Comparison Overview

Cartridge Mate

VS

SPC International

Cartridge Mate

Coptic House, Cardiff, South Glamorgan, CF10 5EE, GB
Last Update: 2025-11-27
Between 750 and 799

Cartridge Mate is a premium business to business (B2B) supplier of printer cartridges. We specialise in providing high quality alternative products but also have access to original branded products too. Our main USP is our ability to provide unbiased advice about how to get the best value printing done in your office. Cartridge Mate works with companies every step of the way from picking a printer, choosing the best supplies by finding a balance between cost and quality and then starting the cycle again a few years later. Cartridge Mate has over 9 years experience in the printer cartridge and office supplies industry. Over the years we have tried numerous remanufacturers to supply our alternative products. Now we stick to a small handful of tried and tested suppliers that abide by the ISO 9001 accreditation standards. It means that our customers can trust us and the products that we provide. Below is a list of the most common products that we supply our customers with; Inkjet Cartridges Laser Toners Fax Cartridges Drum Units/Photoconductors Fuser Units Maintenance Kits Customer service is something that Cartridge Mate prides itself on. Our account managers are here to help and are friendly, polite and attentive. Our team is proud to have a keen interest in the products that we provide which means we will always lead our industry from the front.

NAICS: None
NAICS Definition:
Employees: 6
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

SPC International

Beasley Court, Uxbridge, Middlesex, UB8 1PE, GB
Last Update: 2025-11-27
Between 750 and 799

SPC International is now part of TVS Supply Chain Services, an $8 billion corporation with over 50,000 employees in over 50 countries around the world. TVSSCS supplies complete device and service lifecycle management to major companies in a variety of different industrial sectors. SPC forms part of the new Technical Repair & Refurbishment division within TVSSCS. SPC provides support for electronic and computer hardware. Its hardware support activities offer solutions to maintenance organizations, manufacturers and end users for hardware repairs, inventory management including sourcing, on site swap out services, and repair vendor management. The company was founded in 1989, Head Office is in Uxbridge very close to London Heathrow Airport. The UK repair centre is approximately 100 miles south west of London and employs 75 people servicing all the major multi-vendor IT maintenance companies. It also has subsidiary companies in Piestany, Slovakia (80 km NE of Bratislava), India (four sites in Bangalore, Mumbai, Delhi and Kolkata and in Atlanta, GA serving North and Latin America. Our remarketing business sources and supplies parts from any manufacturer from system board level to complete PCs and printers. Large savings are available. Our sourcing team provides rapid solutions for hard to find parts. We supply equipment produced by leading manufacturers through our multi-vendor outsourcing team such as Dell, Hewlett Packard, IBM, Motorola, Symbol, PSC, Wincor Nixdorf, Epson, Fujitsu. We specialise in retail POS hardware, barcode scanners and data collection devices, banking hardware including ATMs and passbook printers. We are an NCR POS reseller, a Lexmark partner and a reseller for Igel thin clients and ESET AV software and CPI/MEI ASC, and ASC for Custom, Lexamrk and Biloxon printers in the UK. ATM spares including Diebold and Wincor Nixdorf are held in stock.

NAICS: None
NAICS Definition: Others
Employees: 113
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/cartridge-mate-ltd.jpeg
Cartridge Mate
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/spc-international.jpeg
SPC International
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Cartridge Mate
100%
Compliance Rate
0/4 Standards Verified
SPC International
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Computer Hardware Industry Average (This Year)

No incidents recorded for Cartridge Mate in 2025.

Incidents vs Computer Hardware Industry Average (This Year)

No incidents recorded for SPC International in 2025.

Incident History — Cartridge Mate (X = Date, Y = Severity)

Cartridge Mate cyber incidents detection timeline including parent company and subsidiaries

Incident History — SPC International (X = Date, Y = Severity)

SPC International cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/cartridge-mate-ltd.jpeg
Cartridge Mate
Incidents

No Incident

https://images.rankiteo.com/companyimages/spc-international.jpeg
SPC International
Incidents

No Incident

FAQ

Both Cartridge Mate company and SPC International company demonstrate a comparable AI Cybersecurity Score, with strong governance and monitoring frameworks in place.

