ISO 27001 Certificate
SOC 1 Type I Certificate
SOC 2 Type II Certificate
PCI DSS
HIPAA
RGPD
Internal validation & live display
Multiple badges & continuous verification
Faster underwriting decisions
ISOSOC2 Type 1SOC2 Type 2PCI DSSHIPAAGDPR

SOURCC is the ultimate way for interior designers to source the world's best trade products. We've modernized the traditional 'bricks and mortar' showroom concept and combined it with an innovative web platform that features powerful business tools delivered in a simple and elegant package. It's a whole new experience for a quickly changing industry.

SOURCC A.I CyberSecurity Scoring

SOURCC

Company Details

Linkedin ID:

sourcc

Employees number:

6

Number of followers:

125

NAICS:

337

Industry Type:

Furniture and Home Furnishings Manufacturing

Homepage:

sourcc.com

IP Addresses:

0

Company ID:

SOU_5138064

Scan Status:

In-progress

AI scoreSOURCC Risk Score (AI oriented)

Between 750 and 799

https://images.rankiteo.com/companyimages/sourcc.jpeg
SOURCC Furniture and Home Furnishings Manufacturing
Updated:
  • Powered by our proprietary A.I cyber incident model
  • Insurance preferes TPRM score to calculate premium
globalscoreSOURCC Global Score (TPRM)

XXXX

https://images.rankiteo.com/companyimages/sourcc.jpeg
SOURCC Furniture and Home Furnishings Manufacturing
  • Instant access to detailed risk factors
  • Benchmark vs. industry & size peers
  • Vulnerabilities
  • Findings

SOURCC Company CyberSecurity News & History

Past Incidents
0
Attack Types
0
No data available
Ailogo

SOURCC Company Scoring based on AI Models

Cyber Incidents Likelihood 3 - 6 - 9 months

🔒
Incident Predictions locked
Access Monitoring Plan

A.I Risk Score Likelihood 3 - 6 - 9 months

🔒
A.I. Risk Score Predictions locked
Access Monitoring Plan
statics

Underwriter Stats for SOURCC

Incidents vs Furniture and Home Furnishings Manufacturing Industry Average (This Year)

No incidents recorded for SOURCC in 2025.

Incidents vs All-Companies Average (This Year)

No incidents recorded for SOURCC in 2025.

Incident Types SOURCC vs Furniture and Home Furnishings Manufacturing Industry Avg (This Year)

No incidents recorded for SOURCC in 2025.

Incident History — SOURCC (X = Date, Y = Severity)

SOURCC cyber incidents detection timeline including parent company and subsidiaries

SOURCC Company Subsidiaries

SubsidiaryImage

SOURCC is the ultimate way for interior designers to source the world's best trade products. We've modernized the traditional 'bricks and mortar' showroom concept and combined it with an innovative web platform that features powerful business tools delivered in a simple and elegant package. It's a whole new experience for a quickly changing industry.

Loading...
similarCompanies

SOURCC Similar Companies

Circus 25

Circus 25 is a luxurious homeware brand supplying stunning interior décor and accessories to retail and trade customers. Via a team of industry experts, Circus 25 also provides interior design and curtain services. When you visit Circus 25 you are entering a world of imagination. It is a place of lu

Palmer Retail Solutions

The mission statement of Palmer Retail Solutions is quite simple: to offer our clients the absolute best combination of innovation, quality, service and value for our diversified custom store fixtures and merchandising displays. Palmer has been designing and producing retail fixtures, cash wraps, k

Design on Stock USA

Dutch Quality Group (DQG) which operates out of Waalwijk, Holland, created the Design on Stock brand. Their team of talented Dutch designers created a collection that pours out beauty and detail. In 2010, we at Kaas Tailored, partnered with DQG to bring the collection to North America. Together, we

