Comparison Overview

Brandywine Urology

VS

Purpose Brands, LLC

Brandywine Urology

2000 Foulk Rd, Suite F, Wilmington, Delaware, US, 19810
Last Update: 2025-12-17

Brandywine Urology Consultants is a health, wellness and fitness company based out of Delaware.

NAICS: 71394
NAICS Definition: Fitness and Recreational Sports Centers
Employees: 22
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
1

Purpose Brands, LLC

111 Weir Drive, None, Woodbury, MN, US, 55125
Last Update: 2025-12-17
Between 700 and 749

Purpose Brands, LLC provides fitness, nutrition and wellness support and services to more than 7,000 communities and millions of people around the world. We own and operate the world’s largest and most trusted portfolio of fitness, health and wellness franchise brands and services: Anytime Fitness, Orangetheory Fitness, Waxing the City, Basecamp Fitness/SUMHIIT Fitness, The Bar Method, Stronger U Nutrition, Healthy Contributions and Provision Security. Together, these brands generate USD$3.7 billion in revenue, operating across 50 countries on all seven continents with a combined 6 million members. We combine this portfolio with a world-class franchise operating model and suite of services that helps our brands and franchise owners accelerate growth and deliver exceptional member experiences. Above all, our culture, people and franchise owners share a commitment to personal wellness; a spirit of service to help those who seek to improve their own physical and mental wellbeing; tireless advocacy and innovation for fitness, health and wellness experiences; and a daily honor to earn the trust in our brands from our franchise owners and the people who help consumers on their personal wellness journeys.

NAICS: 71394
NAICS Definition: Fitness and Recreational Sports Centers
Employees: 28,436
Subsidiaries: 0
12-month incidents
0
Known data breaches
1
Attack type number
1

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/brandywine-urology-consultants.jpeg
Brandywine Urology
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/purpose-brands-llc.jpeg
Purpose Brands, LLC
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Brandywine Urology
100%
Compliance Rate
0/4 Standards Verified
Purpose Brands, LLC
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Wellness and Fitness Services Industry Average (This Year)

No incidents recorded for Brandywine Urology in 2025.

Incidents vs Wellness and Fitness Services Industry Average (This Year)

No incidents recorded for Purpose Brands, LLC in 2025.

Incident History — Brandywine Urology (X = Date, Y = Severity)

Brandywine Urology cyber incidents detection timeline including parent company and subsidiaries

Incident History — Purpose Brands, LLC (X = Date, Y = Severity)

Purpose Brands, LLC cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/brandywine-urology-consultants.jpeg
Brandywine Urology
Incidents

Date Detected: 1/2020
Type:Ransomware
Blog: Blog
https://images.rankiteo.com/companyimages/purpose-brands-llc.jpeg
Purpose Brands, LLC
Incidents

Date Detected: 12/2023
Type:Breach
Blog: Blog

FAQ

Purpose Brands, LLC company demonstrates a stronger AI Cybersecurity Score compared to Brandywine Urology company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Brandywine Urology and Purpose Brands, LLC have experienced a similar number of publicly disclosed cyber incidents.

In the current year, Purpose Brands, LLC company and Brandywine Urology company have not reported any cyber incidents.

Brandywine Urology company has confirmed experiencing a ransomware attack, while Purpose Brands, LLC company has not reported such incidents publicly.

Purpose Brands, LLC company has disclosed at least one data breach, while Brandywine Urology company has not reported such incidents publicly.

Neither Purpose Brands, LLC company nor Brandywine Urology company has reported experiencing targeted cyberattacks publicly.

Neither Brandywine Urology company nor Purpose Brands, LLC company has reported experiencing or disclosing vulnerabilities publicly.

Neither Brandywine Urology nor Purpose Brands, LLC holds any compliance certifications.

Neither company holds any compliance certifications.

Neither Brandywine Urology company nor Purpose Brands, LLC company has publicly disclosed detailed information about the number of their subsidiaries.

Purpose Brands, LLC company employs more people globally than Brandywine Urology company, reflecting its scale as a Wellness and Fitness Services.

Neither Brandywine Urology nor Purpose Brands, LLC holds SOC 2 Type 1 certification.

Neither Brandywine Urology nor Purpose Brands, LLC holds SOC 2 Type 2 certification.

Neither Brandywine Urology nor Purpose Brands, LLC holds ISO 27001 certification.

Neither Brandywine Urology nor Purpose Brands, LLC holds PCI DSS certification.

Neither Brandywine Urology nor Purpose Brands, LLC holds HIPAA certification.

Neither Brandywine Urology nor Purpose Brands, LLC holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

Improper Authorization (CWE-285) in Kibana can lead to privilege escalation (CAPEC-233) by allowing an authenticated user to bypass intended permission restrictions via a crafted HTTP request. This allows an attacker who lacks the live queries - read permission to successfully retrieve the list of live queries.

Risk Information
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Description

Weblate is a web based localization tool. In versions prior to 5.15.1, it was possible to overwrite Git configuration remotely and override some of its behavior. Version 5.15.1 fixes the issue.

Risk Information
cvss3
Base: 9.1
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Description

Allocation of Resources Without Limits or Throttling (CWE-770) in Elasticsearch can allow an authenticated user with snapshot restore privileges to cause Excessive Allocation (CAPEC-130) of memory and a denial of service (DoS) via crafted HTTP request.

Risk Information
cvss3
Base: 4.9
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
Description

Allocation of Resources Without Limits or Throttling (CWE-770) in Kibana can allow a low-privileged authenticated user to cause Excessive Allocation (CAPEC-130) of computing resources and a denial of service (DoS) of the Kibana process via a crafted HTTP request.

Risk Information
cvss3
Base: 6.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Description

Improper neutralization of input during web page generation ('Cross-site Scripting') (CWE-79) allows an unauthenticated user to embed a malicious script in content that will be served to web browsers causing cross-site scripting (XSS) (CAPEC-63) via a vulnerability a function handler in the Vega AST evaluator.

Risk Information
cvss3
Base: 6.1
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N