Historically, SPC International company has disclosed a higher number of cyber incidents compared to Cartridge Mate company.

In the current year, SPC International company and Cartridge Mate company have not reported any cyber incidents.

Neither SPC International company nor Cartridge Mate company has reported experiencing a ransomware attack publicly.

Neither SPC International company nor Cartridge Mate company has reported experiencing a data breach publicly.

Neither SPC International company nor Cartridge Mate company has reported experiencing targeted cyberattacks publicly.

Neither Cartridge Mate company nor SPC International company has reported experiencing or disclosing vulnerabilities publicly.

Neither Cartridge Mate nor SPC International holds any compliance certifications.

Neither company holds any compliance certifications.

Neither Cartridge Mate company nor SPC International company has publicly disclosed detailed information about the number of their subsidiaries.

SPC International company employs more people globally than Cartridge Mate company, reflecting its scale as a Computer Hardware.

Neither Cartridge Mate nor SPC International holds SOC 2 Type 1 certification.

Neither Cartridge Mate nor SPC International holds SOC 2 Type 2 certification.

Neither Cartridge Mate nor SPC International holds ISO 27001 certification.

Neither Cartridge Mate nor SPC International holds PCI DSS certification.

Neither Cartridge Mate nor SPC International holds HIPAA certification.

Neither Cartridge Mate nor SPC International holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.16, 20.3.14, and 21.0.1, there is a XSRF token leakage via protocol-relative URLs in angular HTTP clients. The vulnerability is a Credential Leak by App Logic that leads to the unauthorized disclosure of the Cross-Site Request Forgery (XSRF) token to an attacker-controlled domain. Angular's HttpClient has a built-in XSRF protection mechanism that works by checking if a request URL starts with a protocol (http:// or https://) to determine if it is cross-origin. If the URL starts with protocol-relative URL (//), it is incorrectly treated as a same-origin request, and the XSRF token is automatically added to the X-XSRF-TOKEN header. This issue has been patched in versions 19.2.16, 20.3.14, and 21.0.1. A workaround for this issue involves avoiding using protocol-relative URLs (URLs starting with //) in HttpClient requests. All backend communication URLs should be hardcoded as relative paths (starting with a single /) or fully qualified, trusted absolute URLs.

Risk Information
cvss4
Base: 7.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:N/SC:H/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Uncontrolled Recursion vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft deep ASN.1 structures that trigger unbounded recursive parsing. This leads to a Denial-of-Service (DoS) via stack exhaustion when parsing untrusted DER inputs. This issue has been patched in version 1.3.2.

Risk Information
cvss4
Base: 8.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Integer Overflow vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft ASN.1 structures containing OIDs with oversized arcs. These arcs may be decoded as smaller, trusted OIDs due to 32-bit bitwise truncation, enabling the bypass of downstream OID-based security decisions. This issue has been patched in version 1.3.2.

Risk Information
cvss4
Base: 6.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, working with large buffers in Lua scripts can lead to a stack overflow. Users of Lua rules and output scripts may be affected when working with large buffers. This includes a rule passing a large buffer to a Lua script. This issue has been patched in versions 7.0.13 and 8.0.2. A workaround for this issue involves disabling Lua rules and output scripts, or making sure limits, such as stream.depth.reassembly and HTTP response body limits (response-body-limit), are set to less than half the stack size.

Risk Information
cvss3
Base: 7.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Description

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions from 8.0.0 to before 8.0.2, a NULL dereference can occur when the entropy keyword is used in conjunction with base64_data. This issue has been patched in version 8.0.2. A workaround involves disabling rules that use entropy in conjunction with base64_data.

Risk Information
cvss3
Base: 7.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H