Comparison Overview

The WholeSoul Company

VS

None

The WholeSoul Company

PO Box 320716, Los Gatos, CA, 95032, US
Last Update: 2025-03-18 (UTC)

Excellent

The WholeSoul Company creates luxury bath + body products using essential oils to help balance, soothe, and heal the body. Handcrafted in small batches, in Los Gatos, California, our products are delicately made with loving hearts, healing hands, and mindful intentions. Most importantly, our products are designed for the userโ€™s Whole Soul.

NAICS: None
NAICS Definition: Others
Employees: 2
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

None

420 24th Ave SW, Norman, OK, 73069, US
Last Update: 2025-03-05 (UTC)

Excellent

Norman Smile Center is Norman's premier destination for all of your dental needs. Dentists Jamie Belknap, DDS, Donna Sparks, DDS, and Kristen Campbell, DDS, Norman OK, practice a full scope of general and cosmetic dentistry with expertise ranging from porcelain veneers to dental implants, crowns and bridges. Drs. Belknap, Sparks, and Campbell can now correct a wide variety of dental problems, and can literally redesign your smile.

NAICS: None
NAICS Definition: Others
Employees: 50,151
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/thewholesoulcompany.jpeg
The WholeSoul Company
โ€”
ISO 27001
Not verified
โ€”
SOC 2
Not verified
โ€”
GDPR
No public badge
โ€”
PCI DSS
No public badge
https://images.rankiteo.com/companyimages/norman-smile-center.jpeg
None
โ€”
ISO 27001
Not verified
โ€”
SOC 2
Not verified
โ€”
GDPR
No public badge
โ€”
PCI DSS
No public badge
Compliance Summary
The WholeSoul Company
100%
Compliance Rate
0/4 Standards Verified
None
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Health, Wellness & Fitness Industry Average (This Year)

No incidents recorded for The WholeSoul Company in 2025.

Incidents vs Health, Wellness & Fitness Industry Average (This Year)

No incidents recorded for None in 2025.

Incident History โ€” The WholeSoul Company (X = Date, Y = Severity)

The WholeSoul Company cyber incidents detection timeline including parent company and subsidiaries

Incident History โ€” None (X = Date, Y = Severity)

None cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/thewholesoulcompany.jpeg
The WholeSoul Company
Incidents

No Incident

https://images.rankiteo.com/companyimages/norman-smile-center.jpeg
None
Incidents

No Incident

FAQ

Both The WholeSoul Company company and None company demonstrate a comparable AI risk posture, with strong governance and monitoring frameworks in place.

Historically, None company has disclosed a higher number of cyber incidents compared to The WholeSoul Company company.

In the current year, None company and The WholeSoul Company company have not reported any cyber incidents.

Neither None company nor The WholeSoul Company company has reported experiencing a ransomware attack publicly.

Neither None company nor The WholeSoul Company company has reported experiencing a data breach publicly.

Neither None company nor The WholeSoul Company company has reported experiencing targeted cyberattacks publicly.

Neither The WholeSoul Company company nor None company has reported experiencing or disclosing vulnerabilities publicly.

Neither The WholeSoul Company company nor None company has publicly disclosed detailed information about the number of their subsidiaries.

None company employs more people globally than The WholeSoul Company company, reflecting its scale as a Health, Wellness & Fitness.

Latest Global CVEs (Not Company-Specific)

Description

Formbricks is an open source qualtrics alternative. Prior to version 4.0.1, Formbricks is missing JWT signature verification. This vulnerability stems from a token validation routine that only decodes JWTs (jwt.decode) without verifying their signatures. Both the email verification token login path and the password reset server action use the same validator, which does not check the tokenโ€™s signature, expiration, issuer, or audience. If an attacker learns the victimโ€™s actual user.id, they can craft an arbitrary JWT with an alg: "none" header and use it to authenticate and reset the victimโ€™s password. This issue has been patched in version 4.0.1.

Risk Information
cvss3
Base: 9.4
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
Description

Apollo Studio Embeddable Explorer & Embeddable Sandbox are website embeddable software solutions from Apollo GraphQL. Prior to Apollo Sandbox version 2.7.2 and Apollo Explorer version 3.7.3, a cross-site request forgery (CSRF) vulnerability was identified. The vulnerability arises from missing origin validation in the client-side code that handles window.postMessage events. A malicious website can send forged messages to the embedding page, causing the victimโ€™s browser to execute arbitrary GraphQL queries or mutations against their GraphQL server while authenticated with the victimโ€™s cookies. This issue has been patched in Apollo Sandbox version 2.7.2 and Apollo Explorer version 3.7.3.

Risk Information
cvss3
Base: 8.2
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:H/A:N
Description

A security vulnerability has been detected in Portabilis i-Educar up to 2.10. Affected by this vulnerability is an unknown functionality of the file /consulta-dispensas. Such manipulation leads to improper authorization. The attack may be launched remotely. The exploit has been disclosed publicly and may be used.

Risk Information
cvss2
Base: 6.5
Severity: LOW
AV:N/AC:L/Au:S/C:P/I:P/A:P
cvss3
Base: 6.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A weakness has been identified in Portabilis i-Educar up to 2.10. Affected is an unknown function of the file /module/Api/aluno. This manipulation of the argument aluno_id causes improper authorization. The attack may be initiated remotely. The exploit has been made available to the public and could be exploited.

Risk Information
cvss2
Base: 6.5
Severity: LOW
AV:N/AC:L/Au:S/C:P/I:P/A:P
cvss3
Base: 6.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A security flaw has been discovered in Tencent WeKnora 0.1.0. This impacts the function testEmbeddingModel of the file /api/v1/initialization/embedding/test. The manipulation of the argument baseUrl results in server-side request forgery. The attack can be launched remotely. The exploit has been released to the public and may be exploited. It is advisable to upgrade the affected component. The vendor responds: "We have confirmed that the issue mentioned in the report does not exist in the latest releases".

Risk Information
cvss2
Base: 7.5
Severity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
cvss3
Base: 7.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X