39
I made a tool to scan your Supabase DB for data leaks in 30 seconds — before hackers find them
r/SideProject
6/25/2025
SAAS TOOLS
SaaS | URL | Category | Features/Notes |
---|---|---|---|
Peekleaks | http://peekleaks.com | Security/Data Protection | Scans Supabase DB for data leaks via anon key. Checks publicly accessible table operations (read, insert, update, delete). Free core scan; $10/month for scheduled scans, email alerts, scan history, PDF reports. |
Supabase | Not provided | Database/Backend | Has Security & Performance section, but may miss publicly accessible table operations. Technical dashboard. |
USER NEEDS
Pain Points:
- Difficulty identifying publicly accessible data in Supabase databases
- Overwhelming technical dashboards in existing tools
- Lack of time/skills to set up custom security scripts
- Concerns about data privacy when using third-party tools
Problems to Solve:
- Quickly detect if sensitive data is exposed via Supabase anon keys
- Simplify security checks for non-technical users
- Automate database vulnerability scanning
- Complement existing Supabase security features
Potential Solutions:
- No-setup scanning tool with user-friendly UI
- Free core scan with paid premium features (scheduling, alerts, reports)
- Clear visualization of exposed tables and operations
- Assurance of data privacy (no storage of user data)
GROWTH FACTORS
Effective Strategies:
- Focusing on specific pain points overlooked by competitors
- Offering freemium model (free core functionality)
- Targeting non-technical users with simplified solutions
Marketing & Acquisition:
- Showcasing on relevant communities (r/SideProject)
- Addressing security concerns transparently in discussions
- Highlighting ease of use compared to script-based alternatives
Monetization & Product:
- Tiered pricing: free basic scan + $10/month premium features
- Value proposition: time savings for users lacking technical skills
- Feature differentiation: scheduled scans, alerts, PDF reports
User Engagement:
- Actively responding to feedback and criticism in comments
- Clarifying product positioning vs. alternatives (e.g., Supabase's native tools)
- Building trust through transparency about data handling