About the claim
We believe that Grindr may have breached data protection laws. In 2021, the Norwegian Data Protection Authority (NDPA) imposed a fine of $6m on Grindr. The NDPA decided that Grindr’s data privacy practices violated the General Data Protection Regulation (GDPR).
In July 2022, the UK Information Commissioner’s Office issued Grindr with a reprimand after finding that it had infringed the UK GDPR.
Grindr appears to have shared users’ personal data and sensitive data with third party companies without seeking adequate consent. Some of the data shared may have included highly sensitive personal information such as HIV status, Last Tested Date and whether users used medication such as PrEP.
In the press
Our claim against Grindr has been featured in many publications such as BBC News, Sky News, The Guardian, The Times, and many more. You can see our press coverage here.