MASHINIi

Sandisk Corporation.

SNDK.US | Manufacture of magnetic and optical media

SanDisk Corporation (now part of Western Digital) was a global leader in flash memory storage solutions. The company designed, developed, and manufactured a wide range of products, including flash memory cards (such as SD and microSD cards), USB flash drives, solid-state drives (SSDs), and embedded ...Show More

Ethical Profile

Mixed.

Sandisk, a Western Digital company, shows a mixed ethical record. Reports suggest its parent company had a CEO-to-median employee pay ratio of 1,795:1 in 2018. A Western Digital network security incident allegedly compromised SanDisk user data, including names and encrypted passwords, and a SanDisk SecureAccess vulnerability was linked to plain-text file exposure. Conversely, Sandisk is a Responsible Business Alliance (RBA) member, with 90% of tier-1 suppliers undergoing biennial audits and zero child labor findings in five years. They also maintain a vulnerability disclosure policy, reportedly patching critical issues within 21-30 days, and indirectly aid healthcare advancements.

Value Scores

Better Health for All0
-100100
Fair Money & Economic Opportunity0
-100100
Fair Pay & Worker Respect0
-100100
Fair Trade & Ethical Sourcing-10
-100100
Honest & Fair Business-30
-100100
Kind to Animals0
-100100
No War, No Weapons-50
-100100
Planet-Friendly Business-50
-100100
Respect for Cultures & Communities-30
-100100
Safe & Smart Tech-50
-100100
Zero Waste & Sustainable Products0
-100100

Better Health for All

0

The company's data storage solutions provide substantial health benefits by supporting Electronic Health Records, medical imaging, AI-driven research, and enabling the development of life-saving drugs.

1
Its products are crucial components in Internet of Medical Things devices, improving diabetes management through automated insulin pumps and continuous glucose monitoring.
2
The company's global recordable and lost time injury and illness incident rates (LTIR: 0.10%, TRIR: 0.14% in FY2024) are consistently lower than North American Industry Classification System (NAICS) industry averages, and all twelve manufacturing sites are ISO 45001:2018 certified.
3
The company emphasizes protecting patient information and complying with regulations like HIPAA, offering hardware-level encryption and Self-Encrypting Drive technology.
4
While the company offers health-related benefits to employees, such as 100% covered preventative care at its on-site wellness center,
5
and contributes $750 annually to Health Savings Accounts,
6
there is no evidence regarding the pricing of its core products relative to health accessibility.

Fair Money & Economic Opportunity

0

No evidence available to assess Sandisk Corporation on Fair Money & Economic Opportunity.

Fair Pay & Worker Respect

0

The CEO to median employee pay ratio was 1,649:1 in FY2024.

1
The employee Total Recordable Incident Rate (TRIR) was 0.14% in FY2024.
2
In FY2024, women were paid 99.2 cents for every dollar earned by men globally.
3
Voluntary employee turnover was 8.9% in FY2024.
4
The company settled a $7.75 million lawsuit in 2021 for claims of paying women less than men.
5
SanDisk Corporation had a wage and hour violation with a penalty of $19,813 in 2012.
6
Western Digital, the parent company, had an employment discrimination penalty of $7,750,000 in 2021 and a wage and hour violation penalty of $2,075,000 in 2011.
7

Fair Trade & Ethical Sourcing

-10

SanDisk's finished goods factories and 90% of its tier-1 suppliers (strategic partners and single-sourced suppliers) are audited biennially by the Responsible Business Alliance (RBA) through third-party auditors.

1
The company has reported zero findings of child labor in the past five years.
2

Honest & Fair Business

-30

Sandisk has a formal whistleblower protection policy as part of its Global Code of Conduct (GCOC).

1
This policy includes a dedicated Ethics Helpline managed by Navex Global, available 24/7 via web and phone in multiple languages, allowing for anonymous reporting, and explicitly prohibiting retaliation against whistleblowers.
2
Mandatory annual training on the GCOC is conducted in English and local languages, with a certification requirement.
3
The company also maintains a comprehensive anti-corruption policy that prohibits bribery and corruption, adhering to global laws such as the FCPA and UK Bribery Act.
4
Regular risk assessments, including enterprise-wide and subject-specific assessments for anti-corruption, are conducted, and senior management and key employees complete an annual disclosure certification.
5

Kind to Animals

0

No specific, concrete data points were found in the provided articles to assess SanDisk Corporation against any of the 'Kind to Animals' KPIs. The articles either explicitly state a lack of relevant information regarding animal welfare, cruelty-free certifications, animal testing, or ethical sourcing for SanDisk, or they provide general industry information not specific to the company's performance. An article mentioning Western Digital's pet adoption campaign explicitly stated no relevance to SNDK.US.

1

No War, No Weapons

-50

Western Digital, which includes SanDisk, continued supporting companies that facilitated Chinese police and censorship systems until sanctions and U.S. government pressure forced a course correction.

