In NPP, the digital control system which integrated software and hardware are increasingly used to improve dependability and introduce new functionality. Traditional safety analysis can get a good result when handling accidents caused by component failures, but software does not fail in this way. STPA is a new hazard analysis technique based on systems theory rather than reliability theory. It considers the system as a whole (include the hardware and software) to analyze failure and causality of systems and treats safety as a control problem rather than a failure problem. Being a safety-critic...