Alternatives
Products that do what LeakScope — Supabase Security Auditor does
Scan websites for exposed Supabase data and API leaks
- 1

- 2

- 3

- 4

- 5

- 6

- 7

- 8KD
I built this after seeing multiple teams accidentally ship API keys in their frontend code. The problem: Modern web development moves fast. You're vibe-coding, shipping features, and suddenly your AWS keys are sitting in a tag visible to anyone who opens DevTools. I've personally witnessed this happen to at least 3-4 production apps in the past year alone. KeyLeak Detector runs through your site (headless browser + network interception) and checks for 50+ types of leaked secrets: AWS/Google keys, Stripe tokens, database connection strings, LLM API keys (OpenAI, Claude, etc.), JWT…
Nov 2025 · github.com
- 9

- 10ST
Hi HN — we've built a testing framework for Supabase that spins up fast, isolated Postgres databases for each test case. It’s designed to make RLS policies easy to validate with real database state, without global test fixtures or mock auth. Features: - Instant isolated Postgres DBs per test - Automatic rollback after each test - RLS-native testing with `.setContext()` for auth simulation - Flexible seeding (SQL, CSV, JSON, JS) - Works with Jest, Mocha, and any async test runner - CI-friendly (runs cleanly in GitHub Actions) We also published example projects and a free set of tutorials:…
Nov 2025 · npmjs.com
- 11

- 12

- 13

- 14

- 15

- 16TH
I wrote this tool during an internship at Narf Industries in 2023. It's a REPL that allows for quickly developing, testing, and fuzzing for HTTP request smuggling attack payloads. I started the internship having never worked with web servers, and have now found over 100 HTTP implementation bugs. I attribute this mostly to the ease of experimentation in the Garden. REPL-oriented fuzzing is just a really good interface for finding parsing bugs. It's pretty neat to able to run a differential fuzzer, categorize and display all the discovered discrepancies, then let a human pick through them and…
2024 · github.com
- 17

- 18

- 19

- 20

- 21SO
Heya HN! We put together a post [0] explaining the motivation for building Supafana in some detail, but in short: we wanted a way to get to database graphs with an effort similar to starting a Supabase project - in essence, in a few clicks. It feels unusual to open-source what is essentially a SaaS infrastructure project, but it also feels pretty great - all our code is here: https://github.com/fogbender/supafana We have some discount codes available - let me know if you want one ([email protected]). Thanks for reading! [0]…
2024 · supafana.com
- 22

- 23

A Chrome extension to detect browser-visible security leaks
Apr 2026 · chromewebstore.google.com
- 24

Ranked by how close each launch is in meaning, then by votes. Refine with a description →