Deviation Risk Assessment is one of Understand's built-in reports — run it on your own code from the GUI, or headlessly with und report.
Deviation Risk Assessment
Languages: AnyTargets: CodeCheck
Every deviation with its recorded risk, and the ones missing one listed first.
Functional-safety standards (ISO 26262, IEC 61508, IEC 62304) require that a deviation from the coding guidelines documents its risk: what could go wrong because this code stays as it is. This report splits the inspection's deviations into the ones whose record carries a Risk Assessment and the ones whose record does not -- the second group is the assessor's work list, so it comes first.
The records are the ones suppressions already carry (see the Deviation Register).