Safety Management Work Products#

Platform Safety Plan
status: valid

Plan to manage and guide the execution of the safety activities of a project including dates, milestones, tasks, deliverables, responsibilities (including the Safety Manager appointment) and resources.

This platform safety plan also takes into account the eclipse organization’s rules relevant for safety development.

Guidelines on how an change impact analysis shall be concluded on each item or element involved together with it’s connected items or elements.

This is on following level:

  • Project/Platform (contains definitions how safety planning is performed generally in the project)

Module Safety Plan
status: valid

Plan to manage and guide the execution of the safety activities of a project including dates, milestones, tasks, deliverables, responsibilities (including the Safety Manager appointment) and resources.

Guidelines on how an impact analysis shall be concluded on each item or element involved together with it’s connected items or elements.

This is on following level:

  • Module (contains activities planning based on a Change Request)

Platform Safety Package
status: valid
tags: doc_lifecycle_model_2, platform, safety_management

Compiled Safety Relevant Work Products. For Platform SEooC.

Note that the platform safety package does not contain an argument that the platform is safe.

Module Safety Package
status: valid
tags: doc_lifecycle_model_2, safety_management

Compiled Safety Relevant Work Products. For Module SEooC.

Note that the module safety package does not contain an argument that the module is safe.

Formal Document Review Reports
status: valid

Review that a work product provides sufficient and convincing evidence of their contribution to the achievement of functional safety considering the corresponding objectives and requirements of ISO 26262.

Will contain formal review report for Safety Plan, Safety Package, Safety Analyses and DFA

Process Safety Audit Report
status: valid
tags: doc_lifecycle_model_2, safety_management

Examination of an implemented process with regard to the process objectives and that those match the ISO 26262.

Platform Safety Manual
status: valid
tags: doc_lifecycle_model_2, platform, safety_management

The safety manual describes:

  • The Assumed Platform Requirements (Safety related);

  • the safety concept of the SEooC (i.e. which faults are taken care of);

  • the Assumptions of Use (of the platform level), including AoU of external components to be fulfilled also by the user;

  • links to all the module safety manuals of the platform integration;

  • a link to the (platform) user manual;

  • the reactions of the implemented functions under anomalous operating conditions; and

  • a description of known anomalies with corresponding workaround measures.

This is on platform level. Only one manual for the entire platform.

Module Safety Manual
status: valid

The safety manual describes:

  • The Assumed Platform Requirements (Safety related);

  • the safety concept of the SEooC (i.e. which faults are taken care of);

  • the Assumptions of Use (of the modules’s components and of the associated feature);

  • a link to the platform safety manual (containing the general AoUs every user has to obey additionally);

  • a link to the (module) user manual;

  • the reactions of the implemented functions under anomalous operating conditions; and

  • a description of known anomalies with corresponding workaround measures.

This is on module level. One manual per each module.

Software component classification
status: valid

The classification shall include:

  • the unique identification of the pre-developed software component;

  • the maximum ASIL of the safety requirements allocated to it;

  • a development processes analysis; and

  • a complexity analysis of the pre-developed SW component; and

  • finally a SW component classification as input for the safety planning (which is to cover the determined gaps, if any, by additional verification measures).

Tailoring Documents
status: valid
tags: doc_lifecycle_model_2, safety_management

This work product argues why some safety work products are not needed in the project.

It may have several levels:

  • Project/Platform

  • Feature/Component

It belongs to the Safety Plan.