| name | machine-04-search-response-drone |
| description | Non-humanoid autonomous machine for the Public Safety operating system: **Search & response drone** โ search for people, map incidents, and deliver overhead situational awareness in emergencies. Best in: disaster zones, wildland fires, search areas. A self-driving/self-operating platform whose planning brain issues physical actions as tool calls (perception-to-control trained on world models, simulation, and RLAIF) inside a defined ODD with teleoperation fallback. Use this skill to plan or operate the platform; trigger whenever this physical work is needed, even if only described. |
Search & response drone
Operating system: 04. Public Safety, Justice Operations, and Emergency Response ยท Personnel type: Non-humanoid autonomous machine
Best environments: disaster zones, wildland fires, search areas
Sector skill: ../../SKILL.md ยท Operators: ../../../_catalogs/embodied-ai-stack/ ยท Shared concepts: ../../../00-framework/SKILL.md
What this machine is
The Search & response drone is a non-humanoid autonomous machine whose job is to search for people, map incidents, and deliver overhead situational awareness in emergencies. Autonomous UAV providing search and a live overhead picture for incident command; it does not make life-safety decisions.
Operating-system context
This platform serves the Public Safety operating system, whose mission is to prevent harm, respond to emergencies, maintain order, and recover from acute incidents. It takes mobile and heavy-equipment work so people and the sector's AI agents can focus on planning, judgment, and exceptions.
When to use this skill
When a task needs the physical job "search for people, map incidents, and deliver overhead situational awareness in emergencies" in environments such as disaster zones, wildland fires, search areas. Pair with the sector skill (../../SKILL.md) for domain rules and the human accountability boundary, the AI agents under ../roles/ that plan and direct this work, and _catalogs/embodied-ai-stack/ for the autonomy, fleet-ops, teleoperation, and safety roles that run it.
Cognitive and control architecture (assumed)
These are non-humanoid autonomous machines โ vehicles and equipment that drive, fly, or operate themselves. They share the project's brain-and-tool-calls model, adapted for mobility and heavy equipment:
- Cognitive core (the autonomy "brain"). A foundation/LLM-based planner handles mission-level reasoning, natural-language tasking, and long-tail edge cases, sitting over a perception โ prediction โ planning โ control autonomy stack. The brain decides what and where; learned and classical controllers execute how at high frequency. A fleet may share one model or specialize by platform.
- Actions are tool calls. The machine exposes actuation primitives as tools โ e.g.
follow_route, set_speed, change_lane, lower_header, dump_bucket, take_off, survey_area, spray_zone, return_to_base โ which the brain invokes and low-level controllers carry out.
- Trained on world models + simulation. Planners and policies are trained against world models (learned simulators that predict vehicle dynamics, terrain, weather, and the behavior of other agents) and large-scale driving/field simulation (robot gyms), then transferred to hardware with fleet data and imitation learning.
- Many training paths (RLAIF is one). Behavior is learned through imitation from human driving, model-based and offline RL, sim-to-real, and RLHF/RLAIF, then distilled into the SLMs and tiny models that run on-vehicle โ with deterministic planners and controllers (MPC, search) for the safety-critical loop. The autonomy brain is right-sized per function; see
_catalogs/capability-optimization/.
- ODD + safety case. Each machine operates inside a defined Operational Design Domain (the geography, weather, speed, crop, or site it is certified for) and a documented safety case, rated on the SAE levels of automation (L0โL5) for road vehicles or equivalent for off-road and aerial platforms. A verified safety layer can trigger a minimal-risk maneuver (controlled safe-stop / return-to-base / hover) independently of the planning brain.
- Teleoperation fallback. A remote operator supervises and takes over for situations outside the ODD or below a confidence threshold.
Operating implication: physical-world failures are high-consequence, so the safety layer, ODD boundary, and teleop fallback are mandatory and independent of the planning brain. Public-road and airspace operation additionally require regulatory authorization (e.g. SAE-level / FMVSS treatment for road vehicles; FAA Part 107 and BVLOS waivers for drones).
Division of labor and safety
- Human owner (fleet operator / site or operations manager) โ owns the safety case, the ODD, land/site/airspace rules, and stop authority; accountable for incidents.
