No. |
Name |
Area |
Risk rating |
Comment |
1 |
Risk of disturbances or breaks in IT infrastructure operation |
IT |
Short-term: High
Medium-term: High
Long-term: High |
The risk of IT systems failure which may result in downtimes or inability to perform tasks by the business units.
The risk rating has not changed compared with the preceding year. |
2 |
Risk of effective cyber attacks |
IT |
Short-term: High
Medium-term: High
Long-term: High |
Rapid growth of cyber threats is related to a growing number of attacks resulting in the risk of IT systems being stopped or destroyed, which may cause downtimes or inability of business units to complete their tasks.
The risk rating grew compared with the preceding year due to the higher number of security-breaching incidents and cyber attacks on organisation after the outbreak of the armed conflict in Ukraine, as well as external development of technology and cloud solutions. |
3 |
Risk of incidents regarding personal data protection |
HR |
hort-term: High
Medium-term: High
Long-term: Medium |
Risk of improper personal data securing.
The risk rating grew compared with the preceding year due to the higher number of security-breaching incidents after the outbreak of the armed conflict in Ukraine. |
4 |
Risk of IT infrastructure inadequacy for strategic goals |
IT |
Short-term: High
Medium-term: High
Long-term: High |
Risk of IT infrastructure condition being inadequate to the needs and strategy of the Group.
The risk rating has not changed compared with the preceding year. |
5 |
Risk related to cloud infrastructure utilisation |
IT |
Short-term: Medium
Medium-term: High
Long-term: High |
Risk related to data leakage, data loss or limited access to cloud-stored data.
The risk rating dropped compared with the preceding year due to implementation of engineering solutions (including multifactor authentication), high level of availability and security of cloud resources. |
6 |
Risk of profitability loss |
Finances |
Short-term: Medium
Medium-term: High
Long-term: High |
The risk of profitability loss as a result of financial risks related to instability of financial and commodity markets results from the fact that the Capital Group companies carry out exports, imports, sales and purchases based on variable prices depending on FX rates (denominated transactions). The prices of base materials, including aluminium for the EPS and the ASS, and petrochemicals for the FPS, undergo changes on the world’s markets, which is translated into changes in the costs of production and finished products prices.
The risk rating dropped compared with the preceding year due to inclusion in the risk assessment of financial markets uncertainties, sales levels forecasts within short-term horizon, possibility to adjust hedging instruments to the needs of the organisation, and becoming accustomed to the armed conflict in Ukraine. |
7 |
Risk of ineffective ownership supervision of assets |
General corporate |
Short-term: Medium
Medium-term: Medium
Long-term: Medium |
Risk of high-value assets loss (liquidation, disposal), necessity to recognise assets impairment.
The risk rating grew compared with the preceding year, due to the acquisition of SELT Sp. z o.o. |
8 |
Risk of failure in the implementation of an IT system or possession of an unsupported system |
IT |
Short-term: Medium
Medium-term: Medium
Long-term: N/A |
Risk of failure in the implementation of an ERP class IT system or possession of a system unsupported by the developer.
The risk rating has not changed compared with the preceding year. |
9 |
Risk of ineffective receivables management policy |
Finances |
Short-term: Medium
Medium-term: Medium
Long-term: Medium |
Risk of losing receivables of significant value, necessity of recognising provisions as a result of, for example, high sales concentration, faulty customer analysis, insufficient security.
The risk rating dropped compared with the preceding year due to inclusion of quantitative models in risk assessment, covering for the average share of hedged receivables and unhedged receivables. |
10 |
Risk of non-compliance with the principles of ethics |
CSR |
Short-term: Medium
Medium-term: High
Long-term: High |
Risk of tarnishing the Company’s reputation as one operating in compliance with ethical business principles and, thus, inability to cooperate with companies for which ethical values are major in their operational policy. Consequent possible claims against the Company or tarnished reputation.
The risk rating has not changed compared with the preceding year. |
11 |
Risk of staff shortages |
HR |
Short-term: Medium
Medium-term: Medium
Long-term: High |
The risk rating dropped compared with the preceding year due to consideration of hedging and procedures implemented in the preceding years in the risk assessment, including procedures implemented during the pandemics, which considerably limited the negative consequences of staff shortages (fast reaction to the foci of infection, cooperation with temporary employment agencies, remote work, preventive actions, extension of back-up staff). |
12 |
Risk of loss of competitiveness as a result of the economic transition to zero emission |
CSR |
Short-term: Medium
Medium-term: Long-term: High
Long-term: High |
Risk of loss of competitiveness as a result of the economic transition to zero emission, i.e. exclusion from the market as a result of failure to offer products with low carbon footprint.
New risk |
13 |
Risk of the failure to ensure recovery and recycling of packaging |
Quality systems |
Short-term: Medium
Medium-term: Long-term: Medium
Long-term: High |
Risk of the failure to ensure recovery and recycling of the marketed/imported packaging or failure to achieve the required recycling levels bringing about a negative impact on the environment, economy or reputation of the organisation.
New risk |
14 |
Risk of the lack of effective compliance system, including the risk of breaching international sanctions |
General corporate |
Short-term: Medium
Medium-term: Long-term: High
Long-term: High |
The risk that the operations of the Company will not comply with the legal regulations results from a failure to abide by legal acts, ordinances, laws or internal standards, policies, codes of conduct, which exposes the Company to paying fees.
