Canadian organizations with a published AI policy
Every record links to the public source document. Inclusion does not mean a policy is good, and a missing record does not prove an organization lacks governance.
Registry snapshot
- Artifacts
- 387
- Formal policies
- 203
- Operational guidance
- 184
Browse by sector
See what schools, libraries, newsrooms, non-profits and regulators actually publish — each link opens the registry, filtered.
- Education209
- Libraries & culture37
- Media & communications28
- Nonprofits & associations21
- Health & professional regulation21
- Business & professional services16
- Public agencies & research14
- Other13
- Infrastructure, transport & energy11
- Public safety & justice9
- Finance & insurance8
Browse by region
“National” means organizations whose mandate spans the whole country — it is not the sum of the provinces. A province means the organization is based and operating there.
- Ontario127
- National66
- British Columbia61
- Alberta55
- Quebec42
- Nova Scotia11
- Manitoba10
- Saskatchewan7
- New Brunswick3
- Atlantic Canada2
- Northwest Territories1
- Newfoundland and Labrador1
- Prince Edward Island1
See also: provincial and territorial policies · municipal registry · registry overview
Browse the registry
Search covers organization name, sector, region, document title, plain-language summary, described scope, and key controls.
- Try:
14 of 387 organizations
Canada Post Corporation
National postal and community logistics Crown corporation · National
A national postal and community logistics Crown corporation providing postal delivery, logistics, shipping, and related community services across Canada.
Canada Post reports that its workplace AI policy is enforced through approved-tool controls, mandatory training, output verification, risk assessments, a governance board and policy-enforcement oversight.
Canadian Imperial Bank of Commerce (CIBC)
Banking and financial services · National
A banking and financial services providing banking, insurance, financial, or related member services across Canada.
CIBC's enterprise AI framework governs procurement, development, deployment and monitoring through risk assessments, fairness and transparency principles, control-group review and board and executive oversight.
Chigisoft Limited
Technology consulting and software services · Alberta
A technology consulting and software services providing technology, digital products, or related services in Alberta.
The company policy governs AI development and client delivery through human oversight, privacy and security safeguards, fairness and transparency, risk assessment, monitoring, responsible integrations and user accountability.
CHU Sainte-Justine
Pediatric and maternal university health centre · Quebec
A post-secondary institution providing education, training, research, and student services in Quebec.
The hospital's AI guide requires project-specific benefit and risk assessment, privacy and autonomy safeguards, human control, transparency and explainability, equity, accountability and responsible clinical oversight.
Durham Regional Police Service
Regional police service and public-safety organization · Ontario
A regional police service and public-safety organization operating in Ontario.
The police board's AI policy requires approval and risk assessment before use, prohibits systems posing serious harm or bias risks, mandates public consultation, and requires piloting, monitoring and audit reporting.
Federal Economic Development Agency for Southern Ontario
Federal regional economic-development and community agency · Ontario
A federal regional economic-development and community agency delivering public administration, oversight, regulation, or public services in Ontario.
FedDev Ontario's conduct code requires employees using generative AI to assess risks, keep protected, classified and personal information out of public tools, follow decision rules, and obtain approval for AI deployments.
Grain Financial Protection Board
Provincial agricultural financial-protection board · Ontario
A provincial agricultural financial-protection board providing banking, insurance, financial, or related member services in Ontario.
The board's governing agreement requires AI risk assessments, executive accountability, disclosure of material uses, quarterly oversight reporting, and protection of confidential and personal information.
Human Rights Legal Support Centre
Independent public legal-services agency · Ontario
An independent public legal-services agency operating in Ontario.
The centre's governing agreement requires AI risk assessments, board and executive accountability, disclosure of material uses, quarterly reporting, and protection of confidential and personal information.
Infrastructure Ontario
Provincial infrastructure and real-estate agency · Ontario
A provincial infrastructure and real-estate agency operating in Ontario.
Infrastructure Ontario's governing agreement requires AI risk assessments, chief executive accountability, disclosure of material uses, quarterly reporting, and protection of confidential and personal information.
Scopien Inc.
Technology company · Ontario
A technology company providing technology, digital products, or related services in Ontario.
Scopien requires human control of AI, bias testing, data minimization and consent, ethics-committee approval and risk assessment, disclosure, and continuous monitoring and audits.
Sun Life Financial Inc.
Insurance, wealth, and financial services · Ontario
An insurance, wealth, and financial services providing banking, insurance, financial, or related member services in Ontario.
Sun Life’s enterprise AI approach embeds governance through the lifecycle, applies risk and privacy-impact assessments, and trains employees to protect sensitive data, validate outputs and maintain human oversight.
Thunder Bay Police Service
Municipal police service and public-safety organization · Ontario
A municipal police service and public-safety organization delivering public administration, oversight, regulation, or public services in Ontario.
Police AI requires Board approval, trained users and pre-procurement risk assessment; serious-risk systems are barred, human oversight and privacy controls apply, and public registries, audits and reporting support accountability.
University of Waterloo
University · Ontario
A post-secondary institution providing education, training, research, and student services in Ontario.
University AI use must match tool approval to data classification, keep highly restricted data out of AI, complete privacy, security and procurement assessment for new systems, minimize inputs.
Wilfrid Laurier University
University · Ontario
A post-secondary institution providing education, training, research, and student services in Ontario.
University community members and contractors must assess generative AI risk, protect classified information, human-review content and decisions, document and disclose use, mitigate bias, respect copyright and follow approval requirements.
Frequently asked questions
- What is the organizations registry?
- It is a source-linked list of Canadian organizations — schools, libraries, non-profits, health and professional bodies, media outlets, agencies — that have published an AI policy or operational guidance. Every record links to the public source document, which is always the authority. Municipal records live in the separate registry at /municipalities.
- Where do the descriptions come from?
- Each description is written from the public source document and reviewed by a human before it appears here. Descriptions summarise what a document covers and which controls it names. They are never a score, a grade, or an opinion about whether the policy is good. Our approach is documented on /methodology.
- Why do some organizations have no description?
- A small number of records are still being adjudicated — usually because the source was hard to access, the document is an AI strategy rather than a use policy, or the scope was unclear. The organization stays listed with its source link, and the description appears once review is finished.
- What is the difference between a formal policy and operational guidance?
- A formal policy is an approved governing document. Operational guidance is practical direction staff actually follow — newsroom standards, classroom rules, a staff handbook section. Both count as published governance; neither is automatically stronger than the other.
- My organization is not listed. What should I do?
- Submit your policy through the form below. A missing record does not prove an organization lacks governance — it usually means we have not found a public source document yet.
- We do not have an AI policy yet. Where do we start?
- Read a few comparable records here to see what peers actually committed to, then use the Policy Builder in the Policy Studio at /studio to draft your own, and /policy-review to check an existing draft against the same control library.
How you can help
Submit proof of AI policy
Got a published policy? Send us the link and we'll update the organization.
Submit proofSuggest an organization or feature
Suggest an organization for our agents to scout in the next pass, or suggest a feature you'd like to see.
Share a suggestion