OAUTH2
supabase_oauth
Developer setup
- Client idclient_id · stringRequired
- Client secretclient_secret · stringRequired
- Redirect URIoauth_redirect_uri · stringOptional
- Scopesscopes · stringOptional
User connection
- Base URLfull · stringRequired
SUPABASE
Supabase is an open-source backend-as-a-service providing a Postgres database, authentication, storage, and real-time subscription APIs for building modern applications
Description is untrusted, display-only upstream metadata. It never becomes policy, OAuth scope authority, or an agent instruction.
Pakkawork boundary
Research catalogue metadata only. No Pakkawork OAuth, credential, host, quota, executor, or verifier is enabled.
129
Action summaries
Display-only definitions
0
Trigger types
Not installed instances
2
Auth modes
Field names, never values
No
Execution
No runtime adapter
Authentication map
OAUTH2
API_KEY
No fields declared in this snapshot.
Capability index
Showing 1–30 of 129 actions
SUPABASE_ALPHA_CREATE_API_KEY
Creates a 'publishable' or 'secret' API key for an existing Supabase project, optionally with a description; 'secret' keys can have customized JWT templates.
Untrusted display-only summary
SUPABASE_ALPHA_DELETE_API_KEY
Permanently deletes a specific API key (identified by `id`) from a Supabase project (identified by `ref`), revoking its access.
Untrusted display-only summary
SUPABASE_ALPHA_DELETE_THIRD_PARTY_AUTH_INTEGRATION
Removes a third-party authentication provider (e.g., Google, GitHub) from a Supabase project's configuration; this immediately prevents users from logging in via that method.
Untrusted display-only summary
SUPABASE_ALPHA_GET_THIRD_PARTY_INTEGRATION
Retrieves the detailed configuration for a specific third-party authentication (TPA) provider, identified by `tpa_id`, within an existing Supabase project specified by `ref`.
Untrusted display-only summary
SUPABASE_ALPHA_LIST_THIRD_PARTY_AUTH_INTEGRATIONS
Lists all configured third-party authentication provider integrations for an existing Supabase project (using its `ref`), suitable for read-only auditing or verifying current authentication settings.
Untrusted display-only summary
SUPABASE_ALPHA_UPDATE_API_KEY
Updates an existing Supabase project API key's `description` and/or `secret_jwt_template` (which defines its `role`); does not regenerate the key string.
Untrusted display-only summary
SUPABASE_APPLY_A_MIGRATION
Tool to apply database migrations to a Supabase project. Use when you need to execute SQL schema changes, create tables, alter columns, or run other DDL/DML operations as part of a tracked migration. This is a Beta feature in the Supabase Management API.
Untrusted display-only summary
SUPABASE_BETA_ACTIVATE_CUSTOM_HOSTNAME
Activates a previously configured custom hostname for a Supabase project, assuming DNS settings are verified externally.
Untrusted display-only summary
SUPABASE_BETA_ACTIVATE_VANITY_SUBDOMAIN
Activates a vanity subdomain for the specified Supabase project (e.g., 'my-brand.supabase.co'). Important notes: - Vanity subdomains require a paid plan (Pro/Team/Enterprise) - Usage of vanity subdomains and custom domains is mutually exclusive - After activation, your project's auth services will no longer work on th…
Untrusted display-only summary
SUPABASE_BETA_AUTHORIZE_USER_THROUGH_OAUTH
Generates a Supabase OAuth 2.0 authorization URL for user redirection. IMPORTANT: This action requires a pre-registered OAuth client_id and a redirect_uri that matches one of the pre-registered URIs for that OAuth application. Without a valid registered OAuth application, this endpoint will return a 400 error. To use…
Untrusted display-only summary
SUPABASE_BETA_CHECK_VANITY_SUBDOMAIN_AVAILABILITY
Checks if a specific vanity subdomain is available for a Supabase project; this action does not reserve or assign the subdomain.
Untrusted display-only summary
SUPABASE_BETA_CREATE_READ_REPLICA
Provisions a read-only replica for a Supabase project in a specified, Supabase-supported AWS region to enhance read performance and reduce latency.
Untrusted display-only summary
SUPABASE_BETA_ENABLE_DATABASE_WEBHOOKS
Enables database webhooks for the Supabase project `ref`, triggering real-time notifications for INSERT, UPDATE, or DELETE events.
Untrusted display-only summary
SUPABASE_BETA_GET_PROJECT_CUSTOM_HOSTNAME_CONFIG
Retrieves a Supabase project's custom hostname configuration, including its status, SSL certificate, and ownership verification, noting that availability may depend on the project's plan.
