Your AI Won’t Govern Itself.

Practical AI governance for small- and mid-sized organizations that need to manage risk, set clear rules, and strengthen oversight.

Spring Tide AI logo

Your AI use might be outpacing your oversight.

Does this sound familiar?

  • You don't have full visibility into where and how AI is used across your organization.

  • You're not sure where your biggest AI risks are or how to handle them.

  • You're concerned that employees are using AI tools without clear guidance.

  • You want to manage risks without stifling AI experimentation.

  • You're worried that sensitive information could end up in an AI tool that isn't designed to protect it.

If your organization is using AI without clear rules, roles, and safeguards, then you have a governance gap.That gap can create risks related to privacy, intellectual property, accuracy, bias, and accountability.I close that gap with practical assessments, frameworks, policies, and tools built for small- and mid-sized organizations that use AI in their operations.I offer solutions for businesses, trade associations, non-profits, professional societies, and social enterprises.


The result: you can use AI with more confidence, get more value from it, and maintain credibility and trust with clients, members, boards, and funders.


Spring Tide AI logo

I’m Christine Gillis. I have spent more than 20 years working with organizations to manage risk, assign accountability, and provide effective oversight.I bring that experience to the questions AI raises for organizations now. AI is a new technology, but many of the governance challenges it raises are not.I'm certified as an Artificial Intelligence Governance Professional (AIGP) by the IAPP, covering the legal, ethical, and operational frameworks for developing and deploying AI responsibly. This includes risk management, regulatory compliance, and accountability across the AI lifecycle.I use AI in my work. For details, please read my AI Use Statement.

Deciding to use AI is just the beginning. Making sure your organization is set up to use it responsibly and safely is equally important.


Good AI governance is practical by design. It builds on existing decision-making, oversight, and risk management practices rather than creating new layers of process.Implementing AI governance does not require a massive overhaul. It involves a structured approach:

  • understand what AI tools and system you have

  • identify the risks

  • put the right policies and processes in place

  • make them practical enough that people can follow them

  • provide training and support

  • measure the effectiveness of your governance and update it as needed

Spring Tide AI logo

I’m Christine Gillis. I have spent more than 20 years working with organizations to manage risk, assign accountability, and provide effective oversight.I’m motivated by the idea that we can develop and use AI in ethical ways that benefit society, but only if we’re honest about its risks and intentional about how we manage them.Working both inside government and alongside it has shown me how policy, regulation, and governance work in practice. I understand how rules are designed, implemented, and tested. That experience helps me identify risks and governance gaps early, ask clear questions about accountability, and design solutions that hold up in real world conditions.Now, I apply that experience to artificial intelligence governance. My focus is helping organizations put responsible AI principles into action through sound policies, clear oversight, and practical implementation.I'm certified as an Artificial Intelligence Governance Professional (AIGP) by the IAPP, covering the legal, ethical, and operational frameworks for developing and deploying AI responsibly. This includes risk management, regulatory compliance, and accountability across the AI lifecycle.I use AI in my work. For details, please read my AI Use Statement.

Christine Gillis
AI Governance Advisor
Spring Tide AI
Halifax, Nova Scotia
Every project starts with a conversation.Ready to talk? Request a consultation or send me a message.


Request a Consultation

The 30-minute introductory consultation is a chance for us to discuss your priorities, any challenges you’re facing, and the outcomes you’re seeking.I’ll share how I can help and outline possible next steps so you have a clear sense of what working together could look like.This conversation is meant to help us determine whether my services are the right fit for you.Use the form below to tell me about your organization and your preferred days and times to meet. I'll respond to your request within 48 business hours.


Services

Spring Tide AI offers governance services that are tailored to your organization and built on your existing structures and practices.My services are backed by the IAPP's AI Governance Professional (AIGP) certification, which covers the legal, ethical, and operational frameworks for developing and deploying AI responsibly.The goal: deliver practical solutions that integrate smoothly into your operations, while keeping humans in control of the decisions that matter most.


