Is it private data if it was scraped from my social media profile marked private but leaked through a shared party? My expectation was that image would only be shared with those I wanted to see it (form of privacy).

That's fair. Is there any indication as to if xAi trains on private profiles?

Is there any indication it doesn’t. From what you know about LLM teams, products, and engineers, especially XAI, does the word “private” or “Disallow: <my-private-profile-path>” seem to stop them?