Skip to content
Home

Sentris

Scans Supabase and AI-written code for leaked keys, missing RLS, public buckets, unguarded routes and other misconfigurations with line-level evidence and copy-paste fixes

The product is a security scanner for Supabase and AI-written code that detects leaked service_role keys, tables without RLS, public storage buckets, unguarded routes and other misconfigurations that expose data. It sells to developers, engineering teams and IT teams in businesses building applications on Supabase. It is positioned as a repo-deep, evidence-based scanner that reads migrations, config and route handlers plus the live bundle and only reports findings with exact file and line evidence and copy-paste SQL fixes, not as a pentest.

Key features

  • Detect leaked Supabase service_role keys
  • Detect tables without RLS
  • Detect policies using (true)
  • Detect public storage buckets
  • Detect routes with no auth check
  • Detect Stripe secret keys
  • Detect AI-provider keys
  • Detect committed .env files
  • Detect queries that forget auth context
  • Detect unverified JWTs
  • Detect secrets shipped as NEXT_PUBLIC_
  • Detect endpoints without rate limiting
  • Detect passwords hashed with MD5
  • Detect session cookies without HttpOnly
  • Detect SQL built by concatenation
  • Detect uploads with no size limit
  • Detect dependencies with known CVEs
  • Detect login forms without rate limiting
  • No social media activity within the last 30 days
GTM channels
  • Blog
  • Referral program
  • API
ICP
  • Software developers
  • Engineering teams
  • Security teams