Not at the moment. LeakScope focuses on black-box security testing rather than generating database-side tests like pgTAP. That said, generating pgTAP tests from discovered RLS behavior is a really interesting idea and something I'd definitely consider. Thanks for the suggestion.
Supabase Security Advisor is excellent at checking your project's configuration from inside the dashboard and highlighting known security recommendations. We takes a different approach. It works from the outside in, starting with a public app URL, to answer a different question: what can an attacker actually discover or access from the public internet? Hope this helps!
Curious what LeakScope finds on your app? Try it here: [https://www.leakscope.tech](https://www.leakscope.tech) Just paste your public URL and it'll analyze what an attacker can see from the outside. Feedback (good or bad) is always appreciated.
for claude, in the web?