Search NASASearch

SEARCH · Search NASA

Results for “agent safety”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 19 records

Validating the Autonomous Science Agent

This paper describes the validation process for the Autonomous Science Agent, a software agent that will fly onboard the EO-1 spacecraft from 2003-2004. This agent will recognize science events, retarget the spacecraft to respond to the science events, and reduce data downlink to only the highest value science data. The autonomous science agent has been designed using a layered architectural approach with specific redundant safeguards to reduce the risk of an agent malfunction to the EO-1 spacecraft. This 'safe' design is also in the process of being thoroughly validated by informal validation methods and extensive testing. This paper describes the analysis used to define agent safety, elements of the design that increase the safety of the agent, and the process being used to validate agent safety prior to the agent software controlling the spacecraft.

agent safety

Validating the autonomous EO-1 science agent

This paper describes the validation process for the Autonomous Science Agent, a software agent that is currently flying onboard NASA EO-1 spacecraft. The agent autonomously collects, analyzes, and reacts to onboard science data. The Autonomous Science Agent has been designed using a layered architectural approach with specific redundant safeguards to reduce the risk of an agent malfunction to the EO-1 spacecraft. This safe design has been thoroughly validated by informal validation methods supplemented by sub-system and system-level testing. This paper describes the analysis used to define agent safety, elements of the design that increase the safety of the agent, and the process used to validate agent safety.

software

CATS-based Agents That Err

This report describes preliminary research on intelligent agents that make errors. Such agents are crucial to the development of novel agent-based techniques for assessing system safety. The agents extend an agent architecture derived from the Crew Activity Tracking System that has been used as the basis for air traffic controller agents. The report first reviews several error taxonomies. Next, it presents an overview of the air traffic controller agents, then details several mechanisms for causing the agents to err in realistic ways. The report presents a performance assessment of the error-generating agents, and identifies directions for further research. The research was supported by the System-Wide Accident Prevention element of the FAA/NASA Aviation Safety Program.

Callantine, Todd J.

Who or what saved the day? A comparison of traditional and glass cockpits

This study examined incidents reported to NASAs Aviation Safety Reporting System from a different perspective: rather than focusing on the factors contributing to or causing incidents, this study concentrated on who and what (subsystems and information) enabled the recovery from an anomaly. Incident reports describing altitude deviations were classified as to cockpit type (glass or traditional), flight phase, agent restoring safety, and cockpit subsystems providing specific information that helped restore safety. The data revealed and quantified the agents, information, and factors that 'saved the day'. The flight crews used many sources of information to detect the altitude deviations: altimeter, outside scene, altitude alert, kinesthesia, attitude and communications monitoring. In the glass cockpits the crews also used the map display and autothrottles to detect deviations from assigned altitudes. There was an interaction between the person detecting the anomaly (controller/flight crew) and the type of cockpit. Glass cockpit flight crews detect proportionally more deviations than their counterparts in traditional cockpits, while controllers tend to detect more deviations involving traditional cockpits. There was no effect of cockpit position (captain/first officer). A model that details the flow of altitude information between air traffic control, flight crews, and cockpit subsystems, was developed and validated. This model identifies strengths and weaknesses in the flow of altitude information within the current ground/air system.

Degani, Asaf

Safe Agents in Space: Preventing and Responding to Anomalies in the Autonomous Sciencecraft Experiment

This paper describes the design of the Autonomous Sciencecraft Experiment, a software agent that has been running on-board the EO-I spacecraft since 2003. The agent recognizes science events, retargets the spacecraft to respond to the science events, and reduces data downlink to only the highest value science data. The autonomous science agent was designed using a layered architectural approach with specific redundant safeguards to reduce the risk of an agent malfUnction to the EO-I spacecraft. The agent was designed to be "safe" by first preventing anomalies, then by automatically detecting and responding to them when possible. This paper describes elements of the design that increase the safety of the agent, the anomalies that occurred during the experiment, and how the agent responded to these anomalies.

