Supabase Security Audit

Audit Supabase project security including Row-Level Security (RLS) policies, SECURITY DEFINER functions, anon/authenticated role grants, service_role key exposure, edge function authentication, and JWT verification on edge endpoints. Use this skill whenever the user mentions Supabase, RLS, row-level security, SECURITY DEFINER, anon role exposure, service_role leak, supabase-js client, edge functions auth, or asks "is my Supabase project safe". Trigger on phrases like "audit my Supabase", "review my RLS", "is RLS enabled", "SECURITY DEFINER risk", "anon role grants", "edge function security", "service role exposure", "Postgres function audit". Use this even if only one sub-topic is mentioned.

hlsitechio b51b618 9 files · 48.0 KB Updated

File contents

hlsitechio/claude-skills-security/tree/main/saas-security-pack/supabase-security-audit commit b51b6180ce

Frequently asked questions

npx skillmds@latest add hlsitechio/supabase-security-audit