AI Governance Assessment & Gap Analysis

Understand how AI is being used and where you may be exposed

  • Identify AI tools and use cases across your organization

  • Review existing policies, controls, and oversight practices

  • Highlight key governance gaps and areas of risk

  • Provide practical recommendations on what to do next

AI Governance Framework & Risk Management

Put the right structure in place and support better AI decision-making

  • Define governance principles aligned with your business goals

  • Establish roles, responsibilities, and decision-making processes

  • Introduce a simple, risk-based approach to AI use

  • Define metrics to monitor governance effectiveness

Policy & Procedure Design

Turn governance into clear, usable guidance

  • Develop practical policies for using AI tools

  • Establish procedures for managing AI-related risks

  • Create consistent approaches for assessing AI tools

  • Establish processes for responding to AI-related incidents

Governance Implementation & Ongoing Support

Make governance work in practice across your organization

  • Plan and support implementation across teams

  • Develop communication strategies for rollout

  • Design and deliver workshops and training sessions

  • Provide practical tools, templates, and checklists

  • Provide ongoing advisory support as AI use evolves


Resources


AI Use Policy Template

This template can help you write a basic AI use policy for your organization that covers the essentials. It’s for small businesses and organizations that want to begin managing how they use AI.

Five Questions to Consider

Waiting for “the right time” to address AI governance can create unnecessary risk and missed opportunities. You do not need a complete program to start building responsible AI practices. You just need to take the first steps. The document outlines five questions that can help you identify where your organization stands and where to focus.



Articles

Spring Tide AI logo

2026-02-06

Shadow AI in the Workplace

Shadow AI often begins with employees experimenting to save time or improve output. It can quickly become a governance problem. By addressing shadow AI, an organization reduces risk, upholds customer trust, and builds a foundation for responsible AI use.

Spring Tide AI logo

2026-02-09

To Govern AI Well, Help Your Team Understand It

AI governance is only as effective as the people who live it daily. If they do not understand how AI works, policies will remain paper rules. When teams understand AI, they become active participants in risk management and responsible AI development and use.

Spring Tide AI logo

2026-03-05

The AI Question Your Clients Will Ask

If a client asked you today to explain how your organization oversees its use of AI tools, what would you say? If you're not ready to answer it today, the next best position is being able to say with confidence that you're working on it, and to show how.

Spring Tide AI logo

2026-03-23

Expect AI Disclosure Rules to Become the Norm

Public and private sector buyers will increasingly require vendors to disclose if and how they use AI. Buyers want assurance that their partners use AI responsibly. The ability to demonstrate that will distinguish prepared organizations from those still figuring it out.

Spring Tide AI logo

2026-04-15

Responsible AI Use: Where to Start

Waiting for “the right time” to address AI governance can create unnecessary risk and missed opportunities. You do not need a complete program to start building responsible AI practices. You just need to take the first steps.

Spring Tide AI logo

2026-06-25

Managing Copyright Risk in AI-Generated Content

Copyright holders are taking legal action against AI developers, alleging that they used copyrighted works to train AI models without permission or compensation. Learn practical steps to reduce your organization's risk of infringement when using AI-generated content.



Spring Tide AI logo

2026-02-06

Shadow AI in the Workplace

Shadow AI is the use of AI tools inside an organization without formal approval or oversight. It often begins with employees experimenting to save time or improve output. It can quickly become a governance problem.You cannot govern what you cannot see. When shadow AI use happens, it creates risks that an organization may not be ready for. These include compliance gaps, data security exposures, and inconsistent decision making across teams.A recent Salesforce survey of more than 14,000 workers found that 28 percent of workers already use generative AI at work, and over half of them do so without formal employer approval. That is shadow AI in practice. These tools can include chatbots, document summarizers, code assistants, and image generators that employees access through personal accounts and public websites.Organizations that address shadow AI early gain control and visibility before problems escalate. Here are key steps to take:

  • Map usage. Identify which teams already use AI tools and for what purposes. Use short surveys, interviews, or existing IT logs where appropriate.

