentally is the unique image or representation of physical or material alignment that constitutes configur...
 by counting the number of lines in the text of the program's source codeSource code

Source code is any series of statements written in some human-readable computer programming language....
. SLOC is typically used to predict the amount of effort that will be required to develop a program, as well as to estimate programming productivityProgramming productivity

Programming productivity refers to a variety of software development issues and methodologies affecting the quantity and qua...
 or effort once the software is produced.

Measuring SLOC

Many useful comparisons involve only the order of magnitudeFacts About Order of magnitude

An order of magnitude is the class of scale or magnitude of any amount, where each class contains values of a fixed ratio to...
 of lines of code in a project. Software projects can vary between 10 to 100,000,000 or more lines of code. Using lines of code to compare a 10,000 line project to a 100,000 line project is far more useful than when comparing a 20,000 line project with a 21,000 line project. While it is debatable exactly how to measure lines of code, discrepancies of an order of magnitude can be clear indicators of software complexity or man hours.

There are two major types of SLOC measures: physical SLOC and logical SLOC. Specific definitions of these two measures vary, but the most common definition of physical SLOC is a count of lines in the text of the program's source code including comment lines. Blank lines are also included unless the lines of code in a section consists of more than 25% blank lines. In this case blank lines in excess of 25% are not counted toward lines of code.

Logical SLOC measures attempt to measure the number of "statements", but their specific definitions are tied to specific computer languages (one simple logical SLOC measure for CC (programming language)

The C programming language is a general-purpose, procedural, imperative computer programming language developed in the earl...
-like programming languageProgramming language

A programming language is an artificial language that can be used to control the behavior of a machine, particularly a compu...
s is the number of statement-terminating semicolons). It is much easier to create tools that measure physical SLOC, and physical SLOC definitions are easier to explain. However, physical SLOC measures are sensitive to logically irrelevant formatting and style conventions, while logical SLOC is less sensitive to formatting and style conventions. Unfortunately, SLOC measures are often stated without giving their definition, and logical SLOC can often be significantly different from physical SLOC.

Consider this snippet of C code as an example of the ambiguity encountered when determining SLOC:


for (i=0; i<100; ++i) printf("hello"); /* How many lines of code is this? */


In this example we have:
  • 1 Physical Lines of Code LOC
  • 2 Logical Lines of Code lLOC (for statement and printfPrintf Summary

    Several programming languages implement a printf function, to output a formatted string....
     statement)
  • 1 Comment Line


Depending on the programmer and/or coding standards, the above "line of code" could be, and usually is, written on many separate lines:


for (i=0; i<100; ++i)
/* Now how many lines of code is this? */


In this example we have:
  • 4 Physical Lines of Code LOC (Is placing braces work to be estimated?)
  • 2 Logical Line of Code lLOC (What about all the work writing non-statement lines?)
  • 1 Comment Line (Tools must account for all code and comments regardless of comment placement.)


Even the "logical" and "physical" SLOC values can have a large number of varying definitions. Robert E. Park (while at the Software Engineering Institute) et al. developed a framework for defining SLOC values, to enable people to carefully explain and define the SLOC measure used in a project. For example, most software systems reuse code, and determining which (if any) reused code to include is important when reporting a measure.

Origins of SLOC

At the time that people began using SLOC as a metric, the most commonly used languages, such as FORTRANFortran

FORTRAN is a general-purpose, procedural, imperative programming language that is especially suited to numeric computation a...
 and assemblerAssembly language

Assembly language refers to a class of low-level languages used to write computer programs, or to a particular such language...
, were line-oriented languages. These languages were developed at the time when punch cards were the main form of data entry for programming. One punch card usually represented one line of code. It was one discrete object that was easily counted. It was the visible output of the programmer so it made sense to managers to count lines of code as a measurement of a programmer's productivity. Today, the most commonly used computer languages allow a lot more leeway for formatting. One line of text no longer necessarily corresponds to one line of code.

Usage of SLOC measures

SLOC measures are somewhat controversial, particularly in the way that they are sometimes misused. Experiments have repeatedly confirmed that effort is highly correlated with SLOC, that is, programs with larger SLOC values take more time to develop. Thus, SLOC can be very effective in estimating effort. However, functionality is less well correlated with SLOC: skilled developers may be able to develop the same functionality with far less code, so one program with less SLOC may exhibit more functionality than another similar program. In particular, SLOC is a poor productivity measure of individuals, since a developer can develop only a few lines and yet be far more productive in terms of functionality than a developer who ends up creating more lines (and generally spending more effort). Good developers may merge multiple code modules into a single module, improving the system yet appearing to have negative productivity because they remove code. Also, especially skilled developers tend to be assigned the most difficult tasks, and thus may sometimes appear less "productive" than other developers on a task by this measure. Furthermore, inexperienced developers often resort to code duplication, which is highly discouraged as it is more bug-prone and costly to maintain, but it results in higher SLOC.

