{"id":108358,"date":"2025-04-15T10:23:40","date_gmt":"2025-04-15T14:23:40","guid":{"rendered":"https:\/\/cdt.org\/?post_type=insight&#038;p=108358"},"modified":"2025-04-29T13:26:15","modified_gmt":"2025-04-29T17:26:15","slug":"ai-in-local-government-how-counties-cities-are-advancing-ai-governance","status":"publish","type":"insight","link":"https:\/\/cdt.org\/insights\/ai-in-local-government-how-counties-cities-are-advancing-ai-governance\/","title":{"rendered":"AI in Local Government: How Counties &amp; Cities Are Advancing AI Governance"},"content":{"rendered":"\n<p><em>This blog is part of a series of pieces highlighting AI regulation trends across states. See CDT\u2019s other blogs on <\/em><a href=\"https:\/\/cdt.org\/insights\/state-government-use-of-ai-the-opportunities-of-executive-action-in-2025\/\"><em>state AI executive orders<\/em><\/a><em>, <\/em><a href=\"https:\/\/cdt.org\/insights\/regulating-public-sector-ai-emerging-trends-in-state-legislation\/\"><em>public sector AI legislation<\/em><\/a><em>, and <\/em><a href=\"https:\/\/cdt.org\/insights\/looking-back-at-ai-guidance-across-state-education-agencies-and-looking-forward\/\"><em>state education agencies\u2019 AI guidance<\/em><\/a><em>.<\/em><\/p>\n\n\n\n<p><strong>Introduction<\/strong><\/p>\n\n\n\n<p>While much attention has been paid to the use of AI by state and federal agencies, city and local governments also are increasingly using AI and should implement safeguards around public sector uses of these tools. <a href=\"https:\/\/www.nlc.org\/wp-content\/uploads\/2024\/07\/2024-State-of-the-Cities-Report-Web.pdf\">City<\/a> and <a href=\"https:\/\/www.naco.org\/sites\/default\/files\/2024-03\/2024%20County%20Government%20Primer_v20_FINAL.pdf\">county<\/a> governments administer a wide range of public services \u2013 including transportation, healthcare, law enforcement, veterans services, and nutrition assistance, to name only a few \u2013 that have significant impacts on individuals\u2019 health and safety. AI systems can assist in increasing the efficiency and effectiveness of local governments\u2019 provision of such services, but without proper guardrails these same tools can also harm constituents and impede the safe, dignified, and fair delivery of public services.<\/p>\n\n\n\n<p>In response to both the benefits and risks of using AI in local government, an increasing number of cities and counties have released AI policies and guidance. Organizations like the <a href=\"https:\/\/www.sanjoseca.gov\/your-government\/departments-offices\/information-technology\/ai-reviews-algorithm-register\/govai-coalition\">GovAI Coalition<\/a> and the <a href=\"https:\/\/www.naco.org\/resource\/ai-county-compass-comprehensive-toolkit-local-governance-and-implementation-artificial\">National Association of Counties<\/a> are helping local governments craft and implement their own policies. In particular, the GovAI Coalition, a group of state and local public agencies working to advance responsible AI, created several <a href=\"https:\/\/www.sanjoseca.gov\/your-government\/departments-offices\/information-technology\/artificial-intelligence-inventory\/govai-coalition\/templates-resources\">template AI policies<\/a> that a number of local agencies have since adopted as part of their own AI governance strategies.<\/p>\n\n\n\n<p>To understand local trends, we analyzed public-facing policy documents from 21 cities and counties. Because most cities and counties do not make their internal IT policies publicly available, the following analysis could be skewed by differences in cities and counties that take proactive steps to disclose their AI policies. Analysis of publicly available AI policies and guidance at the local level reveals five common trends in AI governance, in that these policies:&nbsp;<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Draw from federal, state, and other local AI governance guidance;<\/li>\n\n\n\n<li>Emphasize that use of AI should align with existing legal obligations;<\/li>\n\n\n\n<li>Identify and prioritize mitigation of risks, like bias, reliability, privacy, and security;<\/li>\n\n\n\n<li>Prioritize public transparency of AI uses; and<\/li>\n\n\n\n<li>Advance accountability and human oversight in decision-making that incorporates AI.