DeKalb Office

DeKalb Office has come a long way since opening its doors for business in 1952 as an office furniture supplier in Decatur, GA. Today we are a creative, knowledgeable and collaborative partner providing innovative workplace solutions to a remarkably diverse client base. We serve some of the nation’s

The Reef Outlet

Dallas-Fort Worth's number one source for commercial aquariums and service. The Reef Outlet specializes in delivering interior aquatic features that are elegant and functional with your office, while also providing industry-leading maintenance services. From healthcare and corporate to legal, profes

Joss & Main

Joss & Main is the ultimate style edit for home. We drop the latest trends every season and new arrivals every month – then deliver them in days, not weeks.* Experience what we’re all about online or in-store. Based in Boston, Joss & Main is a Wayfair Specialty Retail Brand. Want to join the team?

newsone

SOURCC CyberSecurity News

November 27, 2025 06:30 AM
Hottest cybersecurity open-source tools of the month: November 2025

This article features open-source cybersecurity tools that are gaining attention for strengthening security across various environments.

October 30, 2025 07:00 AM
Hottest cybersecurity open-source tools of the month: October 2025

Hottest cybersecurity open-source tools of the month: October 2025 · Chekov: Open-source static code analysis tool · DefectDojo: Open-source...

October 17, 2025 07:00 AM
Breach at US-based cybersecurity provider F5 blamed on China, sources say

A breach at U.S.-based cybersecurity company F5 has been blamed on state-backed hackers from China, two people briefed on the investigation...

October 14, 2025 07:00 AM
What a new mega-worm says about open source risk

Shai-Hulud is noteworthy for several reasons. According to Trend Micro, it began life as part of the S1ingularity attacks on Nx and others.

September 22, 2025 07:00 AM
Cybersecurity AI (CAI): Open-source framework for AI security

Cybersecurity AI (CAI): Open-source framework for AI security. Cybersecurity AI (CAI) is an open-source framework that helps security teams...

August 27, 2025 07:00 AM
Report: Russia-based Yandex employee oversees open-source software approved for DOD use

The package is listed inside Platform One's Iron Bank, a vetted Defense Department software repository, people familiar say.

July 18, 2025 07:00 AM
Fincantieri set to pick Telecom Italia's cybersecurity boss to head defence unit, sources say

Italy's Fincantieri ... FCT.MI ... is poised to appoint Eugenio Santagata, a former army official and top executive at Telecom Italia's ... TLIT.MI...

July 15, 2025 07:00 AM
ECB supervisors focus on risks from tariffs to cyber attacks, central bank sources say

European Central Bank supervisors are focusing on issues ranging from tariffs to cyber attacks and a possible dollar shortage as they assess potential risks.

May 28, 2025 07:00 AM
Hottest cybersecurity open-source tools of the month: May 2025

Hottest cybersecurity open-source tools of the month: May 2025 · Vuls: Open-source agentless vulnerability scanner · LlamaFirewall: Open-source...

faq

Frequently Asked Questions

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.

SOURCC CyberSecurity History Information

Official Website of SOURCC

The official website of SOURCC is http://www.sourcc.com.

SOURCC’s AI-Generated Cybersecurity Score

According to Rankiteo, SOURCC’s AI-generated cybersecurity score is 754, reflecting their Fair security posture.

How many security badges does SOURCC’ have ?

According to Rankiteo, SOURCC currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.

Does SOURCC have SOC 2 Type 1 certification ?

According to Rankiteo, SOURCC is not certified under SOC 2 Type 1.

Does SOURCC have SOC 2 Type 2 certification ?

According to Rankiteo, SOURCC does not hold a SOC 2 Type 2 certification.

Does SOURCC comply with GDPR ?

According to Rankiteo, SOURCC is not listed as GDPR compliant.

Does SOURCC have PCI DSS certification ?

According to Rankiteo, SOURCC does not currently maintain PCI DSS compliance.

Does SOURCC comply with HIPAA ?

According to Rankiteo, SOURCC is not compliant with HIPAA regulations.