SLOC is particularly ineffective at comparing programs written in different languages unless adjustment factors are applied to normalize languages. Various computer languageComputer language

A computer language is a language used by, or in association with, computers....
s balance brevity and clarity in different ways; as an extreme example, most assembly languageAssembly language

Assembly language refers to a class of low-level languages used to write computer programs, or to a particular such language...
s would require hundreds of lines of code to perform the same task as a few characters in APLAPL programming language

APL is an array programming language based on a notation invented in 1957 by Kenneth E....
. The following example shows a comparison of a "hello world" programHello world program

A "hello world" program is a software program that prints out "Hello world!" on a display device....
 written in CC (programming language)

The C programming language is a general-purpose, procedural, imperative computer programming language developed in the earl...
, and the same program written in COBOLCOBOL

COBOL is a third-generation programming language, and one of the oldest programming languages still in active use....
 - a language known for being particularly verbose.

C COBOL


  1. include


int main(void)



000100 IDENTIFICATION DIVISION.
000200 PROGRAM-ID. HELLOWORLD.
000300
000400*
000500 ENVIRONMENT DIVISION.
000600 CONFIGURATION SECTION.
000700 SOURCE-COMPUTER. RM-COBOL.
000800 OBJECT-COMPUTER. RM-COBOL.
000900
001000 DATA DIVISION.
001100 FILE SECTION.
001200
100000 PROCEDURE DIVISION.
100100
100200 MAIN-LOGIC SECTION.
100300 BEGIN.
100400 DISPLAY " " LINE 1 POSITION 1 ERASE EOS.
100500 DISPLAY "Hello world!" LINE 15 POSITION 10.
100600 STOP RUN.
100700 MAIN-LOGIC-EXIT.
100800 EXIT.
Lines of code: 5
(excluding whitespace)
Lines of code: 17
(excluding whitespace)


Another increasingly common problem in comparing SLOC metrics is the difference between auto-generated and hand-written code. Modern software tools often have the capability to auto-generate enormous amounts of code with a few clicks of a mouse. For instance, GUI builders automatically generate all the source code for a GUI object simply by dragging an icon onto a workspace. The work involved in creating this code cannot reasonably be compared to the work necessary to write a device driver, for instance. By the same token, a hand-coded custom GUI class could easily be more demanding than a simple device driver; hence the shortcoming of this metric.

There are several cost, schedule, and effort estimation models which use SLOC as an input parameter, including the widely-used Constructive Cost Model series of models by Barry BoehmBarry Boehm

Barry W. Boehm is known for many contributions to software engineering....
 et al, PRICE Systems True S and Galorath's SEER-SEMSEER-SEM

SEER-SEM the System Evaluation and Estimation of Resources - Software Estimating Model is a software project estimation mode...
. While these models have shown good predictive power, they are only as good as the estimates (particularly the SLOC estimates) fed to them. Many have advocated the use of function pointFacts About Function point

A function point is a unit of measurement to express the amount of business functionality an information system provides to ...
s instead of SLOC as a measure of functionality, but since function points are highly correlated to SLOC (and cannot be automatically measured) this is not a universally held view.

Example

According to Andrew Tanenbaum, the SLOC values for various operating systems in MicrosoftMicrosoft

company_name = Microsoft Corporation| company_logo = ...
's Windows NTWindows NT

Windows NT is a family of operating systems produced by Microsoft, the first version of which was released in July 1993....
 product line are as follows:

Year Operating System SLOC (Million)
1993 Windows NT 3.1 4-5
1994 Windows NT 3.5 7-8
1996 Windows NT 4.0 11-12
2000 Windows 2000 more than 29
2001 Windows XP 40
2003 Windows Server 2003 50


David A. WheelerDavid A. Wheeler

David A. Wheeler specializes in developing high-risk software systems, particularly large software systems and computer sec...
 studied the Red HatRed Hat

Red Hat, Inc. is one of the largest and most recognized companies dedicated to open source software....
 distribution of the GNU/Linux operating systemLinux

Linux is a Unix-like computer operating system....
, and reported that Red Hat Linux version 7.1 (released April 2001) contained over 30 million physical SLOC. He also extrapolated that, had it been developed by conventional proprietary means, it would have required about 8,000 person-years of development effort and would have cost over $1 billion (in year 2000 U.S. dollars).

