Hacker News new | past | comments | ask | show | jobs | submit login

I’m on the security team at Grammarly, and our CISO addressed this here on Mastodon: https://infosec.exchange/@suha/110860810624160582. Copying his response below for viz:

When it comes to our genAI features, we use Microsoft Azure as our LLM provider and don’t allow Azure, or any third party, to use our customers’ data to train their models—this is contractually mandated. For text analyzed by Grammarly to provide revision suggestions (like adjusting tone or making text more concise), we may retain randomly sampled, anonymized, and de-identified data to improve the product. This data is disassociated from user accounts and ONLY used in aggregate.

We’ve devoted a ton of time and resources to developing methods that ensure the training data is anonymized and de-identified. And any Grammarly user (Free, Premium, Business) can view the data associated with their account by requesting a personal data report from us.

Re: opt-out: When we go through a security review with a business, if requested, that business can completely opt out of Grammarly training on their de-identified and anonymized data—opt-out is not limited to a 500+ license size.

We don’t skimp on security or responsible data practices at Grammarly. We have strict enterprise-grade controls to protect customer data—restricted access, encryption, audit logging, and more. These are backed by industry-standard certifications like SOC 2 (Type 2), HIPAA, and ISO and verified and audited by industry-leading third parties.

More on what we do is at https://grammarly.com/trust.




I’m an individual user. Well, I was. Because you don’t give people like me a path to protect my personal information, not only did I successfully chargeback my yearly subscription, but I made sure to talk to people I evangelized Grammarly and ensure they stop using the app as well.

I really don’t understand why as an individual my privacy is unimportant.


Hey! I'm really sorry to hear this. Regardless of which type of user you are, we aren’t here to misuse your personal information. I work in security and am a Grammarly user. Your privacy, just like mine and any other person using Grammarly, is important. Period.

As I mentioned before, we go to great lengths to ensure that training data can’t be linked to your account or to you personally, and it’s de-identified and randomly sampled. If this doesn’t help, I know our Support team will also assist with the chargeback request.




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: