What to Consider When Building an AI Policy, with Examples
Artificial Intelligence (AI) tools are rapidly changing the way people and organizations work. A recent River Network poll of 41 organizations found that, despite water-related concerns about AI use and data center development, the network’s response to the technology ranges from complete rejection to enthusiastic acceptance.
66% of respondents reported no internal AI policy at their organizations.
This range of responses is present not just across organizations, but across staff at the same organizations. The purpose of an internal AI policy is to recognize that, while these tools are widely available and free to use, there are significant privacy-related, ethical, and environmental concerns in adopting AI on behalf of a water organization. Broadly, an internal AI policy gets your staff on the same page in terms of ethical concerns. A policy might also:
- List approved and prohibited uses,
- Educate staff on opportunities and impacts, and
- Provide appropriate use guidelines depending on the type of AI.
Understanding How Water Advocates are Using AI
To build an internal AI use policy at your organization, it is first necessary to understand how your colleagues are using these tools. Network members had a lot to say about the pros and cons of AI adoption at water organizations.
Adopters
Some water advocates believe that generative AI (GenAI) can be a boon to an organization’s mission, despite land-use, water, and environmental justice concerns. The benefits they cited are primarily related to increased capacity, efficiency, and productivity with tools like Claude, Gemini, and ChatGPT.
These tools have helped members draft grant applications, newsletters, and social media; quickly translate content from one format to another (i.e., Word document to a presentation); create summaries of long documents; transcribe audio and video content; and conduct research. At least a few of these adopters believe that AI is here to stay, and they may as well get on board.
Cautious Users & Abstainers
Advocates who are taking a more cautious approach to or have outright rejected AI often acknowledge that there is no way to completely detach from these tools. AI is deeply embedded in most search engines, design software, email platforms, and billing software, but we do have a choice in how we use GenAI, if at all. One surveyed organization is saying no to AI until the organization can develop a robust policy that addresses all associated risks.
Those who have said no to GenAI cite the protection of sensitive data as a primary reason. Inputting member, donor, or staff data into these tools is often a violation of deeper internal and legal privacy policies. Furthermore, AI use in meetings, especially note-takers and automated summaries, compromise sensitive conversations and misgender meeting participants. One respondent noted a boilerplate policy at their organization that AI note-takers are never allowed in meeting rooms. Another organization provided an alternative approach:
Building Your Internal Policy
It is widely acknowledged that GenAI tools are biased and can contribute to misinformation. How does this information change your approach to these tools? And, if you choose to pursue constraints, how can your teams work to reduce inaccuracy and bias?
These tools are changing fast. Another organization formalized everything they don’t know in their policy:
Internal Training and Understanding AI
Many respondents, whether their organization has established an AI policy or not, believe training on how AI works and how it can be used would be helpful for staff. When building your internal policy, be sure all staff understand the difference between:
- Generative AI (GenAI): Tools like ChatGPT, Gemini, and Claude that produce text, images, and summaries.
- Embedded AI: Support tools built into other tools like Canva Magic Studio.
- AI Agents: Like an assistant that performs tasks based on instructions.
Guardrails and Limitations
Of the advocates and organizations surveyed, 43% reported that they do not use GenAI at all. Among those who do use GenAI, 35% use it for writing support (think grant reports, newsletter writing, and social media), and 19% use it as a supplementary research tool.
Some water organizations may choose not to allow the use of GenAI at all to preserve trust and publication integrity:
Others may choose to limit GenAI use in staff communications with specific audiences, again to preserve integrity and trust:
One organization has designed a framework for when to use GenAI based on the task:
Organizations’ policies outline which AI products are allowed to be used internally, and some specify that large language models (LLMs) are never permitted. Instead, they use products like Grammarly Premium, also an AI product, to support human-generated writing.
Many respondents noted that, per their policies, it is never permitted to release heavily AI-generated content, be it an email or a report, without a human reviewing the published versions.
Safety and Accountability
An effective AI policy must always address privacy and protection of sensitive personal data of community members, staff, and partners:
If you’re wondering what is considered sensitive information, think financial data, donor records, HR files, internal memos, or personal data of any kind including legal name, contact information, or addresses.
Many policies exist to ensure that the user (or, in this case, the water advocate) is always responsible and accountable for their work.
Advocates who use GenAI on a regular basis say that they turn off settings which would allow the tool to improve using their inputted data. (Note that this is impossible to turn off entirely.) Policies also state that staff must acknowledge AI use in heavily generated content, adding language to generated text: “This report was prepared with the assistance of AI tools and has been reviewed for accuracy by [staff at organization].”
At some larger organizations, IT is actively monitoring staff’s internet activity to ensure internal compliance with guidelines.
Reducing Harm and Standing in Your Values
More than a few internal policies address the contradiction of acknowledging internal generative AI use while also advocating against development of new data centers. There is a kind of standard language in these policies that states that AI use must support the organization’s mission and values. As you consider building a policy for your own organization, we recommend working to define, with specificity, how AI can support the work of an organization that represents vulnerable communities and ecosystems.
All respondents with existing policies noted that their organizations are working to reduce the water and energy use of GenAI. For example, one organization prioritizes use during California’s Renewable Energy Hours and another reminds employees that generating text is much more energy and water intensive than summarizing text.
Keeping the Work Human
Much of our water work is centered on trust-building and relationships between people and the natural world. One respondent noted that this connection is a distinctly human endeavor, and it is important that it remains intact for the integrity of our work.
If we are to use GenAI in a way that supports our organizations’ missions and values, as all claim to do, we must consider the broader impacts of turning pieces of our work over to a tool built on intellectual and cultural extraction, and be sure that we are keeping all deliberation and decision-making in the hands of humans:
Furthermore, at a time when AI tools are threatening employment, we must consider the ethics of outsourcing our work to these tools. Many organizations’ policies reference enhancing, not replacing, human work:
It’s easy to feel like there is significant pressure to optimize our work and productivity through GenAI, but there are several organizations reminding us that it is okay to slow down. We can wait to adopt new tools until we know the full extent of their impact. As one organization simply states, “Until a fuller, more robust policy can be developed, our organization is intentionally not utilizing or subscribing to any AI platforms or programs.”
Looking Ahead
Only 34% of organizations that responded to River Network’s survey have developed an internal AI policy at this time, but there is appetite for clearer guidance and organizational policy development alongside ongoing concerns about the social and environmental effects of AI use and data center development.
River Network is among the organizations that have not yet developed an internal policy, but this is top-of-mind for us internally. We are open to sharing what we learn through the process.
In addition to the example AI policy language we included above, here are more resources:
- AI Knowledge Hub Training Series | Climate Advocacy Lab
- AI Cheerleading, AI Abstention and AI Redirection | Meta-Relationality and AI Research Project
- Developing an AI Policy for Your Nonprofit
- How Foundations and Nonprofits Are Thinking About and Using Artificial Intelligence
Looking for resources on data centers? Find maps, local advocacy recommendations, ordinances, and regulations, model and pending/passed legislation, reports, and news articles here.
Thanks to those of you who took the time to participate in this survey.


