**Article 14**

**Design and Development of Human-Machine Interface for Oversight**

The Emergency Dispatch Prioritization Engine (EDPE) was engineered with an integrated human-machine interface (HMI) tailored to ensure real-time, effective oversight by natural persons throughout its operational lifecycle. The interface presents prioritization recommendations alongside confidence intervals, uncertainty indicators, and salient input feature attributions. These transparency features enable users to critically evaluate the AI outputs and their underlying data contributions, including spatial heatmaps from the CNN and temporal pattern highlightings from the LSTM module. The design leverages extensive usability testing conducted between Q3 2023 and Q1 2024 with 120 emergency dispatch professionals, yielding iterative refinements specifically to minimize cognitive overload during incident triage. This approach supports sustained situational awareness, allowing operators to detect when AI output deviates from expected behavioral patterns or when input data anomalies arise.

**Objectives and Measures of Human Oversight to Mitigate Risk**

The human oversight framework embedded within EDPE targets the minimization of risks to responders’ health, public safety, and fundamental rights by enabling users to identify and correct erroneous prioritizations. This includes potential risks from data drift due to sensor malfunctions, atypical incident sequences, or rare event types. EDPE incorporates a dual-layer anomaly detection system: an internal model confidence monitor and an external operational context evaluator which triggers visual and acoustic alerts in the HMI. These alerts are designed to counter automation bias by prompting dispatch personnel to re-assess the AI’s suggestions. Additionally, the system supports a “risk escalation protocol” that encourages manual override or consultation with supervisor decision-makers for flagged outputs with confidence scores below 65%. These features align with industry benchmarks for high-stakes AI systems supporting critical decision-making workflows in 2025.

**Commensurate Oversight Measures Integrated and Delegated**

Consistent with risk-based tailoring principles, oversight measures are incorporated in two categories. First, technical safeguards embedded in the EDPE before deployment include real-time model interpretability outputs, instance-level confidence scoring, and a dedicated “stop” control accessible directly from the dispatch console interface that safely halts AI prioritization while maintaining the integrity of ongoing communication channels. These embedded tools enable immediate operator intervention without system disruption to emergency operations.

Second, provider advisories accompanying the system specify deployer-implemented measures, such as periodic operator training modules on contextual AI limitations, scheduled system performance audits, and incident logging procedures that track human override frequency and rationale. The provider supplies a compliance toolkit at installation, encompassing guidelines for configuring human oversight thresholds adjustable to local operational risk profiles. This bifurcated approach facilitates oversight calibrated by autonomy level and situational context in alignment with the system’s function in emergency service environments.

**Information Provision to Enable Effective Human Oversight**

The provider delivers the EDPE with comprehensive technical documentation and user manuals explicitly addressing the system’s capacities and limitations. This documentation details the hybrid CNN-LSTM architecture, data inputs, expected performance metrics (e.g., average prediction precision of 87% and recall of 84% on test datasets exceeding 150,000 multimodal incident records), and known failure modes identified during pre-market validation. Dispatchers receive training resources explaining the interpretation of confidence scores, output visualizations, and the significance of alerts for abnormal event patterns.

To address automation bias, the HMI design incorporates mandatory “decision confirmation” steps requiring explicit user validation of priority assignments before dispatch commands are finalized. The system’s interface educates users on the potential for over-reliance and periodically displays prompts to encourage vigilance. Users maintain full discretion to disregard, override, or reverse AI outputs at any stage, with override actions automatically logged for subsequent review.

Crucially, the “stop” button functionality permits immediate cessation of AI output generation in emergent suspicion of malfunction or contextual incompatibility. This halts the prioritization engine safely by freezing last known good states and notifying operators with instructions for fallback procedures. The processing logs and system records are maintained in compliance with data protection regulations, documenting instances involving special categories of personal data processed for bias detection and correction, with explicit justification for necessity and unfeasibility of alternatives as per Articles 14(4)(f) and related legal provisions.