Company Details
ontrak-health
144
7,946
62133
ontrakhealth.com
3
ONT_3211701
Completed


Ontrak Health Company CyberSecurity Posture
ontrakhealth.comOntrak Health is a leading AI-driven healthcare company that finds and engages hard-to-reach populations with unaddressed behavioral health issues and chronic disease to improve outcomes and meaningfully reduce healthcare costs for health plans and employers. Our validated cost savings are driven by a 42% reduction in ED visits and 63% reduction in inpatient stays on average across our book of business. How does the Ontrak program work? Ontrak’s integrated platform leverages AI, predictive analytics and digital tools combined with behavioral health provider visits and evidence-based coaching. Our partners value the impactful outcomes we help them achieve, including industry-leading engagement, improved member health, better healthcare utilization, and durable cost savings. What makes the Ontrak Program different than other behavioral health solutions? Our ability to find, engage, and provide customized care pathways to treatment for complex populations with unaddressed behavioral health issues (anxiety, depression, and substance use disorder) and comorbid chronic diseases. Our person-centered approach helps individuals overcome barriers to care, develop self-efficacy, and receive the treatment and advocacy they need. The end result is superior outcomes aligned to the Quadruple Aim: validated cost savings; improved clinical outcomes; industry-leading member engagement and satisfaction; and effective provider collaboration. Ontrak’s mission is to improve the health and save the lives of as many people as possible. Please contact us at www.OntrakHealth.com if you would like to learn how a partnership with Ontrak can help support your organization’s population health and financial goals.
Company Details
ontrak-health
144
7,946
62133
ontrakhealth.com
3
ONT_3211701
Completed
Between 750 and 799

Ontrak Health Global Score (TPRM)XXXX



No incidents recorded for Ontrak Health in 2026.
No incidents recorded for Ontrak Health in 2026.
No incidents recorded for Ontrak Health in 2026.
Ontrak Health cyber incidents detection timeline including parent company and subsidiaries

Ontrak Health is a leading AI-driven healthcare company that finds and engages hard-to-reach populations with unaddressed behavioral health issues and chronic disease to improve outcomes and meaningfully reduce healthcare costs for health plans and employers. Our validated cost savings are driven by a 42% reduction in ED visits and 63% reduction in inpatient stays on average across our book of business. How does the Ontrak program work? Ontrak’s integrated platform leverages AI, predictive analytics and digital tools combined with behavioral health provider visits and evidence-based coaching. Our partners value the impactful outcomes we help them achieve, including industry-leading engagement, improved member health, better healthcare utilization, and durable cost savings. What makes the Ontrak Program different than other behavioral health solutions? Our ability to find, engage, and provide customized care pathways to treatment for complex populations with unaddressed behavioral health issues (anxiety, depression, and substance use disorder) and comorbid chronic diseases. Our person-centered approach helps individuals overcome barriers to care, develop self-efficacy, and receive the treatment and advocacy they need. The end result is superior outcomes aligned to the Quadruple Aim: validated cost savings; improved clinical outcomes; industry-leading member engagement and satisfaction; and effective provider collaboration. Ontrak’s mission is to improve the health and save the lives of as many people as possible. Please contact us at www.OntrakHealth.com if you would like to learn how a partnership with Ontrak can help support your organization’s population health and financial goals.


ADVENT PRESTIGE CARE LLC is a mental health therapy and relationship counseling organization committed to bringing health, wellness, and happiness to the society. The organization operates under the capable leadership of Sheryl Palmer, a passionate trainer, mentor, and mental health consultant. ADV

At Partnership for Children of Essex (PCE), we believe every youth deserves the opportunity to thrive. As Essex County's Care Management Organization (CMO), a part of NJ's Children's System of Care, we proudly serve youth facing complex challenges, including emotional, behavioral, intellectual, deve

Meadows Behavioral Healthcare is the most trusted name in treating unresolved emotional trauma, along with co-occurring conditions including alcohol and drug addiction, sex and love addiction, eating disorders, panic and anxiety disorders, PTSD, codependency, depression, bipolar disorder, and more.

