supabase

Pass

Audited by Gen Agent Trust Hub on Jul 21, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill fetches the project changelog and technical documentation from official Supabase domains to provide the most current implementation guidance.
  • [COMMAND_EXECUTION]: Uses standard Supabase CLI commands for database operations and employs curl to perform connectivity checks against the Supabase MCP server.
  • [DATA_EXFILTRATION]: Provides proactive security warnings against exposing sensitive service_role keys or environment variables in public client-side code.
  • [PROMPT_INJECTION]: The instructions do not contain any patterns attempting to override agent behavior or bypass safety constraints; instead, they include detailed checklists to enforce secure database policies.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 21, 2026, 10:27 PM
Security Audit — agent-trust-hub — supabase