Badge
11,371 badges added since 01 January 2025
ISO 27001 Certificate
SOC 1 Type I Certificate
SOC 2 Type II Certificate
PCI DSS
HIPAA
RGPD
Internal validation & live display
Multiple badges & continuous verification
Faster underwriting decisions
ISOSOC2 Type 1SOC2 Type 2PCI DSSHIPAAGDPR

One of the world’s most significant botanic and sculpture experiences, Frederik Meijer Gardens & Sculpture Park serves more than 750,000 visitors annually. The 158-acre grounds feature Michigan’s largest tropical conservatory; one of the largest children’s gardens in the country; arid and Victorian gardens with bronze sculptures by Degas and Rodin; a carnivorous plant house; outdoor gardens; and a 1900-seat outdoor amphitheater, featuring an eclectic mix of world-renowned musicians every summer. The internationally acclaimed Sculpture Park features a permanent collection including works by Ai Weiwei, Kapoor, Rodin, Oldenburg, Moore, Bourgeois and Plensa, among others. Indoor galleries host changing sculpture exhibitions with recent exhibitions by Picasso, Degas, di Suvero, Borofsky, Calder and Dine.

Frederik Meijer Gardens & Sculpture Park A.I CyberSecurity Scoring

FMGSP

Company Details

Linkedin ID:

frederik-meijer-gardens-&-sculpture-park

Employees number:

198

Number of followers:

5,237

NAICS:

712

Industry Type:

Museums, Historical Sites, and Zoos

Homepage:

meijergardens.org

IP Addresses:

0

Company ID:

FRE_4778388

Scan Status:

In-progress

AI scoreFMGSP Risk Score (AI oriented)

Between 750 and 799

https://images.rankiteo.com/companyimages/frederik-meijer-gardens-&-sculpture-park.jpeg
FMGSP Museums, Historical Sites, and Zoos
Updated:
  • Powered by our proprietary A.I cyber incident model
  • Insurance preferes TPRM score to calculate premium
globalscoreFMGSP Global Score (TPRM)

XXXX

https://images.rankiteo.com/companyimages/frederik-meijer-gardens-&-sculpture-park.jpeg
FMGSP Museums, Historical Sites, and Zoos
  • Instant access to detailed risk factors
  • Benchmark vs. industry & size peers
  • Vulnerabilities
  • Findings

FMGSP Company CyberSecurity News & History

Past Incidents
0
Attack Types
0
No data available
Ailogo

FMGSP Company Scoring based on AI Models

Cyber Incidents Likelihood 3 - 6 - 9 months

🔒
Incident Predictions locked
Access Monitoring Plan

A.I Risk Score Likelihood 3 - 6 - 9 months

🔒
A.I. Risk Score Predictions locked
Access Monitoring Plan
statics

Underwriter Stats for FMGSP

Incidents vs Museums, Historical Sites, and Zoos Industry Average (This Year)

No incidents recorded for Frederik Meijer Gardens & Sculpture Park in 2026.

Incidents vs All-Companies Average (This Year)

No incidents recorded for Frederik Meijer Gardens & Sculpture Park in 2026.

Incident Types FMGSP vs Museums, Historical Sites, and Zoos Industry Avg (This Year)

No incidents recorded for Frederik Meijer Gardens & Sculpture Park in 2026.

Incident History — FMGSP (X = Date, Y = Severity)

FMGSP cyber incidents detection timeline including parent company and subsidiaries

FMGSP Company Subsidiaries

SubsidiaryImage

One of the world’s most significant botanic and sculpture experiences, Frederik Meijer Gardens & Sculpture Park serves more than 750,000 visitors annually. The 158-acre grounds feature Michigan’s largest tropical conservatory; one of the largest children’s gardens in the country; arid and Victorian gardens with bronze sculptures by Degas and Rodin; a carnivorous plant house; outdoor gardens; and a 1900-seat outdoor amphitheater, featuring an eclectic mix of world-renowned musicians every summer. The internationally acclaimed Sculpture Park features a permanent collection including works by Ai Weiwei, Kapoor, Rodin, Oldenburg, Moore, Bourgeois and Plensa, among others. Indoor galleries host changing sculpture exhibitions with recent exhibitions by Picasso, Degas, di Suvero, Borofsky, Calder and Dine.