Our Applied Behavior Analysis Services (ABA) Include: A spectrum of evidence based therapy solutions individualized to meet unique needs of your child and family: Clinical Case Management Clinical Case Management allows us to provide an integrated treatment plan, addressing complimentary skill

The Canyon is a state-of-the-art private-pay treatment program housed on 120 beautiful acres near the Malibu coastline. All treatment can be handled on site, from detox to evidence-based treatment to aftercare. Our unique program features luxury accommodations and gourmet food as well as a highly tr
Array Behavioral Care is the nation's leading virtual psychiatry and therapy practice. As the leading mental health provider, Array is on a mission to transform access to quality, timely behavioral health care through innovative telepsychiatry solutions and services that span the entire care continu

Birch Tree Communities is a private nonprofit mental health organization offering recovery services to adults with serious mental illness throughout the state of Arkansas. Birch provides a full spectrum of care including therapy services, residential housing options, rehabilitative day treatment ser

You already have skills in setting and achieving goals. I want to use those strengths, tied to my relationship tools, to help you guys feel connected again. I focus on the future of your relationship, not primarily on your past. While we explore any past issues, you should know my focus is on the

Christian Children's Home of Ohio, along with Encourage Foster Care and Encompass Christian Counseling, is a trauma-effective nonprofit organization serving youth and families since 1969. Our professional, compassionate team helps people across Ohio experience their worth in Christ through trusting
.png)
MIAMI, June 27, 2025--Ontrak, Inc. (NASDAQ: OTRK), a leading value-based behavioral healthcare company powered by proprietary AI and...
MIAMI, June 24, 2025--Ontrak, Inc. (NASDAQ: OTRK), a leading value-based behavioral healthcare company powered by proprietary AI and...
AI stocks under $5, such as BigBear.ai, One Stop Systems, Ontrak, iCAD, Nerdy, Richtech Robotics, and Rezolve AI, offer an exciting opportunity to invest in...
The behavioral health company's Engage platform will be available to existing commercial fully insured, self-funded members on an opt-in...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Ontrak Health is https://ontrakhealth.com/.
According to Rankiteo, Ontrak Health’s AI-generated cybersecurity score is 750, reflecting their Fair security posture.
According to Rankiteo, Ontrak Health currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Ontrak Health has not been affected by any supply chain cyber incidents, and no incident IDs are currently listed for the organization.
According to Rankiteo, Ontrak Health is not certified under SOC 2 Type 1.
According to Rankiteo, Ontrak Health does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Ontrak Health is not listed as GDPR compliant.
According to Rankiteo, Ontrak Health does not currently maintain PCI DSS compliance.
According to Rankiteo, Ontrak Health is not compliant with HIPAA regulations.
According to Rankiteo,Ontrak Health is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Ontrak Health operates primarily in the Mental Health Care industry.
Ontrak Health employs approximately 144 people worldwide.
Ontrak Health presently has no subsidiaries across any sectors.
Ontrak Health’s official LinkedIn profile has approximately 7,946 followers.
Ontrak Health is classified under the NAICS code 62133, which corresponds to Offices of Mental Health Practitioners (except Physicians).
No, Ontrak Health does not have a profile on Crunchbase.
Yes, Ontrak Health maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/ontrak-health.
As of January 22, 2026, Rankiteo reports that Ontrak Health has not experienced any cybersecurity incidents.
Ontrak Health has an estimated 5,280 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, Ontrak Health has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
SummaryA command injection vulnerability (CWE-78) has been found to exist in the `wrangler pages deploy` command. The issue occurs because the `--commit-hash` parameter is passed directly to a shell command without proper validation or sanitization, allowing an attacker with control of `--commit-hash` to execute arbitrary commands on the system running Wrangler. Root causeThe commitHash variable, derived from user input via the --commit-hash CLI argument, is interpolated directly into a shell command using template literals (e.g., execSync(`git show -s --format=%B ${commitHash}`)). Shell metacharacters are interpreted by the shell, enabling command execution. ImpactThis vulnerability is generally hard to exploit, as it requires --commit-hash to be attacker controlled. The vulnerability primarily affects CI/CD environments where `wrangler pages deploy` is used in automated pipelines and the --commit-hash parameter is populated from external, potentially untrusted sources. An attacker could exploit this to: * Run any shell command. * Exfiltrate environment variables. * Compromise the CI runner to install backdoors or modify build artifacts. Credits Disclosed responsibly by kny4hacker. Mitigation * Wrangler v4 users are requested to upgrade to Wrangler v4.59.1 or higher. * Wrangler v3 users are requested to upgrade to Wrangler v3.114.17 or higher. * Users on Wrangler v2 (EOL) should upgrade to a supported major version.
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H).
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle VM VirtualBox accessible data as well as unauthorized access to critical data or complete access to all Oracle VM VirtualBox accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.1 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:L).
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H).
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H).

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.