supabase-audit-buckets-read

Community

Audit storage buckets for access and exposure.

Authoryoanbernabeu
Version1.0.0
Installs0

System Documentation

What problem does it solve?

This skill helps security auditors quickly verify storage bucket access controls and detect public exposure, preventing unauthorized data access in Supabase projects.

Core Features & Use Cases

  • Bucket discovery & access checks: lists buckets and tests read access, metadata visibility, and public URL accessibility.
  • Sensitive-data detection: identifies files that may contain credentials or secrets exposed to the public.
  • Evidence and logging: generates structured evidence directories and progressive context logs for traceability across audits.

Quick Start

Run the storage-buckets-read skill in your audit workspace. Ensure you have an anon or service role key, then execute the audit across all buckets and review the generated evidence in the .sb-pentest-evidence directory and progress logs in .sb-pentest-audit.log.

Dependency Matrix

Required Modules

None required

Components

Standard package

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: supabase-audit-buckets-read
Download link: https://github.com/yoanbernabeu/supabase-pentest-skills/archive/main.zip#supabase-audit-buckets-read

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.