Posted by GSNAdmin on December 07, 2011
The intent of this pattern is to identify the argument approach used for demonstrating the acceptability of the hazardous software failure mode. The argument can be made by  showing Absence and/or Handling of the failure mode.

Authors: Rob Weaver, John McDermic, Tim Kelly

Last Modified: 20/4/2004



Arguments for the acceptably safe nature of a hazardous software failure mode can be made two ways. As it is not possible to determine a probability for systematic software failures, evidence must be provided that the failure mode is absent or can be handled if it does occur. The structure of the pattern allows for a mixture of both argument approaches, depending upon whether individually or together enough evidence can provided to support the claims.

