explain more clearly and accessibly how personal data is accessed
and used. While these are issues that civil society organizations
should raise with policymakers, users who rely on AI services in the
meantime must also be aware of these risks and reflect them in
their own security policies and usage practices.
Seventh, it is advisable to keep work accounts and personal
accounts separate. If work-related tasks are carried out using
personal accounts, it may be difficult to trace responsibility or
investigate issues should problems arise later. Of course, this
approach may impose additional financial costs on the organization,
as it would require providing individual accounts for staff members.
4) Copyright
The use of generative AI entails copyright infringement risks in multiple
respects. At the societal level, there is ongoing debate over whether
AI companies may use copyrighted works as training data without
the consent of rights holders, but this is largely beyond the control of
individual users. Nevertheless, because personal data or copyrighted
works used in training may be memorized by the model and reflected in
its outputs, users may face copyright liability—even without intent—if
generative AI produces outputs that are substantially similar to
copyrighted works used in training.
① Care should be taken, as generative AI outputs—particularly images
or audio—may unintentionally infringe copyright. Before use, users
should check for the existence of similar works (e.g. through image
Generative AI Guide for Civil Society