A similar study was later made of DebianDebian

Debian, organized by the Debian Project, is a widely used distribution of free software developed through the collabor...
 GNU/Linux version 2.2 (also known as "Potato"); this version of GNU/Linux was originally released in August 2000. This study found that Debian GNU/Linux 2.2 included over 55 million SLOC, and if developed in a conventional proprietary way would have required 14,005 person-years and cost $1.9 billion USD to develop. Later runs of the tools used report that the following release of Debian had 104 million SLOC, and as of year 2005, the newest release is going to include over 213 million SLOC.

One can find figures of major operating systems (the various Windows versions have been presented in a table above)
Operating System SLOC (Million)
Red Hat LinuxRed Hat Linux

Red Hat Linux is one of the most popular Linux distributions, assembled by Red Hat....
 6.2
Red Hat Linux 7.1
DebianDebian

Debian, organized by the Debian Project, is a widely used distribution of free software developed through the collabor...
 2.2
55-59
Debian 3.0 104
Debian 3.1 215
Debian 4.0 283
OpenSolarisOpenSolaris

OpenSolaris is an open source project created by Sun Microsystems to build a developer community around the Solaris Operatin...
 
9.7
FreeBSDFreeBSD

colspan="2" | FreeBSD|-| colspan="2" style="text-align:center;" | br/>br />FreeBSD welcome screen...
 
8.8
Mac OS XMac OS X

Mac OS X is a line of proprietary, graphical operating systems developed, marketed, and sold by Apple Computer, the latest ...
 10.4
86
Linux kernelLinux (kernel)

name = Linux| logo = | caption = Tux the Penguin, Linux's logo,...
 2.6.0
5.2


In comparison, below are figures for various graphics applications.
Graphics Program SLOC (Million)
OpenOffice.orgOpenOffice.org

name = | logo = | screenshot = | caption = OpenOffice.org 2.0 Writer editing a text document under Windows XP...
 
BlenderBlender (software)

name = Blender| logo = | screenshot = | caption= Blender 2.42a...
 2.42
GIMPGIMP

The GNU Image Manipulation Program or just GIMP is a free software raster image editor....
 v2.3.8
Paint.NETFacts About Paint.NET

Paint.NET started as a project developed at Washington State University and mentored by Microsoft....
 3.0

SLOC and relation to security faults


A number of experts have claimed a relationship between the number of lines of code in a program and the number of bugs that it contains. This relationship is not simple, since the number of errors per line of code varies greatly according to the language used, the type of quality assurance processes, and level of testing, but it does appear to exist. More importantly, the number of bugs in a program has been directly related to the number of security faults that are likely to be found in the program.

This has had a number of important implications for system security and these can be seen reflected in operating system design. Firstly, more complex systems are likely to be more insecure simply due to the greater number of lines of code needed to develop them. For this reason, security focused systems such as OpenBSDOpenBSD

! Computer and operating system|-! Unix and Unix-like...
 grow much more slowly than other systems such as WindowsMicrosoft Windows

Microsoft Windows is a family of operating systems by Microsoft....
 and LinuxLinux

Linux is a Unix-like computer operating system....
. A second idea, taken up in both OpenBSD and many Linux variants, is that separating code into different sections which run with different security environments (with or without special privileges, for example) ensures that the most security critical segments are small and carefully auditedCode audit

A software code audit is a comprehensive analysis of source code in a programming project with the intent of discovering bug...
.

Utility

Advantages

  1. Scope for Automation of Counting: Since Line of Code is a physical entity; manual counting effort can be easily eliminated by automating the counting process. Small utilities may be developed for counting the LOC in a program. However, a code counting utility developed for a specific language cannot be used for other languages due to the syntactical and structural differences among languages.
  2. An Intuitive Metric: Line of Code serves as an intuitive metric for measuring the size of software due to the fact that it can be seen and the effect of it can be visualized. Function Point is more of an objective metric which cannot be imagined as being a physical entity, it exists only in the logical space. This way, LOC comes in handy to express the size of software among programmers with low levels of experience.