autonomous science agent

An On-Board Off-Board Framework for Online Replanning: Applied to UAVs in Urban Environments

Autonomous systems are being used in a multitude of areas at an increasing rate and require a high level of adaptivity and intelligence to operate safely, especially under faulty conditions. This paper introduces a novel genetic algorithm tailored for UAV trajectory replanning, with an improved execution time via search space reduction based on the operating conditions of the UAV and its remaining mission. A unique characteristic of the replanning agent is its fast-start and adaptive properties, pre-seeding candidates with partial solutions and dynamically tuning elitism, crossover, and mutation rates in correspondence to the average fitness and diversity of the population. A population restart mechanism and early stopping mechanism are evaluated as well to assess their effect on solution quality and runtime. Previous work on genetic algorithms for UAV replanning were conducted with short trajectories in a small state space. Our UAV operates in a 56,000 square meter simulated urban environment, with static obstacles and a total of 53 possible waypoints. The agent increases the safety and reliability of UAV autonomy when operating under faulty conditions and when replanning is required.

Machine Learning

Suppression of Low Strain Rate Nonpremixed Flames by an Agent

The agent concentration required to achieve the suppression of low strain rate nonpremixed flames is an important consideration for fire protection in a microgravity environment such as a space platform. Currently, there is a lack of understanding of the structure and extinction of low strain rate (<20 s(exp -1)) nonpremixed flames. The exception to this statement is the study by Maruta et al., who reported measurements of low strain rate suppression of methane-air diffusion flames with N2 added to the fuel stream under microgravity conditions. They found that the nitrogen concentration required to achieve extinction increased as the strain rate decreased until a critical value was obtained. As the strain rate was further decreased, the required N2 concentration decreased. This phenomenon was termed "turning point" behavior and was attributed to radiation-induced nonpremixed flame extinction. In terms of fire safety, a critical agent concentration assuring suppression under all flow conditions represents a fundamental limit for nonpremixed flames. Counterflow flames are a convenient configuration for control of the flame strain rate. In high and moderately strained near-extinction nonpremixed flames, analysis of flame structure typically neglects radiant energy loss because the flames are nonluminous and the hot gas species are confined to a thin reaction zone. In counterflowing CH4-air flames, for example, radiative heat loss fractions ranging from 1 to 6 percent have been predicted and measured. The objective of this study is to investigate the impact of radiative emission, flame strain, agent addition, and buoyancy on the structure and extinction of low strain rate nonpremixed flames through measurements and comparison with flame simulations. The suppression effectiveness of a number of suppressants (N2, CO2, or CF3Br) was considered as they were added to either the fuel or oxidizer streams of low strain rate methane-air diffusion flames.

Hamins, A.

Error Generation in CATS-Based Agents

This research presents a methodology for generating errors from a model of nominally preferred correct operator activities, given a particular operational context, and maintaining an explicit link to the erroneous contextual information to support analyses. It uses the Crew Activity Tracking System (CATS) model as the basis for error generation. This report describes how the process works, and how it may be useful for supporting agent-based system safety analyses. The report presents results obtained by applying the error-generation process and discusses implementation issues. The research is supported by the System-Wide Accident Prevention Element of the NASA Aviation Safety Program.

Callantine, Todd

Occupational safety considerations with hydrazine

Hydrazine is a reducing agent that is most commonly used as a propellant and as an oxygen scavenger in boilers. Hydrazine is extremely irritating and has been demonstrated to produce both acute and chronic toxicity. As a result, the established permissible inhalation exposure limits are very low, and respiration protection is required whenever vapors are present. Liquid hydrazine penetrates the skin and produces a chemical burn; therefore, some protective measures must also be taken to protect the skin from liquid contact. Often, however, a cumbersome, whole-body protective suit is worn to protect against skin contact with vapor as well. To what extent it is actually necessary to protect skin from vapor penetration had not previously been demonstrated. In an attempt to answer this question, we conducted a study with rats to compare the dermal penetration of hydrazine vapor with inhalation. Pharmacokinetic modeling was used to compare body burdens resulting from these different routes of exposure. The analysis concluded that the vapor concentration during a skin-only exposure would have to be at least 200 times higher than that during inhalation to achieve the same body burden. This type of estimation illustrates the use of predictive toxicology in occupational exposures.

