{"repo":"supabase/supautils","free":true,"listed":false,"github":"https://github.com/supabase/supautils","clone":"git clone https://github.com/supabase/supautils.git","description":"Unlock advanced Postgres features without granting SUPERUSER access","language":"C","stars":88,"topics":["postgresql","postgresql-extension","roles","security"],"license":"Apache-2.0","category":"databases-storage","readme_excerpt":"supautils Supautils is an extension that unlocks advanced Postgres features without granting SUPERUSER access. It's a loadable library that securely allows creating event triggers, publications, extensions to non-superusers. Built for cloud deployments where giving SUPERUSER rights to end users isn’t an option. Completely managed by configuration — no tables, functions, or security labels are added to your database. This makes upgrades effortless and lets you apply settings cluster-wide solely via postgresql.conf . Installation Clone this repo and run To make supautils available to the whole cluster, you can add the following to postgresql.conf (use SHOW config file for finding the location). Or to make it available only on some PostgreSQL roles use session preload libraries . Features - Privileged Role - Non-Superuser Publications - Non-Superuser Foreign Data Wrappers - Non-Superuser Settings - Non-Superuser Event Triggers - Privileged extensions - Constrained extensions - Extensions Parameter Overrides - Table Ownership Bypass - Reserved Roles - Reserved Memberships - Enhanced Hints Privileged Role The privileged role is a proxy role for a SUPERUSER, which is configured by supautils.superuser (defaults to the bootstrap user, i.e. the role used to start the Postgres cluster). When the privileged role creates a superuser-only database object (like publications): - supautils will switch the role to the supautils.superuser , allowing the operation and creating the database obje","default_branch":null,"files":null,"tree":[],"storefront":"/r/supabase","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/supabase/supautils/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}