Loading...
similarCompanies

FMGSP Similar Companies

RKD - Nederlands Instituut voor Kunstgeschiedenis

The Netherlands Institute for Art History (RKD - Nederlands Instituut voor Kunstgeschiedenis) administers a unique collection of documentary, library and archive material pertaining to Western art from the late Middle Ages to the present. The RKD is an essential resource for art historians and anyon

Fondation Beyeler

The Fondation Beyeler is a museum of modern and contemporary art open 365 days a year. It is considered one of the world's most beautiful museums. Its exhibitions of renowned artists of the 19th, 20th, and 21st centuries have brought the museum international recognition and established it as Switzer

Madison Museum of Contemporary Art

MISSION The Madison Museum of Contemporary Art is an independent organization that exhibits, collects, and preserves modern and contemporary art to provide transformative experiences that educate, reflect, and inspire us as individuals and a community. HISTORY After a distinguished 105-year

The Chicago Athenaeum Museum for Architecture and Design

The Chicago Athenaeum Museum for Architecture and Design Museum of Architecture and Design The Chicago Athenaeum is an International Museum of Architecture and Design, appropriately based in the world's first city of modern architecture and design—Chicago. The Museum is dedicated to the Art of D

Meadow Brook Hall

The Great Estate is a world-class venue, providing a breathtaking backdrop for virtually any type of event, from corporate meetings and client appreciation parties to weddings and private celebrations. Our events team brings a premier touch to your experience, ensuring a tailor-made event that trans

Science North & Dynamic Earth

Science North is home to a world leading science centre and Northern Ontario's top tourist attraction. Together with Dynamic Earth - Home of the Big Nickel, Science North operates Canada's second- and seventh- largest science centres in Canada, inspiring people of all ages to be engaged in science i

The US Military Hall of Fame

The United States Military Hall of Fame is a non-profit organization founded in August of 2011. It was founded for the sole purpose of preserving the honor, integrity, sacrifice, and accomplishments of those who have dedicated themselves to the United States of America. It is dedicated to showing th

St Martin-in-the-Fields, London

St Martin-in-the-Fields is an iconic church located in the heart of London on Trafalgar Square. Every year we welcome over 1 million people to worship, reflect, relax, meet, eat and drink, enjoy music and the arts and the rich cultural offer of our organisation. We are place for everyone, everywhere

Ocean Institute

Ocean Institute is adjacent to a 3.5 square mile State Marine Conservation Area and is located in the Dana Point Harbor, our unique campus encompasses 33,000 square feet of hands-on educational exhibits, science labs, and a live collection of 1,100 species native to the California Pacific Coast. The

newsone

FMGSP CyberSecurity News

January 15, 2026 09:08 PM
Frederik Meijer Gardens hosts annual free orchid show

Beginning Jan. 24, visitors to Frederik Meijer Gardens & Sculpture Park can enjoy free admission to the annual orchid show presented by the...

January 09, 2026 08:11 PM
FREDERIK MEIJER GARDENS & SCULPTURE PARK ANNOUNCES 2026 CALENDAR OF EVENTS HIGHLIGHTED BY MAJOR CHIHULY EXHIBITION

PRNewswire/ -- Frederik Meijer Gardens & Sculpture Park, one of the world's most significant cultural destinations and the nation's best...

December 30, 2025 04:29 PM
Top Stories of the Year (No. 2 & No. 3): Prince’s enduring legacy, Meijer Gardens’ robust series

Our April tribute to Prince and coverage of Meijer Gardens' concerts were the No. 2 and No. 3 Local Spins stories of 2025.

