Papa John's International, Inc. filed its 10-K Item 1C disclosing its cybersecurity governance and risk management program. The company explicitly states it is not aware of any material cybersecurity incidents, threats, or third-party incidents that have impacted the company in the past three years. The filing details its defense-in-depth model, board oversight via the Audit Committee, and third-party risk management processes.