  • Assess risk. Classify tools by their impact on privacy, data security, intellectual property, and legal obligations.

  • Set boundaries. Define clear policies for approved tools and use cases. Specify what is off limits.

  • Educate staff. Explain why governance matters and show how to use approved AI tools safely. Focus on benefits and accountability, not blame.

  • Designate ownership. Assign clear roles to monitor use, approve new tools, and update policies as your AI portfolio changes.

When teams understand the rules and see value in following them, adoption becomes safer and more consistent. Governance works best when it fits in with how people work.A practical example: a marketing team starts using a third-party text generator for campaign drafts. Without oversight, sensitive customer information might be pasted into a public AI model. With governance in place, the same team can use an approved tool that protects data privacy and maintains brand standards.Shadow AI often reflects initiative and curiosity, not malicious intent. The goal is to make AI use visible and managed, not block experimentation.By recognizing and addressing shadow AI, an organization reduces risk, upholds customer trust, and builds a foundation for responsible AI use.Shadow AI often grows in the gaps where guidance on AI use is thin or unclear. Governance can help address that.



Spring Tide AI logo

2026-02-09

To Govern AI Well, Help Your Team Understand It

AI systems are playing a growing role in how organizations operate. Yet many employees and leaders lack the support needed to question these tools or use them confidently. Effective AI governance depends on building AI literacy across the organization.AI literacy means understanding what AI systems do, what their limits are, and how their outputs should be handled. It is not a technical skill. It is a workplace skill. It helps people understand when to trust AI and when to challenge it, as well as the accountability, privacy, and fairness questions that can arise from AI development and use.If an organization lacks AI literacy, governance rules are unlikely to succeed. You can write policies, assign roles, and create oversight structures, but if people cannot interpret risk signals or use AI as intended, controls will break down in daily work.How to start improving AI literacy today:

  • Build clear learning modules for staff. Focus on how AI systems are used in their roles, what they can and cannot do, and how to develop and use AI systems responsibly.

  • Require short onboarding for any new AI tool. Explain why the tool exists, how it works in basic terms, and what failure looks like.

  • Train managers to identify misuse and surface issues early. Make governance part of normal team management, not a separate step.

  • Use real examples. A chatbot that leaks sensitive data, or a model that produces consistently biased outputs, makes these lessons concrete.

  • Keep learning alive. Add AI topics to staff meetings, internal newsletters, or governance dashboards.

AI governance is only as effective as the people who live it daily. If they do not understand how AI works, policies will remain paper rules. When teams understand AI, they become active participants in risk management and responsible AI use.



Spring Tide AI logo

2026-03-05

The AI Question Your Clients Will Ask

If a client asked you today to explain how your organization oversees its use of AI tools, what would you say?Could you explain:

  • Who is responsible

  • How potential risks are being managed

  • What human review looks like for inputs and outputs

  • What happens when something goes wrong

  • How you monitor performance and make adjustments as needed

Many organizations can't clearly articulate these things yet. That's not unusual. AI tools are becoming part of daily operations faster than the structures to oversee them.If that question hasn't come yet, it will, and it could come from clients, partners, funders, or board members. The organizations that have an answer will be in a stronger position when it does.If you're not ready to answer it today, the next best position is being able to say with confidence that you're working on it, and to show how.Use the Five Questions guide as a first step. Find it on the Resources page.



Spring Tide AI logo

2026-03-23

Expect AI Disclosure Rules to Become the Norm

The Newfoundland and Labrador government now requires vendors to disclose their use of AI. Expect this to become the norm.The province introduced new requirements for vendors bidding on contracts after false citations thought to be AI-generated turned up in two reports submitted to the government. Now, vendors must disclose if and how they intend to use AI, and accept that their use of AI can be audited.This is just one example. More public and private sector buyers of products and services will introduce similar requirements. The organizations best positioned to meet them have implemented structures and practices for using AI in a safe and trustworthy way.The organizations who treat this shift as an opportunity rather than a burden will have a competitive advantage. Buyers increasingly want assurance that their partners use AI responsibly. The ability to demonstrate that will distinguish prepared organizations from those still figuring it out.



