Scientech has established internal Supplier Management Procedures and Procurement Management Procedures to guide supplier oversight. In addition to providing a safe working environment for our employees, we work with suppliers to continuously improve environmental protection, safety, and occupational health standards, and to jointly fulfill our corporate social responsibility. To promote ethical and integrity-based business practices, suppliers are required to sign Scientech’s Supply Chain Code of Conduct and Ethics and Supplier Integrity and Anti-Corruption Declaration, and to comply with the requirements below to foster a responsible and sustainable supply chain partnership.
- Suppliers are expected to align internal management practices with the Responsible Business Alliance (RBA) Code of Conduct. For details, please refer to the RBA website.
- Supply and delivery
- Suppliers shall deliver goods and services in accordance with the timelines specified in purchase orders.
- For chemical procurement, suppliers shall implement appropriate environmental, safety, and health controls, including:
- Providing relevant EHS documentation, such as Safety Data Sheets (SDS) and hazard testing reports or risk assessment reports for new chemical substances.
- Ensuring containers and packaging materials, types, and labels are clearly and appropriately marked.
- Using transportation personnel who are professionally trained and qualified.
- Complying with safety and health requirements for on-site unloading, handling, and related operations.
- Engineering procurement projects, including purchase and lease contracts, shall comply with applicable occupational safety and health requirements.
- Contractors and subcontractors
- Contractors and subcontractors shall comply with applicable occupational safety and health laws and Scientech’s site safety management requirements to prevent occupational incidents and reduce risk.
- Before entering Scientech premises, personnel must complete required safety and health training and meet qualification requirements for operating hazardous machinery and equipment.
- When Scientech provides machinery, equipment, or tools for use by contractors or subcontractors, the contractor or subcontractor is responsible for conducting pre-use inspections.
- During the service period, the responsible person of the contractor or subcontractor is accountable for implementing and supervising occupational safety and health practices.
- Zero tolerance for workplace violence
- To prevent inappropriate or unlawful conduct—including verbal abuse, physical violence, illegal drug use, exclusion, intimidation, harassment, insults, or assault—Scientech has established clear reporting channels and follow-up mechanisms to foster a workplace culture that is safe, dignified, non-discriminatory, respectful, inclusive, and based on equal opportunity.
- Information security responsibilities
- Vendors shall comply with Scientech’s information security policies, standards, and confidentiality requirements. Scientech reserves the right to audit vendors’ compliance.
- All software, hardware, and documentation delivered by vendors shall be inspected to ensure they do not contain malicious code (e.g., viruses, worms, Trojan horses, spyware) or covert channels. Prior to production deployment, vendors must remove test data and accounts, as well as administrative test data and accounts.
- All software and hardware delivered or used in providing services must be properly licensed. The delivery or use of unauthorized software or hardware is prohibited.
- Upon completion or termination of a contract, vendors shall delete, destroy, or return Scientech-related data obtained or held in the course of providing services, as instructed by Scientech, and retain relevant service execution records.
- For software or system development services, vendors shall implement version control for all releases and provide access controls and access log retention in accordance with information security management requirements.
- In the event of an information security incident, vendors must immediately notify Scientech, implement emergency response actions, and cooperate fully with subsequent handling.
- Vendors shall implement Configuration Management to ensure system integrity and consistency, meeting Scientech’s requirements for system quality and information security.
- If a vendor (including vendor personnel providing services to Scientech) violates the above information security responsibilities, the vendor shall be subject to contractual remedies for breach and shall be liable for damages incurred by Scientech. The vendor shall also be responsible for any harm caused to third parties.
Since 2021, Scientech has required all suppliers to sign the Supply Chain Code of Conduct and Ethics and the Supplier Integrity and Anti-Corruption Declaration, which set clear expectations for managing EHS risks; prohibiting child labor; strengthening labor management; eliminating all forms of forced labor; protecting workers’ fundamental rights; respecting human rights; adhering to ethical standards; and practicing integrity-based business operations. Suppliers are expected to cooperate with audits and related investigations, and supplier performance against these requirements is incorporated into Scientech’s procurement decision-making.