RLS, storage and exposed-key checks across the Supabase projects you ship — without a key in your dashboard.
Argus treats every platform with the depth it deserves — these are theSupabase-specific signals the mesh produces.
Argus reads row-level security policies and flags tables and views that have RLS disabled, are over-permissive, or are reachable through a public anon key.
Buckets are checked for public exposure, content-type sniffing risk and missing access policies.
The anon key and service-role key paths are watched for leaks across your source, deployments and config — and the identity provider configuration is audited.
In Supabase, create a personal-access token with the scopes Argus requests. Paste it into the integration.
Pick the Supabase projects to cover. Argus indexes policies, buckets and identity configuration.
Optionally let Argus open pull requests on the connected GitHub repo when fixes belong in migration files.
The discipline this connector sits inside, with field notes from the team.
The discipline this connector sits inside, with field notes from the team.
How this connector fits the audience that uses it most.
Unlimited targets on every paid tier. AI usage is what is metered.