Comparison Overview

BANDALOOP

VS

Gibney

BANDALOOP

1601 18th Street, Oakland, CA, 94607, US
Last Update: 2025-12-09
Between 750 and 799

BANDALOOP honors nature, community, and the human spirit through perspective-bending dance. An innovator in vertical performance, BANDALOOP seamlessly weaves dynamic physicality, intricate choreography and climbing technology to turn the dance floor on its side. Founded by Amelia Rudolph and under the artistic direction of Melecio Estrella, BANDALOOP re-imagines dance, activates public spaces, and inspires wonder and imagination in audiences around the world. The company trains dancers and youth at home and on tour, and has performed for millions of people in over 22 countries in Europe, Africa, the Middle East, the Americas, and Asia, and on screens in films and digital media. BANDALOOP is based in Oakland, CA, where the company incubates and produces work for its local audiences and for touring performances presented around the globe. Education and outreach are an intrinsic part of the company’s mission. In addition to its ongoing work with youth, BANDALOOP offers regular classes, camps, and intensives at its home studio and in the mountains, and team building programs for executives and leaders of organizations. BANDALOOP is based in Oakland, CA, where the company creates work for its bi-annual home season and for touring performances presented around the globe each year. Education and outreach are also an intrinsic part of the company’s mission. In addition to its ongoing work with youth, BANDALOOP offers regular classes, camps, and intensives at its home studio and in the mountains, and team building programs for business executives.

NAICS: 711
NAICS Definition:
Employees: 28
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Gibney

280 Broadway, New York , New York , 10007, US
Last Update: 2025-12-09
Between 750 and 799

Gibney is a dance company, performing arts hub, and a social action incubator located in New York City. Since 1991, our mission has been to tap into the vast potential of movement, creativity, and performance to effect social change and personal transformation. Through the expansive programming housed at our beautiful 890 Broadway and 280 Broadway locations, we push boundaries, lift voices, and mobilize the power of movement to transform lives and change the world.

NAICS: 711
NAICS Definition:
Employees: 74
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/project-bandaloop.jpeg
BANDALOOP
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/gibney-dance.jpeg
Gibney
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
BANDALOOP
100%
Compliance Rate
0/4 Standards Verified
Gibney
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Performing Arts Industry Average (This Year)

No incidents recorded for BANDALOOP in 2025.

Incidents vs Performing Arts Industry Average (This Year)

No incidents recorded for Gibney in 2025.

Incident History — BANDALOOP (X = Date, Y = Severity)

BANDALOOP cyber incidents detection timeline including parent company and subsidiaries

Incident History — Gibney (X = Date, Y = Severity)

Gibney cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/project-bandaloop.jpeg
BANDALOOP
Incidents

No Incident

https://images.rankiteo.com/companyimages/gibney-dance.jpeg
Gibney
Incidents

No Incident

FAQ

Both BANDALOOP company and Gibney company demonstrate a comparable AI Cybersecurity Score, with strong governance and monitoring frameworks in place.

Historically, Gibney company has disclosed a higher number of cyber incidents compared to BANDALOOP company.

In the current year, Gibney company and BANDALOOP company have not reported any cyber incidents.

Neither Gibney company nor BANDALOOP company has reported experiencing a ransomware attack publicly.

Neither Gibney company nor BANDALOOP company has reported experiencing a data breach publicly.

Neither Gibney company nor BANDALOOP company has reported experiencing targeted cyberattacks publicly.

Neither BANDALOOP company nor Gibney company has reported experiencing or disclosing vulnerabilities publicly.

Neither BANDALOOP nor Gibney holds any compliance certifications.

Neither company holds any compliance certifications.

Neither BANDALOOP company nor Gibney company has publicly disclosed detailed information about the number of their subsidiaries.

Gibney company employs more people globally than BANDALOOP company, reflecting its scale as a Performing Arts.

Neither BANDALOOP nor Gibney holds SOC 2 Type 1 certification.

Neither BANDALOOP nor Gibney holds SOC 2 Type 2 certification.

Neither BANDALOOP nor Gibney holds ISO 27001 certification.

Neither BANDALOOP nor Gibney holds PCI DSS certification.

Neither BANDALOOP nor Gibney holds HIPAA certification.

Neither BANDALOOP nor Gibney holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

NXLog Agent before 6.11 can load a file specified by the OPENSSL_CONF environment variable.

Risk Information
cvss3
Base: 8.1
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Description

uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with large input containing many commas.

Risk Information
cvss3
Base: 2.9
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Description

A vulnerability was detected in Mayan EDMS up to 4.10.1. The affected element is an unknown function of the file /authentication/. The manipulation results in cross site scripting. The attack may be performed from remote. The exploit is now public and may be used. Upgrading to version 4.10.2 is sufficient to fix this issue. You should upgrade the affected component. The vendor confirms that this is "[f]ixed in version 4.10.2". Furthermore, that "[b]ackports for older versions in process and will be out as soon as their respective CI pipelines complete."

Risk Information
cvss2
Base: 5.0
Severity: LOW
AV:N/AC:L/Au:N/C:N/I:P/A:N
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

MJML through 4.18.0 allows mj-include directory traversal to test file existence and (in the type="css" case) read files. NOTE: this issue exists because of an incomplete fix for CVE-2020-12827.

Risk Information
cvss3
Base: 4.5
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:N/A:L
Description

A half-blind Server Side Request Forgery (SSRF) vulnerability exists in kube-controller-manager when using the in-tree Portworx StorageClass. This vulnerability allows authorized users to leak arbitrary information from unprotected endpoints in the control plane’s host network (including link-local or loopback services).

Risk Information
cvss3
Base: 5.8
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:N/A:N