Privacy Policy
Last updated: September 2, 2026
This Privacy Policy explains how CodeFE handles information across codefe.cn and its subdomains. We follow data-minimization principles and distinguish between browser-local data, account cloud data, and server-side processing required to provide specific features.
Scope
This policy applies to codefe.cn and the *.codefe.cn products operated by CodeFE. CodeFE is operated by an independent developer.
Data practices vary by product. If a product provides a more specific notice or consent prompt before you use a feature, that product-specific notice applies to that feature.
Information We Process
We process only the information needed to provide features, maintain security, and improve the services. This may include:
- Account information: your registration email and any display name, avatar, language, or source information you choose to provide. Password authentication is handled by Supabase Auth; CodeFE applications do not store your plaintext password.
- Account product data: when you sign in and use a corresponding cloud feature, this may include progress, records, bookmarks, comments, leaderboard scores, workspace content, or product settings.
- Public content and uploaded files: such as comments, guestbook messages, posts, reports, avatars, or product images you intentionally submit. Visibility follows the notice shown when you submit the content.
- Technical and access data: such as page paths, referring pages, access times, browser and device categories, approximate region, and request or error logs needed to secure the services.
Local Data and Cloud Data
Many CodeFE tools work without signing in. In that case, business data is generally stored only in your current browser. Clearing browser data or changing browsers or devices may make it unrecoverable. Local signed-out data is not automatically uploaded to an account merely because you later sign in.
Data is sent to our servers only when you sign in and use a product feature such as cloud sync, backup, leaderboards, interactions, or collaboration, as described by that product.
Features that require server-side computation are exceptions. For example, WorkTalk sends the current input to codefe-api and the configured model provider for generation. A signed-out request does not create a guest account. Products involving sensitive content provide additional notices before upload.
How We Use Information
We may use information to:
- Provide registration, sign-in, email verification, password reset, and profile management.
- Provide local enhancements and cloud features you choose to use, including sync, backup, leaderboards, comments, bookmarks, and collaboration.
- Moderate content, review reports, prevent abuse, and maintain service security.
- Diagnose errors, improve performance, and understand anonymous, aggregate website traffic.
- Send necessary service emails such as registration confirmation, password reset, and security notices.
Cookies, Local Storage, and Traffic Analytics
CodeFE uses the following browser storage and analytics mechanisms:
- Authentication cookies maintain your signed-in session across codefe.cn subdomains and use necessary security attributes.
- localStorage or sessionStorage may store theme and language preferences, product settings, and some signed-out local data. You can clear this data through your browser settings.
- Umami: we self-host Umami at analytics.codefe.cn for anonymous, aggregate traffic analytics. Umami does not use persistent analytics cookies, is not used for advertising profiles, and analytics data is not sold to advertising networks.
Current analytics help us understand page visits and overall usage. They are not used to create guest accounts or associate browsing activity with Supabase account IDs.
Service Providers and Data Location
We may use Supabase for account authentication, self-hosted codefe-api and PostgreSQL for business data, Tencent Cloud COS for files you intentionally upload, and email, model, HIBP, or content-delivery providers for specific features.
We send providers only the data needed for the requested feature. We do not sell personal information or provide it to third-party advertising networks. Infrastructure and service providers may process data in regions where they operate, so we do not claim that every category of data always remains in one geographic region.
Retention, Security, and Your Rights
We retain information for as long as needed to provide features, maintain security, or meet applicable obligations. We use reasonable technical and organizational safeguards, but no internet service can guarantee absolute security.
- You control browser-local data and may clear it through product controls or browser settings.
- Signed-in users can use the editing, deletion, and visibility controls offered by each product. Available controls vary by product.
- To request access, correction, or deletion of your account and related data, contact us at the address below. We may verify account ownership before processing a request.
- Deletion may be reasonably delayed by backup rotation, dispute handling, or applicable legal requirements. We will explain any data that cannot be deleted immediately and why.
Minors, Policy Updates, and Contact
We recommend guardian supervision when minors use educational, game, or motion-based products. Do not submit a child’s real identity, contact details, or other unnecessary information in public comments, posts, or input fields.
We may update this policy as products or legal requirements change. We will update the date on this page and provide reasonable notice of material changes.
For questions about this policy, our data practices, or a data-rights request, contact us at:
codefe.cn@gmail.com