Agent skill

Memstack Security Rls Checker

by cwinvestments in cwinvestments/memstack

A skill your agent uses when the user says 'check RLS', 'audit RLS', 'RLS policies', 'row level security', 'Supabase security audit', or needs to verify table-level access control.

ProprietaryAuto-check: notesSecurity

Install Memstack Security Rls Checker

skills CLI
$ npx skills add cwinvestments/memstack --skill memstack-security-rls-checker -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install cwinvestments/memstack memstack-security-rls-checker --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/cwinvestments/memstack.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/security/rls-checker .claude/skills/memstack-security-rls-checker && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
memstack-security-rls-checker
GitHub stars
423
Token cost
~2.9k tokens
SKILL.md length
1,007 words
Files
1
Skills in repo
87
Repo updated
First seen
Licence
Proprietary

At a glance

A skill your agent uses when the user says 'check RLS', 'audit RLS', 'RLS policies', 'row level security', 'Supabase security audit', or needs to verify table-level access control.

  • Works in 5 steps: Discover Tables → Extract RLS Policies → Analyze Policies → …
  • The user says check RLS
  • SKILL.md covers Activation, Context Guard, Protocol and Risk Levels, plus 2 more sections
  • Calls supabase

What it does

Memstack Security Rls Checker is an agent skill from cwinvestments/memstack. Use this skill when the user says 'check RLS', 'audit RLS', 'RLS policies', 'row level security', 'Supabase security audit', or needs to verify table-level access control. Audits Supabase Row Level Security policies across all tables. Do NOT use for non-Supabase projects or writing RLS policies from scratch.

Its SKILL.md is about 2.9k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Security, covering Authorization and RBAC and Security review. It works with Supabase. The repository describes itself as: Structured skill framework for Claude Code. 130 skills, persistent memory, TokenStack compression, localhost dashboard with 3-agent runner, real-time streaming, MCP tools.

When your agent uses it

  • The user says check RLS
  • Row level security
  • Supabase security audit
  • Needs to verify table-level access control

Example prompts

  • “check RLS”
  • “audit RLS”
  • “RLS policies”
  • “/memstack-security-rls-checker”

Workflow steps

5 steps, taken from the step headings in SKILL.md.

  1. Discover Tables
  2. Extract RLS Policies
  3. Analyze Policies
  4. Generate Report
  5. Suggest Fixes

What it can do on your machine

Read from SKILL.md and the folder at commit 00370ce. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • supabase

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use supabase, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Memstack Security Rls Checker loads about 2.9k tokens when it runs. Until then it costs about 85 tokens; SKILL.md has 1,007 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~85
When it runs · the whole SKILL.md, loaded when a task matches
~2.9k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: notes

The automated check noted patterns worth knowing about, such as sudo or a known installer.

  • NoteMentions a .env fileSKILL.md:128
    - Service role in `.env` committed to git: critical vulnerability (CRITICAL)

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

Its licence (Proprietary) doesn't allow us to republish the file, so here is its outline and opening line. It has 1,007 words (~2,896 tokens).

“Audit Supabase Row Level Security policies across all tables in a project.”

— opening of SKILL.md by cwinvestments, Proprietary
name
memstack-security-rls-checker
version
1.0.0
license
Proprietary, MemStack™ Pro by CW Affiliate Investments LLC. See LICENSE.txt

Read the full SKILL.md on GitHub

Files

Just SKILL.md in skills/security/rls-checker of cwinvestments/memstack.

Open the folder on GitHubat commit 00370ce

Compare with similar skills

Memstack Security Rls Checker next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Memstack Security Rls Checker compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Memstack Security Rls Checker this skillcwinvestments/memstack423—~2.9kAutomated safety check: NotesProprietary
Absolute Auditmaddhruv/absolute2181 repos~1.2kAutomated safety check: PassMIT
Warden Security ReviewUsefulSoftwareCo/executor4.1k—~1.3kAutomated safety check: PassMIT
Codewhale Security Reviewcodewhale-hq/Codewhale41k—~844Automated safety check: PassMIT
Security Review Specwarpdotdev/oz-for-oss3131 repos~2.6kAutomated safety check: PassMIT
Review Hog Perspective Contracts SecurityPostHog/posthog40k—~1kAutomated safety check: PassCustom licence

Similar skills

  • Absolute Audit

    maddhruv/absolute

    Vulnerability and security scan (defensive, your own repo): dependency CVEs plus risky code patterns (secrets, injection, weak authz), severity x reachability triaged and remediated without…

    218 GitHub starsUsed in 1 repo~1.2k tokens
    SecurityAuto-check passed
  • Warden Security Review

    UsefulSoftwareCo/executor

    Run Warden security scans in this repo using Sentry's warden-skills.

    4.1k GitHub stars~1.3k tokensUpdated today
    SecurityAuto-check passed
  • Codewhale Security Review

    codewhale-hq/Codewhale

    Reviews a diff, module or network surface for exploitable defects, mapping trust boundaries and sinks, then reports only findings with a verified reachable path and a fix.

