02/03/2026 | Press release | Distributed by Public on 02/03/2026 09:34
Introduction
On January 21, 2026, the Information and Privacy Commissioner of Ontario ("IPC") and the Ontario Human Rights Commission ("OHRC") jointly released six principles (the "IPC-OHRC Principles") to guide organizations in the responsible use of artificial intelligence ("AI"). These principles are intended to steer organizations in implementing AI technologies in a manner that promotes innovation while upholding privacy protections and human rights obligations under Ontario law.
AI systems increasingly have the potential to enhance the lives of Ontarians across both the public and private sectors. At the same time, they introduce complex legal and ethical risks that require thoughtful oversight. In response to the rapid adoption of these technologies, Canadian and international regulators are developing governance frameworks to address the legal, ethical and operational risks associated with AI. Notably, on January 7, 2026, the Ontario government also issued a directive applicable to all provincial ministries and agencies on the responsible use of AI.
The IPC-OHRC Principles are designed to complement recent provincial, federal and international initiatives aimed at promoting safe, trustworthy and accountable AI governance. Taken together, these efforts reflect a growing recognition that AI requires oversight mechanisms comparable to those applied to other high-impact technologies. Set out below is an overview of the six principles and their implications for organizations deploying AI systems.
The IPC-OHRC Principles
The IPC-OHRC Principles establish a clear and practical framework for assessing risk, guiding system design and deployment, and ensuring compliance with Ontario's privacy and human rights legislation. Adherence to the IPC-OHRC Principles can help organizations meaningfully reduce risk by mitigating potential harms, demonstrating a commitment to fairness and substantive equality, and fostering public trust in AI-assisted decision-making and automated systems. The six principles are interconnected and intended to apply with equal importance across an AI system's lifecycle.
Key Takeaways and Practical Considerations
The IPC-OHRC Principles emphasize the continued importance of human oversight and regular validity assessments when deploying AI systems in both the public and private sectors. While AI presents significant opportunities to drive efficiency and innovation, these systems can introduce distinct risks due to their capacity to operate at scale and, in some cases, autonomously.
To support responsible, transparent and accountable AI use, organizations should adopt a consistent and informed approach to identifying and managing AI-related risks. Applying the IPC-OHRC Principles across all stages of an AI system's lifecycle - from design and procurement to deployment and monitoring - can help organizations manage legal and operational exposure while realizing the benefits of AI technologies.
The IPC-OHRC Principles are broadly aligned with the nine principles guiding the use of generative AI released by the Office of the Privacy Commissioner of Canada ("OPC") on December 7, 2023. This alignment reflects an emerging national consensus on the need for AI governance frameworks that ensure privacy, human rights and transparency. For more information on the OPC's nine principles for generative AI, please see our article here.
The alignment of the IPC-OHRC's six principles for the responsible use of AI with the OPC's nine principles guiding the use of generative AI underscores a growing Canadian regulatory expectation that organizations develop and maintain AI governance frameworks that safeguard personal information and incorporate meaningful human oversight.
Although the IPC-OHRC Principles are not legally binding, inadequate governance, oversight or control of AI systems may give rise to legal, regulatory and reputational consequences. Organizations are, therefore, advised to review these principles alongside their existing privacy, human rights and risk management policies.
Canada has not yet enacted comprehensive legislation governing the use of AI, and it remains uncertain whether forthcoming federal initiatives will incorporate or harmonize with the IPC-OHRC's approach. In the interim, organizations that proactively align with emerging principles will be better positioned to meet future compliance obligations and stakeholder expectations. The IPC-OHRC Principles provide a useful reference point for organizations seeking to adapt to evolving technologies while remaining compliant with applicable privacy and human rights obligations.
For more information about the legal implications of the use of generative AI or other AI technology, please contact Lisa R. Lifshitz, Roland Hung, and Laura Crimi of Torkin Manes' Technology and Privacy & Data Management Groups.
The author would like to acknowledge Torkin Manes' Articling Student Alex Mazzadi for his invaluable contribution in drafting this bulletin.