Hi everyone,
I’m a penetration tester building Permetra, a nonprofit, open-source security tool for Supabase.
Permetra visualizes users, roles, grants, tables, and RLS policies as an interactive BloodHound-inspired graph. It helps developers understand who can access what, why that access exists, and where unexpected paths to sensitive data may exist.
The repository is currently private while I prepare the first public release. I’m looking for feedback, contributors, and early testers.
What is your hardest Supabase authorization, RLS, or tenant-isolation problem?
Shoddy_Scratch_8981 introduces Permetra, a nonprofit, open-source security tool designed for Supabase. The tool visualizes users, roles, grants, tables, and RLS policies as an interactive graph to help developers understand access paths. The author seeks feedback, contributors, and early testers for the tool, which is currently in a private repository.
Demo and updates: https://lnkd.in/p/dt-EtE\_P