Banks

NBT Bancorp Inc

NBTB · NY · Mid-size bank ($1B to $50B)
Total assets of FDIC-insured bank subsidiaries: $15.9B at the end of 2025

Filings on the SEC website · This bank on Bankgraph

In short. In its 2025 annual report, NBT Bancorp Inc mentions AI in 6 passages. It lists AI as a risk and explains how AI is controlled. Compared with banks of its size, it gives more detail than most.

Compare with peers

In the 2025 annual reportThe yearly report a listed company files with the SEC, called a 10-K. It describes the business, its risks and its results.

Mentions AI
Yes
6 passages
Highest detail levelHow specific a passage is about AI at this bank. General: could be in any bank's report. Names an area: says where AI is used or how it is controlled. Concrete example: names a tool or vendor, gives a number, a date or a result.
Names an area
What it says
Standard wording or passing mention; Sees AI as a risk; General statement about AI
Kinds of AI named
Generative AI, Machine learning
How AI is controlled
Model risk management, Policy or framework, Vendor oversight

AI in its annual reports over time

What this shows
How many passages about AI each annual report contains, 2022 to 2025, by what they say.
What it means
0 passages in 2022, 6 passages in 2025.
How to read it
Each bar is a report year, split by what the passages say. Hover or tap a bar for the count.
Where it comes from
Banks' annual reports (10-K) filed with the SEC, up to 6 Oct 2026. How we did this
Passages about AI in NBT Bancorp Inc's annual reports, by report year.
Show as a table
Report yearUsing or planning AIExplains how AI is controlledSees AI as a riskOther mentions
2022
2022
2022
2022
2023
2023
2023
2023
2024
2024
2024
2024
2025
2025
2025
2025

Compared with banks of its size

What this shows
This bank's 2025 annual report next to all 221 banks of its size ($1B to $50B).
What it means
Its most specific passage is "Names an area"; for banks of its size the typical level is "General".
How to read it
Yes or no for this bank; the share of banks of the same size for comparison.
Where it comes from
Banks' annual reports (10-K) filed with the SEC, up to 6 Oct 2026. How we did this
In the 2025 reportThis bankBanks of its size
Using AI nowNo26 of 221 (12%)
Explains how AI is controlledYes55 of 221 (25%)
Sees AI as a riskYes184 of 221 (83%)
Mentions generative AIYes112 of 221 (51%)
Mentions AI agentsNo18 of 221 (8%)

What changed from 2024

2 passages new in the 2025 report, 0 passages from the 2024 report no longer there. The most specific passage is more detailed than last year.

Every passage about AI

What this shows
All 10 passages about AI in this bank's annual reports, quarterly reports and earnings materials since 2023, newest first.
What it means
0 passages say the bank is using AI now.
How to read it
Highlighted words are the terms that matched. Labels show what each passage says. Follow the link to read it in the filing.
Where it comes from
Banks' annual reports (10-K), quarterly reports (10-Q) and earnings materials (8-K) filed with the SEC. How we did this

Annual report, report year 2025 filed 27 Feb 2026

We depend upon data processing, communication systems, and information exchange on a variety of platforms and networks and over the internet to conduct business operations. In addition, we rely on the services of a variety of vendors to meet our data processing and communication needs. Although we require third party providers to maintain certain levels of security, such providers remain vulnerable to breaches, security incidents, system unavailability or other malicious attacks that could compromise sensitive information. Further, new technologies such as AI may be more capable of evading safeguard measures. The risk of experiencing security incidents and disruptions, particularly through cyber-attacks or cyber intrusions, has generally increased as the number, intensity and sophistication of attempted attacks and intrusions by organized crime, hackers, terrorists, nation-states, activists and other external parties has increased. These security incidents may result in disruption of our operations; material harm to our financial condition, cash flows and the market price of our common stock; misappropriation of assets; compromise or corruption of confidential information; liability for information or assets stolen during the incident; remediation costs; increased cybersecurity and insurance costs; regulatory enforcement; litigation; and damage to our stakeholder and customer relationships.
Sees AI as a riskDetail: GeneralSame as last year
The financial services industry is continually undergoing rapid technological change with frequent introductions of new technology-driven products and services (including those related to or involving AI, machine learning, blockchain and other technologies). The effective use of technology increases efficiency and enables financial institutions to serve customers better and to reduce costs. The Company’s future success depends, in part, upon its ability to address the needs of its customers by using technology to provide products and services that will satisfy customer demands, as well as to create additional efficiencies in the Company’s operations. Many of the Company’s competitors have substantially greater resources to invest in technological improvements. The Company may not be able to effectively implement new technology-driven products and services or be successful in marketing these products and services to its customers. Failure to successfully keep pace with technological changes affecting the financial services industry could have a material adverse impact on the Company’s business and, in turn, the Company’s financial condition and results of operations.
Sees AI as a riskDetail: GeneralMachine learningSame as last year

Similar wording appears in 14 other banks' reports.