December 30, 2025 03:54 PM
It’s your last chance to check out ENLIGHTEN

GRAND RAPIDS, Mich. (WOOD) – For the past few weeks, families have enjoyed walking through the beautifully lit up version of the Frederik...

December 22, 2025 08:00 AM
Frederik Meijer Gardens and Sculpture Park hosting special immersive light display

The kids are on holiday break and you may be off work and looking for things to do. How about heading to Grand Rapids? Frederik Meijer...

December 14, 2025 08:00 AM
Michigan’s Slice of Japan: Where Design Connects Humanity with Nature

Few places bring horticulture and art together quite like the cultural hub of Frederik Meijer Gardens & Sculpture Park in Great Rapids,...

December 11, 2025 08:00 AM
Grand Rapids' Enlighten Scores Big in National Holiday Light Rankings

Frederik Meijer Gardens is a true West Michigan gem, and locals know why. Between the year-round art and nature exhibits, hundreds of...

December 10, 2025 08:00 AM
Meijer Gardens light show one of nation’s best, according to USA TODAY

A festive light display in West Michigan is among the best in the country, according to the latest USA TODAY 10BEST Readers' Choice Awards.

December 10, 2025 08:00 AM
ENLIGHTEN named one of the best botanical garden holiday light shows in the country

A holiday light display at Frederik Meijer Gardens and Sculpture Park is among the best in the country, USA Today says.

faq

Frequently Asked Questions

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.

FMGSP CyberSecurity History Information

Official Website of Frederik Meijer Gardens & Sculpture Park

The official website of Frederik Meijer Gardens & Sculpture Park is http://www.MeijerGardens.org.

Frederik Meijer Gardens & Sculpture Park’s AI-Generated Cybersecurity Score

According to Rankiteo, Frederik Meijer Gardens & Sculpture Park’s AI-generated cybersecurity score is 764, reflecting their Fair security posture.

How many security badges does Frederik Meijer Gardens & Sculpture Park’ have ?

According to Rankiteo, Frederik Meijer Gardens & Sculpture Park currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.

Has Frederik Meijer Gardens & Sculpture Park been affected by any supply chain cyber incidents ?

According to Rankiteo, Frederik Meijer Gardens & Sculpture Park has not been affected by any supply chain cyber incidents, and no incident IDs are currently listed for the organization.

Does Frederik Meijer Gardens & Sculpture Park have SOC 2 Type 1 certification ?

According to Rankiteo, Frederik Meijer Gardens & Sculpture Park is not certified under SOC 2 Type 1.

Does Frederik Meijer Gardens & Sculpture Park have SOC 2 Type 2 certification ?

According to Rankiteo, Frederik Meijer Gardens & Sculpture Park does not hold a SOC 2 Type 2 certification.

Does Frederik Meijer Gardens & Sculpture Park comply with GDPR ?

According to Rankiteo, Frederik Meijer Gardens & Sculpture Park is not listed as GDPR compliant.

Does Frederik Meijer Gardens & Sculpture Park have PCI DSS certification ?

According to Rankiteo, Frederik Meijer Gardens & Sculpture Park does not currently maintain PCI DSS compliance.

Does Frederik Meijer Gardens & Sculpture Park comply with HIPAA ?

According to Rankiteo, Frederik Meijer Gardens & Sculpture Park is not compliant with HIPAA regulations.

Does Frederik Meijer Gardens & Sculpture Park have ISO 27001 certification ?

According to Rankiteo,Frederik Meijer Gardens & Sculpture Park is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.

Industry Classification of Frederik Meijer Gardens & Sculpture Park

Frederik Meijer Gardens & Sculpture Park operates primarily in the Museums, Historical Sites, and Zoos industry.

Number of Employees at Frederik Meijer Gardens & Sculpture Park

Frederik Meijer Gardens & Sculpture Park employs approximately 198 people worldwide.

