{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,1]],"date-time":"2026-06-01T08:01:28Z","timestamp":1780300888095,"version":"3.54.0"},"publisher-location":"New York, NY, USA","reference-count":51,"publisher":"ACM","license":[{"start":{"date-parts":[[2026,4,12]],"date-time":"2026-04-12T00:00:00Z","timestamp":1775952000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/legalcode"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2026,4,12]]},"DOI":"10.1145\/3786151.3788603","type":"proceedings-article","created":{"date-parts":[[2026,6,1]],"date-time":"2026-06-01T07:01:45Z","timestamp":1780297305000},"page":"28-33","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":0,"title":["Protecting Private Code in IDE Autocomplete using Differential Privacy"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0009-0001-5724-9363","authenticated-orcid":false,"given":"Evgeny","family":"Grigorenko","sequence":"first","affiliation":[{"name":"JetBrains Research, Belgrade, Serbia"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0007-4300-9215","authenticated-orcid":false,"given":"David","family":"Stanojevic","sequence":"additional","affiliation":[{"name":"JetBrains Research, Belgrade, Serbia"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0009-1005-951X","authenticated-orcid":false,"given":"David","family":"Ilic","sequence":"additional","affiliation":[{"name":"JetBrains Research, Belgrade, Serbia"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3499-2402","authenticated-orcid":false,"given":"Egor","family":"Bogomolov","sequence":"additional","affiliation":[{"name":"JetBrains Research, TU Delft, Amsterdam, Netherlands"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0003-6976-3997","authenticated-orcid":false,"given":"Kostadin","family":"Cvejoski","sequence":"additional","affiliation":[{"name":"JetBrains Research, Bonn, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2026,6]]},"reference":[{"key":"e_1_3_3_2_2_2","unstructured":"[n. d.]. Opacus: Train PyTorch models with Differential Privacy. https:\/\/opacus.ai\/. Accessed: October 21 2025."},{"key":"e_1_3_3_2_3_2","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978318"},{"key":"e_1_3_3_2_4_2","doi-asserted-by":"crossref","unstructured":"Kareem Amin Alex Bie Weiwei Kong Alexey Kurakin Natalia Ponomareva Umar Syed Andreas Terzis and Sergei Vassilvitskii. 2024. Private prediction for large-scale synthetic text generation. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2407.12108 (2024).","DOI":"10.18653\/v1\/2024.findings-emnlp.425"},{"key":"e_1_3_3_2_5_2","unstructured":"Rohan Anil Badih Ghazi Vineet Gupta Ravi Kumar and Pasin Manurangsi. 2021. Large-scale differentially private bert. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2108.01624 (2021)."},{"key":"e_1_3_3_2_6_2","unstructured":"Author\u2019s Name. Year of Publication. Introducing Amazon CodeWhisperer the ML-powered coding companion. https:\/\/aws.amazon.com\/blogs\/machine-learning\/introducing-amazon-codewhisperer-the-ml-powered-coding-companion\/. Accessed: October 21 2025."},{"key":"e_1_3_3_2_7_2","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833677"},{"key":"e_1_3_3_2_8_2","doi-asserted-by":"publisher","DOI":"10.1109\/FOCS.2014.56"},{"key":"e_1_3_3_2_9_2","unstructured":"Mohammad Bavarian Heewoo Jun Nikolas Tezak John Schulman Christine McLeavey Jerry Tworek and Mark Chen. 2022. Efficient training of language models to fill in the middle. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2207.14255 (2022)."},{"key":"e_1_3_3_2_10_2","unstructured":"Leonard Berrada Soham De Judy\u00a0Hanwen Shen Jamie Hayes Robert Stanforth David Stutz Pushmeet Kohli Samuel\u00a0L Smith and Borja Balle. 2023. Unlocking accuracy and fairness in differentially private image classification. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2308.10888 (2023)."