**Article 15**

### Design and Development for Accuracy and Robustness Throughout the Lifecycle

SafeRoute Traffic Monitor employs a hybrid AI architecture comprising a Graph Neural Network (GNN) component and a Transformer-based encoder to process heterogeneous traffic and environmental sensor data. The GNN has been trained on a comprehensive dataset of approximately 1 million traffic flow samples collected over two years from the urban traffic network of Metropolis City, representing diverse traffic patterns under varying congestion and incident conditions. This dataset enabled the GNN to learn complex spatial dependencies within a consistent urban environment.

The Transformer encoder ingests multi-source sensor inputs, including vehicle counts from in-road detectors, weather parameters from local weather stations, and incident reports from emergency dispatch logs, amounting to a fused input vector of roughly 512 features aggregated every 30 seconds. The Transformer was trained on a dataset of 200,000 time-aligned sensor snapshots with hazard labels generated from historical traffic incident data.

Accuracy assessments performed during the last pre-deployment validation demonstrated 87.4% hazard prediction precision and 85.6% recall under nominal operating conditions. However, internal testing highlighted that the Transformer’s hazard prediction accuracy intermittently degrades—falling to 65-70% precision—when weather station data are temporarily unavailable or exhibit elevated noise levels. This is attributable to the lack of redundancy or imputation mechanisms for degraded sensor streams within the Transformer’s current design.

No adaptive fallback mechanisms such as sensor-data substitution, model ensembling, or input error correction routines are implemented within the system. Moreover, SafeRoute does not integrate automated triggers for retraining or online adaptation in response to observed prediction inconsistencies or degraded input data quality. This fixed-model deployment approach is consistent with the versioning and release management strategy employed by Meridian Traffic Solutions, whereby model updates are performed periodically through manual retraining cycles following off-line analysis but not via continuous learning in operation.

### Scope of Model Training and Applicability Limitations

The GNN component’s training and validation were confined to data exclusively from Metropolis City, characterized by a regular grid road network, specific traffic control policies, and well-instrumented vehicle detection infrastructure. Cross-validation against smaller datasets from other urban centers, such as Coastline City, revealed a performance drop of approximately 12% in balanced accuracy, primarily due to differing traffic behaviors and network topologies (e.g., radial and irregular road patterns).

Consequently, the system’s performance outside the Metropolis context may significantly decline, with degraded hazard detection leading to elevated false positives or missed hazards. No fine-tuning, transfer learning schemes, or domain adaptation methods have been incorporated into the current system release to mitigate these geographic generalisation challenges. This limitation is explicitly documented in the user manuals under deployment constraints and is a subject of ongoing research and development efforts by Meridian Traffic Solutions.

### Declared Accuracy and Performance Metrics

The accompanying instructions for use specify key performance metrics: an overall hazard prediction precision of 87.4% and recall of 85.6% under conditions of normal sensor functionality and urban traffic topology consistent with the training environment.

Users are also informed that performance may vary under sensor data quality degradation or in different urban contexts. The documentation includes empirical performance degradation data derived from internal robustness testing (e.g., precision reduced to approximately 68% with noisy weather data, and accuracy reductions exceeding 10% in non-Metropolis urban layouts). These benchmarks aim to provide transparency on expected system behavior and support risk-informed deployment decisions.

### Resilience to Errors, Faults, and Inconsistencies

To mitigate external system faults, SafeRoute incorporates network-level monitoring that flags missing or anomalous data streams from integrated sensors. However, there are no automated recovery or fail-safe fallback mechanisms embedded within the Transformer module or GNN to handle partial or erroneous inputs dynamically.

Error detection is limited to threshold-based alerts on data availability and signal quality, communicated to downstream traffic management system operators. No real-time input data imputation or adaptive model switching is supported within the current software architecture. The absence of such resilience features underlines that accuracy and robustness may be compromised in scenarios involving sensor outages or degraded sensor fidelity.

Continuous online learning or feedback loop mitigation strategies are not active in operational deployments, consistent with Meridian’s policy to prevent unvalidated model drift. Model retraining occurs exclusively via off-line processes, triggered manually by data science teams upon detection of sustained performance declines during scheduled audits.

### Cybersecurity Measures and Protection Against Manipulation

SafeRoute employs state-of-the-art cybersecurity protocols typical of 2025 intelligent transportation system deployments, including encrypted data communication channels (TLS 1.3), role-based access controls, and integrity checks on model binaries and configuration files.

Specific protections against AI-specific threats such as data poisoning, model poisoning, or adversarial input attacks have been considered in architectural design reviews but are currently limited. The system utilizes input validation layers that discard sensor data streams exhibiting statistical anomalies beyond pre-defined thresholds, reducing the risk of adversarially crafted inputs causing mispredictions. However, advanced anomaly detection models for subtle adversarial examples have yet to be integrated.

Incident response procedures are documented for prompt isolation and remediation of cyber incidents affecting data integrity or model access, supported by audit logs with tamper-evident properties. These organizational measures complement but do not replace the need for ongoing enhancement of technical defenses against emerging AI-targeted vulnerabilities in future system versions.