We help nonprofits bring AI into their work. That only works if you can trust how we use it ourselves. So here it is, in plain language.
Drafting and editing, organizing research, summarizing documents, checking our own work for errors, and building the first version of templates, diagrams and code.
Everything AI helps produce is read, corrected and approved by a person before it reaches you. AI can hold the pen. Only a person signs. Our emails say so at the bottom: “Written with AI assistance. Decided by a person.”
Your data stays in your own accounts. You own them, and they keep working if we leave.
We'll be straight with you about where those accounts live. The platforms we build on (Google Workspace, monday.com, Paperform, Make, n8n and Softr) are established tools, and none of them offers Canadian data hosting today. They store data in the US or the EU. So before any Build starts, you get a one-page list of exactly where each tool keeps your data. Where a tool lets us choose a region, we choose the most protective one. If your organization needs data kept in Canada, we can build with a self-hosted workflow tool running in Canada, or design around the tool that can't.
The AI tools we use (Anthropic's Claude, OpenAI's Codex, Google and HeyGen) are also hosted outside Canada. That is exactly why your sensitive data never goes into them. The rule doesn't depend on where a server is; it's that the data doesn't go in at all. None of these tools are trained on client data.
We're an Alberta company: Alberta's privacy law (PIPA) governs how we handle personal information, PIPEDA where work crosses provincial lines, and Quebec's Law 25 where it applies.
This is where most AI policies stop. Ours starts here, because this is the work we do.
If a Build includes an AI capability, you get it in writing:
The people your organization serves never deal with AI they didn't know about. When a Build touches them, we help you:
If you fund an organization we work with, here's what that means for your money and your trust:
Before we use any tool, we ask: who built it; where your data is stored and processed; whether it keeps your data or trains on it; who at the company can see it; where human approval happens; whether everything can be exported and deleted; and what happens if the company is sold or closes. We'd encourage you to ask every vendor the same, including us.
If AI output goes out that shouldn't have, or data ends up somewhere it shouldn't, we tell you within 72 hours, fix it, and tell you what we changed.
We don't think AI is free of cost, and we won't pretend it is.
We’ve published a free, plain-language AI Policy Kit for Canadian nonprofits: the policy, a staff card, an AI register, a board brief and more. It’s the same thinking as this page, written for your organization to fill in: nimara.ca/ai-policy-kit.
Questions about this page go to hello@nimara.ca. You'll get a written answer from a person.
We review this policy every six months, and whenever we add a tool or the law changes.
Email hello@nimara.ca, or start with a free assessment and we’ll walk you through how these rules would work in your organization.
Start with a free assessment