UNRESOLVED STAFF COMMENTS
+Added: Not applicable.
CYBERSECURITY
−Removed: management and strategy
−Removed: recognize the critical importance of developing, implementing, and maintaining robust cybersecurity measures to safeguard our information
−Removed: systems and protect the confidentiality, integrity, and availability of our data.
−Removed: Material Risks & Integrated Overall Risk Management
−Removed: have strategically integrated cybersecurity risk management into our broader risk management framework to promote a company-wide culture
−Removed: of cybersecurity risk management.
+Added: Risk management and strategy
+Added: the critical importance of developing, implementing, and maintaining robust cybersecurity measures to safeguard our information systems
+Added: and protect the confidentiality, integrity, and availability of our data.
+Added: Managing Material Risks
+Added: & Integrated Overall Risk Management
+Added: strategically integrated cybersecurity risk management into our broader risk management framework to promote a company-wide culture of
+Added: cybersecurity risk management.
This integration ensures that cybersecurity considerations are an integral part of our decision-making
2 unchanged sentences
objectives and operational needs.
−Removed: Third-Party Risk
+Added: Oversee Third-Party Risk
we are aware of the risks associated with third-party service providers, we have implemented stringent processes to oversee and manage
−Removed: We conduct thorough security assessments of all third-party providers before engagement and maintain ongoing monitoring
−Removed: to ensure compliance with our cybersecurity standards.
+Added: these risks .
+Added: We conduct thorough security assessments of all third-party providers before engagement and maintain ongoing monitoring to
+Added: ensure compliance with our cybersecurity standards.
The monitoring includes annual assessments of the system and organization controls
2 unchanged sentences
or other security incidents originating from third parties.
−Removed: from Cybersecurity Threats
−Removed: have not encountered cybersecurity challenges that have materially impaired our operations or financial standing during the financial
−Removed: year ended December 31, 2024.
−Removed: We will continue to monitor and assess our cybersecurity risk management program as well as invest in and
−Removed: seek to improve such systems and processes as appropriate.
−Removed: If we were to experience a material cybersecurity incident in the future,
−Removed: such an incident may have a material effect, including on our operations, business strategy, operating results, or financial condition.
−Removed: For more information regarding cybersecurity risks that we face and potential impacts on our business related thereto, see the section
−Removed: titled “ Risk Factors ” in Part I, Item 1A of this Annual Report on Form 10-K.
−Removed: board of directors is responsible for monitoring and assessing strategic risk exposure.
−Removed: Our board of directors administers its cybersecurity
−Removed: risk oversight function directly as a whole, as well as through the Audit Committee.
−Removed: Our executive management team informs our Audit
−Removed: Committee on cybersecurity risks on a regular basis, at least once per year.
−Removed: Audit Committee is primarily responsible for assisting our board of directors in fulfilling its ultimate oversight responsibilities relating
−Removed: to risk assessment and management, including relating to cybersecurity and other information technology risks.
−Removed: The Audit Committee oversees
−Removed: management’s implementation of our cybersecurity risk management program, including processes and policies for determining risk
−Removed: tolerance, and reviews management’s strategies for adequately mitigating and managing identified risks, including risks relating
−Removed: to cybersecurity threats.
−Removed: cybersecurity coordinator is responsible for assessing and managing our material risks from cybersecurity threats, in close collaboration
−Removed: with our IT team and reports to our CEO.
−Removed: This ensures that the senior management are kept abreast of the cybersecurity posture and potential
−Removed: risks faced by our group.
+Added: Risks from Cybersecurity Threats
+Added: We have not encountered cybersecurity
+Added: challenges that have materially impaired our operations or financial standing during the financial year ended December 31, 2025.
+Added: continue to monitor and assess our cybersecurity risk management program as well as invest in and seek to improve such systems and processes
+Added: as appropriate.
+Added: If we were to experience a material cybersecurity incident in the future, such an incident may have a material effect,
+Added: including on our operations, business strategy, operating results, or financial condition.
+Added: For more information regarding cybersecurity
+Added: risks that we face and potential impacts on our business related thereto, see the section titled “ Risk Factors ” in
+Added: Part I, Item 1A of this Annual Report on Form 10-K.
+Added: Our board of directors is responsible
+Added: for monitoring and assessing strategic risk exposure.
+Added: Our board of directors administers its cybersecurity risk oversight function directly
+Added: as a whole, as well as through the Audit Committee.
+Added: Our executive management team informs our Audit Committee on cybersecurity risks on
+Added: a regular basis, at least once per year.
+Added: The Audit Committee is primarily
+Added: responsible for assisting our board of directors in fulfilling its ultimate oversight responsibilities relating to risk assessment and
+Added: management, including relating to cybersecurity and other information technology risks.
+Added: The Audit Committee oversees management’s
+Added: implementation of our cybersecurity risk management program, including processes and policies for determining risk tolerance, and reviews
+Added: management’s strategies for adequately mitigating and managing identified risks, including risks relating to cybersecurity threats.
+Added: Our cybersecurity coordinator
+Added: is responsible for assessing and managing our material risks from cybersecurity threats, in close collaboration with our IT team and reports
+Added: This ensures that the senior management are kept abreast of the cybersecurity posture and potential risks faced by our group.
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.