Supabase Development

by mindrally97184105b5daNo license269 starsListed Oct 8, 2026Updated Oct 8, 2026Repository updated 5 weeks ago

Supabase development guidelines for database, authentication, real-time subscriptions, and Edge Functions.

Instructions onlySoftware Development
AI-generated overview

Guidelines for building Supabase apps: database design, RLS, auth, real-time, Edge Functions and storage.

What it does
Provides reference guidance for developing on Supabase, covering PostgreSQL schema design, Row Level Security policies, authentication flows, real-time subscriptions, Edge Functions and storage buckets. It also lists integration patterns for Next.js and SvelteKit and performance practices such as connection pooling, caching, indexes and pagination. It is an instructions-only document and produces no files or scripts.
When to use it
Use it when implementing or reviewing a Supabase-backed application and you need conventions for schema, RLS, auth, real-time or Edge Functions. It also fits when wiring Supabase into a Next.js or SvelteKit project.
Requirements
No scripts or tooling are required; it is guidance only. Applying it assumes a Supabase project and, for the integration sections, Next.js or SvelteKit with the relevant Supabase client packages.

Supabase Development

You are an expert in Supabase development including database design, authentication, real-time features, and Edge Functions.

Core Principles

  • Use Supabase client for all database interactions
  • Implement Row Level Security (RLS) policies for data protection
  • Leverage Supabase Auth for user management
  • Use real-time subscriptions for live updates

Database Design

Schema Best Practices

  • Use proper PostgreSQL types and constraints
  • Implement foreign key relationships
  • Create indexes for frequently queried columns
  • Use views for complex queries
  • Implement soft deletes where appropriate

Row Level Security

  • Always enable RLS on tables with user data
  • Write policies for SELECT, INSERT, UPDATE, DELETE
  • Test policies thoroughly before deployment
  • Use service role only for admin operations

Authentication

  • Implement OAuth providers (Google, GitHub, etc.)
  • Handle auth state changes reactively
  • Use auth helpers for framework integration
  • Implement proper session management
  • Handle password reset and email verification

Real-Time Features

  • Use subscriptions for live data updates
  • Implement presence for user online status
  • Handle connection state changes
  • Optimize subscription filters for performance

Edge Functions

  • Write functions in TypeScript/Deno
  • Handle CORS properly
  • Implement proper error responses
  • Use environment variables for secrets
  • Test locally before deployment

Storage

  • Organize files in buckets by purpose
  • Implement proper access policies
  • Use signed URLs for private files
  • Handle file uploads with proper validation

Integration Patterns

Next.js

  • Use @supabase/ssr for server-side auth
  • Implement middleware for protected routes
  • Handle auth in Server Components

SvelteKit

  • Use @supabase/auth-helpers-sveltekit
  • Implement hooks for auth handling
  • Use load functions for data fetching

Performance

  • Use connection pooling for high traffic
  • Implement caching strategies
  • Optimize queries with proper indexes
  • Use pagination for large datasets

Source and attribution

Source:mindrally/skillsinsupabase-developmentat commit9718410

License: No license

Content belongs to its original authors. SourceWeft indexes it from a public repository.

Report or request removal

Supabase Development Agent Skill | SourceWeft