specsfy-specialist-supabase

Pass

Audited by Gen Agent Trust Hub on Aug 21, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill functions as a security-centric framework for Supabase development. It emphasizes mandatory Row Level Security (RLS), proper session management, and the protection of administrative credentials like the service_role key. It includes detailed validation steps to ensure policies are correctly implemented and tested.
  • [EXTERNAL_DOWNLOADS]: The skill references official Supabase documentation and the @supabase/supabase-js client library. These are well-known, trusted resources and do not represent a security risk.
  • [PROMPT_INJECTION]: As the skill is designed to analyze project configurations and migration files, it possesses an ingestion surface for indirect prompt injection. However, it mitigates this by instructing the agent to perform explicit security validations and negative tests, and its primary purpose is to identify and resolve security vulnerabilities.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 21, 2026, 05:22 PM
Security Audit — agent-trust-hub — specsfy-specialist-supabase