Core dumps and lengthy stacktraces spring to my mind.
This new way is much better.
[1] A gist can only be "private" in the sense that it's not listed on the public gist page. No access control takes place once someone guesses the url. That's probably good enough for most uses, but not for all.