Skip to content

Rank #3 of 4 in Code Hosting

Gitea logo

Gitea

Open Source

Gitea (open source community)

58k5.9k/yr +193

Access

Install

dockerdocker run -d --name gitea -p 3000:3000 -p 222:22 gitea/gitea:latest
brewbrew install gitea

Compare head-to-head

Alternatives to Gitea

Showcase

Gitea homepage screenshot
homepage · captured Sep 2026 · view live ↗
Gitea docs screenshot
docs · captured Sep 2026 · view live ↗

Verified integrations

Connections to other tracked products — hover a chip for the verbatim evidence quote behind it.

By theme — the product's score on each story themeBy theme

Agenticness — how well agents can access and operate the productAgenticnessevidence →

How well agents can access and operate the product

23.7/100

Automation depth — how much of the product can run unattendedAutomation depthevidence →

How much of the product can run unattended

47.0/100

Ci cd — continuous integration and delivery — pipelines, runners, cachingCi cdevidence →

Continuous integration and delivery — pipelines, runners, caching

40.3/100

Ecosystem integrations — the surrounding ecosystem — integrations, marketplaces, community packagesEcosystem integrationsevidence →

The surrounding ecosystem — integrations, marketplaces, community packages

30.8/100

Governance — stories about governance in this arenaGovernanceevidence →

Stories about governance in this arena

25.5/100

Openness — open source, data portability, and self-hosting storiesOpennessevidence →

Open source, data portability, and self-hosting stories

43.8/100

Privacy posture — data-handling and privacy storiesPrivacy postureevidence →

Data-handling and privacy stories

27.6/100

Project planning — stories about project planning in this arenaProject planningevidence →

Stories about project planning in this arena

33.3/100

Repos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaborationevidence →

Working on repos together — pull requests, reviews, permissions

40.1/100

Security — security posture and hardening storiesSecurityevidence →

Security posture and hardening stories

0.0/100

Self hosting — running it yourself — self-hosted servers, open-source clientsSelf hostingevidence →

Running it yourself — self-hosted servers, open-source clients

46.7/100

Story verdicts — every judged story with its evidenceStory verdicts

?

Sorted by importance (agentic first) (high → low) · 72/72 stories · click a row’s chevron for the rationale and evidence

Connect an agent via an official MCP server G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness3full7/10T

Drive the product through a documented public API G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness3partial6/10T

Plug MCP servers into this product so it can use their tools G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness3none±0/10

Delegate tasks to a built-in AI assistant inside the product G

Agentic features

ai-native userAgenticness — how well agents can access and operate the productAgenticness3none±untestednone yet

Run the product headlessly / in CI for automation G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2full8/10T

Set up automations that run autonomously in the background G

Agentic features

ai-native userAgenticness — how well agents can access and operate the productAgenticness2full±7/10C

Subscribe to events via webhooks G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2full±7/10C

Use an official CLI G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2partial±5/10T

Issue scoped/least-privilege API credentials for an agent G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2partial±3/10C

Build against official SDKs G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2none0/10

Download a machine-readable API spec (OpenAPI or equivalent) G

Api quality

ai-native userAgenticness — how well agents can access and operate the productAgenticness2none0/10

Explore an interactive API reference with runnable examples G

Api quality

ai-native userAgenticness — how well agents can access and operate the productAgenticness2none0/10

Operate the product with natural-language commands G

Agentic features

ai-native userAgenticness — how well agents can access and operate the productAgenticness2none0/10

Point an agent at llms.txt or agent-oriented docs G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2none0/10

Rely on versioned APIs with a documented deprecation policy G

Api quality

ai-native userAgenticness — how well agents can access and operate the productAgenticness2none0/10

Get AI-generated insights and suggestions from my data inside the product G

Agentic features

ai-native userAgenticness — how well agents can access and operate the productAgenticness2noneuntestednone yet

Test against a sandbox environment without touching production data G

Api quality

ai-native userAgenticness — how well agents can access and operate the productAgenticness1n/a±untestednone yet

Create and manage Git repositories and browse their commit history C

Repo management

developerRepos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaboration3full9/10X

Self-host the core product G

ai-native userOpenness — open source, data portability, and self-hosting storiesOpenness3full9/10X

Define CI/CD pipelines as code using a YAML syntax C

Pipeline authoring

developerCi cd — continuous integration and delivery — pipelines, runners, cachingCi cd3full8/10X

Install a self-managed instance of the platform without laborious configuration G

