supabase

Pass

Audited by Gen Agent Trust Hub on Jun 20, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill contains extensive security guidance, warning against common pitfalls like using user_metadata for authorization, exposing service_role keys, and improper RLS policy implementation.
  • [EXTERNAL_DOWNLOADS]: Fetches configuration and documentation updates from official Supabase domains (e.g., supabase.com, mcp.supabase.com) to ensure the agent uses the most current product information.
  • [COMMAND_EXECUTION]: Instructions involve standard use of the Supabase CLI and MCP server tools for database management, such as running SQL queries and generating migrations.
  • [PROMPT_INJECTION]: While the skill involves ingesting external documentation and changelogs which could theoretically contain instructions, these sources are limited to the official service provider's verified domains.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 20, 2026, 03:36 PM
Security Audit — agent-trust-hub — supabase