Spring Tide AI logo

2026-04-15

Responsible AI Use: Where to Start

If your organization uses AI, it needs to be governed. How much attention and resources that requires will depend on considerations such as how your organization uses AI, what risks are involved, and the maturity of your existing governance system.Usually, you do not need to create AI governance from scratch. You can build on the structures, policies, and processes that you already have and create what is needed to fill gaps.A good starting point is a set of basic questions. Do you know what AI tools are in use across your organization? Do your existing policies cover AI use? Who is accountable when something goes wrong? These are practical questions that any organization can start asking today.The answers will tell you where you stand and help you identify where to focus. That is enough to begin.I developed a short guide that offers five questions organizations can use as a starting point for discussions about safe, responsible AI use. It is for organizations using AI that are just beginning to think about governance.You can download it from the Resources page.



Spring Tide AI logo

2026-06-25

Managing Copyright Risk in AI-Generated Content

When your business or organization uses generative AI systems to create content, the output could infringe copyrighted works. This creates risk for you, not just the AI developer.Across the world, copyright holders including authors, news outlets, and visual artists are taking legal action against AI developers, alleging that these companies used copyrighted works to train AI models without permission or compensation.Why does this matter to organizations that use AI rather than build it? Because a model trained on copyrighted material could produce outputs that infringe copyright. If you use that output, whether it is marketing copy, training materials, a logo, code, or a research summary, your organization could be infringing copyright.Here is what you can do:

  • Tool selection: Decide which AI tools your organization will use and make them official. Without this, people may use free or unvetted tools that fall outside your governance, potentially putting the organization at risk. Where possible, choose vendors that offer copyright indemnification (typically only on enterprise or commercial plans). Keep in mind that the indemnification comes with exclusions and limitations, and it does not replace the steps below.

  • Inputs: Do not enter copyrighted material into AI systems without the rights holder's permission.

  • Human review of outputs: Define when review is required, what it involves, and who is responsible. Specify the reasonable checks staff should use to identify potential infringement before AI-generated content is published, sold, or distributed. Examples include reverse image search tools, plagiarism checkers, design registries, and registered copyright searches.

  • Prompting limits: Do not use prompts that ask AI systems to generate text, images, or music in the style of specific copyrighted works, brands, or named creators.

Capture all of this in an AI use policy, and back up the policy with staff training. Help people understand the risks and how to apply the policy in their day-to-day work.These steps can help you reduce the risk of copyright infringement. They work best as part of a broader approach to managing how AI is used across your organization.


Terms and Conditions

Last update: February 8, 2026These terms and conditions (the "Terms and Conditions") govern the use of www.springtideai.ca (the "Site"). This Site is owned and operated by Spring Tide AI.By using this Site, you indicate that you have read and understand these Terms and Conditions and agree to abide by them at all times.Intellectual PropertyAll content published and made available on our Site is the property of Spring Tide AI and the Site's creators. This includes, but is not limited to images, text, logos, documents, downloadable files and anything that contributes to the composition of our Site.Limitation of LiabilitySpring Tide AI and our directors, officers, agents, employees, subsidiaries, and affiliates will not be liable for any actions, claims, losses, damages, liabilities and expenses including legal fees from your use of the Site.