Subsidiaries Owned by Frederik Meijer Gardens & Sculpture Park

Frederik Meijer Gardens & Sculpture Park presently has no subsidiaries across any sectors.

Frederik Meijer Gardens & Sculpture Park’s LinkedIn Followers

Frederik Meijer Gardens & Sculpture Park’s official LinkedIn profile has approximately 5,237 followers.

Frederik Meijer Gardens & Sculpture Park’s Presence on Crunchbase

No, Frederik Meijer Gardens & Sculpture Park does not have a profile on Crunchbase.

Frederik Meijer Gardens & Sculpture Park’s Presence on LinkedIn

Yes, Frederik Meijer Gardens & Sculpture Park maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/frederik-meijer-gardens-&-sculpture-park.

Cybersecurity Incidents Involving Frederik Meijer Gardens & Sculpture Park

As of January 23, 2026, Rankiteo reports that Frederik Meijer Gardens & Sculpture Park has not experienced any cybersecurity incidents.

Number of Peer and Competitor Companies

Frederik Meijer Gardens & Sculpture Park has an estimated 2,178 peer or competitor companies worldwide.

Frederik Meijer Gardens & Sculpture Park CyberSecurity History Information

How many cyber incidents has Frederik Meijer Gardens & Sculpture Park faced ?

Total Incidents: According to Rankiteo, Frederik Meijer Gardens & Sculpture Park has faced 0 incidents in the past.

What types of cybersecurity incidents have occurred at Frederik Meijer Gardens & Sculpture Park ?

Incident Types: The types of cybersecurity incidents that have occurred include .

Incident Details

What are the most common types of attacks the company has faced ?

Additional Questions

cve

Latest Global CVEs (Not Company-Specific)

Description

Backstage is an open framework for building developer portals, and @backstage/backend-defaults provides the default implementations and setup for a standard Backstage backend app. Prior to versions 0.12.2, 0.13.2, 0.14.1, and 0.15.0, the `FetchUrlReader` component, used by the catalog and other plugins to fetch content from URLs, followed HTTP redirects automatically. This allowed an attacker who controls a host listed in `backend.reading.allow` to redirect requests to internal or sensitive URLs that are not on the allowlist, bypassing the URL allowlist security control. This is a Server-Side Request Forgery (SSRF) vulnerability that could allow access to internal resources, but it does not allow attackers to include additional request headers. This vulnerability is fixed in `@backstage/backend-defaults` version 0.12.2, 0.13.2, 0.14.1, and 0.15.0. Users should upgrade to this version or later. Some workarounds are available. Restrict `backend.reading.allow` to only trusted hosts that you control and that do not issue redirects, ensure allowed hosts do not have open redirect vulnerabilities, and/or use network-level controls to block access from Backstage to sensitive internal endpoints.

Risk Information
cvss3
Base: 3.5
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:L/I:N/A:N
Description

Backstage is an open framework for building developer portals, and @backstage/cli-common provides config loading functionality used by the backend and command line interface of Backstage. Prior to version 0.1.17, the `resolveSafeChildPath` utility function in `@backstage/backend-plugin-api`, which is used to prevent path traversal attacks, failed to properly validate symlink chains and dangling symlinks. An attacker could bypass the path validation via symlink chains (creating `link1 → link2 → /outside` where intermediate symlinks eventually resolve outside the allowed directory) and dangling symlinks (creating symlinks pointing to non-existent paths outside the base directory, which would later be created during file operations). This function is used by Scaffolder actions and other backend components to ensure file operations stay within designated directories. This vulnerability is fixed in `@backstage/backend-plugin-api` version 0.1.17. Users should upgrade to this version or later. Some workarounds are available. Run Backstage in a containerized environment with limited filesystem access and/or restrict template creation to trusted users.

