data report card

Data Report Card · Grindr

Grindr Data Report Card

Dating app · Grindr LLC (West Hollywood)
§ Enforcement action
Data
Practices
2Access1Portability1Friction2Deletion1Sells1Trains AI
=
C
§
6/12
Agent
Readiness
2Access 1Portability 0API access
=
C
3/6

Agent Readiness is a derived signal — a synthesis of two existing cells (Access, Portability) plus one sourced factor (API access), not an independently measured grade. API access scale: Best (2) consumer-grantable API · Moderate (1) partial / encumbered · Restrictive (0) manual export only. What is Agent Readiness?

§ This grade reflects a 2-point deduction (severity 1) for a verified regulatory action: 8/12 on data practices − 2 = 6/12C. The enforcement record is below.

Help me make a request →
Reviewed Jun 2026  ·  some cells re-verified Aug 2026 · policies are checked weekly for changes  ·  stated — every cell is read from Grindr's published policy; none has been tested (run by us) yet.
2Accessstated
Self-serve: the policy grants “a machine-readable copy of your personal information (including the categories of such personal information)”, exercised by logging in, by out-of-account web form, or by emailing privacy@grindr.com — and Grindr publishes an annual CCPA metrics report of request handling.
Grindr Privacy Policy — Access & Portability · accessed Aug 2026 ↗
1Portabilitystated
Settings → Download My Data delivers a two-part ZIP (chats sent, images, profile, blocks, favorites) with an HTML data dictionary; the server portion “should not take longer than 15-30 days”. The formats of the contents are not stated, and received messages are excluded — the single-format/partial level.
Grindr Help Center — Accessing your personal data · accessed Aug 2026 ↗
1Frictionstated
Download, deletion and the Consent Preference Center are self-serve, a “Do Not Sell or Share” footer link exists, and GPC is honored “depending on your jurisdiction” — but Do Not Track is expressly not recognized, no DSAR response deadline is stated, and out-of-account requests carry extra verification.
Grindr Privacy Policy — exercising your rights · accessed Aug 2026 ↗
2Deletionstated
Self-serve permanent deletion, and the policy states a purge window: “your personal information will generally be deleted within 28 days”. A bounded, disclosed tail remains — device identifiers and limited logs “for a period of up to two years following account deletion”.
Grindr Privacy Policy — deletion & retention · accessed Aug 2026 ↗
1Sells / sharesstated
The policy admits sale/share as defined by law with a working opt-out (footer link, in-app Consent Preference Center, GPC). Grindr’s own ad explainer bounds what flows: “Grindr does not share profile information or precise location information with advertisers– full stop” — ad partners get the mobile advertising ID, IP address and device basics.
Grindr — How your data informs ads on Grindr · accessed Aug 2026 ↗
1Trains AIstated
AI training is on by default for “limited data” (age, taps, display name, profile photos) with an in-app opt-out toggle; special-category data (chat content, precise location, gender) trains only on opt-in consent; “We do not use HIV status, Last Tested Date … and vaccination status for AI training or AI-powered features.”
Grindr — Your Privacy: Artificial Intelligence at Grindr · accessed Aug 2026 ↗
§Enforcement action — deducts 2 points (severity 1); data practices without the penalty scored C (8/12)verified
Norway's Datatilsynet fined Grindr NOK 65 million (≈ €6.5M) in December 2021 for disclosing GPS location, advertising ID and the fact of Grindr use — treated as revealing sexual orientation — to advertising partners without valid consent; the Borgarting Court of Appeal upheld the fine on final appeal in October 2025.
Norwegian Data Protection Authority (Datatilsynet) · Dec 2021, final Oct 2025 ↗
0API access — feeds Agent Readiness, not the /12stated
Grindr publishes no developer platform or consumer OAuth API, and its help center steers users away from third-party data-access apps — the programmatic self-data path is absent; export is the in-app Download My Data tool.
Grindr Help Center — Using Third-Party Apps to Request Access to your Personal Data · accessed Aug 2026 ↗
Graded 2026-08-31 against the Grindr Privacy Policy (last updated Jul 6, 2026) at trust.grindr.com and Grindr's help-center articles. Consumer surface = the Grindr app, web app and website, operated by Grindr LLC (West Hollywood, CA). Access and export are genuinely self-serve (in-app Download My Data plus out-of-account web forms and privacy@grindr.com), and Grindr publishes an annual CCPA privacy-request metrics report. AI training is unusually granular: special-category data trains only on opt-in consent, “limited data” (age, taps, display name, photos) trains by default with an opt-out toggle, and HIV status, testing data and vaccination status are excluded from AI training entirely. The enforcement lane carries Norway's Datatilsynet fine for ad-partner disclosures without valid consent, final on appeal in October 2025 — it deducts from the grade separately and does not score any cell. All cells stated, not tested.

Events

Breaches, policy changes, and export-format changes we’ve recorded at Grindr — other parties’ actions, alongside the enforcement record above. An event never changes a grade by itself. All events →

No events on record for Grindr.

Grade history

Every change to this company’s grade since it was first published, and why. All grade changes →

No changes since this grade was first published in Jun 2026.

How to request your data from Grindr

  1. Go to https://trust.grindr.com/en-US/privacy — Grindr's data-request entry point.
  2. In-app: Settings → Download My Data (two-part ZIP) and Delete Profile; out-of-account web forms; privacy@grindr.com.
  3. Expected wait: export server portion “should not take longer than 15-30 days”; deletion “generally … within 28 days”; no DSAR response deadline stated — Grindr's stated turnaround (we haven't independently timed a request yet).
  4. No self-serve option, or want a formal request? Contact Grindr — Privacy Office: mailto:privacy@grindr.com.

These steps reflect Grindr's documented process as of Jun 2026. The wait time is the company's stated figure, not yet independently measured by us.