SEC 10-K Item 1C cybersecurity risk-management disclosure. Registrant relies on its external manager, RMR, for IT systems and cybersecurity risk management, with Audit Committee oversight and an incident response plan. The filing states the registrant has not been materially affected by cybersecurity threats, including any previous incidents. No specific breach incident is disclosed.