Shuaruta Inc.

Information Security Policy

Shuaruta Inc. (hereinafter “the Company”) protects information entrusted by customers and the Company’s own information assets from threats such as accidents, disasters, and crime. To meet the trust of customers and society, the Company promotes information security company-wide in accordance with the following policy.

1. Management responsibility

The Company works to improve and maintain information security in an organized and continuous manner under management leadership.

2. Internal structure

The Company establishes an organization for maintaining and improving information security, and defines information security measures as formal internal rules.

3. Employee efforts

The Company’s employees acquire the knowledge and skills required for information security, and make solid efforts toward information security.

4. Compliance with laws and contractual requirements

The Company complies with laws, regulations, standards, and contractual obligations related to information security, and meets customer expectations.

5. Response to violations and incidents

The Company responds appropriately to legal violations, contractual violations, and incidents related to information security, and works to prevent recurrence.

Established: April 1, 2026

Shuaruta Inc.
Takuya Nishimoto, Representative Director

The structure of this policy is based on the sample Information Security Basic Policy in Appendix 2 of the “Information Security Measures Guideline for SMEs” published by the Information-technology Promotion Agency (IPA), Japan.