IndemnityExcept where prohibited by law, by using this Site you indemnify and hold harmless Spring Tide AI and our directors, officers, agents, employees, subsidiaries, and affiliates from any actions, claims, losses, damages, liabilities and expenses including legal fees arising out of your use of our Site or your violation of these Terms and Conditions.Applicable LawBy accessing the Site, the user agrees that all matters relating to the access to, or use of, this Site shall be governed by the laws of the Province of Nova Scotia and the laws of Canada applicable therein, without giving effect to any principles of conflicts of laws. All disputes, controversies, or claims arising out of or in connection with the Site shall be submitted to and be subject to the jurisdiction of the courts of the Province of Nova Scotia to finally adjudicate or determine any suit, action or proceeding arising out of or in connection with the Site.SeverabilityIf at any time any of the provisions set forth in these Terms and Conditions are found to be inconsistent or invalid under applicable laws, those provisions will be deemed void and will be removed from these Terms and Conditions. All other provisions will not be affected by the removal and the rest of these Terms and Conditions will still be considered valid.ChangesWe may revise these Terms of Use at any time in our sole discretion by posting such revised Terms of Use at the Terms of Use link (i.e., this webpage that you are currently viewing) or elsewhere in this Site. Such revisions shall be effective as to you upon posting, unless explicitly stated by us. It is your responsibility to be aware of any such revised Terms of Use by checking this webpage. Your continued use of this Site following changes to these Terms of Use constitutes your agreement to the revised Terms of Use.

ContactIf you have any questions about these Terms and Conditions, you can contact us:

  • By visiting this page on our Site: www.springtideai.ca/#contact

  • By sending us an email: [email protected]

Privacy Policy

Last updated: March 26, 2026This Privacy Policy describes Our policies and procedures on the collection, use and disclosure of Your information when You use the Service and tells You about Your privacy rights and how the law protects You.We use Your Personal Data to provide and improve the Service. By using the Service, You agree to the collection and use of information in accordance with this Privacy Policy.

Interpretation and Definitions

InterpretationThe words whose initial letters are capitalized have meanings defined under the following conditions. The following definitions shall have the same meaning regardless of whether they appear in singular or in plural.DefinitionsFor the purposes of this Privacy Policy:

  • Account means a unique account created for You to access our Service or parts of our Service.

  • Affiliate means an entity that controls, is controlled by, or is under common control with a party, where "control" means ownership of 50% or more of the shares, equity interest or other securities entitled to vote for election of directors or other managing authority.

  • Company (referred to as either "the Company", "We", "Us" or "Our" in this Privacy Policy) refers to Spring Tide AI, Halifax, Nova Scotia.

  • Cookies are small files that are placed on Your computer, mobile device or any other device by a website, containing the details of Your browsing history on that website among its many uses.

  • Country refers to: Nova Scotia, Canada

  • Device means any device that can access the Service such as a computer, a cell phone or a digital tablet.

  • Personal Data (or "Personal Information") is any information that relates to an identified or identifiable individual. We use "Personal Data" and "Personal Information" interchangeably unless a law uses a specific term.

  • Service refers to the Website.

  • Service Provider means any natural or legal person who processes the data on behalf of the Company. It refers to third-party companies or individuals employed by the Company to facilitate the Service, to provide the Service on behalf of the Company, to perform services related to the Service or to assist the Company in analyzing how the Service is used.

  • Usage Data refers to data collected automatically, either generated by the use of the Service or from the Service infrastructure itself (for example, the duration of a page visit).

  • Website refers to Spring Tide AI, accessible from www.springtideai.ca.

  • You means the individual accessing or using the Service, or the company, or other legal entity on behalf of which such individual is accessing or using the Service, as applicable.

Collecting and Using Your Personal Data

Types of Data CollectedPersonal DataWhile using Our Service, We may ask You to provide Us with certain personally identifiable information that can be used to contact or identify You. Personally identifiable information may include, but is not limited to:

  • Email address

  • First name and last name

  • Phone number

Usage DataUsage Data is collected automatically when using the Service.Usage Data may include information such as Your Device's Internet Protocol address (e.g. IP address), browser type, browser version, the pages of our Service that You visit, the time and date of Your visit, the time spent on those pages, unique device identifiers and other diagnostic data.When You access the Service by or through a mobile device, We may collect certain information automatically, including, but not limited to, the type of mobile device You use, Your mobile device's unique ID, the IP address of Your mobile device, Your mobile operating system, the type of mobile Internet browser You use, unique device identifiers and other diagnostic data.We may also collect information that Your browser sends whenever You visit Our Service or when You access the Service by or through a mobile device.

