Effective December 1, 2025
Ajiro Digital Asset Group, Inc. and its subsidiaries and affiliates (hereinafter collectively referred to as "ADAG", "we," "our," or "us") believe our mission is to contribute to society through solutions for data management and utilization employing novel technologies.
Accordingly, we recognize that implementing appropriate governance and security measures for all Information Assets handled in our business activities is one of the most critical management priorities for fulfilling our responsibility to secure the trust of our customers and the wider public. To fulfill this responsibility, we hereby establish this Basic Information Security Policy (hereinafter referred to as the "Policy"), and all personnel, including ADAG's officers, shall fully understand this Policy and strive to enhance and strengthen the Information Security Management System.
This Policy applies to all Information Assets managed by us and the business operations related to those information assets. It applies to all personnel across ADAG Group, including all officers, (i.e., full-time employees, contract employees, temporary employees, part-time workers, external vendor personnel, etc.).
We shall recognize the importance of all handled Information Assets from the perspectives of Confidentiality, Integrity, and Availability, conduct risk assessments, and strive for the appropriate protection of information assets under the Information Security Management System.
"Information Assets" refers to the information and data that we hold or manage for its operations, regardless of whether it is tangible or intangible. This includes the necessary information systems, networks, and facilities required to process and handle them.
To ensure the active involvement of management, the Board of Directors shall appoint a Chief Information Security Officer (CISO). A dedicated Information Security Department shall be established to implement continuous improvement toward the maintenance and enhanced effectiveness of information security through risk assessment, the formulation and implementation of security measures, periodic review and inspection.
We shall establish internal regulations and procedures (e.g., standards and rules) in compliance with this Policy to ensure the appropriate management and protection of Information Assets and shall ensure that all relevant stakeholders are thoroughly aware of them.
All personnel, including ADAG's officers, shall act in accordance with all relevant laws and regulations concerning information security, national guidelines and other standards, as well as this Policy.
We shall endeavor to improve the information security literacy of all personnel, including officers, and shall conduct periodic education and training to ensure the proper management of our Information Assets, thereby implementing the continuous improvement of information security management.