{"url_path":"/sec/tghl/10-k/2026/item-16k","section_key":"item-16k","section_title":"Item 16K Cybersecurity.**","topic":"sec","document":{"doc_type":"20-F","doc_date":"2026-05-15","source_url":"https://www.sec.gov/Archives/edgar/data/2024114/0001493152-26-023959-index.html","accession_number":"0001493152-26-023959","cik":"0002024114","ticker":"TGHL","issuer_name":"GrowHub Ltd","edgar_url":"https://www.sec.gov/Archives/edgar/data/2024114/0001493152-26-023959-index.html","primary_entity_key":"0002024114","primary_entity_name":"GrowHub Ltd"},"word_count":426,"has_tables":true,"body_markdown":"**Item\n16K. Cybersecurity.**\n\n \n\nWe\nbelieve cybersecurity is fundamental to our operations and are committed to maintaining robust governance and oversight of cybersecurity\nrisks. We implement comprehensive processes to identify, assess, and manage material risks from cybersecurity threats as part of our\nbroader risk management framework.\n\n \n\nCybersecurity\nRisk Management and Strategy\n\n \n\nOur\ncybersecurity strategy prioritizes detection, analysis, and response to known, anticipated, or unexpected threats; effective management\nof security risks; and resilience against incidents. With the evolving cybersecurity landscape, our senior management and board of directors\nallocate significant resources to cybersecurity risk management, supported by advanced technologies and processes. We assess the impact\nof cybersecurity threats on our business—strategic direction, operational performance, and financial stability—using insights\nfrom known incidents in the shipping industry.\n\n \n\nWe have implemented risk-based processes, including access controls,\ndata encryption, and regular cybersecurity training for employees. These are designed to evaluate vulnerabilities and threats, minimizing\ntheir impact on our operations and stakeholders. We also oversee risks from third-party providers we depend on, conducting due diligence\nto assess their cybersecurity measures and compliance with regulatory requirements.\n\n \n\nData\nPrivacy and Safety\n\n \n\nWe\nhave comprehensive procedures to ensure data security, employing encryption and firewalls to prevent and detect risks. Confidential data\nis stored and transmitted encrypted on separate servers, with regular backups. We prohibit unauthorized third-party access to our data\nand periodically test our systems to address security and privacy risks.\n\n \n\nGovernance\n\n \n\nOur\nboard of directors oversees cybersecurity risks and incidents, including disclosure compliance and law enforcement cooperation, as we\nlack a dedicated cybersecurity committee. Senior management regularly discusses cyber risks with the board and reports material incidents.\nWe consult outside counsel on materiality and disclosure matters, with the board making final decisions. Our external IT provider’s\ncybersecurity auditing team independently tests our controls.\n\n \n\nKey\nElements of Our Approach\n\n \n\n \n1.\nContinuous\nmonitoring of cybersecurity threats using data analytics and network systems.\n\n \n\n \n2.\nEngagement\nof third-party consultants to assess vulnerabilities in our security systems.\n\n \n\n \n3.\nMateriality\nassessment of incidents by senior management and the board, with external input as needed.\n\n \n\n \n4.\nBoard\noversight of cybersecurity risks and disclosure compliance.\n\n \n\n \n5.\nTraining—We\nmaintain cybersecurity policies and provide periodic employee training to ensure compliance and risk reporting.\n\n \n\nInvestment\nand Impact\n\n \n\nWe\ncontinue to invest in cybersecurity systems and controls. Our operations and financial condition have not been materially affected by\ncybersecurity threats or past incidents, but future risks could have an impact. While we dedicate resources to managing these risks,\nour efforts may not fully prevent or remediate incidents, potentially affecting our business, reputation, and financial condition.\n\n** **\n\n64\n\n \n\n** **\n\n**Part\nIII**"}