Skip to content

Auth / supabase_auth_admin permissions: best practice for deleting user? #28776

Closed Answered by GaryAustin1
anngbaum asked this question in Questions
Discussion options

You must be logged in to vote

supabase_auth_admin is a "weak" role. It does not even have RLS bypass. It is not granted to public. Which is why the user management guides all show using a security definer function for triggers.

edit: Even in auth-hooks they show having to grant it access to a table as in the case of the auth-hooks function it is not security definer:

Replies: 2 comments

Comment options

You must be logged in to vote
0 replies
Answer selected by anngbaum
Comment options

You must be logged in to vote
0 replies
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
2 participants