blog/supabase-alternative #339
Replies: 2 comments 4 replies
-
Question: would it ever make sense to use both ZenStack and RLS? E.g. for an extra layer of security. I imagine that anyone building a DB to store sensitive, private user data needs guarantees on who can access the data, and it would be optimal to enforce this both in the backend and in the DB itself. |
Beta Was this translation helpful? Give feedback.
-
Thank you for the article. Is it possible to get the auto-generated Supabase API to respect access control policies defined in Zenstack? I chose Supabase because of the generated API (building boilerplate CRUD endpoints is boring), but I don't like the RLS approach for implementing authz for the maintability/portability reasons you mentioned. The FR discussed in zenstackhq/zenstack#717 would be helpful for sure, but don't know how soon it could be implemented... |
Beta Was this translation helpful? Give feedback.
-
blog/supabase-alternative
Show the limitation of Supabase RLS(Row Level Security) with a multi-tenancy SaaS example and introduce ZenStack as an alternative.
https://zenstack.dev/blog/supabase-alternative
Beta Was this translation helpful? Give feedback.
All reactions