Deployment options

devops-leadSelf hosting — running it yourself — self-hosted servers, open-source clientsSelf hosting3full8/10X

Propose, discuss, and merge code changes using a pull or merge request workflow C

Repo management

developerRepos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaboration3full8/10C

Track requirements, features, and bugs using issues with milestones, time tracking, and dependencies C

Issue tracking

developerProject planning — stories about project planning in this arenaProject planning3full8/10C

Define rules that trigger actions automatically on events G

ai-native userAutomation depth — how much of the product can run unattendedAutomation depth3full7/10C

Review code changes online and respond to inline review comments C

Code review

developerRepos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaboration3partial6/10C

Export all of my data in open formats and leave G

ai-native userOpenness — open source, data portability, and self-hosting storiesOpenness3partial4/10X

Prevent my data from being used to train AI models G

ai-native userPrivacy posture — data-handling and privacy storiesPrivacy posture3partial4/10C

Consolidate static analysis, dependency, secret, and dynamic security scanning into one platform C

Vulnerability scanning

devops-leadSecurity — security posture and hardening storiesSecurity3none0/10

Run CI/CD jobs on runners hosted by the platform without managing infrastructure C

Runners

devops-leadCi cd — continuous integration and delivery — pipelines, runners, cachingCi cd3none0/10

Automatically receive pull requests that update vulnerable dependencies C

Vulnerability scanning

developerSecurity — security posture and hardening storiesSecurity3noneuntestednone yet

Secure my account with two-factor authentication G

Access security

developerSecurity — security posture and hardening storiesSecurity3noneuntestednone yet

Run my self-hosted instance on my choice of operating system and architecture, including containers G

Deployment options

devops-leadSelf hosting — running it yourself — self-hosted servers, open-source clientsSelf hosting2full9/10X

Publish and consume software packages in multiple package formats from the same platform C

Package registry

open-source-maintainerRepos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaboration2full8/10C

Reuse community-built CI/CD actions or plugins in my pipelines C

Pipeline authoring

developerCi cd — continuous integration and delivery — pipelines, runners, cachingCi cd2full8/10C

Automate application deployments as part of my CI/CD pipeline C

Deployment

developerCi cd — continuous integration and delivery — pipelines, runners, cachingCi cd2partial7/10X

Choose where my data is stored (region/residency) G

ai-native userPrivacy posture — data-handling and privacy storiesPrivacy posture2full7/10X

Enforce coding standards and CI/CD policies across all teams and repositories C

Policy enforcement

devops-leadGovernance — stories about governance in this arenaGovernance2partial6/10X

Run CI/CD jobs on my own self-hosted or private runners C

Runners

devops-leadCi cd — continuous integration and delivery — pipelines, runners, cachingCi cd2partial6/10X

Control granular access permissions at the workspace, project, repository, and branch level C

Repo management

devops-leadRepos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaboration2partial5/10C

Organize work from high-level roadmaps to everyday tasks using project boards C

Issue tracking

developerProject planning — stories about project planning in this arenaProject planning2partial5/10C

Do everything through the API that I can do in the UI G

ai-native userOpenness — open source, data portability, and self-hosting storiesOpenness2partial4/10T

Enforce standardized, customizable merge checks before code can be merged C

Code review

devops-leadRepos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaboration2partial4/10C

Extend my stack with third-party apps, actions, and AI models from a marketplace C

Marketplace extensions

developerEcosystem integrations — the surrounding ecosystem — integrations, marketplaces, community packagesEcosystem integrations2partial4/10T

Get centralized visibility into CI/CD workflow runs across the organization C

Runners

devops-leadCi cd — continuous integration and delivery — pipelines, runners, cachingCi cd2partial4/10X

Perform bulk operations across many items at once G

ai-native userAutomation depth — how much of the product can run unattendedAutomation depth2partial4/10T

Read the product's source under an open license G

ai-native userOpenness — open source, data portability, and self-hosting storiesOpenness2partial4/10X

Schedule recurring jobs or workflows G

ai-native userAutomation depth — how much of the product can run unattendedAutomation depth2partial4/10C

Control data retention and deletion G

ai-native userPrivacy posture — data-handling and privacy storiesPrivacy posture2partial3/10C

Review large diffs and view third-party code quality reports directly in the review screen C

Code review

developerRepos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaboration2partial3/10C

Assign the initial code review of a pull request to an AI reviewer for faster turnaround C