Untrusted display-only summary
SUPABASE_BETA_GET_PROJECT_NETWORK_BANS
Retrieves the list of banned IPv4 addresses for a Supabase project using its unique project reference string; this is a read-only operation.
Untrusted display-only summary
SUPABASE_BETA_GET_PROJECT_NETWORK_RESTRICTIONS
Retrieves the network restriction settings (IP allowlists) for a Supabase project. Use this action to: - Check which IPv4/IPv6 CIDR blocks are allowed to connect to the project's database - Verify if network restrictions are enabled (entitlement: "allowed") or disabled ("disallowed") - Audit current network security c…
Untrusted display-only summary
SUPABASE_BETA_GET_PROJECT_PGSODIUM_CONFIG
Retrieves the PGSodium configuration, including the root encryption key, for an existing Supabase project identified by its `ref`.
Untrusted display-only summary
SUPABASE_BETA_GET_PROJECT_SSL_ENFORCEMENT_CONFIG
Retrieves the SSL enforcement configuration for a specified Supabase project, indicating if SSL connections are mandated for its database.
Untrusted display-only summary
SUPABASE_BETA_GET_VANITY_SUBDOMAIN_CONFIG
Fetches the current vanity subdomain configuration, including its status and custom domain name, for a Supabase project identified by its reference ID.
Untrusted display-only summary
SUPABASE_BETA_REMOVE_NETWORK_BANS
Removes specified IPv4 addresses from a Supabase project's network ban list, granting immediate access; IPs not currently banned are ignored.
Untrusted display-only summary
SUPABASE_BETA_REMOVE_READ_REPLICA
Remove a read replica from a Supabase project (Pro plan or higher required). This beta endpoint initiates the removal of a specified read replica database. The operation is irreversible. Before removal, ensure all application traffic is redirected from the replica to the primary database. Requirements: - Project must…
Untrusted display-only summary
SUPABASE_BETA_RUN_SQL_QUERY
Executes a given SQL query against the project's database; use for advanced data operations or when standard API endpoints are insufficient, ensuring queries are valid PostgreSQL and sanitized. Use the get_table_schemas or generate_type_script_types tool to retrieve the table schema, then base your query on it.
Untrusted display-only summary
SUPABASE_BETA_UPDATE_PROJECT_NETWORK_RESTRICTIONS
Updates and applies network access restrictions (IPv4/IPv6 CIDR lists) for a Supabase project, which may terminate existing connections not matching the new rules.
Untrusted display-only summary
SUPABASE_BETA_UPGRADE_PROJECT_POSTGRES_VERSION
Initiates an asynchronous upgrade of a Supabase project's PostgreSQL database to a specified `target_version` from a selected `release_channel`, returning a `tracking_id` to monitor status; the `target_version` must be available in the chosen channel.
Untrusted display-only summary
SUPABASE_COUNT_ACTION_RUNS
Counts the number of action runs for a Supabase project using a HEAD request. Use this when you need to retrieve the total count of action runs without fetching the full list of runs.
Untrusted display-only summary
SUPABASE_CREATE_A_PROJECT
Creates a new Supabase project, requiring a unique name (no dots) within the organization; project creation is asynchronous.
Untrusted display-only summary
SUPABASE_CREATE_BULK_SECRETS
Tool to bulk create secrets for a Supabase project. Use when you need to create multiple project secrets at once. Each secret name must not start with SUPABASE_.
Untrusted display-only summary
SUPABASE_CREATE_DATABASE_BRANCH
Creates a new, isolated database branch from an existing Supabase project (identified by `ref`), useful for setting up separate environments like development or testing, which can optionally be linked to a Git branch.
Untrusted display-only summary
SUPABASE_CREATE_FUNCTION
Creates a new serverless Edge Function for a Supabase project (identified by `ref`), requiring valid JavaScript/TypeScript in `body` and a project-unique `slug` identifier.
Untrusted display-only summary
SUPABASE_CREATE_LOGIN_ROLE
Creates a temporary CLI login role for database access with specified permissions; use when setting up CLI authentication for development or administrative tasks.
Untrusted display-only summary
Provenance
The detail snapshot comes from an attributed MIT-licensed repository revision. Safe local icons use exact-match CC0 Simple Icons symbols; unmatched brands use monograms.
Remote text is plain display metadata only. It must never become an agent prompt, execution policy, OAuth grant, or executable instruction.