Comparison Overview

Philz Coffee

VS

AS Watson

Philz Coffee

1258 Minnesota Street, San Francisco, CA, 94107, US
Last Update: 2025-05-06 (UTC)
Between 800 and 900

Strong

It all started with a dream to create a really great cup of coffee personalized for you... Philz Coffee is a San Francisco-based coffee company that attracts people who are passionate - about life, about others, about the communities they live and work in...and about coffee! Our core values: Put the customer experience first Our customers are our top priority. If we put people first, we cannot fail. Be quality driven and progress focused Be proud of your work. Be committed to doing the very best with passion and focus. Be kind and keep it real We are kind-hearted, positive, humble, and human. Be yourself. Be sincere. A genuine connection will outperform formality. We make sure that every Philz is a fun, creative and vibrant workplace. A spot where you can be yourself, dress the way you want, and have flexibility in your schedule to live your best life. Most importantly, youโ€™ll be part of an environment dedicated to bettering peopleโ€™s days and building community.

NAICS: 43
NAICS Definition: Retail Trade
Employees: 781
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

AS Watson

Last Update: 2024-08-12 (UTC)

Strong

AS Watson Group, the worldโ€™s largest international health and beauty retailer, is operating over 16,500 stores under 12 retail brands in 28 markets, with over 130,000 employees worldwide. For the fiscal year 2023, AS Watson Group recorded revenue of US$23 billion. Every year, we are serving over 5.5 billion shoppers via our O+O (Offline plus Online) technology-enabled platforms. Together with our 12 retail brands including Watsons, Kruidvat, Trekpleister, Superdrug, Savers, Rossmann, Drogas, ICI PARIS XL, The Perfume Shop, PARKnSHOP, FORTRESS and Watsonโ€™s Wine, we set O+O (Offline Plus Online) as the new standard for retail. O+O is more about creating an integrated offline and online experience to better serve customersโ€™ needs through digital transformation, that enables them to shop across any channel, anytime, anywhere. Every day, we work towards a clear purpose: To put a Smile on our customersโ€™ faces today and tomorrow. Our success depends on our people staying ahead of the game. We believe that our attitude to teamwork and our encouragement for your personal growth comes shining through everything we do. We also know that our success as an employer isnโ€™t just about influencing you on why you should join our business. Itโ€™s about asking you to imagine where it could take you.

NAICS: 43
NAICS Definition: Retail Trade
Employees: 16,014
Subsidiaries: 24
12-month incidents
0
Known data breaches
1
Attack type number
1

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/philz-coffee.jpeg
Philz Coffee
โ€”
ISO 27001
Not verified
โ€”
SOC 2
Not verified
โ€”
GDPR
No public badge
โ€”
PCI DSS
No public badge
https://images.rankiteo.com/companyimages/aswatson.jpeg
AS Watson
โ€”
ISO 27001
Not verified
โ€”
SOC 2
Not verified
โ€”
GDPR
No public badge
โ€”
PCI DSS
No public badge
Compliance Summary
Philz Coffee
100%
Compliance Rate
0/4 Standards Verified
AS Watson
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Retail Industry Average (This Year)

No incidents recorded for Philz Coffee in 2025.

Incidents vs Retail Industry Average (This Year)

No incidents recorded for AS Watson in 2025.

Incident History โ€” Philz Coffee (X = Date, Y = Severity)

Philz Coffee cyber incidents detection timeline including parent company and subsidiaries

Incident History โ€” AS Watson (X = Date, Y = Severity)

AS Watson cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/philz-coffee.jpeg
Philz Coffee
Incidents

No Incident

https://images.rankiteo.com/companyimages/aswatson.jpeg
AS Watson
Incidents

Date Detected: 08/2018
Type:Breach
Attack Vector: Credential Stuffing
Motivation: Data Theft
Blog: Blog

FAQ

Both Philz Coffee company and AS Watson company demonstrate a comparable AI risk posture, with strong governance and monitoring frameworks in place.

AS Watson company has historically faced a number of disclosed cyber incidents, whereas Philz Coffee company has not reported any.

In the current year, AS Watson company and Philz Coffee company have not reported any cyber incidents.

Neither AS Watson company nor Philz Coffee company has reported experiencing a ransomware attack publicly.

AS Watson company has disclosed at least one data breach, while Philz Coffee company has not reported such incidents publicly.

Neither AS Watson company nor Philz Coffee company has reported experiencing targeted cyberattacks publicly.

Neither Philz Coffee company nor AS Watson company has reported experiencing or disclosing vulnerabilities publicly.

AS Watson company has more subsidiaries worldwide compared to Philz Coffee company.

AS Watson company employs more people globally than Philz Coffee company, reflecting its scale as a Retail.

Latest Global CVEs (Not Company-Specific)

Description

An issue was discovered in chinabugotech hutool before 5.8.4 allowing attackers to execute arbitrary expressions that lead to arbitrary method invocation and potentially remote code execution (RCE) via the QLExpressEngine class.

Description

A weakness has been identified in JeecgBoot up to 3.8.2. The impacted element is an unknown function of the file /sys/role/exportXls. This manipulation causes improper authorization. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be exploited. The vendor was contacted early about this disclosure but did not respond in any way.

Risk Information
cvss2
Base: 4.0
Severity: LOW
AV:N/AC:L/Au:S/C:P/I:N/A:N
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A security flaw has been discovered in JeecgBoot up to 3.8.2. The affected element is an unknown function of the file /sys/user/exportXls of the component Filter Handler. The manipulation results in improper authorization. The attack may be performed from remote. The exploit has been released to the public and may be exploited. The vendor was contacted early about this disclosure but did not respond in any way.

Risk Information
cvss2
Base: 4.0
Severity: LOW
AV:N/AC:L/Au:S/C:P/I:N/A:N
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A vulnerability was identified in JeecgBoot up to 3.8.2. Impacted is an unknown function of the file /sys/tenant/deleteBatch. The manipulation of the argument ids leads to improper authorization. The attack is possible to be carried out remotely. The complexity of an attack is rather high. The exploitability is considered difficult. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

Risk Information
cvss2
Base: 2.1
Severity: HIGH
AV:N/AC:H/Au:S/C:P/I:N/A:N
cvss3
Base: 3.1
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N
cvss4
Base: 2.3
Severity: HIGH
CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A vulnerability was determined in JeecgBoot up to 3.8.2. This issue affects some unknown processing of the file /api/getDepartUserList. Executing manipulation of the argument departId can lead to improper authorization. The attack can be executed remotely. This attack is characterized by high complexity. The exploitability is assessed as difficult. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.

Risk Information
cvss2
Base: 2.1
Severity: HIGH
AV:N/AC:H/Au:S/C:P/I:N/A:N
cvss3
Base: 3.1
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N
cvss4
Base: 2.3
Severity: HIGH
CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X