<\/li>\n<\/ul>\n\n\n\n<p><strong>AI Policy and Guidance at the County and City Level<\/strong><\/p>\n\n\n\n<p>Within the past several years, county and city governments across the country have published AI use policies and guidance to advance responsible AI uses and place guardrails on the ways they use the technology. Counties and cities are using various methods in regulating government AI use, including policies, guidelines, and executive orders. In addition, at least two cities \u2013 <a href=\"https:\/\/legistar.council.nyc.gov\/LegislationDetail.aspx?ID=4265421&amp;GUID=FBA29B34-9266-4B52-B438-A772D81B1CB5\">New York, NY<\/a>, and <a href=\"https:\/\/sfgov.legistar.com\/LegislationDetail.aspx?ID=6898479&amp;GUID=2E76BC16-98F5-4136-8A3B-7EA81D8968F4&amp;Options=ID%7CText%7C&amp;Search=%2522artificial+intelligence%2522\">San Francisco, Calif.<\/a> \u2013 have enacted city ordinances requiring agencies to create public inventories of their AI use cases.<\/p>\n\n\n\n<p>While many of these documents are not publicly accessible, several counties \u2013 <a href=\"https:\/\/www.hainesalaska.gov\/media\/75666\">Haines Borough, Alaska<\/a>; <a href=\"https:\/\/itd.alamedacountyca.gov\/generative-ai-policy\/\">Alameda County, Calif.<\/a>; <a href=\"https:\/\/file.lacounty.gov\/SDSInter\/bos\/bc\/1167064_2024-9-12DevelopmentofLACounty_sArtificialIntelligencePolicyFramework_ItemNo.9_AgendaofMay7_2024_.pdf\">Los Angeles County, Calif.<\/a>; <a href=\"https:\/\/www2.santacruzcountyca.gov\/personnel\/vpolandproc\/ProceduresManual\/PM6476.pdf\">Santa Cruz County, Calif.<\/a>; <a href=\"https:\/\/sonomacounty.ca.gov\/sonoma-county-adopts-artificial-intelligence-policy\">Sonoma County, Calif.<\/a>; <a href=\"https:\/\/documents.miamidade.gov\/mayor\/memos\/03.22.24-Report-on-Miami-Dade-Countys-Policy-on-Artificial-Intelligence-Directive-No-231203.pdf\">Miami-Dade County, Fla.<\/a>; <a href=\"https:\/\/www.princegeorgescountymd.gov\/departments-offices\/news-events\/news\/alsobrooks-administration-issues-executive-order-responsible-use-artificial-intelligence\">Prince George\u2019s County, Md.<\/a>; <a href=\"https:\/\/www.montgomerycountymd.gov\/OPI\/ai-action-plan.html\">Montgomery County, Md.<\/a>; <a href=\"https:\/\/www.washingtoncountyor.gov\/home\/documents\/artificial-intelligence-best-practice\/download?inline\">Washington County, Ore<\/a>; and <a href=\"https:\/\/www.nashville.gov\/sites\/default\/files\/2024-04\/ISM-20-Artificial-Intelligence-and-Generative-Artificial-Intelligence-Use.pdf?ct=1713207273\">Nashville and Davidson County, Tenn.<\/a> \u2013 and city governments \u2013 <a href=\"https:\/\/www.baltimorecity.gov\/sites\/default\/files\/Generative%20AI%20Executive%20Order%20-%20Signed.pdf\">Baltimore, Md.<\/a>; <a href=\"https:\/\/cms7files1.revize.com\/birmingham\/Document_Center\/Department\/Generative%20AI%20guidlines.pdf\">Birmingham, Ala.<\/a>; <a href=\"https:\/\/www.cityofboise.org\/departments\/human-resources\/employee-policy-handbook\/section-400-general-provisions\/430q-city-use-of-artificial-intelligence-ai-regulation\/\">Boise, Idaho<\/a>; <a href=\"https:\/\/www.boston.gov\/sites\/default\/files\/file\/2023\/05\/Guidelines-for-Using-Generative-AI-2023.pdf\">Boston, Mass.<\/a>; <a href=\"https:\/\/lebanonnh.gov\/1737\/AI-Policy\">Lebanon, NH<\/a>; <a href=\"https:\/\/www.longbeach.gov\/smartcity\/projects\/generative-ai-guidance\/\">Long Beach, Calif.<\/a>; <a href=\"https:\/\/www.nyc.gov\/content\/oti\/pages\/artificial-intelligence\">New York City, NY<\/a>; <a href=\"https:\/\/www.sf.gov\/reports--december-2023--san-francisco-generative-ai-guidelines\">San Francisco, Calif.