Tracking Technologies and CookiesWe use Cookies and similar tracking technologies to track the activity on Our Service and store certain information. Tracking technologies We use include beacons, tags, and scripts to collect and track information and to improve and analyze Our Service. The technologies We use may include:

  • Cookies or Browser Cookies. A cookie is a small file placed on Your Device. You can instruct Your browser to refuse all Cookies or to indicate when a Cookie is being sent. However, if You do not accept Cookies, You may not be able to use some parts of our Service.

  • Web Beacons. Certain sections of our Service and our emails may contain small electronic files known as web beacons (also referred to as clear gifs, pixel tags, and single-pixel gifs) that permit the Company, for example, to count users who have visited those pages or opened an email and for other related website statistics (for example, recording the popularity of a certain section and verifying system and server integrity).

Cookies can be "Persistent" or "Session" Cookies. Persistent Cookies remain on Your personal computer or mobile device when You go offline, while Session Cookies are deleted as soon as You close Your web browser.Where required by law, we use non-essential cookies (such as analytics, advertising, and remarketing cookies) only with Your consent. You can withdraw or change Your consent at any time using Our cookie preferences tool (if available) or through Your browser/device settings. Withdrawing consent does not affect the lawfulness of processing based on consent before its withdrawal.We use both Session and Persistent Cookies for the purposes set out below:

  • Necessary / Essential Cookies

Type: Session CookiesAdministered by: UsPurpose: These Cookies are essential to provide You with services available through the Website and to enable You to use some of its features. They help to authenticate users and prevent fraudulent use of user accounts. Without these Cookies, the services that You have asked for cannot be provided, and We only use these Cookies to provide You with those services.

  • Cookies Policy / Notice Acceptance Cookies

Type: Persistent CookiesAdministered by: UsPurpose: These Cookies identify if users have accepted the use of cookies on the Website.

  • Functionality Cookies

Type: Persistent CookiesAdministered by: UsPurpose: These Cookies allow Us to remember choices You make when You use the Website, such as remembering your login details or language preference. The purpose of these Cookies is to provide You with a more personal experience and to avoid You having to re-enter your preferences every time You use the Website.

For more information about the cookies we use and your choices regarding cookies, please visit our Cookies Policy or the Cookies section of Our Privacy Policy.Use of Your Personal DataThe Company may use Personal Data for the following purposes:

  • To provide and maintain our Service, including to monitor the usage of our Service.

  • To manage Your Account: to manage Your registration as a user of the Service. The Personal Data You provide can give You access to different functionalities of the Service that are available to You as a registered user.

  • For the performance of a contract: the development, compliance and undertaking of the purchase contract for the products, items or services You have purchased or of any other contract with Us through the Service.

  • To contact You: To contact You by email, telephone calls, SMS, or other equivalent forms of electronic communication, such as a mobile application's push notifications regarding updates or informative communications related to the functionalities, products or contracted services, including the security updates, when necessary or reasonable for their implementation.

  • To provide You with news, special offers, and general information about other goods, services and events which We offer that are similar to those that you have already purchased or inquired about unless You have opted not to receive such information.

  • To manage Your requests: To attend and manage Your requests to Us.

  • For business transfers: We may use Your Personal Data to evaluate or conduct a merger, divestiture, restructuring, reorganization, dissolution, or other sale or transfer of some or all of Our assets, whether as a going concern or as part of bankruptcy, liquidation, or similar proceeding, in which Personal Data held by Us about our Service users is among the assets transferred.

  • For other purposes: We may use Your information for other purposes, such as data analysis, identifying usage trends, determining the effectiveness of our promotional campaigns and to evaluate and improve our Service, products, services, marketing and your experience.

We may share Your Personal Data in the following situations:

  • With Service Providers: We may share Your Personal Data with Service Providers to monitor and analyze the use of our Service, to contact You.

