SaaSHub helps you find the best software and product alternatives Learn more →
Supabase-security-skill Alternatives
Similar projects and alternatives to supabase-security-skill
-
appwrite-security-skill
Open-source Appwrite security auditor: detects 'any' role grants, document security misconfig, over-permissive collection permissions. Active probe confirms each leak.
-
SaaSHub
SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives
-
nhost-security-skill
Open-source Hasura/Nhost security auditor: detects anonymous role with open SELECT, user role missing row filter, public introspection. Active anonymous GraphQL probe confirms each leak.
-
firebase-security-skill
Open-source Firebase Firestore Rules auditor: detects 'match /{document=**} if true', expired test-mode rules, auth-without-ownership. Active probe sends anonymous GET to confirm leaks.
-
pocketbase-security-skill
Open-source PocketBase security auditor: detects empty rules, the @request.auth.id != trap, true literals. Active probe confirms leaks live.
-
-
DesignSystem
Stop your AI agent from generating generic UI. A design system skill that enforces 8pt spacing, WCAG contrast, visual hierarchy, and section isolation — across all major AI coding agents.
-
specmem
Discontinued SpecMem - TRUE Semantic Memory for Claude Code - Runs locally - Remembers your code base - Per-project isolation, semantic search, team coordination. https://justcalljon.pro [GET https://api.github.com/repos/jonhardwick-spec/specmem: 404 - Not Found // See: https://docs.github.com/rest] (by jonhardwick-spec)
-
-
supabase-security-skill discussion
supabase-security-skill reviews and mentions
-
I shipped a public Apify actor that scans Supabase projects for RLS leaks (took 90 min, found a 895-record leak on the first real test run)
Open-source repo + docs: github.com/Perufitlife/supabase-security-skill.
-
I shipped 5 BaaS security auditors in one day — keyless `npx --discover` mode for Supabase, PocketBase, Appwrite, Firebase, and Nhost
A week ago I built supabase-security, a small Node.js auditor that scans Supabase projects for over-permissive RLS policies. To test it, I scanned 100 random Supabase projects from GitHub.
- Show HN: I audited my own back ends on 5 BaaS – leak in every one
-
I scanned my own Supabase project and found 17 tables anyone could read with the anon key
git clone https://github.com/Perufitlife/supabase-security-skill cd supabase-security-skill SUPABASE_ACCESS_TOKEN=sbp_xxx node scripts/audit.js YOUR_PROJECT_REF --html report.html open report.html
-
A note from our sponsor - SaaSHub
www.saashub.com | 15 Jun 2026
Stats
Perufitlife/supabase-security-skill is an open source project licensed under MIT License which is an OSI approved license.
The primary programming language of supabase-security-skill is JavaScript.
Popular Comparisons
- supabase-security-skill VS appwrite-security-skill
- supabase-security-skill VS nhost-security-skill
- supabase-security-skill VS firebase-security-skill
- supabase-security-skill VS pocketbase-security-skill
- supabase-security-skill VS sandworm-guard-js
- supabase-security-skill VS DesignSystem
- supabase-security-skill VS specmem
- supabase-security-skill VS pwndoc
- supabase-security-skill VS sandworm-audit