Models
September 12, 2025

VaultGemma: the world’s most capable differentially private LLM

Google Research and DeepMind release VaultGemma, a 1-billion-parameter open model trained from scratch with differential privacy (DP). It includes new scaling laws and is released on Hugging Face & Kaggle.

VaultGemma is Google Research + DeepMind’s newest language model: a 1-billion-parameter open-weight LLM trained from scratch with rigorous differential privacy. The research includes new “scaling laws for differentially private language models,” showing how performance scales with privacy budget, compute, and data.

Compared to its non-private counterpart (Gemma-3 1B) and older models like GPT-2, VaultGemma loses some ground on benchmarks but is roughly comparable to models from about five years ago.

It comes with formal privacy guarantees (ε ≤ 2.0, δ ≤ 1.1e-10 at sequence level) and strong empirical and theoretical protections. Model weights have been made public via Hugging Face and Kaggle.

#
Google

Read Our Content

See All Blogs
AWS

Day 4 at AWS re:Invent: Experience-Based Acceleration (EBA) partners announced and a big bang close

Deveshi Dabbawala

December 4, 2025
Read more
AWS

Privacy safe synthetic ML data generation with AWS Clean Rooms

Sharan Sundar Sankaran

December 3, 2025
Read more