MCP server for interacting with Supabase
Inferred from the transports this listing declares (stdio, streamable-http). A client not listed here hasn’t been ruled out — it just isn’t something Forge can confirm.
SUPABASE_ACCESS_TOKENAPI keyrequiredPersonal access token for Supabase API
Declared by the author in the official MCP registry. Forge does not store, broker, or ever see these values — the config below is scaffolded with placeholders you fill in locally.
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.
The endpoint answers, but requires the vendor's own credentials before it will list its tools. Forge holds no credentials for third-party servers, so the surface is not observable from here. This is a normal state for a commercial hosted server, not a finding against it.
https://mcp.supabase.com/mcpauth requiredMCP server for interacting with Supabase
This package was last scanned before Forge began storing the resolved tree. The next scan will record it.