yoanbernabeu

yoanbernabeu/supabase-pentest-skills

25 resources in this repository

GitHub
🎯25
24

🎯Skills25

🎯supabase-audit-rls🎯Skill

Audits and tests Row Level Security (RLS) policies in Supabase databases to identify potential authorization vulnerabilities and misconfigurations.

supabase-audit-rls
🎯supabase-pentest🎯Skill

24 AI agent skills for professional security auditing of Supabase applications, covering detection, API key extraction, RLS testing, IDOR detection, storage audit, and comprehensive reporting.

supabase-pentest
🎯supabase-audit-auth-config🎯Skill

Audits and evaluates Supabase authentication configuration settings for potential security vulnerabilities and misconfigurations.

supabase-audit-auth-config
🎯supabase-help🎯Skill

Provides comprehensive guidance and troubleshooting assistance for Supabase-related security testing and pentest scenarios.

supabase-help
🎯supabase-audit-functions🎯Skill

Audits and identifies potential security vulnerabilities in Supabase database functions, checking for misconfigurations, improper access controls, and potential injection risks.

supabase-audit-functions
🎯supabase-audit-realtime🎯Skill

Audits and monitors Supabase Realtime subscriptions for potential security vulnerabilities and unauthorized access patterns.

supabase-audit-realtime
🎯supabase-audit-rpc🎯Skill

Audits and tests Supabase Remote Procedure Calls (RPCs) for potential security vulnerabilities, unauthorized access risks, and improper function permissions.

supabase-audit-rpc
🎯supabase-audit-tables-read🎯Skill

24 AI agent skills for professional security auditing of Supabase applications, covering detection, API key extraction, RLS testing, IDOR detection, storage audit, and comprehensive reporting.

supabase-audit-tables-read
🎯supabase-report🎯Skill

24 AI agent skills for professional security auditing of Supabase applications, covering detection, API key extraction, RLS testing, IDOR detection, storage audit, and comprehensive reporting.

supabase-report
🎯supabase-audit-tables-list🎯Skill

Lists and enumerates all database tables in a Supabase project, providing a comprehensive overview of the database schema for security auditing purposes.

supabase-audit-tables-list
🎯supabase-audit-buckets-list🎯Skill

Lists and audits all Supabase storage buckets, identifying potential security misconfigurations and unauthorized access risks.

supabase-audit-buckets-list
🎯supabase-detect🎯Skill

Scans Supabase applications to detect potential security vulnerabilities, configuration weaknesses, and exposed sensitive information during initial reconnaissance and threat assessment stages.

supabase-detect
🎯supabase-audit-buckets-public🎯Skill

Audits and identifies publicly accessible Supabase storage buckets that may expose sensitive files or data to unauthorized viewers.

supabase-audit-buckets-public
🎯supabase-extract-anon-key🎯Skill

Extracts the anonymous authentication key from a Supabase project to identify potential security vulnerabilities in client-side access configurations.

supabase-extract-anon-key
🎯supabase-audit-auth-users🎯Skill

Audits and analyzes Supabase authentication users for potential security vulnerabilities, misconfigurations, and unauthorized access risks.

supabase-audit-auth-users
🎯supabase-extract-url🎯Skill

Extracts and validates URLs from a Supabase application to identify potential security risks or exposed endpoints during a penetration testing assessment.

supabase-extract-url
🎯supabase-audit-buckets-read🎯Skill

24 AI agent skills for professional security auditing of Supabase applications, covering detection, API key extraction, RLS testing, IDOR detection, storage audit, and comprehensive reporting.

supabase-audit-buckets-read
🎯supabase-audit-auth-signup🎯Skill

Audits and tests Supabase authentication signup processes for potential security vulnerabilities, including weak password policies, improper validation, and potential registration bypass techniques.

supabase-audit-auth-signup
🎯supabase-extract-jwt🎯Skill

24 AI agent skills for professional security auditing of Supabase applications, covering detection, API key extraction, RLS testing, IDOR detection, storage audit, and comprehensive reporting.

supabase-extract-jwt
🎯supabase-report-compare🎯Skill

24 AI agent skills for professional security auditing of Supabase applications, covering detection, API key extraction, RLS testing, IDOR detection, storage audit, and comprehensive reporting.

supabase-report-compare
🎯supabase-extract-service-key🎯Skill

Extracts and identifies potential Supabase service keys that might be exposed or vulnerable during a security assessment.

supabase-extract-service-key
🎯supabase-extract-db-string🎯Skill

Extracts and identifies potential database connection strings or sensitive connection-related information within a Supabase application during security testing.

supabase-extract-db-string
🎯supabase-audit-authenticated🎯Skill

24 AI agent skills for professional security auditing of Supabase applications, covering detection, API key extraction, RLS testing, IDOR detection, storage audit, and comprehensive reporting.

supabase-audit-authenticated
🎯supabase-evidence🎯Skill

Collects and documents security audit evidence, findings, and artifacts during a Supabase application penetration testing process.

supabase-evidence
🎯supabase🎯Skill

Skill

supabase