Access levels
Each Supabase account has an access level: Read-only and Read + write. Squad refuses any agent action outside that level. You can also narrow or block single agents under Per-agent access.What agents can do at each level
Each level opens with a short summary in plain tasks, then lists every action it adds, grouped by what the action works on. You do not need to name actions. Ask in plain words, and the agent searches for the matching action. Each action shows its name, a one-line description where the Supabase action catalog has one, and its slug. The slug is the ID that agents use when they call the action.Read-only
Read-only
- View and create settings
- View keys
- View branches
- View functions
- View integrations
- View logs
- View organizations
- View projects
- View runs
- View snippets
- View availability
- View backups
Availability (1)
Availability (1)
Backups (1)
Backups (1)
Branches (3)
Branches (3)
Databases (1)
Databases (1)
Functions (3)
Functions (3)
History (1)
History (1)
Integrations (2)
Integrations (2)
Keys (5)
Keys (5)
Logs (2)
Logs (2)
Members (1)
Members (1)
Migrations (1)
Migrations (1)
Organizations (2)
Organizations (2)
Projects (7)
Projects (7)
Queries (1)
Queries (1)
Regions (1)
Regions (1)
Runs (2)
Runs (2)
Schemas (1)
Schemas (1)
Secrets (1)
Secrets (1)
Services (1)
Services (1)
Settings (16)
Settings (16)
Snippets (2)
Snippets (2)
Storage buckets (1)
Storage buckets (1)
Tables (2)
Tables (2)
Types (1)
Types (1)
Users (1)
Users (1)
Other actions (5)
Other actions (5)
Read + write (recommended)
Read + write (recommended)
- Update settings
- Create, update, and manage branches
- Create, update, and run functions
- Create and update keys
- Create and update migrations
- Create and update projects
- Update backups
- Test domains
- Create integrations
- Create organizations
- Create roles and permissions
- Create secrets
Backups (1)
Backups (1)
Branches (5)
Branches (5)
Databases (1)
Databases (1)
Domains (1)
Domains (1)
Functions (5)
Functions (5)
Integrations (1)
Integrations (1)
Keys (4)
Keys (4)
Migrations (3)
Migrations (3)
Organizations (1)
Organizations (1)
Projects (5)
Projects (5)
Queries (1)
Queries (1)
Roles and permissions (1)
Roles and permissions (1)
Secrets (2)
Secrets (2)
Settings (8)
Settings (8)
Tokens (1)
Tokens (1)
Versions (1)
Versions (1)
Webhooks (1)
Webhooks (1)
Other actions (7)
Other actions (7)
Connect Supabase
Before you start:- You need a Supabase account that you can sign in to.
- Your Squad subscription must be active. Squad does not connect apps while the subscription is not active.
Open Integrations
Add an integration
Find Supabase
Choose an access level
Click Connect Supabase
Sign in to Supabase
Change the access level
- Under YOUR CONNECTIONS, find the Supabase account.
- Open the account menu (⋯) and click Manage scope.
- Under Default scope, choose the new level.
- Click Save access.
Set access for one agent
Every agent uses the account’s level unless you set something else for it. You can narrow one agent to a lower level, or block it.- Under YOUR CONNECTIONS, open the account menu (⋯) on the Supabase account.
- Click Manage scope.
- Under Per-agent access, find the agent.
- Choose the Default option to follow the account’s level, choose a lower level, or choose No access.
- Click Save access.
Use more than one Supabase account
Click + Account on the Supabase card to connect another account. Agents use the primary account unless they are asked to use a specific one.- After you click + Account, follow the connect steps above.
- Each account has its own access level.
- The first account you connect becomes the primary account. It shows ★ PRIMARY.
- To change the primary account, open the account menu (⋯) and click Make primary.
- To tell accounts apart, open the account menu (⋯) and click Rename.
Reconnect or disconnect
Reconnect when the connection has expired, or when you need to change what the account can reach on the Supabase side:- Open the account menu (⋯) and click Reconnect.
- Click Reauthorize on Supabase.
- Sign in to Supabase and approve the request.
Costs
Supabase actions do not use Squad credits. Connected apps never use credits. For what does use credits, see What Squad costs.Troubleshooting
An agent reports that an action is not allowed on this account.- Cause: the action is outside the account’s access level, or outside the level you set for that agent.
- Fix: choose a higher level in Manage scope, or change the agent’s row under Per-agent access.
- Cause: the agent is set to No access under Per-agent access, or the account is not connected.
- Fix: open Manage scope and change the agent’s row. If the account is missing, connect it again.
- Cause: your Squad subscription is not active.
- Fix: resubscribe. See Manage your subscription.
- Cause: the sign-in for that account is no longer valid.
- Fix: use Reconnect on the account.
Common questions
Can I limit what agents can do in Supabase?
Can I limit what agents can do in Supabase?
Can I connect more than one Supabase account?
Can I connect more than one Supabase account?
How do I disconnect Supabase?
How do I disconnect Supabase?