Paperclip’s Supabase MCP connector gives your AI agents tools to inspect tables, query data and apply migrations. Each tool can be Allowed, Ask first or Off.
The account’s Supabase permissions are narrowed to the required project reference. Supabase enforces the requested read-only and feature-group parameters.
What agents can do with Supabase
- Inspect tables before querying
list_tables·execute_sql - Review migrations before applying one
list_migrations·apply_migration - Inspect functions before deploying
list_edge_functions·deploy_edge_function
How to connect Supabase
- In Paperclip, open Connectors and select Supabase.
- On the Access step, choose the identity and which agents may use the connection.
- Select Sign in with Supabase or Use an API key with a personal access token. Enter the required project reference and choose read-only mode and feature groups before finishing.
Supabase tools for agents32
Write 32
apply_migrationApply a database migration
confirm_costCost information
create_branchBranch management
create_projectManage projects
delete_branchBranch management
deploy_edge_functionDeploy an Edge Function
Show all 32 Write tools
Write tools 7–32
execute_sqlExecute SQL queries
generate_typescript_typesGenerate TypeScript types from schema
get_advisorsGet security and performance advisors
get_costCost information
get_edge_functionGet a specific Edge Function
get_organizationOrganization management
get_projectList or get project details
get_project_urlGet the API URL for a project
get_publishable_keysGet publishable and legacy anon API keys for a project
get_storage_configStorage configuration
list_branchesBranch management
list_edge_functionsList all Edge Functions
list_extensionsList available/installed Postgres extensions
list_migrationsList database migrations
list_organizationsOrganization management
list_projectsList or get project details
list_storage_bucketsList storage buckets
list_tablesList all tables in the database
merge_branchBranch operations
pause_projectManage projects
query_logsRun a read-only SQL query against project logs to filter, aggregate, or join across log fields.
Full description
Run a read-only SQL query against project logs to filter, aggregate, or join across log fields. See Query logs with SQL.
rebase_branchBranch operations
reset_branchBranch operations
restore_projectManage projects
search_docsSearch Supabase documentation
update_storage_configStorage configuration
Tool availability and permissions
This list describes the reviewed tools. Your selected method, provider access and action permissions determine what agents can use.
These lists use a conservative permission policy. Read requires a provider read-only hint or a reviewed Paperclip read rule. Evidence that an action changes data or submits information elsewhere puts it in Write. Write also includes actions we cannot verify as read-only. Read describes the reviewed evidence; it does not guarantee that an action has no side effects. A connected account can group actions differently.
This list includes experimental branching tools and storage tools that are Off by default. Project scope, read-only mode and feature selection can limit availability. The list does not establish account access.
Connection policies
Discovered actions follow the connection’s policies. Review their permissions and set actions to Ask first or Off as needed. Read-only mode is off by default; turn it on before connecting to limit database and schema changes.
Supabase connector FAQ
Can I require approval for actions?
Set an action to Ask first to require human approval of each call or Off to prevent calls. Allowed actions run without approval. Read and Write grouping is separate from these settings.
What can agents reach in Supabase?
The account’s Supabase permissions are narrowed to the required project reference. Supabase enforces the requested read-only and feature-group parameters.
What do I need before connecting?
Use a development project and its project reference. The key method takes a personal access token, not a project anon or service-role key.