Clewell, Harvey J., III

Critical safety assurance factors for manned spacecraft - A fire safety perspective

Safety assurance factors for manned spacecraft are discussed with a focus on the Space Station Freedom. A hazard scenario is provided to demonstrate a process commonly used by safety engineers and other analysts to identify onboard safety risks. Fire strategies are described, including a review of fire extinguishing agents being considered for the Space Station. Lessons learned about fire safety technology in other areas are also noted. NASA and industry research on fire safety applications is discussed. NASA's approach to ensuring safety for manned spacecraft is addressed in the context of its multidiscipline program.

Rodney, George A.

The Conference Proceedings of the 2001 Air Transport Research Society (ATRS) of the WCTR Society

The ATRS held its Annual conference at Jeju Island, Korea in July 2001. The conference was a success with nearly 140 participants including 70 presenters. This report contains presentations from Volume 1 on the following: Airline and Travel Agent Relationships in Asia;Benchmarking Aviation Safety in the Commercial Airline Industry;Impact of Frequent Flyer Program on the Demand for Air Travel; Application of Genetic Algorithm on Airline Schedule;The Effects of Dual Carrier Designation and Partial Liberalization: The Case of Canada;Defense of Air Carriers and Air Agencies in FAA Enforcement proceedin gs - Damage Control Before the Case Arises; Cost Incentives for Airline Mergers? - An examination on the cost impact of U.S. airline mergers and acquisitions;Airport Regulation, Airline Competition and Canada's Airport System; Airline Competition: The Case of Israel's Domestic Doupoly; Non-Financial Indicators of Airline Distress: A Conceptual Approach;and Airport Privatization: An Empirical Analysis of Financial and Operational Efficiency.

Lee, Yeong-Heok

Human Factors Research Considerations for Terminal Area Urban Air Mobility Operations

In this presentation, we discuss the human factors research challenges from introducing greater levels of automation in a future air transportation concept called Urban Air Mobility (UAM). UAM is an air transportation concept that aims to provide air transportation services to the daily commuter, as well as emergency response and package delivery. The principal innovation over current day large air transport system is the greater distribution of important safety functions to automated and human agents; these functions include air traffic management, traditionally an air traffic controller responsibility. A central aspect of UAM is the development of an automated air traffic manager, whose primary responsibility is to approve airspace access for vehicle operators. Vehicle operator roles may include onboard and remote pilots, as well as a human manager who will supervise an entire fleet. Alternatively, both fleet manager and vehicle operators can be merged into a single role – a feasible option if UAM aircraft are autonomous. In lieu of tower controllers, vertiport managers, with the assistance of automation, will manage arrival and departure schedules between vertiports, as well as supervise surface operations. Our approach here will be to introduce use cases currently being developed by NASA, and then provide preliminary definitions for each of the roles introduced above and how coordination between them can be configured to support the operations within the use cases described. Subsequently, we review the tools and interfaces being developed to support the various roles. To conclude, we present current human factors work related to defining the roles above and suggest future work to advance the UAM concept.

