Privacy policy
Last updated: 2 October 2026
In short
CodeItRaw keeps the least data needed for you to learn coding by playing. It shows no ads, does not sell your data and uses no third-party tracking or analytics.
Who is responsible
This site is run by, and your data is the responsibility of: Rifat Arda Arslan. To reach them: rifatardarslan023@gmail.com
Playing without an account
As a guest, your progress, code drafts and preferences (theme, sound, language) live only in your browser's localStorage. They are not sent to the server. Clearing your browser data removes them.
With an account
For your account we keep your email address and password (the password only in hashed form, by Supabase Auth). If you sign in with GitHub, we receive your GitHub username and id; your GitHub access token is not stored.
Your profile shows: CodeItRaw ID, and optionally display name, bio, location, website and picture. You can change or remove these in Settings. Your email address is never shown publicly.
To re-run and verify your solutions on the server, we keep the code you submit, its language and the results (stars, steps, lines, Big-O). Leaderboards and public profiles are built from these verified results.
Where it is stored, who processes it
The database and files are hosted by Supabase in Frankfurt (EU). The site runs on Vercel. Account emails (such as password resets) are sent through Brevo. Your code runs in your own browser; the code of a solve and its result are sent to the server. These services process your data only on CodeItRaw's behalf.
How long
Your data is kept while your account exists. Settings → Delete account permanently deletes your account, profile, records and uploaded files. A log of admin actions (for example, a ban) may be kept to prevent abuse.
What is kept for fair play
When you send a solve with your account, the editor's summary of how the code was written is recorded with it: characters typed and pasted from outside, corrections, time spent, runs, and how often the tab was left. The text you typed is not part of this summary.
In a Clash race your code and a recording of your typing (how the code was written, step by step) are kept and shown, once the race is over, only to the players in that room.
This data is used to keep the rankings fair; it is not used for advertising or profiling, and it is deleted when you delete your account.
Error reports
If something breaks on the site, the error's text, the page it happened on and the browser type are recorded; if you are signed in, your account id is added. These records are used only to fix the error and are deleted after 90 days.
Your rights
To use your rights under GDPR and KVKK (access, correction, deletion, objection), write to the address on the Contact page.
Cookies
Only the cookies needed to keep you signed in are used. There are no advertising or tracking cookies, which is why no cookie consent is asked.
Your browser's storage (localStorage) holds your progress, code drafts and preferences. If you turn on offline play, the game's files are downloaded to your device too; you can delete them on the Offline page.