VOGONS


Hi! alternative to github?

Topic actions

Reply 20 of 36, by theelf

User metadata
Rank Oldbie
Rank
Oldbie
cyclone3d wrote on Today, 06:48:
theelf wrote on Today, 00:48:
I use this for passwords, […]
Show full quote
cyclone3d wrote on Yesterday, 22:31:
2FA. Yes, absolutely required for not just source code sites, but for everything. […]
Show full quote

2FA. Yes, absolutely required for not just source code sites, but for everything.

If a source code site has an account that is not 2FA and somebody gets into that account, they could distribute malware.

This isn't just hypothetical. It has happened.

If you are against 2FA, then you probably should not have any accounts on the internet at all.

Before I had 2FA on absolutely everything, I had my email compromised. I also had one of my online games compromised.

An email account gets compromised and you can for sure know that it will be used by scammers.

If you don't have 2FA, you are just asking for somebody to steal your accounts at the least and your identity and you money and possibly worse.

You could easily be framed for something that was done with one of your accounts.

I use this for passwords,

The attachment images.jpeg is no longer available

and never get any problem in all my life

paper, pencil, and thats all

Somehow I don't think you understand what 2FA is...

not much and i dont want to do much neither

But from what i see is something like they offload/force the security work to the user and call it a feature

Reply 21 of 36, by tactica

User metadata
Rank Newbie
Rank
Newbie

Also to the OP:

If you are who I think you are, I'm not sure it is entirely true that your passwords were never stolen unless you were lucky and didn't download a certain binary from Aminet back in 2000 containing a fake AmigaOS "datatypes.library" that stole your passwords. A plain text file with a long list of affected accounts circulated that included plenty of username/password pairs - I remember because I downloaded that list myself and confirmed with someone I knew that he was indeed using the quoted username and password. Not entirely 2FA related but still...

Last edited by Shponglefan on 2026-10-03, 14:39. Edited 1 time in total.
Reason: edited to for consistency re: removed post

Reply 22 of 36, by The Solutor

User metadata
Rank Member
Rank
Member
tactica wrote on Today, 10:49:

You mean Italy? Careful there because what the ICE is doing in the US is quite closer to fascism than whatever is going on in Italy.

I mean Information Technology (why in English, usually concise end effective, there isn't a perfect term like the Italian "Informatica"? ).

But yes, if US are crying, Italy for sure isn't laughing, we are in "good" company, Israel, Argentina, Russia, Turkey, USA, and the list is long and terrifying...

No idea what this has to do with 2FA though 😀

Well open your eyes. 2FA is yet another stricter mean to identify who is an user, where it lives, where it was when the last time he accessed a service, and so on...

After a loing string of "innovations" aimed to the same purpose but sold as means to improve your life.

From the GPS to every phone to IPV6. and almost everything in between, native digital kids were born in a cage, so they don't know what means living in the savanna, a dangerous place, sure, but a place where freedom is the keyword.

Reply 24 of 36, by The Solutor

User metadata
Rank Member
Rank
Member
Shponglefan wrote on Today, 14:39:

I would ask that people please stick to the original thread topic and not derail the thread with off-topic politics. Please and thank you.

The thread point is to find a privacy respectful service, no matter if you agree or not with that point, and no one has talked about something else.

Acting as a in topic nazi has never helped any discussion.

Thanks to you.

Reply 25 of 36, by Shponglefan

User metadata
Rank l33t
Rank
l33t
The Solutor wrote on Today, 14:58:

The thread point is to find a privacy respectful service, no matter if you agree or not with that point, and no one has talked about something else.

Acting as a in topic nazi has never helped any discussion.

Thanks to you.

Community standards for VOGONS include not derailing topics. You can review the guidelines here: VOGONS Terms of Use

The OP's original topic was about alternatives to Github, so I again ask that people respect that topic and do not derail the thread with politicking. I don't want a repeat of what happened in the RAM prices thread. Please and thank you.

Pentium 4 Multi-OS Build
486 DX4-100 with 6 sound cards
486 DX-33 with 5 sound cards

Reply 26 of 36, by cyclone3d

User metadata
Rank l33t++
Rank
l33t++
theelf wrote on Today, 10:31:
cyclone3d wrote on Today, 06:48:
theelf wrote on Today, 00:48:
I use this for passwords, […]
Show full quote

I use this for passwords,

The attachment images.jpeg is no longer available

and never get any problem in all my life

paper, pencil, and thats all

Somehow I don't think you understand what 2FA is...

not much and i dont want to do much neither

But from what i see is something like they offload/force the security work to the user and call it a feature

It isn't though. How is a company or website or whatever supposed to protect your password for you?

If somebody gets your login credentials and they can login and do anything on you account because the only protection is a simple password, what is going to happen?

