This section summarizes the TMS320F28P55x product safety
capability. Each TMS320F28P55x product:
- Is offered as a functional Safety Element out of Context (SEooC)
- Was assessed to have met the relevant systematic capability compliance requirements of IEC 61508:2010 and ISO 26262:2018 and
- Achieves systematic integrity of SIL 3 and ASIL D
- In addition, the device can meet
hardware architectural metrics up to ASIL B and SIL 2 by implementing the proper
safety concept (for example, Reciprocal Comparison by Software).
- Contains multiple features to support freedom from interference (FFI) for
mixed-criticality of safety requirements assigned to the different
sub-elements
- The TMS320F28P55x MCUs are Type
B devices, as defined in IEC 61508-2:2010
- This device claims no hardware fault tolerance, (for example, no claims of HFT > 0), as defined in IEC 61508:2010
- Normally, the component functional safety manual must provide a list of product
safety constraints for safety components developed according to many safety
standards. For a simple component, or more complex components developed for a
single application, this is a reasonable response; however, the TMS320F28P55x MCU product
family is both a complex design and is not developed targeting a single,
specific application. Therefore, a single set of product safety constraints
cannot govern all viable uses of the product.