Code review

ai-native userRepos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaboration2none0/10

Detect and remediate leaked secrets across the organization's repositories C

Vulnerability scanning

devops-leadSecurity — security posture and hardening storiesSecurity2none0/10

Have AI automatically generate and apply fixes for detected security vulnerabilities C

Vulnerability scanning

ai-native userSecurity — security posture and hardening storiesSecurity2none0/10

Restrict repository access to specific IP address ranges C

Access security

devops-leadSecurity — security posture and hardening storiesSecurity2none0/10

Scale my self-hosted installation using reference architectures supporting tens of thousands of users G

Deployment options

devops-leadSelf hosting — running it yourself — self-hosted servers, open-source clientsSelf hosting2none0/10

Use migration tooling to move my code and users from another platform or from self-hosted to cloud C

Deployment options

devops-leadSelf hosting — running it yourself — self-hosted servers, open-source clientsSelf hosting2none0/10

Automatically update linked issue tracker statuses by referencing issue keys in my commits C

External pm sync

developerProject planning — stories about project planning in this arenaProject planning2noneuntestednone yet

Generate and manage personal access tokens for authenticating to the platform G

Access security

developerSecurity — security posture and hardening storiesSecurity2noneuntestednone yet

Have an AI reviewer analyze code changes and suggest fixes during review C

Code review

ai-native userRepos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaboration2noneuntestednone yet

Launch a ready-to-code cloud-based development environment in seconds C

Dev environments

developerCi cd — continuous integration and delivery — pipelines, runners, cachingCi cd2n/auntestednone yet

Opt out of telemetry and usage tracking G

ai-native userPrivacy posture — data-handling and privacy storiesPrivacy posture2noneuntestednone yet

Search across repositories to find code, files, and commits C

Repo management

developerRepos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaboration2noneuntestednone yet

Set up SSH keys to authenticate and connect securely to the platform G

Access security

developerSecurity — security posture and hardening storiesSecurity2noneuntestednone yet

Connect the platform to external CI/CD tools instead of using its native pipelines C

External ci cd integration

devops-leadEcosystem integrations — the surrounding ecosystem — integrations, marketplaces, community packagesEcosystem integrations1full7/10X

Version, review, and roll back my automations G

ai-native userAutomation depth — how much of the product can run unattendedAutomation depth1full7/10C

Sync repository notifications and activity with chat tools C

Chat notifications

developerEcosystem integrations — the surrounding ecosystem — integrations, marketplaces, community packagesEcosystem integrations1partial6/10C

Require automated change approval workflows before code reaches production C

Policy enforcement

devops-leadGovernance — stories about governance in this arenaGovernance1partial5/10C

Manage projects and assign tasks from my mobile device C

Issue tracking

developerProject planning — stories about project planning in this arenaProject planning1none0/10

Access built-in resources to learn the Git version control system C

Onboarding

developerGovernance — stories about governance in this arenaGovernance1noneuntestednone yet

Install third-party security scanning integrations directly from a security tab C

Security tool integrations

devops-leadEcosystem integrations — the surrounding ecosystem — integrations, marketplaces, community packagesEcosystem integrations1noneuntestednone yet

Make a single annual commitment and flexibly allocate spend across seat-based and usage-based licensing G

Licensing cost management

devops-leadGovernance — stories about governance in this arenaGovernance1n/auntestednone yet

Manage external issue tracker items directly within the code hosting UI C

External pm sync

developerProject planning — stories about project planning in this arenaProject planning1noneuntestednone yet

Map incidents to deployments and require change approval before releases C

Deployment

devops-leadCi cd — continuous integration and delivery — pipelines, runners, cachingCi cd1noneuntestednone yet

Opportunities — the stories that would move this product's scores, from its own judged verdictsOpportunitiestop 8 of 52 stories with headroom

What would move Gitea’s scores — derived from its own judged verdicts, biggest headroom first. Each line quotes what the judge found missing; shipping it (or evidencing it publicly) is the fix.

  1. Agenticness — how well agents can access and operate the productDelegate tasks to a built-in AI assistant inside the product

    nonemoves Built-in AIimpact 45

    No evidence of a built-in AI assistant in Gitea; the product offers an MCP server for external agents to connect to, but that is not a native AI assistant feature delegable by an end user within the product itself.