  • For business transfers: We may share or transfer Your Personal Data in connection with, or during negotiations of, any merger, sale of Company assets, financing, or acquisition of all or a portion of Our business to another company.

  • With Affiliates: We may share Your Personal Data with Our affiliates, in which case we will require those affiliates to honor this Privacy Policy. Affiliates include Our parent company and any other subsidiaries, joint venture partners or other companies that We control or that are under common control with Us.

  • With business partners: We may share Your Personal Data with Our business partners to offer You certain products, services or promotions.

  • With other users: If Our Service offers public areas, when You share Personal Data or otherwise interact in the public areas with other users, such information may be viewed by all users and may be publicly distributed outside.

  • With Your consent: We may disclose Your Personal Data for any other purpose with Your consent.

Retention of Your Personal DataThe Company will retain Your Personal Data only for as long as is necessary for the purposes set out in this Privacy Policy. We will retain and use Your Personal Data to the extent necessary to comply with our legal obligations (for example, if We are required to retain Your data to comply with applicable laws), resolve disputes, and enforce our legal agreements and policies.Where possible, We apply shorter retention periods and/or reduce identifiability by deleting, aggregating, or anonymizing data. Unless otherwise stated, the retention periods below are maximum periods ("up to") and We may delete or anonymize data sooner when it is no longer needed for the relevant purpose. We apply different retention periods to different categories of Personal Data based on the purpose of processing and legal obligations:

  • Account Information

  • User Accounts: retained for the duration of your account relationship plus up to 24 months after account closure to handle any post-termination issues or resolve disputes.

  • Customer Support Data

  • Support tickets and correspondence: up to 24 months from the date of ticket closure to resolve follow-up inquiries, track service quality, and defend against potential legal claims.

  • Chat transcripts: up to 24 months for quality assurance and staff training purposes.

  • Usage Data

  • Website analytics data (cookies, IP addresses, device identifiers): up to 24 months from the date of collection, which allows us to analyze trends while respecting privacy principles.

  • Server logs (IP addresses, access times): up to 24 months for security monitoring and troubleshooting purposes.

Usage Data is retained in accordance with the retention periods described above, and may be retained longer only where necessary for security, fraud prevention, or legal compliance.We may retain Personal Data beyond the periods stated above for different reasons:

  • Legal obligation: We are required by law to retain specific data (e.g., financial records for tax authorities).

  • Legal claims: Data is necessary to establish, exercise, or defend legal claims.

  • Your explicit request: You ask Us to retain specific information.

  • Technical limitations: Data exists in backup systems that are scheduled for routine deletion.

You may request information about how long We will retain Your Personal Data by contacting Us.When retention periods expire, We securely delete or anonymize Personal Data according to the following procedures:

  • Deletion: Personal Data is removed from Our systems and no longer actively processed.

  • Backup retention: Residual copies may remain in encrypted backups for a limited period consistent with our backup retention schedule and are not restored except where necessary for security, disaster recovery, or legal compliance.

  • Anonymization: In some cases, We convert Personal Data into anonymous statistical data that cannot be linked back to You. This anonymized data may be retained indefinitely for research and analytics.

Transfer of Your Personal DataYour information, including Personal Data, is processed at the Company's operating offices and in any other places where the parties involved in the processing are located. It means that this information may be transferred to — and maintained on — computers located outside of Your state, province, country or other governmental jurisdiction where the data protection laws may differ from those from Your jurisdiction.Where required by applicable law, We will ensure that international transfers of Your Personal Data are subject to appropriate safeguards and supplementary measures where appropriate. The Company will take all steps reasonably necessary to ensure that Your data is treated securely and in accordance with this Privacy Policy and no transfer of Your Personal Data will take place to an organization or a country unless there are adequate controls in place including the security of Your data and other personal information.Delete Your Personal DataYou have the right to delete or request that We assist in deleting the Personal Data that We have collected about You.Our Service may give You the ability to delete certain information about You from within the Service.You may update, amend, or delete Your information at any time by signing in to Your Account, if you have one, and visiting the account settings section that allows you to manage Your personal information. You may also contact Us to request access to, correct, or delete any Personal Data that You have provided to Us.Please note, however, that We may need to retain certain information when we have a legal obligation or lawful basis to do so.

