Security Capabilities
Last Updated: August 18, 2026
Our Approach to Security
Catherine B. Roy LLC recognizes that trust requires responsible handling of information.
We take reasonable administrative, organizational, and technical measures designed to protect information associated with CatherineBroy.com and our business operations against unauthorized access, misuse, loss, alteration, or disclosure.
Security is an evolving process. We may review and adapt our practices as our technologies, services, risks, and business operations evolve.
1. Scope
This Security Capabilities statement describes our general approach to security in connection with CatherineBroy.com and Catherine B. Roy LLC’s related business operations.
Catherine B. Roy LLC also operates LHMIQ, available at https://lhmiq.com.
Because LHMIQ is a technology and AI platform with functionality that differs from CatherineBroy.com, LHMIQ may maintain separate or supplemental security documentation addressing its specific architecture, authentication, data handling, artificial-intelligence providers, infrastructure, and platform controls.
This statement should not be interpreted as a representation that every control described by an LHMIQ-specific security document necessarily applies to CatherineBroy.com, or vice versa.
2. Security by design
Where reasonably practicable, we consider security and privacy when selecting and configuring technologies and service providers used in our business.
Our approach is guided by principles including:
- limiting unnecessary collection of personal information;
- using established technology providers where appropriate;
- restricting access according to operational need;
- protecting account credentials;
- maintaining appropriate software and technology practices;
- reviewing security implications when technologies or services change; and
- responding appropriately to identified security concerns.
3. Secure communications
CatherineBroy.com is intended to use encrypted HTTPS connections for communications between supported browsers and the Website.
Encryption in transit helps protect information against interception while it travels between a visitor’s device and the Website infrastructure.
No transmission method can provide an absolute guarantee of security.
4. Data minimization
We seek to collect and retain only information reasonably necessary for legitimate business purposes.
Reducing unnecessary data collection can reduce privacy and security risk.
Information may be retained where necessary to:
- provide requested services;
- maintain client and business relationships;
- process or document transactions;
- provide customer support;
- maintain legitimate business records;
- meet legal, accounting, tax, or regulatory obligations;
- protect our rights; or
- address security or fraud concerns.
5. Access control
Access to business systems and information is intended to be limited based on operational need and the capabilities of the technologies and service providers we use.
We seek to use reasonable account-security practices designed to reduce unauthorized access.
Specific authentication, authorization, or platform-level controls may vary depending on the system or provider involved.
6. Third-party infrastructure and service providers
Like most modern online businesses, Catherine B. Roy LLC relies on third-party technology providers for portions of its infrastructure and operations.
These may include providers supporting:
- website hosting;
- domain and network services;
- cloud infrastructure;
- business email;
- analytics;
- communications;
- customer relationship management;
- scheduling;
- file and data storage;
- payment processing;
- artificial-intelligence services; and
- other business functions.
Third-party providers maintain their own security programs, infrastructure, certifications, policies, and contractual obligations.
We consider the nature of the service and information involved when selecting and using providers.
7. Payment security
Where Catherine B. Roy LLC accepts online payments, payments may be processed by established third-party payment providers, including Stripe.
Payment-card information submitted directly to a payment processor is handled through the payment provider’s infrastructure.
Catherine B. Roy LLC does not intentionally store complete payment-card numbers or card security codes submitted directly through third-party payment processors.
This approach reduces the amount of sensitive payment information handled directly through CatherineBroy.com.
8. Website and application infrastructure
Our Website and digital services may rely on managed hosting, cloud infrastructure, software platforms, and other established technology services.
Security controls available to us may therefore include both controls implemented or configured by Catherine B. Roy LLC and protections provided at the infrastructure or platform level by third-party providers.
The specific technologies and providers used may change over time as our services evolve.
9. Monitoring and maintenance
We may use available platform, hosting, infrastructure, or service-provider capabilities to identify operational or security issues.
We may also update, replace, configure, or discontinue technologies where reasonably appropriate to maintain our operations and address identified risks.
This statement does not represent that Catherine B. Roy LLC operates a continuously staffed security operations center or provides continuous manual monitoring unless expressly stated otherwise.
10. Security incidents
If we become aware of a security incident affecting information for which Catherine B. Roy LLC is responsible, we will assess the circumstances and take actions we determine appropriate based on the nature and scope of the incident.
Where applicable law requires notification to affected individuals, regulators, or other parties, we will seek to provide such notification in accordance with applicable requirements.
11. Business continuity and third-party dependencies
We use third-party platforms and infrastructure in operating our Website and business.
Availability may therefore depend partly on systems outside our direct control.
We may take reasonable measures appropriate to our operations to preserve important business information and maintain or restore services following operational disruptions.
We do not guarantee uninterrupted availability of any website, system, or third-party service.
12. Privacy and security
Security and privacy are related but distinct.
Our Privacy Policy explains how Catherine B. Roy LLC collects, uses, discloses, and retains personal information covered by that policy.
This Security Capabilities statement explains our general approach to protecting information and systems.
Users should review both documents.
13. LHMIQ security
Catherine B. Roy LLC also operates the LHMIQ AI-powered business platform at:
LHMIQ may process information and provide functionality that is not present on CatherineBroy.com, including account-based functionality, subscription services, user-generated information, and artificial-intelligence interactions.
As the LHMIQ platform evolves, platform-specific security information may be made available directly through LHMIQ.com.
Any LHMIQ-specific security representations should be interpreted according to the scope stated in the applicable LHMIQ documentation.
14. Responsible security communication
We aim to describe our security practices accurately and avoid making guarantees that no online system can reasonably provide.
Security technologies, threats, vendors, and best practices change over time. Accordingly, the safeguards and technologies used by Catherine B. Roy LLC may evolve.
No website, application, network, transmission, cloud platform, or electronic storage system can be guaranteed to be completely secure.
15. Your role in security
Users can also help protect information by:
- using trusted devices and networks;
- protecting passwords and authentication credentials;
- avoiding sending unnecessary sensitive information through ordinary email or Website forms;
- verifying suspicious communications before responding; and
- notifying us if they believe a communication impersonating Catherine B. Roy LLC may be fraudulent.
16. Reporting a security concern
If you believe you have identified a security vulnerability, suspicious activity, unauthorized use, or other security concern relating to CatherineBroy.com or Catherine B. Roy LLC, please contact:
Please provide enough information for us to understand and evaluate the issue.
Do not intentionally access, alter, destroy, download, or disclose information belonging to other users or third parties while investigating or reporting a potential vulnerability.
Do not use a security report as a basis for extortion, threats, or unlawful conduct.
17. No security guarantee
Although we take reasonable steps designed to protect our systems and information, absolute security cannot be guaranteed.
This Security Capabilities statement is intended to provide transparency regarding our general approach and does not constitute a warranty, certification, guarantee, or representation of compliance with a particular security framework unless expressly stated otherwise.
18. Updates
We may update this Security Capabilities statement as our Website, technologies, service providers, security practices, or business operations evolve.
The “Last Updated” date indicates the date of the current version.
19. Contact
Security-related questions or concerns may be directed to:
Catherine B. Roy LLC16192 Coastal Highway
Lewes, Delaware 19958
County of Sussex
United States
Email: office@catherinebroy.com
Phone: +1 302 2080171
Website: https://catherinebroy.com
LHMIQ: https://lhmiq.com