Improved Security Controls and A New Home for Security
Blog post from Supabase
Supabase has introduced foundational security features intended for future development, emphasizing centralized security documentation and organization-wide settings in its Dashboard. Key among these is the enforcement of Multi-Factor Authentication (MFA) for all members of a Supabase Organization, ensuring that only those with MFA enabled can access projects and resources. This feature, available to Pro, Team, and Enterprise plans, requires organization owners to have two separate MFA apps as a backup. Additionally, Supabase offers customizable Security and Performance Advisor rules, allowing users to disable non-relevant rules and plans to further enhance security through stronger authentication, compliance tools, and enterprise connectivity. The new security documentation consolidates features and compliance guides, such as SOC 2 and HIPAA, supporting users in building secure applications on the platform.