<\/a>; <a href=\"https:\/\/www.sanjoseca.gov\/your-government\/departments-offices\/information-technology\/itd-generative-ai-guideline\">San Jose, Calif.<\/a>; <a href=\"https:\/\/seattle.gov\/documents\/Departments\/SeattleIT\/City-of-Seattle-Generative-Artificial-Intelligence-Policy.pdf\">Seattle, Wash.<\/a>; and <a href=\"https:\/\/www.documentcloud.org\/documents\/23859134-ethical_artifical_intelligence_policydocx\/\">Tempe, Ariz.<\/a> \u2013 have publicly released their policies, providing important insight into key trends across jurisdictions. These policies span states that already have existing state-wide policies and those that do not. Regardless of state-level policy, however, additional county and city-level guidance can help clarify the roles and obligations of local agencies.<\/p>\n\n\n\n<p><strong>Trends in County and City AI Policies and Guidance<\/strong><\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li><em>Draw from federal, state, and other local AI governance guidance<\/em><\/li>\n<\/ol>\n\n\n\n<p>At both the county and city level, governments are building off of other local, state, and federal guidance as a starting point, mostly through borrowing language. Some of the most commonly cited or used resources are <a href=\"https:\/\/www.boston.gov\/sites\/default\/files\/file\/2023\/05\/Guidelines-for-Using-Generative-AI-2023.pdf\">Boston\u2019s AI guidelines<\/a>, <a href=\"https:\/\/www.sanjoseca.gov\/your-government\/departments-offices\/information-technology\/itd-generative-ai-guideline\">San Jose\u2019s AI guidelines<\/a>, the <a href=\"https:\/\/www.nist.gov\/itl\/ai-risk-management-framework\">National Institute for Standards and Technology\u2019s (NIST\u2019s)&nbsp; AI Risk Management Framework<\/a>, and the <a href=\"https:\/\/www.federalregister.gov\/documents\/2023\/11\/01\/2023-24283\/safe-secure-and-trustworthy-development-and-use-of-artificial-intelligence\">Biden Administration\u2019s since-rescinded AI Executive Order<\/a> and <a href=\"https:\/\/bidenwhitehouse.archives.gov\/ostp\/ai-bill-of-rights\/\">AI Bill of Rights<\/a>.&nbsp;<\/p>\n\n\n\n<p>For example, the <a href=\"https:\/\/cms7files1.revize.com\/birmingham\/Document_Center\/Department\/Generative%20AI%20guidlines.pdf\">City of Birmingham, Ala.\u2019s generative AI guidelines<\/a> acknowledge that the authors drew inspiration from the City of Boston\u2019s guidelines. Likewise, <a href=\"https:\/\/documents.miamidade.gov\/mayor\/memos\/03.22.24-Report-on-Miami-Dade-Countys-Policy-on-Artificial-Intelligence-Directive-No-231203.pdf\">Miami-Dade County\u2019s report on AI policies and guidelines<\/a> draws from several other government resources, including the cities of Boston, San Jose, and Seattle, the state of Kansas, the White House, and NIST.<\/p>\n\n\n\n<ol start=\"2\" class=\"wp-block-list\">\n<li><em>Emphasize that use of AI should align with existing legal obligations<\/em><\/li>\n<\/ol>\n\n\n\n<p>At least 15 of the guidance documents that we analyzed explicitly call out the necessity for public agencies to ensure their use of AI tools adheres to existing laws relating to topics such as cybersecurity, public records, and privacy. On the city front, <a href=\"https:\/\/www.sanjoseca.gov\/your-government\/departments-offices\/information-technology\/itd-generative-ai-guideline\">San Jose, Calif.\u2019s AI guidelines<\/a> state that \u201cusers will need to comply with the California Public Records Act and other applicable public records laws\u201d for all city uses of generative AI, and <a href=\"https:\/\/www.documentcloud.org\/documents\/23859134-ethical_artifical_intelligence_policydocx\/?mode=document#document\/p2\">Tempe, Ariz.<\/a> mentions that all city employees must \u201ccomply with applicable laws, standards and regulations related to AI and data protection.