Skip to content
Home

SupaExplorer

Scans URLs for exposed Supabase credentials and shows which tables and data attackers can access with AI-powered fixes

The product is a security scanner that detects exposed Supabase credentials and other API keys in web applications, shows which database tables and sample data are publicly accessible, and provides fixes for misconfigured access policies. It is for developers, IT staff, and engineering teams in business environments building applications with Supabase. It is delivered as SaaS with free tools including a Chrome extension, URL scanner, and project audit, with a paid cloud plan for AI-generated fixes and monitoring.

Key features

  • Scan any URL for exposed credentials
  • Detect exposed Supabase anon and service keys
  • Identify files leaking keys
  • Show exposed tables and row counts
  • Display sample leaked data
  • Audit Supabase project RLS status
  • Provide AI-powered SQL fix snippets
  • Compare audit snapshots over time
  • Discover subdomains and endpoints
  • Track reports per domain
  • Share findings with team collaboration
  • Generate shareable PDF reports
  • Real-time detection via Chrome extension
  • No social media activity within the last 30 days
GTM channels
  • API
ICP
  • Software developers
  • Engineering teams
  • Security teams