Risk Information
cvss3
Base: 6.3
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N
Description

Backstage is an open framework for building developer portals. Multiple Scaffolder actions and archive extraction utilities were vulnerable to symlink-based path traversal attacks. An attacker with access to create and execute Scaffolder templates could exploit symlinks to read arbitrary files via the `debug:log` action by creating a symlink pointing to sensitive files (e.g., `/etc/passwd`, configuration files, secrets); delete arbitrary files via the `fs:delete` action by creating symlinks pointing outside the workspace, and write files outside the workspace via archive extraction (tar/zip) containing malicious symlinks. This affects any Backstage deployment where users can create or execute Scaffolder templates. This vulnerability is fixed in `@backstage/backend-defaults` versions 0.12.2, 0.13.2, 0.14.1, and 0.15.0; `@backstage/plugin-scaffolder-backend` versions 2.2.2, 3.0.2, and 3.1.1; and `@backstage/plugin-scaffolder-node` versions 0.11.2 and 0.12.3. Users should upgrade to these versions or later. Some workarounds are available. Follow the recommendation in the Backstage Threat Model to limit access to creating and updating templates, restrict who can create and execute Scaffolder templates using the permissions framework, audit existing templates for symlink usage, and/or run Backstage in a containerized environment with limited filesystem access.

Risk Information
cvss3
Base: 7.1
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:L
Description

FastAPI Api Key provides a backend-agnostic library that provides an API key system. Version 1.1.0 has a timing side-channel vulnerability in verify_key(). The method applied a random delay only on verification failures, allowing an attacker to statistically distinguish valid from invalid API keys by measuring response latencies. With enough repeated requests, an adversary could infer whether a key_id corresponds to a valid key, potentially accelerating brute-force or enumeration attacks. All users relying on verify_key() for API key authentication prior to the fix are affected. Users should upgrade to version 1.1.0 to receive a patch. The patch applies a uniform random delay (min_delay to max_delay) to all responses regardless of outcome, eliminating the timing correlation. Some workarounds are available. Add an application-level fixed delay or random jitter to all authentication responses (success and failure) before the fix is applied and/or use rate limiting to reduce the feasibility of statistical timing attacks.

Risk Information
cvss3
Base: 3.7
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
Description

The Flux Operator is a Kubernetes CRD controller that manages the lifecycle of CNCF Flux CD and the ControlPlane enterprise distribution. Starting in version 0.36.0 and prior to version 0.40.0, a privilege escalation vulnerability exists in the Flux Operator Web UI authentication code that allows an attacker to bypass Kubernetes RBAC impersonation and execute API requests with the operator's service account privileges. In order to be vulnerable, cluster admins must configure the Flux Operator with an OIDC provider that issues tokens lacking the expected claims (e.g., `email`, `groups`), or configure custom CEL expressions that can evaluate to empty values. After OIDC token claims are processed through CEL expressions, there is no validation that the resulting `username` and `groups` values are non-empty. When both values are empty, the Kubernetes client-go library does not add impersonation headers to API requests, causing them to be executed with the flux-operator service account's credentials instead of the authenticated user's limited permissions. This can result in privilege escalation, data exposure, and/or information disclosure. Version 0.40.0 patches the issue.

Risk Information
cvss3
Base: 5.3
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N

Access Data Using Our API

SubsidiaryImage

Get company history

curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?linkedin_id=frederik-meijer-gardens-&-sculpture-park' -H 'apikey: YOUR_API_KEY_HERE'

What Do We Measure ?

revertimgrevertimgrevertimgrevertimg
Incident
revertimgrevertimgrevertimgrevertimg
Finding
revertimgrevertimgrevertimgrevertimg
Grade
revertimgrevertimgrevertimgrevertimg
Digital Assets

Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.

These are some of the factors we use to calculate the overall score:

Network Security

Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.

SBOM (Software Bill of Materials)

Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.

CMDB (Configuration Management Database)

Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.

Threat Intelligence

Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.

Top LeftTop RightBottom LeftBottom Right
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.
Users Love Us Badge