−Removed: Unresolved Staff
+Added: Unresolved Staff Comments
This information is not required for smaller reporting
Cybersecurity
−Removed: We rely on our information technology to operate
−Removed: our business.
−Removed: As such, we have policies and processes designed to protect our information technology systems and resolve issues in a
−Removed: timely manner in the event of a cybersecurity threat or incident.
−Removed: We have designed our business applications and
−Removed: hosting services to minimize the impact that cybersecurity incidents could have on our business and have identified back-up systems where
−Removed: We seek to further mitigate cybersecurity risks through a combination of monitoring and detection activities, use of anti-malware
−Removed: applications, quality audits and communication and reporting structures, among other processes.
−Removed: As of December 31, 2024, we have not identified
−Removed: an indication of a cybersecurity incident that would have a material impact on our business and consolidated financial statements.
−Removed: Currently, we do not own any or lease any
+Added: We rely on our information technology to operate our
+Added: As a smaller reporting company with limited operations (two employees), we maintain basic but appropriate policies and processes
+Added: designed to protect our information technology systems and resolve issues in a timely manner in the event of a cybersecurity threat or
+Added: Our processes for assessing, identifying, and managing
+Added: material risks from cybersecurity threats include periodic reviews by management (our CEO/CFO, who oversees IT matters given the company’s
+Added: size), use of anti-malware software, regular backups of critical data to secure offsite/cloud locations, access controls (password protection
+Added: and limited user permissions), and monitoring for unusual activity.
+Added: We do not maintain a dedicated cybersecurity team but engage third-party
+Added: IT consultants as needed for vulnerability assessments and incident response planning.
+Added: The full Board of Directors (which performs all
+Added: governance functions, including audit and risk oversight) receives updates from management on cybersecurity matters at least annually
+Added: or as significant risks arise.
+Added: As of December 31, 2025, and through the date of this
+Added: filing, we have not identified any cybersecurity incidents that have materially affected or are reasonably likely to materially affect
+Added: our business strategy, results of operations, or financial condition.
+Added: We continue to monitor evolving cybersecurity risks and may enhance
+Added: processes as our operations grow or threats change.
+Added: Currently, we do not own any or lease any real
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.