Comparison Overview

Stonegate Group

VS

Hampton

Stonegate Group

3 Monkspath Hall Road Shirley, England B90 4SJ, GB
Last Update: 2025-12-09

We’re the UK's biggest pub company, but that’s not all we are. We’re an incredible team bringing people together through our 4,500+ sites nationwide. Formed in 2010 with 333 pubs, Stonegate Group has grown bigger and better than ever, and today we’re home to well-loved sites such as Slug & Lettuce, Be At One, Walkabout, Popworld and so many more. But we didn’t get where we are just with great drinks and unforgettable experiences. We got here with the wonderful ideas and dedication of our team, from our front-line bar superstars to our head-office heroes and everyone in between. Without our team, we couldn’t have achieved all the brilliant things we have, and that’s why we’re here to make sure our colleagues are set up for just as much success as we are. With award-winning development programmes, proven Bar to Boardroom career pathways, apprenticeship opportunities to gain nationally-recognised qualifications, and training to learn fantastic new skills, we can prove that we value our colleagues just as much as our customers. We set up every part of our business for success, and we strive to be the best we can be for our guests and colleagues alike. Here at Stonegate, we live by our values. We invest wisely, we’re raring to go and we’re straightforward in all that we do. But above all, we’re one team, and we’re ready to take on the future together and have fun while we’re at it!

NAICS: 7211
NAICS Definition: Traveler Accommodation
Employees: 10,001
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Hampton

7930 Jones Branch Drive, Suite 1100, McLean, Virginia, US, 22102
Last Update: 2025-12-09
Between 750 and 799

The Hampton brand, including Hampton Inn, Hampton Inn & Suites and Hampton by Hilton, is an award-winning leader in the upper-midscale hotel segment. With more than 2,700 properties in 32 countries globally, Hampton is part of Hilton Worldwide, the leading global hospitality company. All Hampton Hotels offer warm surroundings and a friendly service culture and personality, defined as “Hamptonality,” supported by its 100% Satisfaction Guarantee. High-quality accommodations, in-room conveniences and the latest technology, combined with numerous locations and consistent offerings, have made Hampton a leader in its segment and one of the fastest growing hotel brands. For more information please visit: www.hampton.com www.hamptonfranchise.com news.hampton.com www.hiltonworldwide.com/careers/ To connect with us on social please visit: www.facebook.com/hampton www.twitter.com/hampton www.youtube.com/hampton

NAICS: 7211
NAICS Definition: Traveler Accommodation
Employees: 11,130
Subsidiaries: 16
12-month incidents
0
Known data breaches
4
Attack type number
1

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/stonegate-pub-company-limited.jpeg
Stonegate Group
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/hampton.jpeg
Hampton
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Stonegate Group
100%
Compliance Rate
0/4 Standards Verified
Hampton
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Hospitality Industry Average (This Year)

No incidents recorded for Stonegate Group in 2025.

Incidents vs Hospitality Industry Average (This Year)

No incidents recorded for Hampton in 2025.

Incident History — Stonegate Group (X = Date, Y = Severity)

Stonegate Group cyber incidents detection timeline including parent company and subsidiaries

Incident History — Hampton (X = Date, Y = Severity)

Hampton cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/stonegate-pub-company-limited.jpeg
Stonegate Group
Incidents

No Incident

https://images.rankiteo.com/companyimages/hampton.jpeg
Hampton
Incidents

Date Detected: 11/2017
Type:Breach
Attack Vector: denial-of-service malware
Blog: Blog

Date Detected: 11/2015
Type:Breach
Attack Vector: Malware
Motivation: Financial Gain
Blog: Blog

Date Detected: 09/2015
Type:Breach
Attack Vector: Point-of-Sale System
Blog: Blog

FAQ

Hampton company demonstrates a stronger AI Cybersecurity Score compared to Stonegate Group company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Hampton company has historically faced a number of disclosed cyber incidents, whereas Stonegate Group company has not reported any.

In the current year, Hampton company and Stonegate Group company have not reported any cyber incidents.

Neither Hampton company nor Stonegate Group company has reported experiencing a ransomware attack publicly.

Hampton company has disclosed at least one data breach, while Stonegate Group company has not reported such incidents publicly.

Neither Hampton company nor Stonegate Group company has reported experiencing targeted cyberattacks publicly.

Neither Stonegate Group company nor Hampton company has reported experiencing or disclosing vulnerabilities publicly.

Neither Stonegate Group nor Hampton holds any compliance certifications.

Neither company holds any compliance certifications.

Hampton company has more subsidiaries worldwide compared to Stonegate Group company.

Hampton company employs more people globally than Stonegate Group company, reflecting its scale as a Hospitality.

Neither Stonegate Group nor Hampton holds SOC 2 Type 1 certification.

Neither Stonegate Group nor Hampton holds SOC 2 Type 2 certification.

Neither Stonegate Group nor Hampton holds ISO 27001 certification.

Neither Stonegate Group nor Hampton holds PCI DSS certification.

Neither Stonegate Group nor Hampton holds HIPAA certification.

Neither Stonegate Group nor Hampton holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users. Versions 3.5.4 and below contain a Stored Cross-Site Scripting (XSS) vulnerability in the /WeGIA/html/geral/configurar_senhas.php endpoint. The application does not sanitize user-controlled data before rendering it inside the employee selection dropdown. The application retrieves employee names from the database and injects them directly into HTML <option> elements without proper escaping. This issue is fixed in version 3.5.5.

Risk Information
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Description

ZITADEL is an open-source identity infrastructure tool. Versions 4.0.0-rc.1 through 4.7.0 are vulnerable to DOM-Based XSS through the Zitadel V2 logout endpoint. The /logout endpoint insecurely routes to a value that is supplied in the post_logout_redirect GET parameter. As a result, unauthenticated remote attacker can execute malicious JS code on Zitadel users’ browsers. To carry out an attack, multiple user sessions need to be active in the same browser, however, account takeover is mitigated when using Multi-Factor Authentication (MFA) or Passwordless authentication. This issue is fixed in version 4.7.1.

Risk Information
cvss3
Base: 8.0
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:N
Description

ZITADEL is an open-source identity infrastructure tool. Versions 4.7.0 and below are vulnerable to an unauthenticated, full-read SSRF vulnerability. The ZITADEL Login UI (V2) treats the x-zitadel-forward-host header as a trusted fallback for all deployments, including self-hosted instances. This allows an unauthenticated attacker to force the server to make HTTP requests to arbitrary domains, such as internal addresses, and read the responses, enabling data exfiltration and bypassing network-segmentation controls. This issue is fixed in version 4.7.1.

Risk Information
cvss3
Base: 9.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N
Description

NiceGUI is a Python-based UI framework. Versions 3.3.1 and below are vulnerable to directory traversal through the App.add_media_files() function, which allows a remote attacker to read arbitrary files on the server filesystem. This issue is fixed in version 3.4.0.

Risk Information
cvss3
Base: 7.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Description

FreePBX Endpoint Manager is a module for managing telephony endpoints in FreePBX systems. Versions are vulnerable to authentication bypass when the authentication type is set to "webserver." When providing an Authorization header with an arbitrary value, a session is associated with the target user regardless of valid credentials. This issue is fixed in versions 16.0.44 and 17.0.23.

Risk Information
cvss4
Base: 9.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X