},{"key":"e_1_3_3_2_11_2","doi-asserted-by":"crossref","unstructured":"Stella Biderman Usvsn Prashanth Lintang Sutawika Hailey Schoelkopf Quentin Anthony Shivanshu Purohit and Edward Raff. 2023. Emergent and predictable memorization in large language models. Advances in Neural Information Processing Systems 36 (2023) 28072\u201328090.","DOI":"10.52202\/075280-1219"},{"key":"e_1_3_3_2_12_2","volume-title":"The Eleventh International Conference on Learning Representations","author":"Carlini Nicholas","year":"2022","unstructured":"Nicholas Carlini, Daphne Ippolito, Matthew Jagielski, Katherine Lee, Florian Tramer, and Chiyuan Zhang. 2022. Quantifying memorization across neural language models. In The Eleventh International Conference on Learning Representations."},{"key":"e_1_3_3_2_13_2","first-page":"2633","volume-title":"30th USENIX security symposium (USENIX Security 21)","author":"Carlini Nicholas","year":"2021","unstructured":"Nicholas Carlini, Florian Tramer, Eric Wallace, Matthew Jagielski, Ariel Herbert-Voss, Katherine Lee, Adam Roberts, Tom Brown, Dawn Song, Ulfar Erlingsson, et\u00a0al. 2021. Extracting training data from large language models. In 30th USENIX security symposium (USENIX Security 21). 2633\u20132650."},{"key":"e_1_3_3_2_14_2","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v39i22.34537"},{"key":"e_1_3_3_2_15_2","doi-asserted-by":"crossref","unstructured":"Haonan Duan Adam Dziedzic Nicolas Papernot and Franziska Boenisch. 2023. Flocks of stochastic parrots: Differentially private prompt learning for large language models. Advances in Neural Information Processing Systems 36 (2023) 76852\u201376871.","DOI":"10.52202\/075280-3358"},{"key":"e_1_3_3_2_16_2","doi-asserted-by":"publisher","DOI":"10.1007\/11787006_1"},{"key":"e_1_3_3_2_17_2","doi-asserted-by":"crossref","unstructured":"Cynthia Dwork Aaron Roth et\u00a0al. 2014. The algorithmic foundations of differential privacy. Foundations and trends\u00ae in theoretical computer science 9 3\u20134 (2014) 211\u2013407.","DOI":"10.1561\/0400000042"},{"key":"e_1_3_3_2_18_2","doi-asserted-by":"publisher","DOI":"10.52202\/079017-4290"},{"key":"e_1_3_3_2_19_2","unstructured":"Sahra Ghalebikesabi Leonard Berrada Sven Gowal Ira Ktena Robert Stanforth Jamie Hayes Soham De Samuel\u00a0L Smith Olivia Wiles and Borja Balle. 2023. Differentially private diffusion models generate useful synthetic images. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2302.13861 (2023)."},{"key":"e_1_3_3_2_20_2","unstructured":"GitGuardian. 2025. Yes GitHub\u2019s Copilot can Leak (Real) Secrets. https:\/\/blog.gitguardian.com\/yes-github-copilot-can-leak-secrets\/. Accessed: October 21 2025."},{"key":"e_1_3_3_2_21_2","unstructured":"GitHub. [n. d.]. GitHub Copilot. https:\/\/copilot.github.com\/. Accessed: October 21 2025."},{"key":"e_1_3_3_2_22_2","unstructured":"Edward\u00a0J Hu Yelong Shen Phillip Wallis Zeyuan Allen-Zhu Yuanzhi Li Shean Wang Lu Wang Weizhu Chen et\u00a0al. 2022. Lora: Low-rank adaptation of large language models. ICLR 1 2 (2022) 3."},{"key":"e_1_3_3_2_23_2","doi-asserted-by":"crossref","unstructured":"Hongsheng Hu Zoran Salcic Lichao Sun Gillian Dobbie Philip\u00a0S Yu and Xuyun Zhang. 2022. Membership inference attacks on machine learning: A survey. ACM Computing Surveys (CSUR) 54 11s (2022) 1\u201337.","DOI":"10.1145\/3523273"},{"key":"e_1_3_3_2_24_2","doi-asserted-by":"crossref","unstructured":"Yizhan Huang Yichen Li Weibin Wu Jianping Zhang and Michael\u00a0R Lyu. 2024. Your code secret belongs to me: Neural code completion tools can memorize hard-coded credentials. Proceedings of the ACM on Software Engineering 1 FSE (2024) 2515\u20132537.","DOI":"10.1145\/3660818"},{"key":"e_1_3_3_2_25_2","unstructured":"JetBrains. [n. d.]. JetBrains AI | Intelligent Coding Assistance AI Solutions and More. https:\/\/www.jetbrains.com\/ai\/. Accessed: October 21 2025."},{"key":"e_1_3_3_2_26_2","unstructured":"Georgios Kaissis Jamie Hayes Alexander Ziller and Daniel Rueckert. 2023. Bounding data reconstruction attacks with the hypothesis testing interpretation of differential privacy. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2307.03928 (2023)."},{"key":"e_1_3_3_2_27_2","unstructured":"Alexey Kurakin Natalia Ponomareva Umar Syed Liam MacDermed and Andreas Terzis. 