Commvault Systems, Inc..
CVLT.US | Computer programming activities
Commvault Systems, Inc. is a global leader in data management and information management solutions. The company develops, markets, and supports a suite of software products and services designed to protect, manage, and access data. Commvault's offerings include data backup and recovery, cloud and in...Show More
Better Health for All
0
No evidence available to assess Commvault Systems, Inc. on Better Health for All.
Fair Money & Economic Opportunity
0
No evidence available to assess Commvault Systems, Inc. on Fair Money & Economic Opportunity.
Fair Pay & Worker Respect
-20
For fiscal year 2025, the CEO to median employee pay ratio was 283:1, with the CEO's total compensation at $18,811,603 and the median employee pay at $66,382.
1
For its UK operations in 2018-19, women earned 70p for every £1 earned by men in median hourly pay, and their median bonus pay was 46p for every £1 earned by men.
2
Commvault Systems Inc employees rely on group health insurance financed by their employer, and executives participate in broad-based company-sponsored health and welfare benefits programs on the same basis as other full-time, salaried employees.
3
Fair Trade & Ethical Sourcing
0
Commvault, a software and services provider, does not procure or trade physical commodities, making fair trade certifications and high-risk material sourcing not applicable. The company maintains a Human Rights Policy, Code of Ethics, Ethics and Integrity Reporting Policy, and Supplier Code of Conduct.
1
Its Human Rights Policy is reviewed at least annually, with the latest review in June 2025.
2
Commvault complies with the UK Modern Slavery Act, the Australian Modern Slavery Act, the US Uyghur Forced Labor Prevention Act, Canada’s Modern Slavery Act 2024, relevant provisions of the EU Corporate Sustainability Due Diligence Directive, and the German Supply Chain Due Diligence Act.
3
It screens employees, customers, and partners against sanctions lists, including the US – DHS Uyghur Forced Labor Prevention Entity List.
4
Potential policy violations can be reported via email or an anonymous Ethics and Integrity Reporting Platform, which has a no-retaliation policy.
5
Suppliers are expected to uphold ethical behavior and comply with applicable laws, including those prohibiting modern slavery and human trafficking.
6
Related achievements and program improvements are reported publicly in the Corporate Social Responsibility Report and Annual Proxy Statement.
7
Honest & Fair Business
0
No evidence was found in the provided article to assess Commvault Systems, Inc. against the 'Honest & Fair Business' ethical value.
1
The article is a marketing piece and contains no specific data points related to regulatory fines, transparency benchmarks, whistle-blower policies, financial restatements, audit coverage, ESG controversies, complaint resolution times, board independence, anti-corruption policies, or third-party verification of ethical claims.
2
Kind to Animals
0
Commvault Systems, Inc. is a software and services company. The provided articles state that the company does not engage in animal exploitation.
1
Given its business model, the company does not produce products requiring cruelty-free certification, does not conduct animal testing, does not have animal husbandry operations, does not source animal products, and its core business does not directly impact wildlife habitats.
2
Therefore, all KPIs related to animal welfare practices, testing, sourcing, and conservation are not applicable to its operations.
No War, No Weapons
0
The provided articles do not contain specific, concrete data points or actions relevant to any of the 'No War, No Weapons' KPIs. explicitly states it does not contain relevant data.
1
mentions Commvault's software has an export control classification (ECCN 5D992.c) and a mass market exemption.
2
While this classification indicates the software falls under information security export controls, it does not provide quantitative evidence for R&D investment in dual-use technologies, sales to embargoed regimes, the percentage of exports covered by end-user certificates, or any other specific metric required by the rubric. Therefore, all KPIs are omitted due to lack of evidence.
Planet-Friendly Business
0
The provided articles do not contain specific quantitative data for Commvault Systems, Inc. (CVLT.US) across the environmental performance indicators. While mentions that the company's headquarters and primary datacenter are LEED-certified.
1
The total number of facilities is not disclosed, preventing the calculation of a percentage for green-certified buildings. Furthermore, no specific regulatory actions, violations, fines, or compliance issues are mentioned in any of the articles.
2
For all other KPIs, the articles explicitly state a lack of numerical data or specific details regarding emissions, renewable energy, water use, waste diversion, climate targets, or other environmental metrics.
3
Respect for Cultures & Communities
0
No evidence available to assess Commvault Systems, Inc. on Respect for Cultures & Communities.
Safe & Smart Tech
-30
Commvault experienced a zero-day vulnerability (CVE-2025-3928) in its web server, potentially exposing customer secrets and M365 environments, exploited by a state-sponsored actor
1
,
2
. This vulnerability allowed remote attackers to compromise instances by creating and executing webshells
3
. While no unauthorized access to customer backup data was reported
4
, the incident highlights security risks. Commvault addressed the vulnerability in late February 2025 and took remediation actions, including rotating app credentials and enhancing security monitoring
5
,
6
. The company certifies to the EU-U.S. Data Privacy Framework (EU-U.S. DPF), the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. Data Privacy Framework (Swiss-U.S. DPF)
7
. However, there is a lack of quantitative data on cybersecurity investment, security training effectiveness, and other key security measures
8
,
9
. The CVSS score for CVE-2025-34028 was 10.0
10
,
11
. Given the severity of the vulnerability and the limited quantitative data, a moderately negative score is warranted.
Zero Waste & Sustainable Products
0
No evidence available to assess Commvault Systems, Inc. on Zero Waste & Sustainable Products.