\u201d Several counties similarly affirm public agencies\u2019 obligations to use AI systems in compliance with existing laws. <a href=\"https:\/\/www.nashville.gov\/sites\/default\/files\/2024-04\/ISM-20-Artificial-Intelligence-and-Generative-Artificial-Intelligence-Use.pdf?ct=1713207273\">Nashville and Davidson County&#8217;s<\/a> guidance states that \u201call AI and GenAI use shall comply with relevant data privacy laws and shall not violate any intellectual property use,\u201d and <a href=\"https:\/\/file.lacounty.gov\/SDSInter\/bos\/bc\/1167064_2024-9-12DevelopmentofLACounty_sArtificialIntelligencePolicyFramework_ItemNo.9_AgendaofMay7_2024_.pdf\">Los Angeles County&#8217;s<\/a> technology directive affirms that AI systems must be used in \u201cadherence to relevant laws and regulations.\u201d<\/p>\n\n\n\n<p>Some cities and counties take an additional step by creating access controls to prevent unauthorized use and disclosure of personal information. <a href=\"https:\/\/www2.santacruzcountyca.gov\/personnel\/vpolandproc\/ProceduresManual\/PM6476.pdf\">Santa Cruz County<\/a>, for example, prohibits the use of AI systems without authorization, and <a href=\"https:\/\/www.nyc.gov\/assets\/oti\/downloads\/pdf\/about\/preliminary-use-guidance-general-artificial-intelligence.pdf\">New York City<\/a> specifies that employees can only use tools that have been \u201capproved by responsible agency personnel\u201d and are \u201cauthorized by agency-specific and citywide requirements.\u201d Likewise, <a href=\"https:\/\/www.hainesalaska.gov\/media\/75666\">Haines Borough<\/a> requires employees to have specific authorization to use any AI systems that handle sensitive information.<\/p>\n\n\n\n<ol start=\"3\" class=\"wp-block-list\">\n<li><em>Identify and prioritize mitigation of risks, like bias, reliability, privacy, and security<\/em><\/li>\n<\/ol>\n\n\n\n<p>Cities and counties commonly recognize the following three main risks of using AI:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Perpetuating bias: <\/strong>About 12 of the guidelines mention the potential for AI tools to produce biased outputs. One example of this at the city level is <a href=\"https:\/\/lebanonnh.gov\/1737\/AI-Policy\">Lebanon, NH\u2019s AI policy<\/a>, which specifies the different types of bias issues that can show up with AI \u2013 biased training data, sampling bias, and stereotyping\/societal biases \u2013 and expresses that \u201cany biases that are identified must be addressed and corrective actions should be taken.\u201d <a href=\"https:\/\/itd.alamedacountyca.gov\/generative-ai-policy\/\">Alameda County, Calif.<\/a>, similarly highlights these issues, stating that \u201cGenAI models can inadvertently amplify biases in the data the models are trained with or that users provide AI.\u201d<\/li>\n\n\n\n<li><strong>Accuracy and unreliable outputs: <\/strong>At least 15 cities and counties<strong> <\/strong>discuss the unreliability of AI tools (due to issues such as hallucination), often acknowledging this through requiring employees to double-check or verify outputs before using AI-generated information in their work. For instance, <a href=\"https:\/\/www.baltimorecity.gov\/sites\/default\/files\/Generative%20AI%20Executive%20Order%20-%20Signed.pdf\">Baltimore, Md.\u2019s generative AI executive order<\/a> prohibits city employees from using generative AI outputs without fact-checking and refining the content, especially if used for decision-making or in public communications. Guidance published by <a href=\"https:\/\/www.washingtoncountyor.gov\/home\/documents\/artificial-intelligence-best-practice\/download?inline\">Washington County, Oreg<\/a>. directs county employees to \u201cfact check and review all content generated by AI,\u201d noting that \u201cwhile Generative AI can rapidly produce clear prose, the information and content might be inaccurate, outdated, or entirely fictional.