Your code stays private
Every repository on Codebahn is private. Not a default you can flip. A product decision enforced in the code. There are no public repos, no explore page, no activity feed. One tenant cannot discover that another tenant exists.
Codebahn has no AI training pipeline, no telemetry, and no third-party tracking. These are not toggles buried in a settings page. There is nothing to opt out of.
What private means
- Your code is stored and served. It is not read, scanned, or fed to a model. There is no training infrastructure.
- Analytics are privacy-first. No analytics on authenticated app pages. Plausible runs on the marketing site, the public demo, and the signup and login pages. Processed in the EU on Hetzner Germany. No cookies, no personal data.
- Fonts are self-hosted, scripts are ours. No Google Analytics, no Facebook Pixel, no tracking scripts. The only external script on the marketing site is Plausible for anonymous page views.
- Support chat. Crisp runs in safe mode (no tracking cookies). We pass your name and email to Crisp when you are signed in so support has context.
Codebahn is built on Forgejo, which is GPL-3.0. The Git hosting, authentication, and access control code is public and auditable. We add tenant isolation and billing on top. The sub-processor list is public, every sub-processor is EU-incorporated, and the EU hosting page names the entity, the jurisdiction, and the infrastructure providers.
We store your email address (authentication and notifications) and server access logs (debugging and abuse prevention, rotated after 30 days). Plausible collects page views on public pages only (no cookies, no personal data). Full details in the privacy policy.
For what we chose not to build, see simple Git hosting.
Use it for 14 days. If it's not right, one email and I refund it.