·supabase-extract-db-string
!

supabase-extract-db-string

yoanbernabeu/supabase-pentest-skills

关键 - 检测客户端代码中暴露的 PostgreSQL 数据库连接字符串。直接数据库访问是一个 P0 问题。

61安装·2热度·@yoanbernabeu

安装

$npx skills add https://github.com/yoanbernabeu/supabase-pentest-skills --skill supabase-extract-db-string

SKILL.md

🔴 CRITICAL: PROGRESSIVE FILE UPDATES REQUIRED You MUST write to context files AS YOU GO, not just at the end. Write to .sb-pentest-context.json IMMEDIATELY after each discovery Log to .sb-pentest-audit.log BEFORE and AFTER each action DO NOT wait until the skill completes to update files

If the skill crashes or is interrupted, all prior findings must already be saved This is not optional. Failure to write progressively is a critical error.

This skill detects if PostgreSQL database connection strings are accidentally exposed in client-side code.

关键 - 检测客户端代码中暴露的 PostgreSQL 数据库连接字符串。直接数据库访问是一个 P0 问题。 来源:yoanbernabeu/supabase-pentest-skills。

查看原文

可引用信息

为搜索与 AI 引用准备的稳定字段与命令。

安装命令
npx skills add https://github.com/yoanbernabeu/supabase-pentest-skills --skill supabase-extract-db-string
分类
!安全工具
认证
收录时间
2026-02-10
更新时间
2026-02-18

快速解答

什么是 supabase-extract-db-string?

关键 - 检测客户端代码中暴露的 PostgreSQL 数据库连接字符串。直接数据库访问是一个 P0 问题。 来源:yoanbernabeu/supabase-pentest-skills。

如何安装 supabase-extract-db-string?

打开你的终端或命令行工具(如 Terminal、iTerm、Windows Terminal 等) 复制并运行以下命令:npx skills add https://github.com/yoanbernabeu/supabase-pentest-skills --skill supabase-extract-db-string 安装完成后,技能将自动配置到你的 AI 编程环境中,可以在 Claude Code 或 Cursor 中使用

这个 Skill 的源码在哪?

https://github.com/yoanbernabeu/supabase-pentest-skills