CLAUDE CODE MARKETPLACES
SkillsMarketplacesMCPDigestLearnAdvertise

This week in Claude

Every Monday: Claude Code, Agent SDK, MCP, and the Anthropic platform moves worth your time.

Skills by Category
Frontend DevelopmentBackend & APIsTesting & QASecurityDevOps & CI/CDGit & Pull RequestsDocumentationCode Review & QualityAI & Agent BuildingSkill Development
MCP Servers by Category
Web & Browser AutomationDatabasesAI & LLM ToolsCloud & InfrastructureCommunication & MessagingDeveloper ToolsDesign & CreativeDocuments & KnowledgeSearch & Web CrawlingAutomation & Workflows
Marketplaces by Category
AI Agents & OrchestrationLLM IntegrationDevelopment ToolsFrontend & UIBackend & APIsDatabasesTesting & Code QualityDevOps & CloudSecurity & ComplianceGit & Version Control

Claude Code Marketplaces

Discover Claude Code plugins, extensions, and tools. Automatically updated directory of Anthropic Claude AI marketplaces with development tools, productivity plugins, and integrations.

Resources

  • Browse Skills
  • Browse MCP Servers
  • Browse Marketplaces
  • Plugins Reference

Community

  • About
  • Learn
  • Feedback
  • Privacy Policy
  • Advertise

Built for the Claude Code community with Claude Code by @mertduzgun

Independent project, not affiliated with Anthropic
  1. Skills
  2. /
  3. yoanbernabeu
  4. /
  5. supabase-pentest-skills
  6. /
  7. Supabase Audit Buckets Public

Supabase Audit Buckets Public

Editor's Note

This audit checks your Supabase storage for publicly accessible buckets and flags anything that shouldn't be world-readable. It's the kind of thing you'd run before a security review or when you realize that "public" bucket from prototyping is still serving files in production. The scan distinguishes between legitimate public assets like avatars and genuinely dangerous stuff like database backups or .env files with exposed URLs anyone can hit. What's smart here is the progressive logging requirement: it writes findings to context files as it goes, so if the scan crashes halfway through a large storage instance, you don't lose everything. The output is thorough, maybe even verbose, but when it finds a publicly accessible secrets.env file, you'll appreciate the detail.

Install

npx skills add https://github.com/yoanbernabeu/supabase-pentest-skills --skill supabase-audit-buckets-public
Votes
0
Installs208
GitHub Stars43
Categories
Backend & APIsSecurity
First SeenJun 3, 2026
View on GitHub

Comments

Login to comment

Related Backend & APIs Skills

View all →
prisma-database-setup

prisma/skills

0
10.8k
39
Step-by-step configuration guides for Prisma ORM across PostgreSQL, MySQL, SQLite, MongoDB, SQL Server, CockroachDB, and Prisma Postgres.
connecting-lambda-to-api-gateway

aws/agent-toolkit-for-aws

0
934
772
connecting lambda to api gateway
api-authentication

aj-geddes/useful-ai-prompts

0
425
245
api authentication
api-authentication

secondsky/claude-skills

0
324
162
api authentication
payload-v3-endpoints

aniketpanjwani/payload-plugin-email-newsletter

0
34
Provides correct Payload CMS v3 endpoint patterns and logger API usage. Use when writing or fixing REST API endpoints, custom handlers, or when encountering TypeScript errors with req.data, req.cookies, or logger calls.
api-gateway-configurator

Dexploarer/hyper-forge

0
5
Configure and manage API gateways including Kong, Tyk, AWS API Gateway, and Apigee. Activates when users need help setting up API gateways, rate limiting, authentication, request transformation, or API management.