Two factor or multi factor authentication is there to protect your accounts and make it so that if somebody does get ahold of your user credentials they can't just log in.

With a. Second and sometimes third line of protection, you have a one time authentication code that is going to be extremely hard to get ahold of by bad actors.

It literally protects you and takes only a few seconds longer to log in. Setup is generally very easy..
Scan a QR code or manually put in a security code and then verify / sync the rolling one time code as verification and your authentication app is set up for that site.

Usually there is also a list of recovery codes you can print out in case your phone or other device dies / gets lost / is broken

You can also generally choose to get one time codes via email or text.

Once you have an account get compromised, you will hopefully learn your lesson and enable 2FA on everything.

Edit: bringing up 2FA is not derailing as it is directly related to the shunning of GitHub.

Yamaha modified setupds and drivers
Yamaha XG repository
YMF7x4 Guide
Aopen AW744L II SB-LINK

Reply 27 of 36, by theelf

User metadata
Rank Oldbie
Rank
Oldbie

Hi guys, one bad new one good one

the good one, i start digging in all clonezilla backups i did in past, and after recovery some images (thanks github to waste my time) i found a TXT file i save with codes!! now lucky me, the plugin 2fa still work fine in Supermium in windows XP, i can login without problems using it!!! account recovered!! yeeee

The attachment github.png is no longer available

the bad one, i still dont want to use github, i dont like this kind of impossitions, but i did not found a alternative the people will like for easy interact with my and my code

I like the idea of gitea,i have a Pi already working "24/7" for my personal stuff, but the problem is that i have many conection problems in my area, is rural, and not all time i have internet available... then is not really 24/7 jeje

Shponglefan wrote on Today, 14:39:

I would ask that people please stick to the original thread topic and not derail the thread with off-topic politics. Please and thank you.

Shponglefan is right, i have my political view too, and very strong one. But i came to vogons because computer stuff

cyclone3d wrote on Today, 15:14:

It isn't though. How is a company or website or whatever supposed to protect your password for you?

How about companies focus on not getting their databases breached instead of forcing me to do extra steps?

I keep all my passwords on paper in a drawer anyway... good luck hacking that

Reply 28 of 36, by UCyborg

User metadata
Rank Oldbie
Rank
Oldbie

I'm more bothered by crappy and slow interface that keeps breaking on anything that isn't Chrome (yuck!). It's supposed to be handy to check the code / history without checking out the repo, but it's easier to just git clone it and view it locally.

Arthur Schopenhauer wrote:

A man can be himself only so long as he is alone; and if he does not love solitude, he will not love freedom; for it is only when he is alone that he is really free.

Reply 29 of 36, by theelf

User metadata
Rank Oldbie
Rank
Oldbie
UCyborg wrote on Today, 17:21:

I'm more bothered by crappy and slow interface that keeps breaking on anything that isn't Chrome (yuck!). It's supposed to be handy to check the code / history without checking out the repo, but it's easier to just git clone it and view it locally.

yes, I agree, like to use seamonkey for example, and for use github is a pain, and every some time, i need to do tricks because they change something that was working fine

I always use local, and i just do zip files, working1.zip working2.zip, notcompile1.zip, test1.zip... jeje

Reply 30 of 36, by bartonxp

User metadata
Rank Member
Rank
Member

@Shponglefan, Lock this thread.

Reply 31 of 36, by digger

User metadata
Rank Oldbie
Rank
Oldbie

GitHub also supports Passkeys as an alternative for OTP authenticators for 2FA.

Perhaps that fits your workflow better? It does require you to use a password manager or web browser with built-in support for Passkeys. But it's becoming a common standard, so you should have plenty of choice there.

About alternatives to GitHub: are you looking for an alternative with a strict no-AI policy, or one that is more AI-friendly or somewhere pragmatically in-between? Codeberg, for instance, is very strict about not allowing projects with AI-generated code.

Reply 32 of 36, by cyclone3d

User metadata
Rank l33t++
Rank
l33t++
theelf wrote on Today, 17:10:
Hi guys, one bad new one good one […]
Show full quote

Hi guys, one bad new one good one

the good one, i start digging in all clonezilla backups i did in past, and after recovery some images (thanks github to waste my time) i found a TXT file i save with codes!! now lucky me, the plugin 2fa still work fine in Supermium in windows XP, i can login without problems using it!!! account recovered!! yeeee

The attachment github.png is no longer available

the bad one, i still dont want to use github, i dont like this kind of impossitions, but i did not found a alternative the people will like for easy interact with my and my code

I like the idea of gitea,i have a Pi already working "24/7" for my personal stuff, but the problem is that i have many conection problems in my area, is rural, and not all time i have internet available... then is not really 24/7 jeje

Shponglefan wrote on Today, 14:39:

I would ask that people please stick to the original thread topic and not derail the thread with off-topic politics. Please and thank you.

