Comparison Overview

WOMBWORK PRODUCTIONS, INC.

VS

Carmen Scoring LLC

WOMBWORK PRODUCTIONS, INC.

3724 Kimble road, Baltimore, Maryland, 21218, US
Last Update: 2025-12-11
Between 750 and 799

WombWork Productions, Inc. is a fully comprehensive productions company whose Headquarters, The WombWork Black Box Theatre, is located in West Baltimore in the Greater Rosemont Neighborhood south of Coppin State University and Mondawmin Mall. Our mission is to heal and empower youth, families, and communities through the performing arts. Our productions help the participants and community release from the stress of an unbalanced society and creates for the audience a mirror in which to view themselves: past, present, and future. Productions and performances empower participants and viewers to make more educated choices that will enable them to rise to their highest potential. Currently WombWork Productions, Inc. has three theatre companies: Nu World Art Ensemble (Adult Company), Nu Generation Art Ensemble (13 - 20 yr old), and Next Generation Art Ensemble (5 - 12 yr old).

NAICS: 7111
NAICS Definition: Performing Arts Companies
Employees: 13
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Carmen Scoring LLC

None
Last Update: 2025-12-11
Between 750 and 799

Carmen has been working with some of the most affluent showchoirs in the country to develop the best scoring system in the world. Our system consists of detailed categories developed after years of study and consultation with the top showchoir judges in America. Our research revealed the need for evaluation criteria that pinpoint the exact characteristics of what it means to have a great performance. This led us to elements that are not often considered in scoresheets, like innovation, difficulty, objectives, and atmosphere, truly setting Carmen apart from the rest. Using our knowledge of science and artistic expression, we have produced the fastest, most accurate, most detailed, and easiest to use system available. For 2019 season, we are launching a new version of the Carmen System that is bringing even more agility and flexibility, and a new interface that makes the judge’s interaction more intuitive. Say no more to wasted time and wasted paper! Everything is accessed through our WebApp!

NAICS: 7111
NAICS Definition: Performing Arts Companies
Employees: 4
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/wombworkproductionsinc.jpeg
WOMBWORK PRODUCTIONS, INC.
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/carmenscoring.jpeg
Carmen Scoring LLC
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
WOMBWORK PRODUCTIONS, INC.
100%
Compliance Rate
0/4 Standards Verified
Carmen Scoring LLC
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Performing Arts Industry Average (This Year)

No incidents recorded for WOMBWORK PRODUCTIONS, INC. in 2025.

Incidents vs Performing Arts Industry Average (This Year)

No incidents recorded for Carmen Scoring LLC in 2025.

Incident History — WOMBWORK PRODUCTIONS, INC. (X = Date, Y = Severity)

WOMBWORK PRODUCTIONS, INC. cyber incidents detection timeline including parent company and subsidiaries

Incident History — Carmen Scoring LLC (X = Date, Y = Severity)

Carmen Scoring LLC cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/wombworkproductionsinc.jpeg
WOMBWORK PRODUCTIONS, INC.
Incidents

No Incident

https://images.rankiteo.com/companyimages/carmenscoring.jpeg
Carmen Scoring LLC
Incidents

No Incident

FAQ

Carmen Scoring LLC company demonstrates a stronger AI Cybersecurity Score compared to WOMBWORK PRODUCTIONS, INC. company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Historically, Carmen Scoring LLC company has disclosed a higher number of cyber incidents compared to WOMBWORK PRODUCTIONS, INC. company.

In the current year, Carmen Scoring LLC company and WOMBWORK PRODUCTIONS, INC. company have not reported any cyber incidents.

Neither Carmen Scoring LLC company nor WOMBWORK PRODUCTIONS, INC. company has reported experiencing a ransomware attack publicly.

Neither Carmen Scoring LLC company nor WOMBWORK PRODUCTIONS, INC. company has reported experiencing a data breach publicly.

Neither Carmen Scoring LLC company nor WOMBWORK PRODUCTIONS, INC. company has reported experiencing targeted cyberattacks publicly.

Neither WOMBWORK PRODUCTIONS, INC. company nor Carmen Scoring LLC company has reported experiencing or disclosing vulnerabilities publicly.

Neither WOMBWORK PRODUCTIONS, INC. nor Carmen Scoring LLC holds any compliance certifications.

Neither company holds any compliance certifications.

Neither WOMBWORK PRODUCTIONS, INC. company nor Carmen Scoring LLC company has publicly disclosed detailed information about the number of their subsidiaries.

WOMBWORK PRODUCTIONS, INC. company employs more people globally than Carmen Scoring LLC company, reflecting its scale as a Performing Arts.

Neither WOMBWORK PRODUCTIONS, INC. nor Carmen Scoring LLC holds SOC 2 Type 1 certification.

Neither WOMBWORK PRODUCTIONS, INC. nor Carmen Scoring LLC holds SOC 2 Type 2 certification.

Neither WOMBWORK PRODUCTIONS, INC. nor Carmen Scoring LLC holds ISO 27001 certification.

Neither WOMBWORK PRODUCTIONS, INC. nor Carmen Scoring LLC holds PCI DSS certification.

Neither WOMBWORK PRODUCTIONS, INC. nor Carmen Scoring LLC holds HIPAA certification.

Neither WOMBWORK PRODUCTIONS, INC. nor Carmen Scoring LLC holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

LibreChat is a ChatGPT clone with additional features. In versions 0.8.0 and below, there is no handler for JSON parsing errors; SyntaxError from express.json() includes user input in the error message, which gets reflected in responses. User input (including HTML/JavaScript) can be exposed in error responses, creating an XSS risk if Content-Type isn't strictly enforced. This issue does not have a fix at the time of publication.

Risk Information
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

LibreChat is a ChatGPT clone with additional features. In versions 0.8.0 and below, when creating prompts, JSON requests are sent to define and modify the prompts via PATCH endpoint for prompt groups (/api/prompts/groups/:groupId). However, the request bodies are not sufficiently validated for proper input, enabling users to modify prompts in a way that was not intended as part of the front end system. The patchPromptGroup function passes req.body directly to updatePromptGroup() without filtering sensitive fields. This issue is fixed in version 0.8.1.

Risk Information
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

LibreChat is a ChatGPT clone with additional features. In versions 0.8.0 and below, when a user posts a question, the iconURL parameter of the POST request can be modified by an attacker. The malicious code is then stored in the chat which can then be shared to other users. When sharing chats with a potentially malicious “tracker”, resources loaded can lead to loss of privacy for users who view the chat link that is sent to them. This issue is fixed in version 0.8.1.

Risk Information
cvss4
Base: 8.6
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

MaxKB is an open-source AI assistant for enterprise. Versions 2.3.1 and below have improper file permissions which allow attackers to overwrite the built-in dynamic linker and other critical files, potentially resulting in privilege escalation. This issue is fixed in version 2.4.0.

Risk Information
cvss3
Base: 8.8
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Description

MaxKB is an open-source AI assistant for enterprise. In versions 2.3.1 and below, the tool module allows an attacker to escape the sandbox environment and escalate privileges under certain concurrent conditions. This issue is fixed in version 2.4.0.

Risk Information
cvss3
Base: 8.8
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H