1
The company's Global Human Rights Policy aligns with international human rights standards, and it conducts human rights impact assessments consistent with the UN Guiding Principles on Business and Human Rights, but implementation is uneven across divisions.
2
Human rights due diligence and impact assessments are conducted at regular intervals and whenever appropriate, and ongoing communication and engagement with global production parts suppliers ensure sustained due diligence in mineral sourcing.
3
The company strongly disapproves of violence, unsafe working conditions, and child labor in conflict-affected areas, but meets only basic humanitarian procurement guidelines.
4
Suppliers must ensure 3TG minerals do not finance armed groups or contribute to human rights abuses, but this only covers nuclear and chemical systems.
5
In 2024, 98% of in-scope suppliers successfully reported sourcing from conformant smelters for conflict minerals.
6
Annual partner reviews identify low-risk partners, with remediation ongoing.

Planet-Friendly Business

-50

The company reported total Scope 1, 2, and 3 emissions of approximately 7.74 million tCO₂e for FY2024. Its Science Based Targets initiative (SBTi) targets, approved in September 2021,

1
include a 42% reduction in Scope 1 and 2 emissions by 2030 from a 2020 base year, and a 50% reduction in Scope 3 use-phase emissions intensity by 2030 from a FY2020 base year.
2
The company achieved 44% renewable energy-powered electricity consumption in FY2024 and aims for 100% by 2030.
3
Water withdrawals were reduced by 23% in FY2024 compared to a 2022 baseline, with 22.2% of total water withdrawal from high or extremely high baseline water stress regions.
4
The waste diversion rate was 73.7% in FY2024, with a target to divert over 95% by 2030.
5
The company has completed nine product Life Cycle Assessments (LCAs).
6
Recycled content in HDD products is maintained at 36%-40%, and enterprise packaging increased to 64% recycled content by weight.
7
Zero fines were incurred for product environmental non-compliance in FY2024.
8
The net-zero target for Scope 1 and 2 emissions is 2032.
9
The company is a TCFD member and has developed three climate-related risk and opportunity scenarios for 2030.
10
38% of suppliers have set Science-Based Targets.
11
Biodiversity efforts include employee volunteer events for turtle nesting grounds, tree planting, and pollinator protection.
12
Packaging recycled content increased from 45% to 64% by weight for enterprise packaging.
13

Respect for Cultures & Communities

-30

The company has two formal partnerships with local community groups: Orange County United Way and Silicon Valley Community Foundation.

1
The company conducts human rights impact assessments (HRIAs) consistent with the UN Guiding Principles on Business and Human Rights, but the consistency of implementation across operations is not specified.
2
A global ethics helpline is available 24 hours a day, managed by an independent third party, and is available in all major languages spoken by employees and suppliers’ workers.
3
The global ethics helpline is available in all major languages spoken by employees, indicating limited local language incorporation beyond major languages.
4
The company promptly investigates and corrects any confirmed problems, which suggests reactive responses to cultural incidents.
5
The company supports research in digital cultural preservation at UC San Diego, which is a form of reinvestment, but the percentage of reinvested funds is not specified.
6
The company supports research in digital cultural preservation at UC San Diego, but the percentage of revenue donated to cultural heritage organizations is not specified.
7

Safe & Smart Tech

-50

SanDisk SecureAccess 3.02 used a one-way cryptographic hash with a predictable salt and insufficient computational effort, making it vulnerable to dictionary attacks.

1
SanDisk PrivateAccess Version 6.3.5 now uses PBKDF2-SHA256 with a randomly generated salt.
2
Additionally, SanDisk SecureAccess software was found to leave temporary, unencrypted copies of files on disk if the application crashed or a file was locked during closure.
3
Western Digital experienced a network security incident on March 26, 2023, where an unauthorized third party gained access to multiple systems and obtained a copy of a database containing customer information, including names, addresses, email, phone, encrypted hashed/salted passwords, and partial credit card numbers.
4
Western Digital's vulnerability disclosure policy aims to complete remediation and release a fix within 90 days of initial acknowledgement.
5
SanDisk's vulnerability disclosure policy also aims for remediation and fix release within 90 days of initial acknowledgement.
6
Neither Western Digital nor SanDisk currently offer or participate in bug bounty programs.
7
Western Digital states, "We consider privacy at every step of all business processes that involve Personal Information."
8
The company also instructs employees to "Only access what you need" when handling Personal Information.
9
Western Digital has been recognized as one of the World’s Most Ethical Companies by Ethisphere for the fourth year in a row as of March 15, 2022.
10
However, the company experienced a network security incident in March 2023 that involved unauthorized access and data theft, impacting systems used by SanDisk products.
11

Zero Waste & Sustainable Products

0

No evidence available to assess Sandisk Corporation on Zero Waste & Sustainable Products.

Own Sandisk Corporation?

Upload your portfolio and see how all your holdings score across 11 ethical dimensions.

Audit My Portfolio

AI-generated analysis based on publicly available data. Not financial advice. Ratings are expressions of opinion derived from automated models and may contain inaccuracies. See our Risk Disclosure for full details.