\u201d&nbsp;<\/li>\n\n\n\n<li><strong>Privacy and security concerns: <\/strong>Roughly 18 city and county AI guidelines and policies state the importance of protecting privacy and security. These policies emphasize the potential privacy- and security-related harms if employees, for example, input personally identifiable or other sensitive information into an AI tool. The <a href=\"https:\/\/www.sf.gov\/reports--december-2023--san-francisco-generative-ai-guidelines\">City of San Francisco, Calif.<\/a>, explains that a risk of using generative AI is \u201cexposing non-public data as part of a training data set\u201d and recommends that employees do not enter information that should not be public into non-enterprise generative AI tools. <a href=\"https:\/\/www.longbeach.gov\/smartcity\/projects\/generative-ai-guidance\/\">Long Beach, Calif.<\/a>, also recommends that city employees opt out of generative AI tools\u2019 data collection and sharing whenever possible, and even provides a step-by-step guide on how to do so on ChatGPT. <a href=\"https:\/\/sonomacounty.ca.gov\/sonoma-county-adopts-artificial-intelligence-policy\">Sonoma County, Calif.<\/a>, notes that \u201cthere can be risks in using this technology, including\u2026 security and privacy concerns with inputting proprietary or confidential information about an employee, client, operations, etc. when interacting with the AI technology.\u201d<\/li>\n<\/ul>\n\n\n\n<ol start=\"4\" class=\"wp-block-list\">\n<li><em>Prioritize public transparency of AI uses<\/em><\/li>\n<\/ol>\n\n\n\n<p>Roughly 17 city and county guidelines and policies encourage, or even require, employees to publicly disclose use of AI tools. The <a href=\"https:\/\/www.cityofboise.org\/departments\/human-resources\/employee-policy-handbook\/section-400-general-provisions\/430q-city-use-of-artificial-intelligence-ai-regulation\/\">City of Boise, Idaho<\/a>, states that \u201cdisclosure builds trust through transparency,\u201d encouraging employees to cite their AI usage in all cases, but especially in significant public communications or other important purposes. <a href=\"https:\/\/seattle.gov\/documents\/Departments\/SeattleIT\/City-of-Seattle-Generative-Artificial-Intelligence-Policy.pdf\">Seattle, Wash.\u2019s generative AI policy<\/a> goes even further on the principle of transparency, and commits to making their documentation related to city use of AI systems publicly available. <a href=\"https:\/\/www2.santacruzcountyca.gov\/personnel\/vpolandproc\/ProceduresManual\/PM6476.pdf\">Santa Cruz County, Calif.<\/a>, for instance, requires employees to include a notice \u201cwhen Generative AI contributed substantially to the development of a work product\u201d and that \u201cindicate(s) the product and version used.\u201d<\/p>\n\n\n\n<ol start=\"5\" class=\"wp-block-list\">\n<li><em>Advance accountability and human oversight in decision-making that incorporates AI<\/em><\/li>\n<\/ol>\n\n\n\n<p>About 14 of the guidance documents stress that responsibility ultimately falls on city and county employees, either when using AI outputs or making decisions using AI tools. Some city governments even take this a step further by including enforcement mechanisms for non-compliance with their AI policies, including employee termination. One example is seen in guidance issued by <a href=\"https:\/\/itd.alamedacountyca.gov\/generative-ai-policy\/\">Alameda County, Calif.<\/a>, which directs all employees to \u201cthoroughly review and fact check all AI-generated content,\u201d emphasizing that \u201cyou are responsible for what you create with GenAI assistance.\u201d Another example is the <a href=\"https:\/\/lebanonnh.gov\/1737\/AI-Policy\">City of Lebanon, NH<\/a>, stating that employee non-compliance with the guidelines \u201cmay result in disciplinary action or restriction of access, and possibly even termination of employment.