Replies: 2 comments
-
https://supabase.com/docs/guides/auth/rate-limits Supabase Auth has a rate limit. If authentication is performed only on the client side, it might be difficult to securely implement custom verification on the server side. By using an OTP verification step that can be controlled by the Supabase instance’s rate limit, user attempts will always remain within the defined rate limits. |
Beta Was this translation helpful? Give feedback.
0 replies
-
that means genuine users will be unable to use auth if someone is attempting brute-force which is not the desired outcome. |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
I am using Supabase Client side auth, what is the best way to protect from Bruteforce auth attempts ?
Beta Was this translation helpful? Give feedback.
All reactions