Grindr’s Privacy Problem: When a Dating App Becomes a Data Broker
Grindr’s data-sharing problem is the clash between a queer dating app’s promise of connection and safety and its routine collection, profiling, and sharing of users’ personal data with advertisers and AI systems by default. In a space where sexuality, gender identity, and even HIV status are in play, that default is not a small technical detail—it is a structural risk baked into how the app works.
Grindr is the world’s largest social networking app for gay, bi, trans, and queer people, and it has been repeatedly misused by “bad actors” seeking to target users for harm. At the same time, privacy advocates have documented that Grindr has mishandled sensitive data and shared users’ HIV status and precise location with advertisers without valid consent, leading to reprimands and fines in several countries. The result is a dating app privacy problem with life-altering stakes: data revealing someone’s sexuality or HIV status can be used for harassment, discrimination, arrest, or even violence.

What Grindr Collects and Who It Shares With
Grindr’s personal data collection is extensive, and sharing is the default, not the exception. By default, the app appears to share data with numerous advertising and tracking companies, exposing users’ information to a vast ad-tech ecosystem. Using a privacy research tool, investigators saw Grindr contact 20 third-party tracking domains during only 15 minutes of app activity. Once data enters that system, it can be aggregated, resold, and fused with other sources to build detailed profiles of queer users.
The danger is not theoretical. Between about 2017 and 2020, a location data broker collected the precise movements of millions of Grindr users from advertising networks and made them available for sale. Data from Grindr and other gay dating apps was later sold and used to out a gay priest without his consent. Grindr says it no longer shares precise location or profile information with advertisers, but it acknowledges sharing other personal data, including mobile advertising identifiers (MAIDs), which are persistent device IDs that can be tied back to real identities. According to Grindr’s own policy, companies receiving MAIDs know they come from Grindr, which can expose a user’s sexuality to the wider advertising and data broker ecosystem.
Safety vs. Surveillance: An App Caught in the Middle
Grindr positions itself as a guardian of LGBTQ+ app safety, yet it runs a business that depends on behavioral advertising and AI-driven personalization. Executives admit that “bad actors” use the platform and that users can be put at risk. Police have even identified Grindr as a main app used to facilitate hate crimes, with attackers luring queer people to violent assaults. In response, Grindr says its highest priority is user safety, that it updates features to reduce harassment and exploitation, and that it actively works with police, investing in tools, detection, and community partnerships to reduce off-platform harm.
Yet this safety narrative sits uncomfortably next to a history of data misuse. Grindr has been caught sharing HIV status and precise location with advertisers without valid consent. A former Chief Privacy Officer has even sued, claiming the company fired him for warning that Grindr was prioritizing “profit over privacy”. That allegation captures the core tension: the same data that could help improve moderation and safety also fuels targeted advertising and AI features, and the company has not resolved that conflict in favor of users. As one privacy group bluntly argues, the ability to opt out is not an acceptable substitute for opt-in consent when the risks for LGBTQ+ users are so high.

AI, Defaults, and Why Opt-Out Is Not Enough
Grindr is racing to become an “AI-first” business, and that has serious privacy implications. New AI features include a wingman chatbot, AI-based profile recommendations based on inferred “type,” summaries of past interactions, and AI-generated insights about other profiles such as responsiveness and typical online hours. By default, Grindr uses users’ personal data to train the AI models behind these features, enrolling everyone into AI training unless they dig through settings to opt out. The company says it does not use sensitive health data for AI training and requires opt-in for “special-category” data like chat content and precise location, but it automatically uses other private information, including profile photos, age, taps, and display names.
This is not a niche concern; defaults matter, and studies show most people never change them. AI systems trained on personal data can retain, reproduce, or leak that data in unexpected ways, and researchers have already managed to extract training data from large AI systems. Grindr also enables AI-powered features by default and allows both special-category and other personal data to be processed for those features. Even users who never pay for premium AI tools can have their data used to power AI features for others. Privacy advocates are therefore calling for privacy-by-default: no behavioral advertising without opt-in, and no AI training on personal data without explicit consent. Their message is blunt: “Grindr must immediately stop prioritizing profits over users’ safety”.

How to Push Back: Taking Control of Your Data and Demanding Better
Grindr is for adults only, and users must confirm they are over 18 to create an account. Once inside, they are dropped into an environment where data sharing and AI processing are on by default. The app currently allows users to opt out of behavioral advertising, but that protection is not enabled automatically except in some unspecified regions. Users who want to limit exposure must work through several layers of settings to stop their personal details being used for AI training. Grindr notifies users that their information may be used to train AI and says they can opt out on a separate settings page.
Privacy advocates argue this is backwards. For a platform whose users face unique risks if outed, privacy should be the default, not an advanced option. Dating app privacy is not a cosmetic feature for queer communities; it is foundational to safety, mental health, and even physical survival. Grindr ended some of its worst data-sharing practices after they were exposed, and it now says it no longer shares precise location or profile information with advertisers while still sharing mobile advertising identifiers. But that is not enough. Until Grindr shifts from opt-out to opt-in for both ads and AI, the app will remain trapped in an unresolved tension: monetization versus protection. Users can reduce some risks through settings, but only Grindr can decide to stop treating queer intimacy as just another data source to sell.