\u201d<\/p>\n\n\n\n<p><strong>Conclusion<\/strong><\/p>\n\n\n\n<p>Regardless of the level of government, responsible AI adoption should follow the principles of transparency, accountability, and equity to ensure that AI tools are used to serve constituents in ways that improve their lives. Taking steps to responsibly implement and oversee AI will not only help local governments use these tools effectively but will also build public trust.<\/p>\n\n\n\n<p>Similar to what state <a href=\"https:\/\/cdt.org\/insights\/state-government-use-of-ai-the-opportunities-of-executive-action-in-2025\/\">governors<\/a> and <a href=\"https:\/\/cdt.org\/insights\/regulating-public-sector-ai-emerging-trends-in-state-legislation\/\">lawmakers<\/a> can do to advance public sector AI regulation, cities and counties should consider these components of AI governance:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong><em>Promote transparency and disclosure by documenting AI uses <\/em><\/strong>through public-facing use case inventories, such as those maintained by <a href=\"https:\/\/www.nyc.gov\/assets\/oti\/downloads\/pdf\/reports\/2023-algorithmic-tools-reporting-updated.pdf\">New York, NY<\/a> and <a href=\"https:\/\/www.sanjoseca.gov\/your-government\/departments-offices\/information-technology\/digital-privacy\/ai-reviews-algorithm-register#register\">San Jose, Calif.<\/a>, and direct notices to individuals impacted by AI systems.<\/li>\n\n\n\n<li><strong><em>Implement substantive risk management practices for high-risk uses<\/em><\/strong> by requiring pre- and post-deployment testing and ongoing monitoring of systems with a significant impact on individuals\u2019 rights, safety, and liberties. While specific risk management practices are not included in many local guidance documents, a growing number of <a href=\"https:\/\/cdt.org\/insights\/regulating-public-sector-ai-emerging-trends-in-state-legislation\/\">state governments<\/a> have issued requirements for measures like AI impact assessments, and these can serve as valuable resources for city and county governments to draw from.<\/li>\n\n\n\n<li><strong><em>Ensure proper human oversight <\/em><\/strong>by training government employees about the risks, limitations, and appropriate uses of AI, and empowering employees to intervene when potential harms are identified.<\/li>\n\n\n\n<li><strong><em>Incorporate community engagement<\/em><\/strong> by seeking direct public feedback about the design and implementation of AI. Some cities, like <a href=\"https:\/\/www.longbeach.gov\/smartcity\/guiding-principles\/community-engagement\/\">Long Beach, Calif.<\/a>, have already developed innovative approaches to engaging community members around the use of technology by public agencies.<\/li>\n<\/ul>\n","protected":false},"featured_media":86101,"template":"","content_type":[7251],"area-of-focus":[10221,834,10204],"class_list":["post-108358","insight","type-insight","status-publish","has-post-thumbnail","hentry","content_type-blog","area-of-focus-ai-in-public-benefits","area-of-focus-ai-policy-governance","area-of-focus-equity-in-civic-tech"],"acf":[],"_links":{"self":[{"href":"https:\/\/cdt.org\/wp-json\/wp\/v2\/insight\/108358","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cdt.org\/wp-json\/wp\/v2\/insight"}],"about":[{"href":"https:\/\/cdt.org\/wp-json\/wp\/v2\/types\/insight"}],"version-history":[{"count":2,"href":"https:\/\/cdt.org\/wp-json\/wp\/v2\/insight\/108358\/revisions"}],"predecessor-version":[{"id":108361,"href":"https:\/\/cdt.org\/wp-json\/wp\/v2\/insight\/108358\/revisions\/108361"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cdt.org\/wp-json\/wp\/v2\/media\/86101"}],"wp:attachment":[{"href":"https:\/\/cdt.org\/wp-json\/wp\/v2\/media?parent=108358"}],"wp:term":[{"taxonomy":"content_type","embeddable":true,"href":"https:\/\/cdt.org\/wp-json\/wp\/v2\/content_type?post=108358"},{"taxonomy":"area-of-focus","embeddable":true,"href":"https:\/\/cdt.org\/wp-json\/wp\/v2\/area-of-focus?post=108358"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}