Security Tuneup
Idea note
This page is an unfinished checklist and does not fully reflect the current Supacharger Core security model. Use Authentication and route protection, Roles and custom claims, Input validation, and Deploy and production readiness as the maintained references.
RLS policies
How to set up cloudflare
Rate limiting
test with postman
Setting timeouts and enforcing only one session https://supabase.com/dashboard/project/XXX/auth/sessions
Email password settings https://supabase.com/dashboard/project/XXX/auth/providers?provider=Email