trial planning

Fire Suppression in Low Gravity Using a Cup Burner

Longer duration missions to the moon, to Mars, and on the International Space Station increase the likelihood of accidental fires. The goal of the present investigation is to: (1) understand the physical and chemical processes of fire suppression in various gravity and O2 levels simulating spacecraft, Mars, and moon missions; (2) provide rigorous testing of numerical models, which include detailed combustion-suppression chemistry and radiation sub-models; and (3) provide basic research results useful for advances in space fire safety technology, including new fire-extinguishing agents and approaches.The structure and extinguishment of enclosed, laminar, methane-air co-flow diffusion flames formed on a cup burner have been studied experimentally and numerically using various fire-extinguishing agents (CO2, N2, He, Ar, CF3H, and Fe(CO)5). The experiments involve both 1g laboratory testing and low-g testing (in drop towers and the KC-135 aircraft). The computation uses a direct numerical simulation with detailed chemistry and radiative heat-loss models. An agent was introduced into a low-speed coflowing oxidizing stream until extinguishment occurred under a fixed minimal fuel velocity, and thus, the extinguishing agent concentrations were determined. The extinguishment of cup-burner flames, which resemble real fires, occurred via a blowoff process (in which the flame base drifted downstream) rather than the global extinction phenomenon typical of counterflow diffusion flames. The computation revealed that the peak reactivity spot (the reaction kernel) formed in the flame base was responsible for attachment and blowoff of the trailing diffusion flame. Furthermore, the buoyancy-induced flame flickering in 1g and thermal and transport properties of the agents affected the flame extinguishment limits.

Takahashi, Fumiaki

Fire Suppression in Low Gravity Using a Cup Burner

Longer duration missions to the moon, to Mars, and on the International Space Station increase the likelihood of accidental fires. The goal of the present investigation is to: (1) understand the physical and chemical processes of fire suppression in various gravity and O2 levels simulating spacecraft, Mars, and moon missions; (2) provide rigorous testing of numerical models, which include detailed combustion suppression chemistry and radiation sub-models; and (3) provide basic research results useful for advances in space fire safety technology, including new fire-extinguishing agents and approaches. The structure and extinguishment of enclosed, laminar, methane-air co-flow diffusion flames formed on a cup burner have been studied experimentally and numerically using various fire-extinguishing agents (CO2, N2, He, Ar, CF3H, and Fe(CO)5). The experiments involve both 1g laboratory testing and low-g testing (in drop towers and the KC-135 aircraft). The computation uses a direct numerical simulation with detailed chemistry and radiative heat-loss models. An agent was introduced into a low-speed coflowing oxidizing stream until extinguishment occurred under a fixed minimal fuel velocity, and thus, the extinguishing agent concentrations were determined. The extinguishment of cup-burner flames, which resemble real fires, occurred via a blowoff process (in which the flame base drifted downstream) rather than the global extinction phenomenon typical of counterflow diffusion flames. The computation revealed that the peak reactivity spot (the reaction kernel) formed in the flame base was responsible for attachment and blowoff of the trailing diffusion flame. Furthermore, the buoyancy-induced flame flickering in 1g and thermal and transport properties of the agents affected the flame extinguishment limits.

Takahashi, Fumiaki

NASA System-Wide Safety Wildland Firefighting Operations Workshop Report

On March 9-11, 2022, NASA’s System-Wide Safety Wildland Firefighting Operations Workshop engaged the broader wildland firefighting management ecosystem in a safety-oriented discussion via a virtual platform. This enabled a better understanding of how NASA and community expertise can be leveraged in the safe development of current and future firefighting systems and operations. The goals of the workshop were to: (1) identify and prioritize the top safety-oriented risks, gaps in capabilities, and emerging technologies to enhance wildland firefighting for both near-term and far-term concepts, with a specific focus on aviation operations and (2) engage the stakeholder community in defining emergent safety-oriented scope, roles, responsibilities, and procedures for agents undergoing increasingly complex wildland firefighting operations in information-rich, but uncertain environments. Workshop participants were solicited from wildland firefighting stakeholders across government, industry, and academia. All levels of government were engaged, as NASA sought attendees from federal, state, local, and tribal government agencies. Industry participants from traditional wildland firefighting domains such as data visualization and equipment manufacturers were invited, and corporate attendees from novel application domains such as aerial robotics and autonomous systems were present as well. The top three findings were as follows: (1) Enhancing situation awareness is a safety priority, especially in the use of aerial assets; (2) Timely access to information along with data fusion and integrated displays will enhance safety-critical decision-making both inside and outside aviation contexts; and (3) Tailorable standards and common operating pictures in the field will enhance inter-agency cooperation in the wildland firefighting lifecycle and enable the optimal use of limited resources such as aerial assets. The workshop helped inform NASA of the relevant safety-related wildland firefighting concerns and aided the broader ecosystem in understanding the potential safety-oriented role NASA might play in this community. Increased engagement with crucial governmental stakeholders (e.g., U.S. Forest Service, CAL FIRE, etc.) along with industry partners in cutting- edge information -centric domains is a fundamental next step. Additionally, the workshop findings will help define the first of a series of operationally challenging demonstrations, held in concert with strategic ecosystem partners, known as the Safety Demonstrator Series for NASA’s System-Wide Safety project. The first demonstration is set in the wildland firefighting application domain and will: (1) examine high risk operational scenarios to reduce their overall risk via services, functions or capabilities that act as risk mitigators (or transfer that risk to automated systems better able to tolerate it) and (2) explore novel tools and technologies that will enhance safety margins by enabling non-traditional or neoteric operational paradigms.