Disadvantages


  1. Lack of Accountability: Lines of code measure suffers from some fundamental problems. Some think it isn't useful to measure the productivity of a project using only results from the coding phase, which usually accounts for only 30% to 35% of the overall effort.
  2. Lack of Cohesion with Functionality: Though experiments have repeatedly confirmed that effort is highly correlated with LOC, functionality is less well correlated with LOC. That is, skilled developers may be able to develop the same functionality with far less code, so one program with less LOC may exhibit more functionality than another similar program. In particular, LOC is a poor productivity measure of individuals, since a developer can develop only a few lines and still be more productive than a developer creating more lines of code.
  3. Adverse Impact on Estimation: As a consequence of the fact presented under point (a), estimates done based on lines of code can adversely go wrong, in all possibility.
  4. Developer’s Experience: Implementation of a specific logic differs based on the level of experience of the developer. Hence, number of lines of code differs from person to person. An experienced developer may implement certain functionality in fewer lines of code than another developer of relatively less experience does, though they use the same language.
  5. Difference in Languages: Consider two applications that provide the same functionality (screens, reports, databases). One of the applications is written in C++ and the other application written in a language like COBOL. The number of function points would be exactly the same, but aspects of the application would be different. The lines of code needed to develop the application would certainly not be the same. As a consequence, the amount of effort required to develop the application would be different (hours per function point). Unlike Lines of Code, the number of Function Points will remain constant.
  6. Advent of GUIGraphical user interface

    A graphical user interface , is a particular case of user interface for interacting with a computer which employs graphical ...
     Tools: With the advent of GUI-based programming languages and tools such as Visual BasicVisual Basic

    Visual Basic is an event driven programming language and associated development environment from Microsoft....
    , programmers can write relatively little code and achieve high levels of functionality. For example, instead of writing a program to create a window and draw a button, a user with a GUI tool can use drag-and-drop and other mouse operations to place components on a workspace. Code that is automatically generated by a GUI tool is not usually taken into consideration when using LOC methods of measurement. This results in variation between languages; the same task that can be done in a single line of code (or no code at all) in one language may require several lines of code in another.
  7. Problems with Multiple Languages: In today’s software scenario, software is often developed in more than one language. Very often, a number of languages are employed depending on the complexity and requirements. Tracking and reporting of productivity and defect rates poses a serious problem in this case since defects cannot be attributed to a particular language subsequent to integration of the system. Function Point stands out to be the best measure of size in this case.
  8. Lack of Counting Standards: There is no standard definition of what a line of code is. Do comments count? Are data declarations included? What happens if a statement extends over several lines? – These are the questions that often arise. Though organizations like SEI and IEEE have published some guidelines in an attempt to standardize counting, it is difficult to put these into practice especially in the face of newer and newer languages being introduced every year.
  9. Psychology: A programmer whose productivity is being measured in lines of code, will be rewarded for generating more lines of code even though he could write the same functionality with fewer lines. The more management is focusing on lines of code, the more incentive the programmer has to expand his code with unneeded complexity. Since lines of code is proportional to the following cost of fixing bugs and maintaining the program in general, this is bad. Its an example of the business proverb: "What you measure is what you get."


In the PBS documentary Triumph of the NerdsTriumph of the Nerds

Triumph of the Nerds: The Rise of Accidental Empires is a documentary film written and hosted by Robert X....
, Microsoft executive Steve BallmerSteve Ballmer

Steven Anthony Ballmer is an American businessman and has been the chief executive officer of Microsoft Corporation since ...
 criticized the use of counting lines of code:

In IBM there's a religion in software that says you have to count K-LOCs, and a K-LOC is a thousand line of code. How big a project is it? Oh, it's sort of a 10K-LOC project. This is a 20K-LOCer. And this is 50K-LOCs. And IBM wanted to sort of make it the religion about how we got paid. How much money we made off OS/2OS/2

OS/2 is an operating system created by Microsoft and IBM, later developed by IBM exclusively....
, how much they did. How many K-LOCs did you do? And we kept trying to convince them - hey, if we have - a developer's got a good idea and he can get something done in 4K-LOCs instead of 20K-LOCs, should we make less money? Because he's made something smaller and faster, less K-LOC. K-LOCs, K-LOCs, that's the methodology. Ugh! Anyway, that always makes my back just crinkle up at the thought of the whole thing.

Related terms

KLOC: 1,000 lines of code

KDLOC: 1,000 delivered lines of code

KSLOC: 1,000 source lines of code

MLOC: 1,000,000 lines of code

GLOC: 1,000,000,000 lines of code

TLOC: 1,000,000,000,000 lines of code

Additional reading

External links

  • Resource Standard Metrics (RSM) defines "effective lines of code" as a realistics code metric independent of programming style.
  • Linux Kernel 2.6.17, Firefox, Apache HPPD, MySQL, PHP using RSM.


  • Tanenbaum, Andrew S. Modern Operating Systems (2nd ed.). Prentice Hall. ISBN 0-13-092641-8.