Disclosure of Your Personal DataBusiness TransactionsIf the Company is involved in a merger, acquisition or asset sale, Your Personal Data may be transferred. We will provide notice before Your Personal Data is transferred and becomes subject to a different Privacy Policy.Law enforcementUnder certain circumstances, the Company may be required to disclose Your Personal Data if required to do so by law or in response to valid requests by public authorities (e.g. a court or a government agency).Other legal requirementsThe Company may disclose Your Personal Data in the good faith belief that such action is necessary to:

  • Comply with a legal obligation

  • Protect and defend the rights or property of the Company

  • Prevent or investigate possible wrongdoing in connection with the Service

  • Protect the personal safety of Users of the Service or the public

  • Protect against legal liability

Security of Your Personal DataThe security of Your Personal Data is important to Us, but remember that no method of transmission over the Internet, or method of electronic storage is 100% secure. While We strive to use commercially reasonable means to protect Your Personal Data, We cannot guarantee its absolute security.

Children's Privacy

Our Service does not address anyone under the age of 16. We do not knowingly collect personally identifiable information from anyone under the age of 16. If You are a parent or guardian and You are aware that Your child has provided Us with Personal Data, please contact Us. If We become aware that We have collected Personal Data from anyone under the age of 16 without verification of parental consent, We take steps to remove that information from Our servers.If We need to rely on consent as a legal basis for processing Your information and Your country requires consent from a parent, We may require Your parent's consent before We collect and use that information.

Links to Other Websites

Our Service may contain links to other websites that are not operated by Us. If You click on a third party link, You will be directed to that third party's site. We strongly advise You to review the Privacy Policy of every site You visit.We have no control over and assume no responsibility for the content, privacy policies or practices of any third party sites or services.

Changes to this Privacy Policy

We may update Our Privacy Policy from time to time. We will notify You of any changes by posting the new Privacy Policy on this page.We will update the "Last updated" date at the top of this Privacy Policy.You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.

Contact Us

If you have any questions about this Privacy Policy, You can contact us:

  • By visiting this page on our Site: www.springtideai.ca/#contact

  • By sending us an email: [email protected]

Spring Tide AI Artificial Intelligence Use Statement

Last update: May 4, 2026PurposeThe purpose of this statement is to provide details about how I use Artificial Intelligence (AI) in my practice.ApproachMy work is informed by the OECD AI Principles, an international standard on responsible and trustworthy AI adopted by countries across the world, including Canada. The principles are:

  1. Inclusive growth, sustainable development and well-being

  2. Respect for the rule of law, human rights and democratic values, including fairness and privacy

  3. Transparency and explainability

  4. Robustness, security and safety

  5. Accountability

These principles shape how I think about AI and AI governance.

AI UseI use general-purpose AI to assist me with these activities:

  • Collect information

  • Develop and frame ideas

  • Generate information or images

  • Analyze information

  • Categorize or summarize information and suggest conclusions

  • Create visualizations or other graphical representations of data

When and where I employ these uses depends on considerations such as the task, the sensitivity of the information involved, and whether AI is well-suited to the work.

PracticesAI assessment: Before I use AI, I view model or system cards to assess whether it is safe and appropriate for my practice.Human accountability: I view AI as a tool, not a partner, employee, or anything else that implies human qualities. AI systems do not replace human responsibility and accountability. I review AI outputs for accuracy, bias, timeliness, and overall quality. I am responsible for what I produce with the assistance of AI.Compliance: I use AI in compliance with applicable laws (e.g., privacy, data protection, intellectual property, human rights), confidentiality agreements, and other legally binding agreements.