wildland firefighting

Food safety

Illness induced by unsafe food is a problem of great public health significance. This study relates exclusively to the occurrence of chemical agents which will result in food unsafe for human consumption since the matter of food safety is of paramount importance in the mission and operation of the manned spacecraft program of the National Aeronautics and Space Administration.

Pier, S. M.

A Distributed Simulation-to-Flight Framework to Support Investigating Trust/Trustworthiness in Multi-Agent Systems

As autonomous systems continue to grow both in use and complexity, the necessity for robust and extensible simulation-to-flight frameworks is paramount for establishing an effective architecture for autonomous systems. Hardware test flights are time-consuming and cost prohibitive during early system design and development. Simulation environments can be useful tools to accelerate algorithm development and testing. However, transitions from simulation to flight (sim-to-flight) can be challenging, unless systems are designed with this transition in mind and with the necessary capabilities built into the architecture and framework. One of the objectives of Autonomy Teaming and TRAjectories for Complex Trusted Operational Reliability (ATTRACTOR) was to design and develop a distributed mixed-reality simulation environment to begin establishing a basis for certification of autonomous systems via research into trust and trustworthiness. ATTRACTOR’s objective was to construct computational concepts of trustworthiness and justifiable trust in multi-agent autonomous teams, to inform future certification of safety-critical and time-critical autonomous systems in aviation. In this paper, we present an autonomous systems architecture and development framework paired with a persistent distributed modeling and simulation (ModSim) environment for test and evaluation of autonomous systems. They were designed under ATTRACTOR in order to measure and establish trustworthiness and trust in single-and multi-agent human-machine systems whether these machines are fixed-wing general aviation, rotary-wing Unmanned Aerial Vehicles (UAVs), ground rovers, or even spacecraft. The Autonomous Entity Operational Network (AEON) framework enables autonomous system development with an easily extensible collection of libraries and plug-n-play nodes facilitated by the Data Distribution Service (DDS) communication protocol standard. The Baseline Environment for Autonomous Modeling (BEAM) simulation environment is a distributed mixed-reality Unity™-based environment built around the same DDS communication paradigm allowing for easy integration with AEON-based autonomous applications, enabling sim-to-flight with minimal configuration changes. Using AEON and BEAM, source code that runs in simulation ports directly to hardware and has successfully flown in the National Airspace System (NAS) at NASA LaRC many times over the lifetime of ATTRACTOR.

Benjamin N Kelley

Computational Models of Trustworthiness and Trust in Autonomous Cyber-Physical-Human Systems

In this paper, we propose an approach to developing a concept of actionable trust in multi-agent,cyber-physical-human systems in safety-critical and time-critical environment of air transportation. Actionable trust requires computational models of trustworthiness and trust, for use during system design and in real time, during operations. We describe the models, examine their computability and scalability, as well as what remains to be done.

Autonomous Systems