    41k GitHub stars~844 tokensUpdated today
    SecurityAuto-check passed
  • Security Review Spec

    warpdotdev/oz-for-oss

    Audit a product or tech spec pull request diff for high-level security concerns (threat surface, authentication and authorization model, trust boundaries, sensitive data handling, secrets and key…

    313 GitHub starsUsed in 1 repo~2.6k tokens
    SecurityAuto-check passed
  • Security Review

    microsoft/power-platform-skills

    Official

    Runs a guided, end-to-end security review of a Power Pages site and consolidates every finding into one HTML report covering source code and dependencies, the live site, browser headers, firewall…

    979 GitHub stars~4.3k tokensUpdated today
    SecurityAuto-check: notes

More from cwinvestments/memstack

All 87 skills in this repo
  • Memstack SEO Site Audit

    cwinvestments/memstack

    A skill your agent uses when the user says 'SEO audit', 'site audit', 'check SEO', 'audit my site', 'SEO check', 'technical SEO', or is evaluating a website's search engine optimization health, meta…

    423 GitHub stars~3.5k tokensUpdated 12 days ago
    Auto-check passed
  • Memstack SEO Schema Markup

    cwinvestments/memstack

    A skill your agent uses when the user says 'add schema', 'schema markup', 'JSON-LD', 'structured data', 'rich results', 'rich snippets', or is adding or fixing schema.org structured data for better…

    423 GitHub stars~2.7k tokensUpdated 12 days ago
    Auto-check passed
  • Compress

    cwinvestments/memstack

    A skill your agent uses when the user says 'tokenstack', 'compression', 'token savings', 'proxy status', or asks about context window usage.

    423 GitHub stars~1.2k tokensUpdated 12 days ago
    Auto-check passed
  • Diary

    cwinvestments/memstack

    A skill your agent uses when the user says 'save diary', 'log session', 'wrapping up', or at end of a productive session.

    423 GitHub stars~5k tokensUpdated 12 days ago
    Auto-check passed
  • Echo

    cwinvestments/memstack

    A skill your agent uses when the user references past sessions, asks 'what did we do', 'do you remember', 'last session', 'recall', or 'continue from'.

    423 GitHub stars~1.7k tokensUpdated 12 days ago
    Auto-check passed
  • Familiar

    cwinvestments/memstack

    A skill your agent uses when the user says 'dispatch', 'send familiar', 'split task', or needs work split across parallel CC sessions.

    423 GitHub stars~556 tokensUpdated 12 days ago
    Auto-check passed

Works with

Categories

Questions about Memstack Security Rls Checker

What does Memstack Security Rls Checker do?

A skill your agent uses when the user says 'check RLS', 'audit RLS', 'RLS policies', 'row level security', 'Supabase security audit', or needs to verify table-level access control. Memstack Security Rls Checker is an agent skill from cwinvestments/memstack. Use this skill when the user says 'check RLS', 'audit RLS', 'RLS policies', 'row level security', 'Supabase security audit', or needs to verify table-level access control.

When should I use Memstack Security Rls Checker?

Memstack Security Rls Checker fits situations like: the user says check RLS; row level security; supabase security audit; needs to verify table-level access control.

How do I install Memstack Security Rls Checker in Claude Code?

Run `npx skills add cwinvestments/memstack --skill memstack-security-rls-checker -a claude-code`. Or copy the skill folder (skills/security/rls-checker in cwinvestments/memstack) into .claude/skills/memstack-security-rls-checker in your project. Claude Code loads it when a task matches its description.

How do I install Memstack Security Rls Checker in Codex?

Run `npx skills add cwinvestments/memstack --skill memstack-security-rls-checker -a codex`. Or copy the skill folder (skills/security/rls-checker in cwinvestments/memstack) into .agents/skills/memstack-security-rls-checker in your project. Codex loads it when a task matches its description.

Can I use Memstack Security Rls Checker in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add cwinvestments/memstack --skill memstack-security-rls-checker -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/memstack-security-rls-checker, .gemini/skills/memstack-security-rls-checker, .github/skills/memstack-security-rls-checker and .opencode/skills/memstack-security-rls-checker in your project.

What does Memstack Security Rls Checker need to run?

Going by SKILL.md and its folder, Memstack Security Rls Checker needs the command-line tools its instructions call (supabase).

Does Memstack Security Rls Checker access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Memstack Security Rls Checker safe to install?

Our automated static check of SKILL.md found notes only (mentions a .env file), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.

What licence does Memstack Security Rls Checker use?

Memstack Security Rls Checker carries a proprietary licence (declared in SKILL.md). It is published on GitHub, but it is not open source: read the licence file before using or sharing it.

How many tokens does Memstack Security Rls Checker use?

About 2.9k tokens (SKILL.md is roughly 12k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Memstack Security Rls Checker?

Skills that share tags, products or a category with Memstack Security Rls Checker: Absolute Audit (maddhruv/absolute, 218 stars), Warden Security Review (UsefulSoftwareCo/executor, 4.1k stars), Codewhale Security Review (codewhale-hq/Codewhale, 41k stars) and Security Review Spec (warpdotdev/oz-for-oss, 313 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Memstack Security Rls Checker?

cwinvestments (a GitHub user) maintains it in cwinvestments/memstack, which has 423 GitHub stars. The repository holds 87 skills in this directory. The repository was last updated on September 26, 2026.

Source: cwinvestments/memstack on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.