Shponglefan is right, i have my political view too, and very strong one. But i came to vogons because computer stuff

cyclone3d wrote on Today, 15:14:

It isn't though. How is a company or website or whatever supposed to protect your password for you?

How about companies focus on not getting their databases breached instead of forcing me to do extra steps?

I keep all my passwords on paper in a drawer anyway... good luck hacking that

Passwords can be brute forced. There are also special word lists that can be used to help speed up this process by orders of magnitude.

A database breach is not the only way somebody can figure out your credentials.

Yamaha modified setupds and drivers
Yamaha XG repository
YMF7x4 Guide
Aopen AW744L II SB-LINK

Reply 33 of 36, by cyclone3d

User metadata
Rank l33t++
Rank
l33t++
bartonxp wrote on Today, 17:34:

@Shponglefan, Lock this thread.

Yeah, cause locking threads left and right is going to make the users here sooo happy.

As far as alternatives, why not Gitlab. Locally hosted but you can set it up to sync with GitHub.

There is also sourceforge if you don't mind then injecting trashware into your installers. Not sure if they have gotten away from doing that, but that is why a ton of people ditched them for GitHub.

You can also just set up your own personal web-sife and a way to sync your stuff to it if you really don't want 2FA, but any web host is most likely going to require 2FA anyway.

You could set up a local web server and then use cloud flare to have the content available even if your connection goes down.

Yamaha modified setupds and drivers
Yamaha XG repository
YMF7x4 Guide
Aopen AW744L II SB-LINK

Reply 34 of 36, by leileilol

User metadata
Rank l33t++
Rank
l33t++

2fa is not "papers please" jfc. Even I had to set up 2fa for github and a phone wasn't neccessary for that. All I had to do was use winauth and get some numbers back and forth the website. It's not the invasive K-ID stuff.

apsosig.png
long live PCem
FUCK "AI". It is a tool of fascism. We do not need it. We do not use it.
Debian's fucked

Reply 35 of 36, by theelf

User metadata
Rank Oldbie
Rank
Oldbie
digger wrote on Today, 19:58:

GitHub also supports Passkeys as an alternative for OTP authenticators for 2FA.

Perhaps that fits your workflow better? It does require you to use a password manager or web browser with built-in support for Passkeys. But it's becoming a common standard, so you should have plenty of choice there.

About alternatives to GitHub: are you looking for an alternative with a strict no-AI policy, or one that is more AI-friendly or somewhere pragmatically in-between? Codeberg, for instance, is very strict about not allowing projects with AI-generated code.

Hi, thanks! i will check Passkeys , i see the extension and is working in supermium in XP i use.

About alternatives, i checked codeberg, but yes, look very stric about many things, im a guy that like to just write whatever code i want, use code from others if work for me, and just upload. I dont care about what gpl, or I dont know is. In my brain is simple, if a code is on internet, is for use. Just be nice and give credit in readme. And codeberg look like is not like this

About IA i dont use much or at all, but i think is not bad to use, look like a great tool, is just i enjoy coding, i do in my free time like a hobby

leileilol wrote on Today, 21:04:

2fa is not "papers please" jfc. Even I had to set up 2fa for github and a phone wasn't neccessary for that. All I had to do was use winauth and get some numbers back and forth the website. It's not the invasive K-ID stuff.

I really dont care how easy it is, I'm an old school caveman. I just want to type my password and get in. I just want everybody stop making my life complicated, I already have a wife and 2 kids for that! (and goverment payments, and bank... and...)

cyclone3d wrote on Today, 20:55:

Passwords can be brute forced. There are also special word lists that can be used to help speed up this process by orders of magnitude.

A database breach is not the only way somebody can figure out your credentials.

man, really, who the hell will have interest in code and software for the 286 beside me and 4 freaks on internet. Nobody will stole anything, im close to 50s and using online stuff since bbs in late 80s and NEVER happen anything with my things

lets be real, nodoby care about us in this side of the world, the hobby side

Reply 36 of 36, by NeoG_

User metadata
Rank Oldbie
Rank
Oldbie

2fa issues aside (It really is a good feature, where everyones passwords are being leaked by websites constantly). I would go down the route of self hosting Gitea on a low cost cloud provider like Hetzner or something similar. It's going to be tough to do it free like github offers with your constraints.

98/DOS Rig: BabyAT AladdinV, K6-2+/550, V3 2000, 128MB PC100, 20GB HDD, 128GB SD2IDE, SB Live!, SB16-SCSI, PicoGUS, WP32 McCake, iNFRA CD, ZIP100
XP Rig: Lian Li PC-10 ATX, Gigabyte X38-DQ6, Core2Duo E6850, ATi HD5870, 2GB DDR2, 2TB HDD, X-Fi XtremeGamer