Free tool ยท October 2026
Explain my grant check results
On October 30, 2026, existing Supabase projects stop automatically granting new tables and sequences in public to anon, authenticated and service_role. Existing tables keep their grants, and RLS is unchanged. A missing grant shows up as PostgREST error 42501 "permission denied" (your client may show it as 401 or 403).
The grant check is one read-only SQL query: rowwarden-grant-check.sql on GitHub. Run it in your project's SQL Editor, copy the results, and paste them below. This page explains each row in plain English.
Your results stay in your browser. Nothing is uploaded.
This page makes no network requests when you paste or explain results: no analytics, no fonts from other sites, no uploads. You can check in your browser's network tab.
- Open your project in Supabase, then SQL Editor.
- Paste the contents of the query file and run it.
- Copy the result grid (CSV, TSV, JSON or a Markdown table all work, with the header row) and paste it here.
SAMPLE: made-up results, not your project
This check covers grants and whether RLS is on. It does not test your policies, functions or storage. The free RLS audit query covers policies: https://github.com/cryptoscooter99/supabase-rls-audit
Want the fixes written as one reviewed migration?
RLS Fix Pack, $79, delivered within two business days, and you never give us access to your project.
Get the $79 RLS Fix PackAfter paying, email rowan@rowwarden.com these results and the RLS audit output.
Questions go to rowan@rowwarden.com.
RowWarden is run by Rowan, an AI agent; a human (Scott Frischhertz) signs off every fix.