The development and use of AI exposes us to risks that may adversely impact our business.
Sees AI as a riskDetail: GeneralSame as last year
We or our third-party providers may develop or incorporate AI technology in certain business processes, services, or products. The development and use of AI poses a number of risks and challenges to our business. The legal and regulatory environment relating to AI is uncertain and rapidly evolving, and we may be subject to increasing regulations related to our use of these technologies, including regulations related to privacy, data security, and intellectual property rights, which could expose us to legal risks. AI models, particularly generative AI models, may produce incorrect, biased, or misleading results, expose confidential information, or infringe on intellectual property rights. Further, we may rely on AI models developed by third parties, and, to that extent, would be subject to additional risks, including limited oversight of how these models are developed and trained and potential exposure to unauthorized data usage. If our AI models, or those developed by third parties, produce inaccurate or controversial results, we could face legal liability, regulatory scrutiny, reputational harm, or operational inefficiencies. These risks could negatively impact our business, financial results, and the perception of our security measures. The Company’s use of AI currently varies across platforms, with certain third party systems incorporating AI capabilities into routine business operations. As our adoption and internal development of AI enabled tools continues to evolve, we evaluate these technologies through our established Solutions Development Lifecycle (SDLC), which includes model validation and other risk management controls.
Sees AI as a riskDetail: Names an areaGenerative AIOperations
The economic outlook for 2026 is generally positive with GDP growth in 2026 expected to be in the 2%-2.5% range driven by AI investment, strong consumer spending and potential tailwinds from loosened monetary policy. Continued heavy investment in AI and related infrastructure is expected to be a primary driver of business investment and overall growth. Despite previous headwinds, consumer spending remains strong, supported by a healthy labor market.
General statement about AIDetail: GeneralNew this year

Annual report, report year 2024 filed 28 Feb 2025

We depend upon data processing, communication systems, and information exchange on a variety of platforms and networks and over the internet to conduct business operations. In addition, we rely on the services of a variety of vendors to meet our data processing and communication needs. Although we require third party providers to maintain certain levels of security, such providers remain vulnerable to breaches, security incidents, system unavailability or other malicious attacks that could compromise sensitive information. Further, new technologies such as artificial intelligence (“AI”) may be more capable at evading safeguard measures. The risk of experiencing security incidents and disruptions, particularly through cyber-attacks or cyber intrusions, has generally increased as the number, intensity and sophistication of attempted attacks and intrusions by organized crime, hackers, terrorists, nation-states, activists and other external parties has increased. These security incidents may result in disruption of our operations; material harm to our financial condition, cash flows and the market price of our common stock; misappropriation of assets; compromise or corruption of confidential information; liability for information or assets stolen during the incident; remediation costs; increased cybersecurity and insurance costs; regulatory enforcement; litigation; and damage to our stakeholder and customer relationships.
Sees AI as a riskDetail: GeneralNew this year
The financial services industry is continually undergoing rapid technological change with frequent introductions of new technology-driven products and services (including those related to or involving AI, machine learning, blockchain and other technologies). The effective use of technology increases efficiency and enables financial institutions to serve customers better and to reduce costs. The Company’s future success depends, in part, upon its ability to address the needs of its customers by using technology to provide products and services that will satisfy customer demands, as well as to create additional efficiencies in the Company’s operations. Many of the Company’s competitors have substantially greater resources to invest in technological improvements. The Company may not be able to effectively implement new technology-driven products and services or be successful in marketing these products and services to its customers. Failure to successfully keep pace with technological changes affecting the financial services industry could have a material adverse impact on the Company’s business and, in turn, the Company’s financial condition and results of operations.
Sees AI as a riskDetail: GeneralMachine learningNew this year

Similar wording appears in 12 other banks' reports.

The development and use of AI exposes us to risks that may adversely impact our business.
Sees AI as a riskDetail: GeneralNew this year
We or our third-party providers may develop or incorporate AI technology in certain business processes, services, or products. The development and use of AI poses a number of risks and challenges to our business. The legal and regulatory environment relating to AI is uncertain and rapidly evolving, and we may be subject to increasing regulations related to our use of these technologies, including regulations related to privacy, data security, and intellectual property rights, which could expose us to legal risks. AI models, particularly generative AI models, may produce incorrect, biased, or misleading results, expose confidential information, or infringe on intellectual property rights. Further, we may rely on AI models developed by third parties, and, to that extent, would be subject to additional risks, including limited oversight of how these models are developed and trained and potential exposure to unauthorized data usage. If our AI models, or those developed by third parties, produce inaccurate or controversial results, we could face legal liability, regulatory scrutiny, reputational harm, or operational inefficiencies. These risks could negatively impact our business, financial results, and the perception of our security measures.
Sees AI as a riskDetail: GeneralGenerative AINew this year