I will audit your lovable bolt supabase app for rls and security

N
nicolas_mosca
N
nicolas_mosca
Nicolas M.

About this gig

Your AI-built app works. But is it actually safe to launch?


This is a technical security review not a penetration test or compliance audit. I check what your Supabase setup actually allows, not what your AI tool claims is configured.


I only need read-only access a collaborator invite or your schema/migrations. I never ask for your service-role key, and any live checks are rollback-safe.


I specialize in auditing apps built with Lovable, Bolt, Replit, Cursor and Base44 on Supabase/PostgreSQL focused on Row Level Security (RLS), authentication, authorization and data exposure.


What I check: RLS policies, table-level access, anonymous access, auth & roles, SECURITY DEFINER functions, exposed keys/credentials, storage policies, Edge Functions, data isolation.


You'll receive a prioritized report Critical / High / Medium / Recommendation explaining what's wrong, why it matters, and how to fix it. No jargon, no generic scan dump.


Want it fixed too? Choose Premium and I'll implement and retest critical fixes.


Unsure which package fits? Message me your stack first.

Get to know Nicolas M.

Nicolas M.

Technology Product Engineering Leader

  • FromUnited Kingdom
  • Member sinceFeb 2024
  • Avg. response time1 hour
  • Languages

    English, Spanish
I am a technology and product engineering leader with over 20 years of experience turning business ideas into enterprise software. As the Founder and CTO of BeeReal, I lead technical delivery for global clients across fintech, aviation, and healthcare, specializing in SaaS, cloud architecture, and AI-enabled systems.

My Portfolio