yoanbernabeu

yoanbernabeu/supabase-pentest-skills

25 resources in this repository

GitHub
🎯25
24

🎯Skills25

🎯supabase-audit-rls🎯Skill

Audits and tests Row Level Security (RLS) policies in Supabase databases to identify potential authorization vulnerabilities and misconfigurations.

supabase-audit-rls
🎯supabase-pentest🎯Skill

Supabase security auditing skill from the Supabase Pentest Skills collection of 24 AI agent skills covering detection, key extraction, RLS testing, IDOR detection, storage audit, evidence collection, and comprehensive reporting

supabase-pentest
🎯supabase-help🎯Skill

Provides comprehensive guidance and troubleshooting assistance for Supabase-related security testing and pentest scenarios.

supabase-help
🎯supabase-audit-realtime🎯Skill

Audits and monitors Supabase Realtime subscriptions for potential security vulnerabilities and unauthorized access patterns.

supabase-audit-realtime
🎯supabase-audit-auth-config🎯Skill

Audits and evaluates Supabase authentication configuration settings for potential security vulnerabilities and misconfigurations.

supabase-audit-auth-config
🎯supabase-report🎯Skill

Supabase security report generation skill from the Supabase Pentest Skills collection of 24 AI agent skills covering detection, key extraction, RLS testing, IDOR detection, storage audit, evidence collection, and comprehensive reporting

supabase-report
🎯supabase-audit-functions🎯Skill

Audits and identifies potential security vulnerabilities in Supabase database functions, checking for misconfigurations, improper access controls, and potential injection risks.

supabase-audit-functions
🎯supabase-audit-tables-list🎯Skill

Lists and enumerates all database tables in a Supabase project, providing a comprehensive overview of the database schema for security auditing purposes.

supabase-audit-tables-list
🎯supabase-extract-db-string🎯Skill

Extracts and identifies potential database connection strings or sensitive connection-related information within a Supabase application during security testing.

supabase-extract-db-string
🎯supabase-extract-service-key🎯Skill

Extracts and identifies potential Supabase service keys that might be exposed or vulnerable during a security assessment.

supabase-extract-service-key
🎯supabase-audit-rpc🎯Skill

Audits and tests Supabase Remote Procedure Calls (RPCs) for potential security vulnerabilities, unauthorized access risks, and improper function permissions.

supabase-audit-rpc
🎯supabase-extract-anon-key🎯Skill

Extracts the anonymous authentication key from a Supabase project to identify potential security vulnerabilities in client-side access configurations.

supabase-extract-anon-key
🎯supabase-extract-url🎯Skill

Extracts and validates URLs from a Supabase application to identify potential security risks or exposed endpoints during a penetration testing assessment.

supabase-extract-url
🎯supabase-audit-buckets-list🎯Skill

Lists and audits all Supabase storage buckets, identifying potential security misconfigurations and unauthorized access risks.

supabase-audit-buckets-list
🎯supabase-audit-buckets-public🎯Skill

Audits and identifies publicly accessible Supabase storage buckets that may expose sensitive files or data to unauthorized viewers.

supabase-audit-buckets-public
🎯supabase-extract-jwt🎯Skill

Supabase JWT extraction skill from the Supabase Pentest Skills collection of 24 AI agent skills covering detection, key extraction, RLS testing, IDOR detection, storage audit, evidence collection, and comprehensive reporting

supabase-extract-jwt
🎯supabase-audit-tables-read🎯Skill

Supabase audit tables read skill from the Supabase Pentest Skills collection of 24 AI agent skills covering detection, key extraction, RLS testing, IDOR detection, storage audit, evidence collection, and comprehensive reporting

supabase-audit-tables-read
🎯supabase-detect🎯Skill

Scans Supabase applications to detect potential security vulnerabilities, configuration weaknesses, and exposed sensitive information during initial reconnaissance and threat assessment stages.

supabase-detect
🎯supabase-audit-auth-signup🎯Skill

Audits and tests Supabase authentication signup processes for potential security vulnerabilities, including weak password policies, improper validation, and potential registration bypass techniques.

supabase-audit-auth-signup
🎯supabase-audit-auth-users🎯Skill

Audits and analyzes Supabase authentication users for potential security vulnerabilities, misconfigurations, and unauthorized access risks.

supabase-audit-auth-users
🎯supabase-report-compare🎯Skill

Supabase security report comparison skill from the Supabase Pentest Skills collection of 24 AI agent skills covering detection, key extraction, RLS testing, IDOR detection, storage audit, evidence collection, and comprehensive reporting

supabase-report-compare
🎯supabase-audit-buckets-read🎯Skill

Supabase storage buckets read audit skill from the Supabase Pentest Skills collection of 24 AI agent skills covering detection, key extraction, RLS testing, IDOR detection, storage audit, evidence collection, and comprehensive reporting

supabase-audit-buckets-read
🎯supabase-audit-authenticated🎯Skill

Supabase authenticated endpoint audit skill from the Supabase Pentest Skills collection of 24 AI agent skills covering detection, key extraction, RLS testing, IDOR detection, storage audit, evidence collection, and comprehensive reporting

supabase-audit-authenticated
🎯supabase-evidence🎯Skill

Collects and documents security audit evidence, findings, and artifacts during a Supabase application penetration testing process.

supabase-evidence
🎯supabase🎯Skill

Skill

supabase