SlaClip: Gradient Norm Slacks can be Indicator for Adaptive Clipping in DP-SGD
Shuyan Zou, Shaowei Wang, Zhanxing Zhu, Jin Li, Changyu Dong, Vladimiro Sassone, Han Wu
Abstract
Differentially private stochastic gradient descent (DP-SGD) achieves privacy by clipping persample gradients and injecting Gaussian noise, but its utility is highly sensitive to the choice of the clipping threshold C. A fixed C often degrades performance and necessitates repeated empirical calibration. Existing adaptive clipping methods either modify the gradient update in vanilla DP-SGD, causing additional tuning or optimization overhead, or introduce separate private queries to monitor gradient statistics. In contrast, we leverage the slack information induced by the standard clipping operation, an overlooked signal in prior work, and show that it provides an effective indication for adapting C. In light of this, we propose SlaClip, a privacy-preserving adaptive clipping strategy using a post-hoc Slack Indicator. Under the same training configuration and privacy accountant, SlaClip preserves the sampling rule, noise multiplier, and global ℓ 2 sensitivity bound of vanilla DP-SGD. Therefore, SlaClip is a plug-andplay module for vanilla DP-SGD and its variants. Moreover, SlaClip is accounted under the same per-step privacy bound, while requiring no additional private query. Across diverse datasets and tasks, experiments show that SlaClip consistently outperforms baseline adaptive clipping methods.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext ca783cd1-88b5-4e11-966c-9af8bd04d23dBuilds on8
- Deep Learning with Differential PrivacyMartín Abadi, Andy Chu, Ian J. Goodfellow, H. Brendan McMahan et al.CCS 2016 · 7,620 citations
- Differentially Private Learning with Adaptive ClippingGalen Andrew, Om Thakkar, Brendan McMahan, Swaroop RamaswamyNeurIPS 2021 · 425 citations
- Understanding Gradient Clipping in Private SGD: A Geometric PerspectiveXiangyi Chen, Zhiwei Steven Wu, Mingyi HongNeurIPS 2020 · 254 citations
- Tempered Sigmoid Activations for Deep Learning with Differential PrivacyNicolas Papernot, Abhradeep Thakurta, Shuang Song, Steve Chien et al.AAAI 2021 · 210 citations
- Automatic Clipping: Differentially Private Deep Learning Made Easier and StrongerZhiqi Bu, Yu-Xiang Wang, Sheng Zha, George KarypisNeurIPS 2023 · 140 citations
Related papers
- GeoClip: Geometry-Aware Clipping for Differentially Private SGDAtefeh Gilani, Naima Tasnim, Lalitha Sankar, Oliver KosutNeurIPS 2025 · 5 citations
- Adaptive Sigmoid Clipping for Balancing the Direction-Magnitude Mismatch Trade-off in Differentially Private LearningFaeze Moradi Kalarde, Ali Bereyhi, Ben Liang, Min DongNeurIPS 2025 · 1 citation
- Improved Convergence of Differential Private SGD with Gradient ClippingHuang Fang, Xiaoyun Li, Chenglin Fan, Ping LiICLR 2023
- Differentially Private SGD Without Clipping Bias: An Error-Feedback ApproachXinwei Zhang, Zhiqi Bu, Steven Wu, Mingyi HongICLR 2024 · 15 citations
- Eliminating Solution Bias in Differentially Private OptimizationDONGRUN LI, YUN ZENG, Zibo Wei, Jiacheng Wei et al.ICML 2026
