{"repo":"Rodrigotari1/supashield","free":true,"listed":false,"github":"https://github.com/Rodrigotari1/supashield","clone":"git clone https://github.com/Rodrigotari1/supashield.git","description":"Automated Supabase RLS security testing CLI - catch vulnerabilities before production","language":"TypeScript","stars":103,"topics":["supabase-rls-testing-security-cli","lovable","postgresql","rls","rls-policies","supabase","supabase-db","leak-detection","postgresql-database","vibe-coding"],"license":"MIT","category":"databases-storage","readme_excerpt":"SupaShield 🔗 Visit the website for full documentation and examples. Catch Supabase RLS security vulnerabilities before they reach production. Features - Security vulnerability detection - RLS policy static analysis (lint) - RLS coverage reporting (see what each role can access) - Policy change detection (snapshot & diff) - Smart schema discovery - RLS policy testing (tables + storage buckets) - Real user context testing - Parallel test execution - JSON output for AI/CI integration - CI/CD ready - Zero configuration Installation Setup Set your Supabase database URL: Get this from: Supabase Dashboard → Settings → Database → Connection string → Transaction pooler Important: Use the Transaction pooler connection string (port 6543), not the Direct connection. Transaction pooler is IPv4 compatible and works everywhere. Note: DATABASE URL is also supported for backwards compatibility. Quick Start Example Output Configuration ( .supashield/policy.yaml ) Why SupaShield? RLS Testing is Hard - Manual testing doesn't scale - Complex permission logic is error-prone - Security bugs are expensive to fix in production SupaShield Makes it Easy - Automatically discovers your schema - Tests all CRUD operations for each role - Validates real user permissions - Integrates with your CI/CD pipeline CI/CD Integration AI-Assisted Development If you're coding with AI (Cursor, Claude Code, etc.), use --json output: The structured output lets your AI understand exactly what's wrong and suggest fixes. S","default_branch":null,"files":null,"tree":[],"storefront":"/r/Rodrigotari1","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/Rodrigotari1/supashield/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}