supabase-extract-db-string

Community

Detect exposed DB credentials in client code.

Authoryoanbernabeu
Version1.0.0
Installs0

System Documentation

What problem does it solve?

This Skill detects if PostgreSQL database connection strings are exposed in client-side code, enabling direct database access and posing a critical security risk.

Core Features & Use Cases

  • Detect full connection strings embedded in frontend bundles and common environment variable leaks exposed to the client.
  • Report exposure with precise location data and remediation guidance to minimize risk.
  • Integrate with progressive context updates and evidence collection during audits, ensuring findings are captured incrementally.

Quick Start

Use the supabase-extract-db-string skill to scan target frontend assets for exposed PostgreSQL connection strings and document any findings.

Dependency Matrix

Required Modules

None required

Components

Standard package

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: supabase-extract-db-string
Download link: https://github.com/yoanbernabeu/supabase-pentest-skills/archive/main.zip#supabase-extract-db-string

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.