- Autonomy brain โ perceives, predicts, plans, and issues actuation as tool calls within the ODD.
- Verified safety layer โ triggers a minimal-risk maneuver (safe-stop / return-to-base / hover) independently of the brain.
- AI agents โ the sector's planning/monitoring agents direct and schedule the machine's missions.
- Remote operator (teleop) โ supervises and takes over beyond the ODD.
Accountability boundary
Arrests, use of force, triage in scarce life-saving situations, sentencing, detention, and incident command remain human-led.
These remain human-owned. The machine operates within its ODD and engineered safety envelope and routes anything outside it to the accountable human.
Architecture-specific failure modes
- Long-tail / edge cases โ rare scenarios the planner mishandles. Mitigation: conservative ODD, teleop fallback, continuous scenario mining.
- ODD exit โ conditions drift outside the certified domain (weather, dust, lighting, unmapped area). Mitigation: detect-and-degrade to a minimal-risk maneuver.
- Sensor degradation / spoofing โ rain, dust, glare, GPS jamming, adversarial markings. Mitigation: sensor fusion, redundancy, anti-spoofing, conservative fallback.
- Sim-to-real gap โ world-model/simulation training diverges from reality. Mitigation: shadow mode, staged deployment, real-world validation.
- Mixed-traffic / human interaction โ misreading pedestrians, livestock, ground crew, or other drivers. Mitigation: predictable behavior, low-speed zones, explicit right-of-way rules.
- Teleop latency / link loss โ remote takeover delayed or lost. Mitigation: onboard safe-stop, bounded autonomy, comms redundancy.
- Fleet model-monoculture โ a shared brain fails in lockstep. Mitigation: model diversity, staged rollout, geofencing.
Labor-market grounding (how these roles are advertised)
The human roles this operating system staffs appear on job boards with concrete, checkable signals. The AI-personnel and robot skills here are designed to support these advertised roles, not to replace the accountable human in them.
- Advertised titles & seniority ladder: Recruit/officer/EMT โ detective/paramedic/senior โ sergeant/lieutenant/captain โ chief; dispatcher โ comms supervisor; emergency-management coordinator โ director.
- Skills, tools & tech employers list: CAD (computer-aided dispatch), RMS (records management), NIMS/ICS, body-cam/evidence systems, NCIC, GIS.
- Qualifications, certifications & licenses: POST certification (police), state EMT/Paramedic (NREMT), Firefighter I/II, EMD, FEMA ICS/NIMS, CEM (certified emergency manager).
- KPIs / metrics in postings: Response and call-answer times, case clearance rate, incident outcomes, mutual-aid readiness, safety.
- Where these roles are posted: GovernmentJobs, National Testing Network/PoliceApp, USAJOBS, local agency sites, Snagajob (some support roles).
Grounding reflects 2026 job-posting conventions across LinkedIn, Indeed, Dice, ZipRecruiter, Glassdoor, USAJOBS, GovernmentJobs, and specialized boards, spot-verified against public listings and O*NET/BLS. Re-verify specifics โ especially pay, certifications, and licenses โ against live postings before operational use.
Adapting to any nation (context modifiers)
Ownership ranges from fleet-as-a-service to cooperatively shared or rented machines; affordability, repairability, connectivity (maps, GPS/RTK, comms), and regulation (road approval, airspace/BVLOS, mine/site rules) decide where it runs. In low-connectivity settings, on-board autonomy and safe-stop matter more than teleop. Re-read through:
- Scale (city-state โ federation): whether this role is unified or layered across local/regional/national tiers.
- State capacity (fragile โ high-capacity): whether the owning institution exists and can be held to account, or the job is met by markets, households, NGOs, or donors.
- Income level (low โ high): affordability of automation and the balance of subsistence vs. wage work.
- Formality (informal โ formal): whether the people and assets this role acts on appear in any registry at all.
- Resource & geography: which hazards and dependencies dominate (water-scarce, flood-prone, landlocked, trade-dependent).
- Political system & legitimacy: where the human-accountability boundary actually binds and who may hold power to account.