SYSTEM AND METHOD FOR LEGALLY COMPLIANT DOCUMENTATION OF HEALTH AND SAFETY-RELATED PROCESS EVENTS

20220357709 · 2022-11-10

Assignee

Inventors

Cpc classification

International classification

Abstract

The invention relates to a system and a method for legally compliant documentation of health-relevant and safety-relevant process events in a food processing plant. The system comprises a workstation, an acquisition device, an auditor device, a report generator and a signing device. The acquisition device is assigned to the workstation and is configured to automatically acquire plant-related process variables. The auditor device, on the other hand, is configured to analyze the acquired process variables and identify a trigger event. Further, the auditor device is capable of generating a first data set including at least one of the acquired process variables and/or an information value about the trigger event. The report generator is adapted to determine a signing device responsible for the first data set. In addition, the report generator may generate a requirement data set comprising a signature requirement and at least part of the first data set. This requirement data set may be transmitted to the responsible signing device. The signing device is adapted to generate a requirement data set comprising an electronic signature for at least part of the requirement data set.

Claims

1. System (1) for legally compliant documentation of health-relevant and safety-relevant process events in a food processing plant, the system comprising at least a workstation, a acquisition device, an auditor device (3), a report generator (5) and a signing device (7), characterized in that a) the acquisition device is assigned to the workstation and is adapted to automatically acquire plant-related process variables; b) the auditor device (3) is adapted to (i) analyze the acquired process variables and identify a trigger event; (ii) generate a first data set, the first data set comprising at least one of the acquired process variables and/or an information value about the trigger event; (iii) submit the first data set to the report generator; c) the report generator (5) is adapted to (i) determine a signing device responsible for the first data set, the responsible signing device being determined on the basis of the information value about the trigger event contained in the data set and/or on the basis of a process variable included in the first data set and/or on the basis of an evaluation of the obtained information values and/or process variables; (ii) transmit a requirement data set to the signing device assigned to the first data set, the requirement data set comprising a signature requirement and at least part of the first data set; d) the signing device (7) is adapted to (i) generate a response data set comprising an electronic signature for at least part of the requirement data set.

2. System (1) according to claim 1 characterized in that the report generator (5) is adapted to transmit the response data set to the auditor device (3) and/or to a further signing device (8) and/or store the response data set and the requirement data set; assign a further signing device (8) to the first data set after a defined time interval in the event of a missing response via a response data set.

3. System (1) according to claim 1 characterized in that the signature requirement is dependent on the trigger event and/or is a requirement with respect to: a) a signature level comprising a security level and/or b) a signature chain comprising a requirement for a signature from at least two signing devices.

4. System (1) according to claim 1 characterized in that the response data set comprises a second data set in which data are comprised on the basis of which the auditor device (3) can initiate a continuation or an abort of the execution of a process of the workstation.

5. System (1) according to claim 4 characterized in that the system (1) comprises an action device, the action device being adapted to create and add the second data set to the response data set and then transmit the response data set to the auditor device (3) wherein the action device is in data communication with the report generator (5) and/or the signing device (7) and/or the auditor device (3).

6. System (1) according to claim 1 characterized in that the report generator (5) is arranged on a server and/or the report generator (5) comprises evaluation applications, the evaluation applications being adapted to analyze the information values comprised in the first data set and/or acquired process variables.

7. System (1) according to claim 1 characterized in that the transmission of the requirement data set, response data set, first data set and/or second data set is carried out as a data transmission process via IP-based communication, at least one data transmission process being carried out in a cryptographically secured manner by a security module.

8. System (1) according to claim 1 characterized in that the first and/or second data set comprises data selected from the group comprising location data, personal data, time-related data, audio data, image data, analysis data, process data, usage data, text data and/or video data, wherein the information value about a trigger event in a first data set comprises quality-related and/or quantity-related information about the trigger event and/or an action option for a response to the trigger event; wherein the second data set comprises an information value about an action, the action being an acknowledgement, enablement and/or cancellation of the execution of a process of the workstation.

9. System (1) according to claim 1 characterized in that the workstation is selected from the group comprising: cooling means, cooking means, storage means, analyzing means, modification means, labeling means, air conditioning means, processing means, transport means, cleaning means, water supply means, extraction means, disposal means.

10. System (1) according to claim 1 characterized in that the workstation generates plant-related process variables selected from the group comprising cooling or cooking temperatures, storage quantities, storage time, water quantity, waste quantity, air humidity, weight, cooling or cooking time, processing time, delivery quantity, air particle quantity, air quality, analysis and/or identification values of the processed substances.

11. System (1) according to claim 1 characterized in that the analysis of the recorded process variables is carried out via artificial intelligence algorithms.

