Comparison Overview

Commission Studio

VS

Paper Moon

Commission Studio

None
Last Update: 2026-04-03

Commission is a London based design and branding consultancy owned and led by Creative Directors David Mcfarlane and Christopher Moorby. Working within some of the design industry’s most revered studios over the last decade, David and Christopher have gained far reaching experience and insight into what makes some of the world’s most successful brands tick. Founded with an ambition to create beautiful and intelligent design, Commission’s work is realised across print, packaging, editorial, advertising, and digital media. We create brand identity, graphic design, and art direction for the indistries of fashion, art, culture, and commerce.

NAICS: None
NAICS Definition: Others
Employees: 10
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Paper Moon

20 Radnor Street Swindon, Wiltshire SN1 3PR, GB
Last Update: 2026-03-23
Between 750 and 799

Paper Moon creates bespoke handmade and printed invitations and stationery for Weddings, Civil Partnerships, Handfastings and Special Occasions. With a special interest in design movements of the 19th and 20th Century Paper Moon has diverse ranges inspired by Art Deco, Art Nouveau, Victorian, Edwardian, 1950s, 1960s and Celtic symbolism. Our Charles Rennie Mackintosh inspired designs are a particular favourite with us and our customers. Paper Moon also offers a bespoke design service.

NAICS: None
NAICS Definition:
Employees: 1
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/commission-studio.jpeg
Commission Studio
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/paper-moon.jpeg
Paper Moon
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Commission Studio
100%
Compliance Rate
0/4 Standards Verified
Paper Moon
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Design Industry Average (This Year)

No incidents recorded for Commission Studio in 2026.

Incidents vs Design Industry Average (This Year)

No incidents recorded for Paper Moon in 2026.

Incident History — Commission Studio (X = Date, Y = Severity)

Commission Studio cyber incidents detection timeline including parent company and subsidiaries

Incident History — Paper Moon (X = Date, Y = Severity)

Paper Moon cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/commission-studio.jpeg
Commission Studio
Incidents

No Incident

https://images.rankiteo.com/companyimages/paper-moon.jpeg
Paper Moon
Incidents

No Incident

FAQ

Commission Studio company demonstrates a stronger AI Cybersecurity Score compared to Paper Moon company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Historically, Paper Moon company has disclosed a higher number of cyber incidents compared to Commission Studio company.

In the current year, Paper Moon company and Commission Studio company have not reported any cyber incidents.

Neither Paper Moon company nor Commission Studio company has reported experiencing a ransomware attack publicly.

Neither Paper Moon company nor Commission Studio company has reported experiencing a data breach publicly.

Neither Paper Moon company nor Commission Studio company has reported experiencing targeted cyberattacks publicly.

Neither Commission Studio company nor Paper Moon company has reported experiencing or disclosing vulnerabilities publicly.

Neither Commission Studio nor Paper Moon holds any compliance certifications.

Neither company holds any compliance certifications.

Neither Commission Studio company nor Paper Moon company has publicly disclosed detailed information about the number of their subsidiaries.

Commission Studio company employs more people globally than Paper Moon company, reflecting its scale as a Design.

Neither Commission Studio nor Paper Moon holds SOC 2 Type 1 certification.

Neither Commission Studio nor Paper Moon holds SOC 2 Type 2 certification.

Neither Commission Studio nor Paper Moon holds ISO 27001 certification.

Neither Commission Studio nor Paper Moon holds PCI DSS certification.

Neither Commission Studio nor Paper Moon holds HIPAA certification.

Neither Commission Studio nor Paper Moon holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

Hirschmann EagleSDV version 05.4.01 prior to 05.4.02 contains a denial-of-service vulnerability that causes the device to crash during session establishment when using TLS 1.0 or TLS 1.1. Attackers can trigger a crash by initiating TLS connections with these protocol versions to disrupt service availability.

Risk Information
cvss3
Base: 7.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
cvss4
Base: 8.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

The stored API keys in temporary browser client is not marked as protected allowing for JavScript console or other errors to allow for extraction of the encryption credentials.

Description

XSS vulnerability in cveInterface.js allows for inject HTML to be passed to display, as cveInterface trusts input from CVE API services

Description

Multiple reflected cross-site scripting (XSS) vulnerabilities in the login.php endpoint of Interzen Consulting S.r.l ZenShare Suite v17.0 allows attackers to execute arbitrary Javascript in the context of the user's browser via a crafted URL injected into the codice_azienda and red_url parameters.

Description

A reflected cross-site scripting (XSS) vulnerability in the login_newpwd.php endpoint of Interzen Consulting S.r.l ZenShare Suite v17.0 allows attackers to execute arbitrary Javascript in the context of the user's browser via a crafted URL injected into the codice_azienda parameter.