Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
ShipMonk

ShipMonk Vendor Cyber Rating & Cyber Score

shipmonk.com

Since 2014, ShipMonk has operated with a singular guiding principle: help ecommerce brands scale through technology-driven fulfillment solutions that enable entrepreneurs to devote more time to the things that matter most in their businesses. Put simply, here at ShipMonk we help ecommerce brands STRESS LESS and GROW MORE. Headquartered in Fort Lauderdale, FL, ShipMonk proudly employs 2,000+ team members across a network of 11 state-of-the-art facilities located throughout the US, Canada, and Europe. We are America’s fastest-growing third-party logistics provider (3PL) for DTC, B2B, and retail fulfillment, specializing in the facilitation of sustained growth for ecommerce brands of all sizes across all verticals. Our enterprise-level


ShipMonk A.I CyberSecurity Scoring

ShipMonk
Company Information
Website:https://www.shipmonk.com
Employees number:1,300
Number of followers:26,263
NAICS:47
Industry Type:Transportation, Logistics, Supply Chain and Storage
Homepage:shipmonk.com
ShipMonk Risk Score (AI oriented)
Between 650 and 699
logo
ShipMonkTransportation, Logistics, Supply Chain and Storage
Updated:
13/08/2026
689/1000
Weak
B
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
ShipMonk Global Score (TPRM)
xxxx
logo
ShipMonkTransportation, Logistics, Supply Chain and Storage
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

ShipMonk
ShipMonkWeak
Current Score
689B (WEAK)
01000
2 incidents
-61.5 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
SEPTEMBER 2026
634Before Incident
AUGUST 2026
689Before Incident
Breach
16 Aug 2026ShipMonk
SafePal: Safepal security vulnerability exposes data of 39,798 customers

SafePal Data Breach Exposing Customer Personal Information

633After Incident
CRITICAL-56
SAF1786970142
SafePal Discloses Data Breach Exposing Customer Personal Information SafePal, a provider of crypto hardware wallets and security solutions, has reported a security incident that exposed the personal data of thousands of customers. The breach, disclosed on Sunday, involved an "authorization flaw" in a plug-in used to track customer orders, allowing unauthorized access to sensitive information. The exposed data included names, physical addresses, and contact details, increasing the risk of phishing and impersonation attacks for affected users. However, SafePal confirmed that no cryptocurrency funds, passwords, or private wallet keys were compromised in the incident. The vulnerability stemmed from a flaw in the order-tracking system, which functioned similarly to a retail receipt lookup where altering an order number could reveal another customer’s delivery details. SafePal has not disclosed the exact number of impacted users. This breach follows a recent high-profile attack on Coldcard hardware wallets, where attackers reportedly stole at least $120 million in Bitcoin. While these incidents do not indicate a systemic flaw in hardware wallets, they underscore the persistent risks in crypto storage solutions and the importance of risk assessment in asset management.
INCIDENT DETAILS -
TYPE
Data Breach
IMPACT
Data Compromised: Names, physical addresses, contact detailsSystems Affected: Order-tracking system plug-inBrand Reputation Impact: Undermined trust in crypto storage solutionsIdentity Theft Risk: Increased risk of phishing and impersonation attacks
DATA BREACH
Type Of Data Compromised: Personal InformationSensitivity Of Data: High (PII)Personally Identifiable Information: Names, physical addresses, contact details
AUGUST 2026
756Before Incident
Breach
13 Aug 2026ShipMonk
Trezor and ShipMonk: Trezor ShipMonk Data Breach Exposes Personal Data of Over 13,000 Hardware Wallet Customers

Trezor Customers Face Phishing Risks After Third-Party Logistics Breach

689After Incident
CRITICAL-67
TRESHI1786631044
Trezor Customers Face Phishing Risks After Third-Party Logistics Breach On August 10, 2026, hardware wallet manufacturer Trezor disclosed a data breach involving ShipMonk, one of its shipping providers, exposing personal details of thousands of customers. While Trezor’s own systems and devices remained uncompromised, the incident heightened phishing risks for affected users. The breach impacted 13,689 customers who placed orders between May 10 and August 8, 2026, across the U.S., U.K., Sweden, Colombia, Brazil, Italy, and Portugal. Of these, 11,742 customers had full exposure of names, email addresses, phone numbers, and shipping addresses, while 1,947 had partial exposure limited to names, cities, and emails. Trezor’s 90-day data retention policy limited the scope, as older records were no longer stored by ShipMonk. ShipMonk, which handles storage and shipping for Trezor, held the exposed data including names, emails, order numbers, phone numbers, and shipping addresses only as required for delivery. Trezor confirmed that no wallet security or firmware was affected, but the leaked details could be weaponized for phishing, spoofed calls, or fraudulent messages impersonating Trezor or financial services. This marks the first time since Trezor’s 2013 founding that customer phone numbers and shipping addresses have been exposed in a breach. The company has notified affected users via [email protected] and urged caution against unsolicited requests for personal or wallet recovery information. Trezor is working with ShipMonk to investigate and secure the affected systems. To mitigate future risks, the company plans to introduce an "Anonymous Delivery" option by September 2026 (EU) and end of 2026 (U.S.), featuring neutral packaging, locker pickup, and automatic deletion of shipping identifiers. Operations remain unaffected, and Trezor continues direct customer outreach.
INCIDENT DETAILS -
TYPE
Data Breach
IMPACT
Data Compromised: Personal details (names, email addresses, phone numbers, shipping addresses, order numbers)Systems Affected: ShipMonk's logistics systemsBrand Reputation Impact: Heightened phishing risks for affected usersIdentity Theft Risk: Increased risk of phishing, spoofed calls, or fraudulent messages
DATA BREACH
NamesEmail addressesPhone numbersShipping addressesOrder numbersNumber Of Records Exposed: 13,689Sensitivity Of Data: High (personally identifiable information)Personally Identifiable Information: Yes
JULY 2026
756Before Incident
JUNE 2026
756Before Incident
MAY 2026
756Before Incident
APRIL 2026
756Before Incident
MARCH 2026
756Before Incident
FEBRUARY 2026
756Before Incident
JANUARY 2026
756Before Incident
DECEMBER 2025
756Before Incident
NOVEMBER 2025
756Before Incident
OCTOBER 2025
756Before Incident

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for ShipMonk ?
?
What was ShipMonk's A.I Rankiteo Cyber Score in August 2026 ?
?
What was ShipMonk's A.I Rankiteo Cyber Score in July 2026 ?
?
What was ShipMonk's A.I Rankiteo Cyber Score in June 2026 ?
?
What was ShipMonk's A.I Rankiteo Cyber Score in May 2026 ?
?
What was ShipMonk's A.I Rankiteo Cyber Score in April 2026 ?
?
What was ShipMonk's A.I Rankiteo Cyber Score in March 2026 ?
?
What was ShipMonk's A.I Rankiteo Cyber Score in February 2026 ?
?
What was ShipMonk's A.I Rankiteo Cyber Score in January 2026 ?
?
What was ShipMonk's A.I Rankiteo Cyber Score in December 2025 ?
?
What was ShipMonk's A.I Rankiteo Cyber Score in November 2025 ?
?
What was ShipMonk's A.I Rankiteo Cyber Score in October 2025 ?
?
What is the average per-incident point impact on ShipMonk's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with ShipMonk ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view ShipMonk's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?