12. Method for legally compliant documentation of health-relevant and safety-relevant process events in a food processing plant comprising the following steps: a. automated acquisition of plant-related process variables by an acquisition device b. identification of a trigger event by an auditor device (3); c. transmission of a first data set to a report generator (5), the data set comprising at least one of the acquired process variables and/or an information value about the trigger event; d. determining a signing device (7) responsible for the first data set on the basis of the information value about the trigger event included in the data set and/or on the basis of a process variable included in the first data set and/or on the basis of an evaluation of the obtained information values and/or process variables; e. transmission of a requirement data set to the first signing device (7) assigned to the first data set by the report generator (5), the requirement data set comprising a signature request and at least part of the first data set; f. generation of a response data set by the signing device (7), wherein the response data set comprises an electronic signature for at least part of the requirement data set

13. Method according to claim 12 characterized in that the response data set is transmitted to the report generator (5) and/or a further signing device (8) and/or an action device, wherein the further signing device (8) adds a further electronic signature to the requirement data set and/or the action device creates a second data set and adds it to the requirement data set.

14. Method according to claim 12 characterized in that the report generator (5) assigns a further signing device (8) to the first data set if the response data set is not transmitted after a specified time interval.

15. Method according to claim 12 characterized in that the auditor device (3) initiates an abort of a process based on the data included in the second data set.

16. Method according to claim 12 characterized in that the plant-related process variables and/or information values are analyzed via artificial intelligence algorithms, whereby the trigger event is identified and/or an action option is determined for a response to the trigger event.

Description

FIGURES

[0115] In the following, the invention will be explained in more detail with reference to figures, without being limited to them.

SHORT DESCRIPTION OF THE IMAGES

[0116] FIG. 1 Schematic representation of a preferred arrangement of the system according to the invention

[0117] FIG. 2 Schematically illustrated sequence of a preferred embodiment of the process according to the invention

DETAILED DESCRIPTION OF THE IMAGES

[0118] FIG. 1 illustrates a preferred arrangement of system components for a system 1 for legally compliant documentation of process events relevant to health and safety. The system 1 preferably comprises a workstation, an acquisition device, an auditor device 3, a report generator 5 and a signing device 7. The acquisition device is preferably assigned to the workstation and preferably automatically acquires plant-related process variables. These are preferably transmitted to the auditor device 3, which analyzes the acquired process variables and identifies a trigger event. In a first scenario, the auditor device 3 can preferably generate a first data set, and transmit this to the report generator 5 via a direct connection. Preferably, the report generator 5 is arranged on a server. In this case, the transmission of the data to the report generator 5 preferably takes place via the network protocol “http POST”, with the relevant data preferably being transmitted as a payload in a CSV or JSON file format. In a second alternative scenario, an SFTP server is preferably interposed between the report generator 5 and the auditor device 3. In this case, the auditor device 3 preferably performs an SFTP file upload to the SFTP server, wherein the files or data files comprise a first data set containing relevant information about the trigger event and/or the process variables per se. The SFTP server is preferably capable of converting the SFTP file into a CSV or JSON file format and transmitting the same to the report generator 5 as a payload using network protocol “http POST”. The report generator 5 is preferably configured to assign a responsible signing device 7 to the received files or information. Here, the report generator 5 preferably has a database with the addressing information of all signing facilities 7. After an assignment, a requirement data set is preferably created by the report generator 5, which has a requirement for a signature level and signature chain. The signing device 7 is preferably adapted to generate a response data set comprising an electronic signature for at least part of the requirement data set. Subsequently, the response data set is preferably transmitted to the report generator 5. The report generator 5 can preferably store it so that the signature is documented and/or the report generator 5 forwards the response data set to the auditor device 3 so that it receives confirmation that its transmitted information has been acknowledged by responsible entities. Preferably, this can be done via a direct connection between report generator 5 and auditor 3 or with an intermediate SFTP server.

[0119] FIG. 2 shows a schematic representation of a preferred embodiment of the method according to the invention. As already explained in FIG. 1, the report generator 5 preferably receives information about a trigger event from an auditor device 3 (not shown in FIG. 2) on the basis of a first data set. The report generator 5 then preferably determines a responsible signing device 7 (here: dispatcher) and assigns the first data set to it. Furthermore, the report generator 5 preferably creates a requirement data set with a requirement for a signature level and signature chain and transmits this requirement data set to the assigned signing device 7. In the present case, the signature chain requires the signature of two signing devices 7,8. The signing device 7 preferably creates a response data set after receiving the requirement data set, the response data set comprising an electronic signature for at least part of the requirement data set. Finally, the signing device 7 transmits the response data set to a further signing device 8 (here: manufacturer). The further signing device 8 also creates a response data set with an electronic signature for at least part of the requirement data set.

REFERENCE LIST

[0120] 1 System for legally compliant documentation of health-relevant and safety-relevant process events [0121] 3 Auditor device [0122] 5 Report generator [0123] 7 Signing device [0124] 8 Further signing device