Does SOURCC have ISO 27001 certification ?

According to Rankiteo,SOURCC is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.

Industry Classification of SOURCC

SOURCC operates primarily in the Furniture and Home Furnishings Manufacturing industry.

Number of Employees at SOURCC

SOURCC employs approximately 6 people worldwide.

Subsidiaries Owned by SOURCC

SOURCC presently has no subsidiaries across any sectors.

SOURCC’s LinkedIn Followers

SOURCC’s official LinkedIn profile has approximately 125 followers.

NAICS Classification of SOURCC

SOURCC is classified under the NAICS code 337, which corresponds to Furniture and Related Product Manufacturing.

SOURCC’s Presence on Crunchbase

No, SOURCC does not have a profile on Crunchbase.

SOURCC’s Presence on LinkedIn

Yes, SOURCC maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/sourcc.

Cybersecurity Incidents Involving SOURCC

As of November 28, 2025, Rankiteo reports that SOURCC has not experienced any cybersecurity incidents.

Number of Peer and Competitor Companies

SOURCC has an estimated 2,617 peer or competitor companies worldwide.

SOURCC CyberSecurity History Information

How many cyber incidents has SOURCC faced ?

Total Incidents: According to Rankiteo, SOURCC has faced 0 incidents in the past.

What types of cybersecurity incidents have occurred at SOURCC ?

Incident Types: The types of cybersecurity incidents that have occurred include .

Incident Details

What are the most common types of attacks the company has faced ?

Additional Questions

cve

Latest Global CVEs (Not Company-Specific)

Description

ThingsBoard in versions prior to v4.2.1 allows an authenticated user to upload malicious SVG images via the "Image Gallery", leading to a Stored Cross-Site Scripting (XSS) vulnerability. The exploit can be triggered when any user accesses the public API endpoint of the malicious SVG images, or if the malicious images are embedded in an `iframe` element, during a widget creation, deployed to any page of the platform (e.g., dashboards), and accessed during normal operations. The vulnerability resides in the `ImageController`, which fails to restrict the execution of JavaScript code when an image is loaded by the user's browser. This vulnerability can lead to the execution of malicious code in the context of other users' sessions, potentially compromising their accounts and allowing unauthorized actions.

Risk Information
cvss4
Base: 6.2
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:N/VA:N/SC:H/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to to verify that the token used during the code exchange originates from the same authentication flow, which allows an authenticated user to perform account takeover via a specially crafted email address used when switching authentication methods and sending a request to the /users/login/sso/code-exchange endpoint. The vulnerability requires ExperimentalEnableAuthenticationTransfer to be enabled (default: enabled) and RequireEmailVerification to be disabled (default: disabled).

Risk Information
cvss3
Base: 9.9
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Description

Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to sanitize team email addresses to be visible only to Team Admins, which allows any authenticated user to view team email addresses via the GET /api/v4/channels/{channel_id}/common_teams endpoint

Risk Information
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Description

Exposure of email service credentials to users without administrative rights in Devolutions Server.This issue affects Devolutions Server: before 2025.2.21, before 2025.3.9.

Description

Exposure of credentials in unintended requests in Devolutions Server.This issue affects Server: through 2025.2.20, through 2025.3.8.

Access Data Using Our API

SubsidiaryImage

Get company history

curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?linkedin_id=sourcc' -H 'apikey: YOUR_API_KEY_HERE'

What Do We Measure ?

revertimgrevertimgrevertimgrevertimg
Incident
revertimgrevertimgrevertimgrevertimg
Finding
revertimgrevertimgrevertimgrevertimg
Grade
revertimgrevertimgrevertimgrevertimg
Digital Assets

Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.

These are some of the factors we use to calculate the overall score:

Network Security

Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.

SBOM (Software Bill of Materials)

Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.

CMDB (Configuration Management Database)

Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.

Threat Intelligence

Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.

Top LeftTop RightBottom LeftBottom Right
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.
Users Love Us Badge