2023. Harnessing large-language models to generate private synthetic text. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2306.01684 (2023)."},{"key":"e_1_3_3_2_28_2","unstructured":"Xuechen Li Florian Tramer Percy Liang and Tatsunori Hashimoto. 2021. Large language models can be strong differentially private learners. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2110.05679 (2021)."},{"key":"e_1_3_3_2_29_2","unstructured":"Ilya Loshchilov and Frank Hutter. 2017. Decoupled weight decay regularization. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/1711.05101 (2017)."},{"key":"e_1_3_3_2_30_2","doi-asserted-by":"publisher","DOI":"10.1109\/SP46215.2023.10179300"},{"key":"e_1_3_3_2_31_2","first-page":"1509","volume-title":"Proceedings of the 2023 Conference on Empirical Methods in Natural Language Processing","author":"Mattern Johannes","year":"2023","unstructured":"Johannes Mattern, Johannes Le, Martin Fischer, and Kristiana M\u00fcller. 2023. Membership Inference Attacks against Language Models via Neighborhood Comparison. In Proceedings of the 2023 Conference on Empirical Methods in Natural Language Processing. 1509\u20131523."},{"key":"e_1_3_3_2_32_2","unstructured":"Ryan McKenna Yangsibo Huang Amer Sinha Borja Balle Zachary Charles Christopher\u00a0A Choquette-Choo Badih Ghazi George Kaissis Ravi Kumar Ruibo Liu et\u00a0al. 2025. Scaling laws for differentially private language models. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2501.18914 (2025)."},{"key":"e_1_3_3_2_33_2","unstructured":"Microsoft Research. 2024. The Crossroads of Innovation and Privacy: Private Synthetic Data for Generative AI. https:\/\/www.microsoft.com\/en-us\/research\/blog\/the-crossroads-of-innovation-and-privacy-private-synthetic-data-for-generative-ai\/. Accessed: October 21 2025."},{"key":"e_1_3_3_2_34_2","unstructured":"Nikita Pavlichenko Iurii Nazarov Ivan Dolgov Ekaterina Garanina Karol Lasocki Julia Reshetnikova Sergei Boitsov Ivan Bondyrev Dariia Karaeva Maksim Sheptyakov Dmitry Ustalov Artem Mukhin Semyon Proshev Nikita Abramov Olga Kolomyttseva Kseniia Lysaniuk Ilia Zavidnyi Anton Semenkin Vladislav Tankov and Uladzislau Sazanovich. 2025. Mellum-4b-base. https:\/\/huggingface.co\/JetBrains\/Mellum-4b-base. Accessed: October 21 2025."},{"key":"e_1_3_3_2_35_2","unstructured":"Pillar Security. 2025. New Vulnerability in GitHub Copilot and Cursor: How Hackers Can Weaponize Code Agents. https:\/\/www.pillar.security\/blog\/new-vulnerability-in-github-copilot-and-cursor-how-hackers-can-weaponize-code-agents. Accessed: October 21 2025."},{"key":"e_1_3_3_2_36_2","unstructured":"psystarpsy. 2025. Github Copilot Leaks Peoples Filesystem. https:\/\/www.reddit.com\/r\/github\/comments\/1ipb1m5\/github_copilot_leaks_peoples_filesystem\/. Accessed: October 21 2025."},{"key":"e_1_3_3_2_37_2","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2019.23119"},{"key":"e_1_3_3_2_38_2","volume-title":"The Twelfth International Conference on Learning Representations","author":"Shi Weijia","year":"2024","unstructured":"Weijia Shi, Ram Pasunuru, Jungo Kasai, Luke Zettlemoyer, and Yoav Artzi. 2024. Detecting Pretraining Data from Large Language Models. In The Twelfth International Conference on Learning Representations."},{"key":"e_1_3_3_2_39_2","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.41"},{"key":"e_1_3_3_2_40_2","unstructured":"Amer Sinha Thomas Mesnard Ryan McKenna Daogao Liu Christopher\u00a0A. Choquette-Choo Yangsibo Huang Da Yu George Kaissis Zachary Charles Ruibo Liu Lynn Chua Pritish Kamath Pasin Manurangsi Steve He Chiyuan Zhang Badih Ghazi Borja De\u00a0Balle Pigem Prem Eruvbetine Tris Warkentin Armand Joulin Ravi\u00a0KumarAmer Sinha Thomas Mesnard Ryan McKenna Daogao Liu Christopher\u00a0A. Choquette-Choo Yangsibo Huang Da Yu George Kaissis Zachary Charles Ruibo Liu Lynn Chua Pritish Kamath Pasin Manurangsi Steve He Chiyuan Zhang Badih Ghazi Borja De\u00a0Balle Pigem Prem Eruvbetine Tris Warkentin Armand Joulin and Ravi Kumar. 