  2. Agenticness — how well agents can access and operate the productPlug MCP servers into this product so it can use their tools

    nonemoves agent-readyimpact 45

    The story asks whether Gitea itself can consume external MCP servers' tools (client-side), but the only MCP-related evidence shows Gitea publishing its own MCP server (gitea-mcp) for others to call into Gitea, not Gitea invoking outside MCP tools.

  3. Security — security posture and hardening storiesAutomatically receive pull requests that update vulnerable dependencies

    nonemoves PA Scoreimpact 30

    No evidence of a Dependabot-like automated dependency-vulnerability scanning/update feature that opens pull requests; Gitea's evidence covers package registry hosting, CI/CD via Actions, and code review, but nothing about automated dependency vulnerability detection or auto-generated PRs to bump vulnerable dependencies.

  4. Ci cd — continuous integration and delivery — pipelines, runners, cachingRun CI/CD jobs on runners hosted by the platform without managing infrastructure

    nonemoves PA Scoreimpact 30

    Gitea Actions (gitea-docs-2) provides CI/CD workflow support compatible with GitHub Actions syntax, but Gitea is self-hosted software and the evidence never mentions a Gitea-operated hosted runner fleet — users must deploy and manage their own runners as part of self-hosting Gitea.

  5. Security — security posture and hardening storiesConsolidate static analysis, dependency, secret, and dynamic security scanning into one platform

    nonemoves PA Scoreimpact 30

    Gitea's evidence covers repo hosting, CI/CD via Actions, code review, packages, and access control, but there is no mention of built-in SAST, dependency/SCA scanning, secret scanning, or DAST features, and community evidence explicitly notes Gitea 'deliberately stays focused on git hosting rather than bundling CI/chat like Gitlab' (gitea-comm-5), implying it does not bundle a security scanning suite like GitLab's.

  6. Security — security posture and hardening storiesSecure my account with two-factor authentication

    nonemoves PA Scoreimpact 30

    The evidence pack mentions general security features (permissions, access control lists) but never specifically mentions two-factor authentication, TOTP, or U2F support, so there's no evidence this capability is documented.

  7. Agenticness — how well agents can access and operate the productPoint an agent at llms.txt or agent-oriented docs

    nonemoves agent-readyimpact 30

    The probe explicitly shows llms.txt returns 404 at docs.gitea.com, and no other evidence indicates agent-oriented documentation exists elsewhere; the OpenAPI probe also failed, further indicating no machine-readable/agent-friendly docs endpoint.

  8. Agenticness — how well agents can access and operate the productGet AI-generated insights and suggestions from my data inside the product

    nonemoves Built-in AIimpact 30

    No evidence of any AI-generated insights, summaries, or suggestions surfaced from Gitea's own data (e.g., code review AI, issue analysis, PR summarization).

Showing the top 8 of 52 — every none/partial verdict in the story verdicts table is headroom.

Think a verdict is wrong? Every verdicts-table row has a Flag link — see the methodology.

Coverage map — which docs area, API section, or community source covers which judged storiesCoverage map6 surfaces · 39 covered stories

Where the cited evidence behind each covered verdict came from — the same citations the verdicts table shows, no extra judging.

docs.gitea.com29 stories

Claims vs evidence — vendor claims reconciled against independent verdictsClaims vs evidence

5 of 14 testable claims verified · 0 contradictedintegrity 36/100

15 distinct capability claims found in Gitea’s own claimed-docs/GitHub materials, reconciled against our judge’s independent verdicts.

5

Verified

9

Unverified

0

Contradicted

25

Undersold

Verified (5)
Unverified (9)
Undersold (25)
Claims outside our story set (1)

Real capability claims found in Gitea’s own materials, but no story in this arena’s taxonomy covers them yet — that’s feedback on the taxonomy, not a mark against the product.

  • Manage collaborators and access to repositories

    source ↗
Suggest a story for these →

Business model

open-sourcehosted-paidsubscription-per-seatsupport-contracts

Free self-hosted MIT open-source core; paid Gitea Cloud hosted plans and Gitea Enterprise per-seat subscriptions bundling priority support.

pricing ↗

Score trend

How this product’s scores have moved as evidence and verdicts are re-derived — a point per change, not per day.

PA Score27 (Sep 1 '26)28 (Sep 4 '26)
Agent-ready19 (Aug 28 '26)34 (Sep 4 '26)

Flag

⚑ Flag a verdict

Think a verdict is wrong? Opens a prefilled GitHub issue — or use the ⚑ next to any verdict above.

Badge

Embed this product's score badge →

Hotlinked SVG — always shows the live current score.

For agents

Data