Even then, we'd probably need the code-review program to be open-source or audited by a third party.
Keeping code secret is somewhat useful for security and vital for maintaining some trade secrets.
Our on premise product is designed for companies that require discretion and a higher security scrutiny.
We take security and data protection very seriously in our on premise product. We don't have any access to the product or machines running Codacy. We're very open to feedback and improvements and this is why we constantly are improving our policies and deployment processes. We have some of the largest and most security focused corporations using Codacy Enterprise.
Happy to answer more questions!
It's that our clients don't allow us to send our code to third parties that haven't been audited by the clients.
Essentially, our source code must be secret.