2025. VaultGemma: A Differentially Private Gemma Model. arxiv:https:\/\/arXiv.org\/abs\/2510.15001\u00a0[cs.CR] https:\/\/arxiv.org\/abs\/2510.15001"},{"key":"e_1_3_3_2_41_2","doi-asserted-by":"publisher","DOI":"10.1109\/GlobalSIP.2013.6736861"},{"key":"e_1_3_3_2_42_2","unstructured":"Nisan Stiennon Long Ouyang Jeffrey Wu Daniel Ziegler Ryan Lowe Chelsea Voss Alec Radford Dario Amodei and Paul\u00a0F Christiano. 2020. Learning to summarize with human feedback. Advances in neural information processing systems 33 (2020) 3008\u20133021."},{"key":"e_1_3_3_2_43_2","unstructured":"Pranav Subramani Nicholas Vadivelu and Gautam Kamath. 2021. Enabling fast differentially private sgd via just-in-time compilation and vectorization. Advances in Neural Information Processing Systems 34 (2021) 26409\u201326421."},{"key":"e_1_3_3_2_44_2","unstructured":"Ashish Vaswani Noam Shazeer Niki Parmar Jakob Uszkoreit Llion Jones Aidan\u00a0N Gomez \u0141ukasz Kaiser and Illia Polosukhin. 2017. Attention is all you need. Advances in neural information processing systems 30 (2017)."},{"key":"e_1_3_3_2_45_2","unstructured":"Fan Wu Huseyin\u00a0A Inan Arturs Backurs Varun Chandrasekaran Janardhan Kulkarni and Robert Sim. 2023. Privately aligning language models with reinforcement learning. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2310.16960 (2023)."},{"key":"e_1_3_3_2_46_2","unstructured":"Tong Wu Ashwinee Panda Jiachen\u00a0T Wang and Prateek Mittal. 2023. Privacy-preserving in-context learning for large language models. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2305.01639 (2023)."},{"key":"e_1_3_3_2_47_2","doi-asserted-by":"publisher","DOI":"10.1109\/CSF.2018.00027"},{"key":"e_1_3_3_2_48_2","unstructured":"Ashkan Yousefpour Igor Shilov Alexandre Sablayrolles Davide Testuggine Karthik Prasad Mani Malek John Nguyen Sayan Ghosh Akash Bharadwaj Jessica Zhao et\u00a0al. 2021. Opacus: User-friendly differential privacy library in PyTorch. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2109.12298 (2021)."},{"key":"e_1_3_3_2_49_2","unstructured":"Da Yu Saurabh Naik Arturs Backurs Sivakanth Gopi Huseyin\u00a0A Inan Gautam Kamath Janardhan Kulkarni Yin\u00a0Tat Lee Andre Manoel Lukas Wutschitz et\u00a0al. 2021. Differentially private fine-tuning of language models. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2110.06500 (2021)."},{"key":"e_1_3_3_2_50_2","unstructured":"Liang Zhang Bingcong Li Kiran\u00a0Koshy Thekumparampil Sewoong Oh and Niao He. 2023. Dpzero: Private fine-tuning of language models without backpropagation. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2310.09639 (2023)."},{"key":"e_1_3_3_2_51_2","doi-asserted-by":"publisher","DOI":"10.1145\/3520312.3534864"},{"key":"e_1_3_3_2_52_2","doi-asserted-by":"crossref","unstructured":"Alexander Ziller Tamara\u00a0T Mueller Simon Stieger Leonhard\u00a0F Feiner Johannes Brandt Rickmer Braren Daniel Rueckert and Georgios Kaissis. 2024. Reconciling privacy and accuracy in AI for medical imaging. Nature Machine Intelligence 6 7 (2024) 764\u2013774.","DOI":"10.1038\/s42256-024-00858-y"}],"event":{"name":"IDE '26: 3rd ACM\/IEEE International Workshop on Integrated Development Environments","location":"Rio de Janeiro Brazil","acronym":"IDE '26","sponsor":["SIGSOFT ACM Special Interest Group on Software Engineering","IEEE CS","Faculty of Engineering of University of Porto"]},"container-title":["Proceedings of the 3rd ACM\/IEEE International Workshop on Integrated Development Environments"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3786151.3788603","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,6,1]],"date-time":"2026-06-01T07:18:01Z","timestamp":1780298281000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3786151.3788603"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,4,12]]},"references-count":51,"alternative-id":["10.1145\/3786151.3788603","10.1145\/3786151"],"URL":"https:\/\/doi.org\/10.1145\/3786151.3788603","relation":{},"subject":[],"published":{"date-parts":[[2026,4,12]]},"assertion":[{"value":"2026-06-01","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}