Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Gap Inc.

Gap Inc. Vendor Cyber Rating & Cyber Score

gapinc.com

Gap Inc., a house of iconic brands, is the largest specialty apparel company in America. Its Old Navy, Gap, Banana Republic, and Athleta brands offer clothing, accessories, and lifestyle products for men, women and children. Since 1969, Gap Inc. has created products and experiences that shape culture, while doing right by employees, communities and the planet. Gap Inc. products are available worldwide through company-operated stores, franchise stores, and e-commerce sites. Fiscal year 2023 net sales were $14.9 billion. For more information, please visit www.gapinc.com.


Gap Inc. A.I CyberSecurity Scoring

Gap Inc.
Company Information
Website:https://jobs.gapinc.com
Employees number:70,728
Number of followers:549,024
NAICS:43
Industry Type:Retail
Homepage:gapinc.com
Gap Inc. Risk Score (AI oriented)
Between 700 and 749
logo
Gap Inc.Retail
Updated:
03/04/2026
734/1000
Moderate
Ba
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Gap Inc. Global Score (TPRM)
xxxx
logo
Gap Inc.Retail
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Gap Inc.
Gap Inc.Moderate
Current Score
734Ba (MODERATE)
01000
2 incidents
-64 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
AUGUST 2026
733Before Incident
JULY 2026
733Before Incident
JUNE 2026
732Before Incident
MAY 2026
735Before Incident
APRIL 2026
735Before Incident
MARCH 2026
732Before Incident
FEBRUARY 2026
736Before Incident
JANUARY 2026
734Before Incident
DECEMBER 2025
796Before Incident
Breach
03 Dec 2025Gap Inc.
Gap Inc.: Gap International Data Breach Investigation

Gap Data Breach Involving Sensitive Personal and Health Information

732After Incident
CRITICAL-64
GAP1764815006
Recently, Gap reported to the Attorney General of Vermont that it had experienced a data breach in which sensitive personal identifiable information and protected health information in its care may have been compromised. According to the breach notice, on July 22, 2025, Gap experienced a network disruption.1 As a result, Gap launched an investigation to determine the nature of the incident. Through its investigation, Gap confirmed that sensitive personal information in its systems may have been accessed or acquired by an unauthorized third party during the breach. As a result, Gap began a review of the data to determine what information had been impacted as well as identify the specific individuals affected. While the information impacted varies depending on the individual, the type of information potentially exposed includes: Name Social Security number Driver’s license or state ID number Medical information Health insurance information On November 28, 2025, Gap began mailing data breach notification letters to impacted individuals. Based on the breach notice sent to Vermont residents, Gap is providing affected individuals with a list of the specific types of sensitive information impacted and complimentary credit monitoring services. A link to the breach notification letters that Gap filed with the Attorney General of Vermont is below.
INCIDENT DETAILS -
TYPE
Data BreachUnauthorized Access
IMPACT
NameSocial Security numberDriver’s license/state ID numberMedical informationHealth insurance informationBrand Reputation Impact: Potential negative impact due to exposure of sensitive PII/PHIIdentity Theft Risk: High (due to exposure of SSNs, driver’s license numbers, and health information)
DATA BREACH
Personally Identifiable Information (PII)Protected Health Information (PHI)Sensitivity Of Data: High (includes SSNs, driver’s license numbers, medical, and health insurance information)Data Exfiltration: Potential access or acquisition by unauthorized third party
NOVEMBER 2025
796Before Incident
OCTOBER 2025
796Before Incident
SEPTEMBER 2025
796Before Incident
JANUARY 2010
797Before Incident
Breach
25 Jan 2010Gap Inc.
Gap Inc.

Gap Inc. Data Breach

734After Incident
MEDIUM-63
GAP250071625
The Massachusetts Office of Consumer Affairs and Business Regulation reported a data breach involving Gap Inc. on January 25, 2010. The breach affected 1 individual and involved compromised credit/debit numbers from electronic records.
INCIDENT DETAILS -
TYPE
Data Breach
IMPACT
credit/debit numbers
DATA BREACH
credit/debit numbers

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Gap Inc. ?
?
What was Gap Inc.'s A.I Rankiteo Cyber Score in July 2026 ?
?
What was Gap Inc.'s A.I Rankiteo Cyber Score in June 2026 ?
?
What was Gap Inc.'s A.I Rankiteo Cyber Score in May 2026 ?
?
What was Gap Inc.'s A.I Rankiteo Cyber Score in April 2026 ?
?
What was Gap Inc.'s A.I Rankiteo Cyber Score in March 2026 ?
?
What was Gap Inc.'s A.I Rankiteo Cyber Score in February 2026 ?
?
What was Gap Inc.'s A.I Rankiteo Cyber Score in January 2026 ?
?
What was Gap Inc.'s A.I Rankiteo Cyber Score in December 2025 ?
?
What was Gap Inc.'s A.I Rankiteo Cyber Score in November 2025 ?
?
What was Gap Inc.'s A.I Rankiteo Cyber Score in October 2025 ?
?
What was Gap Inc.'s A.I Rankiteo Cyber Score in September 2025 ?
?
What is the average per-incident point impact on Gap Inc.'s A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Gap Inc. ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Gap Inc.'s profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?