Security Policy
Public security principles for access, data handling, authentication, continuity, and incident response.
Last updated August 13, 2026
Effective Date: July 11, 2026
Last Updated: August 13, 2026
Primary Jurisdiction: Commonwealth of Virginia, United States
Prime Executive Support ("Prime," "we," "us," or "our") takes the security of our website, systems, business information, and client interactions seriously.
This Security Policy describes our public security principles for access, data handling, authentication, continuity, third-party systems, and incident response.
Security is a shared responsibility, and no website, network, transmission, platform, or security measure can be guaranteed completely secure.
1. Security Principles
Prime may maintain reasonable administrative, technical, and operational safeguards appropriate to the services, systems, information, and risks involved.
Public security principles may include access control, authentication, credential management, secure configuration, appropriate data handling, backups and continuity, monitoring, incident response, and responsible use of third-party platforms.
Detailed defensive configurations and procedures—including credentials, private endpoints, network architecture, monitoring thresholds, backup locations, and incident playbooks—are not publicly disclosed.
2. Access & Authentication
Access to non-public Prime systems and information is limited according to legitimate business requirements and applicable authorization. Users and clients remain responsible for protecting credentials and authentication information they control.
Users must not intentionally access systems without authorization; bypass authentication or security controls; obtain another person's credentials; escalate privileges without authorization; exploit vulnerabilities; or interfere with Prime's systems, website forms, or Optimus AI.
Subject to applicable law and controlling agreements, Prime may reasonably restrict or suspend access, block abusive traffic, and protect systems where it reasonably believes there is a security, fraud, abuse, unauthorized-activity, or system-integrity risk.
3. Client Data & Confidential Information
Clients should provide only information reasonably necessary for an applicable engagement and should use a secure method designated by Prime when sensitive information is legitimately required.
Do not unnecessarily submit passwords, multifactor-authentication codes, payment credentials, Social Security numbers, government identifiers, banking credentials, trade secrets, highly sensitive personal information, or confidential third-party information through public forms or Optimus.
Clients remain responsible for ensuring they have sufficient authority to provide information, credentials, accounts, systems, or data supplied to Prime. Prime does not promise absolute confidentiality or that any transmission method is completely risk-free.
4. Security Is a Shared Responsibility
Security depends partly on Prime, clients, users, devices, credentials, hosting providers, software vendors, networks, and third-party platforms.
Clients and users remain responsible for appropriately securing their devices; protecting credentials; maintaining strong authentication; controlling authorized users; removing unnecessary access; protecting authentication information; maintaining appropriate independent backups; and promptly reporting suspected unauthorized activity.
To the fullest extent permitted by applicable law and controlling agreements, Prime is not responsible for security failures attributable to compromised client credentials, unauthorized client-side activity, inaccurate client instructions, insecure client-controlled devices, client-authorized third parties, or independent third-party systems outside Prime's reasonable control.
Nothing in this section excludes or limits responsibility that applicable law does not permit Prime to exclude or limit.
5. Third-Party Systems
Prime may rely on independent hosting, cloud, communications, analytics, AI, CRM, software, security, payment, and infrastructure providers.
Independent third-party systems remain subject to their own security, availability, policies, terms, and operational controls.
To the fullest extent permitted by applicable law and controlling agreements, Prime does not guarantee the security, availability, performance, or uninterrupted operation of independent third-party systems outside Prime's reasonable control.
6. Optimus AI & Automated Systems
Optimus and other AI-assisted functionality must not be used to obtain unauthorized information; extract credentials or protected system instructions; bypass safeguards or authorization; exploit vulnerabilities; facilitate malicious activity; or interfere with Prime's systems.
Do not submit unnecessary sensitive information through Optimus.
Optimus is an AI-assisted interface, not a security authority. Its output does not authorize access to, testing of, modification of, or interference with any system.
Prime does not publicly disclose Optimus system prompts, provider credentials, privileged instructions, private endpoints, or defensive configurations.
7. Security Incidents
Prime may investigate suspected security incidents and take reasonable measures to assess, contain, and mitigate an incident; protect affected systems; restrict compromised access; preserve relevant records; restore reasonable system integrity; involve appropriate providers or specialists; and make notifications required by applicable law.
Prime does not promise that every attack will be detected or prevented, every vulnerability will be discovered, or every event will require notification.
Prime will provide security-incident notifications when required by applicable law or a controlling agreement.
8. Security Research & Reporting
Security concerns may be responsibly reported to connect@primeexecutivesupport.com.
Reporting a suspected vulnerability does not authorize exploitation, persistence, unauthorized access, access to unrelated information, copying confidential information, destruction or modification of information, disruption of services, or further unauthorized intrusion.
This reporting address does not create a bug bounty, compensation, safe-harbor, reward, payment, or response-deadline commitment.
9. No Absolute Security Guarantee
Prime works to manage security risk, but no digital environment is completely risk-free.
To the fullest extent permitted by applicable law and controlling agreements, Prime does not warrant that its website, systems, communications, third-party platforms, AI features, or security measures will be completely secure, uninterrupted, vulnerability-free, or immune from unauthorized activity.
Nothing in this Policy excludes or limits an obligation or liability that applicable law does not permit Prime to exclude or limit.
10. Virginia Law
This Policy is administered from the Commonwealth of Virginia, United States.
To the fullest extent permitted by applicable law, this Policy is governed by the laws of the Commonwealth of Virginia, without giving effect to choice-of-law principles requiring application of another jurisdiction's law.
Where the Virginia Consumer Data Protection Act applies, Prime will address applicable data-security obligations in accordance with Virginia law. Security-incident notifications will be made when statutory conditions or a controlling agreement require them.
Nothing in this Policy waives, restricts, or eliminates any right, duty, remedy, or liability that applicable law does not permit to be waived, restricted, or eliminated.
11. Changes
Prime may prospectively update this Policy as technology, services, security practices, threats, risks, third-party systems, or applicable legal requirements evolve.
The Last Updated date identifies the current published version. Updating this public webpage does not by itself retroactively modify an executed client agreement.
12. Contact
Security and general inquiries may be directed to:
Prime Executive Support
96 Builders Pride Dr.
Westlake Corner, VA 24101
United States
Email: connect@primeexecutivesupport.com
Phone: +1 (540) 510-2575
Website: https://primeexecutivesupport.com/