supabase-rls
SolidSupabase RLS 政策規範。Use when creating or modifying RLS policies (CREATE POLICY, ALTER POLICY), setting up Row Level Security, or working with database access control. Always use this skill for RLS design, policy templates, and role-based access patterns.
Install
Quality Score: 84/100
Skill Content
Details
- Author
- YuDefine
- Repository
- YuDefine/nuxt-supabase-starter
- Created
- 8 months ago
- Last Updated
- today
- Language
- JavaScript
- License
- MIT
Integrates with
Similar Skills
Semantically similar based on skill content — not just same category
rls-security-check
Audits Supabase and Postgres Row Level Security configuration for any project. Use when the user asks to check database security, audit RLS, check Supabase policies, review row-level security, or find data exposure risks. Also use when the user mentions Supabase, RLS, anon key, service role, multi-tenant data isolation, or asks whether their database is safe to launch. Inspects actual migration files and SQL definitions for ENABLE ROW LEVEL SECURITY statements and CREATE POLICY definitions. Flags disabled RLS on user-data tables, USING (true) policies that grant unrestricted access, anon/public role mutation access, and missing WITH CHECK clauses on write policies. For every vulnerability, outputs the exact CREATE POLICY statement required to fix it, mapped to auth.uid() or the project's actual auth pattern. Does not fix inline — reports findings first.
supabase-multi-tenant-rls
Design, implement and verify multi-tenant Row Level Security in Supabase Postgres - organizations, memberships, roles and invites - without recursive policies, privilege escalation, or silent cross-tenant leaks. Use this whenever the work touches organizations, teams, workspaces, tenants, members, invites, roles and permissions, RLS policies, security definer helper functions, or any table carrying an org_id or tenant_id. Use it for audits and debugging of existing policies too. Reach for it even when the request sounds like a trivial "just add a policy" task, because the failure mode here is silent, a wrong policy returns rows instead of an error.
supabase
Supabase platform standards — Row-Level Security, publishable/anon and secret/service_role key boundaries, Postgres and Edge functions, Storage, Realtime, and the CLI migration workflow. Use when working with RLS policies, Supabase clients, Edge Functions, or supabase/ migrations. Loads alongside the database (Postgres) domain.