A Supabase Agent Exfiltrated Credentials From a Support Ticket. Nobody Saw It Happen.

📰 Dev.to · razashariff

A developer was using Cursor with Supabase's MCP server. The agent had the service_role key -- full...

Published 20 Mar 2026
Read full article → ← Back to Reads