The risk rating grew compared with the preceding year due to risk extension for the risk of breaching sanctions regulations. |
15 |
Risk of inappropriate inventory management policy |
Production and quality systems |
Short-term: Medium
Medium-term: Long-term: Medium
Long-term: Medium |
Lack of proper inventory management policy poses a hazard for the continuity of production and timely order completion, consequently leading to negative financial results and loss of customers’ trust.
The risk rating has not changed compared with the preceding year. |
16 |
Risk of non-performance or lack of strategy update in the sustainable development area |
CSR |
Short-term: Medium
Medium-term: Long-term: High
Long-term: High |
Risk of damage to the Company’s reputation as one operating in compliance with the idea of sustainable development and, thus, inability to cooperate with companies for which the idea is major in their operational policy. Simultaneous risk of legal and financial consequences.
The risk rating has not changed compared with the preceding year. |
17 |
Risk of non-compliance with tax regulations |
Accounting |
Short-term: Medium
Medium-term: Long-term: Medium
Long-term: Medium |
The risk of fines imposed by the Tax Office (PIT, CIT, VAT) or local authorities (e.g. municipal authorities – tax on real estate).
The risk rating has not changed compared with the preceding year. |
18 |
Risk of credibility loss by the Company due to mandatory exclusion from listings at the Warsaw Stock Exchange |
Communication |
Short-term: Medium
Medium-term: Long-term: Medium
Long-term: Medium |
Adoption of a resolution by the Management Board of the Warsaw Stock Exchange to delist the Company shares as a result of violation of the Warsaw Stock Exchange regulations, including disclosure obligations, lack of transactions in the Company shares for a period of three months, undertaking by the Company of activities prohibited by the binding laws, which may result in civil claims against the Company and its managers for acting to the detriment of the Company or shareholders, increased costs of finance as a result of the Company reputation tarnishing, or penalties imposed by the Management Board of the Stock Exchange.
The risk rating has not changed compared with the preceding year. |
19 |
Risk of malfeasance, understood as actions or omissions in breach of the legal regulations |
General corporate |
Short-term: Medium
Medium-term: Long-term: Medium
Long-term: Medium |
Purposeful actions or omissions in breach of the generally binding laws, as a result of which the perpetrator obtains illegal gains, causing losses or failure to attain the assumed results (fraud, theft, misuse, etc.).
The risk rating has not changed compared with the preceding year. |
20 |
Risk of being unprepared to continuity loss |
Production and quality systems |
Short-term: Medium
Medium-term: Long-term: Medium
Long-term: Medium |
Risk of being unprepared for continuity loss resulting in long-term operations suspension, including inability to use a production or warehouse building, lack of resources (e.g. semi-products), shortage of human resources, long-term failures and engineering downtimes.
The risk rating has not changed compared with the preceding year. |
21 |
Risk of missing effective supply chain |
Purchases |
Short-term: Medium
Medium-term: Long-term: Medium
Long-term: Medium |
Risk of discontinuity of supplies resulting in shortages of materials/production goods/sales goods.
The risk rating has not changed compared with the preceding year. |
22 |
Risk of polluting the environment |
Production and quality systems |
Short-term: Medium
Medium-term: Long-term: Medium
Long-term: Medium |
Risk of polluting the environment as a result of the operations carried out, resulting in the plant closure and high administrative penalties imposed on the operations causing water, air or soil pollution with substances or radiation in quantities or in the form which may threaten human life or health, or bring about water, air or soil quality deterioration, or significant damage to fauna or flora.
The risk rating dropped compared with the preceding year due to fulfilment by Grupa Kęty of the legal requirements with regard to environmental protection, previously recorded environmental incidents and consideration of the actual reputation-related impact felt by companies which pollute the environment. |
23 |
Risk of extraordinary events occurrence |
Production and quality systems |
Short-term: Medium
Medium-term: Long-term: Medium
Long-term: Medium |
Risk of operations disturbance or break as a result of losses originating from an extraordinary event (e.g. fire, hurricane, whirlwind, rockburst, building catastrophe, lightning stroke, earthquake, motor vehicle impact, aircraft crash, explosion, meteorite fall), or natural disaster (e.g. drought, heavy snowfall, extreme heat or frost, storm, flood, hail).
The risk rating has not changed compared with the preceding year. |
24 |
Risk of breaching human rights in the value chain |
CSR |
Short-term: Medium
Medium-term: Long-term: Medium
Long-term: Medium |
Risk of breaching human rights in the value chain, specifically with regard to employment and remuneration conditions, freedom of association, work and life balance, equal treatment of women and men, prevention of violence and mobbing at the place of work, child labour, forced labour, and right to privacy.
New risk |
25 |
Risk of accidents at work |
Production and quality systems |
Short-term: Medium
Medium-term: Long-term: Medium
Long-term: Medium |
Risk of accidents at work, health impairment, and occupational diseases.
The risk rating grew compared to the preceding year due to the extension of the scope of the risk to all accidents at work, contrary to the previous inclusion of only fatal accidents or ones that cause permanent health impairment. |
26 |
Risk of non-attainment of the expected sales |
Sales & Marketing |
Short-term: Medium
Medium-term: Long-term: Medium
Long-term: Medium |
The risk that budget assumptions and, in consequence, the result/profit will not be achieved, drop in the number of active customers, threat to strategies and planned projects performance.
The risk rating has not changed compared with the preceding year. |