Skip to content
Databasezy

Everything your app needs around its database

Every project gets one HTTPS endpoint for auth, data APIs, storage, functions and realtime, authenticated with project keys and compatible with the Supabase client libraries. Your users and files stay in your own Postgres, in your region.

supabase-js
import { createClient } from "@supabase/supabase-js";

// Your project's endpoint and publishable key (Project settings in the portal).
const supabase = createClient("https://<ref>.us-east.databasezy.com:8443", "<publishable-key>");

// Sign a user up, then read the rows your policies allow.
await supabase.auth.signUp({ email: "[email protected]", password: "a-long-password" });
const { data: todos } = await supabase.from("todos").select("id, title, done");
curl
# The same endpoint answers plain HTTP
curl "https://<ref>.us-east.databasezy.com:8443/rest/v1/todos?select=id,title" \
  -H "apikey: <publishable-key>" \
  -H "Authorization: Bearer <publishable-key>"

Services

Each service shows where it stands today. Coming soon means it is being built now, with prices and plan limits already published.

Status of every capability

The same list drives these pages, the docs and the pricing page. When something ships, it moves to Live here and in the changelog.

Project endpoint and keys Live

  • One HTTPS endpoint per project Live
  • Publishable and secret project keys Live
  • Per-project ES256 signing keys, JWKS and rotation Live

Auth Live

  • Email and password sign-up and sign-in Live
  • Magic links and email one-time codes Live
  • Sessions with refresh-token rotation and reuse detection Live
  • CAPTCHA with hCaptcha or Cloudflare Turnstile Live
  • Password rules and leaked-password protection Live
  • Rate limits and brute-force protection Live
  • OAuth and social sign-in providers Coming soon
  • Multi-factor authentication Coming soon
  • SAML 2.0 single sign-on for your users Coming soon
  • Third-party auth (Clerk, Auth0, Firebase, Cognito, WorkOS) Coming soon
  • Anonymous sign-in and phone codes Coming soon
  • User management in the portal Coming soon
  • Import users from Supabase with their password hashes and ids Coming soon
  • Server-side auth helpers (@supabase/ssr cookies, PKCE) Coming soon
  • OAuth 2.1 / OpenID Connect provider: sign in with your app, MCP clients Coming soon

Data API Live

  • REST over your tables (PostgREST) Live
  • GraphQL (pg_graphql) Live
  • SQL over HTTPS for every engine (/query/v1) Live
  • TypeScript types for supabase-js (zb gen types) Live

Storage Coming soon

  • Buckets with row-level security and signed URLs Coming soon
  • Resumable and multipart uploads Coming soon
  • S3-compatible endpoint Coming soon
  • Image transformations Coming soon

Functions Coming soon

  • TypeScript functions over HTTP, with secrets and logs Coming soon
  • Cron, queue and database-change triggers Coming soon

Realtime Coming soon

  • Broadcast Coming soon
  • Presence Coming soon
  • Postgres changes filtered by row-level security Coming soon

Apps and jobs Coming soon

  • Always-on apps from your container image Coming soon
  • One-off and cron jobs Coming soon

Sandboxes Coming soon

  • Ephemeral sandboxes for untrusted code Coming soon

Database tools Live

  • Extensions manager Live
  • Cron (pg_cron) Live
  • Queues (pgmq) Live
  • Vector search and automatic embeddings Coming soon
  • Vault: encrypted secrets in your database Coming soon
  • Foreign data wrappers Coming soon
  • Table editor Coming soon
  • Row-level security policy and roles editor Coming soon
  • Security and performance advisors Coming soon

Agent servers Live

  • A Kata VM per server, with Docker inside Live
  • SSH through the bastion with your registered keys (VS Code, Cursor, Zed) Live
  • Web terminal in the portal Live
  • Stopping a server stops compute billing Live
  • Coding agents and toolchains preinstalled Live
  • Daily snapshots, restore and export Coming soon
  • GitHub repositories cloned under ~/dev Coming soon
  • Attach to a project to reach its databases privately Coming soon
  • Secure placement on a HIPAA cell Coming soon

Live: available today. Beta: usable, may still change, no SLA yet. Coming soon: being built now.

How the platform is built

  • Your data stays in your database

    Users, file metadata and policies live in your project's Postgres, in your region, under your backups. The control plane keeps settings and secret references only.

  • One endpoint, one set of keys

    Every service answers under the project endpoint. A publishable key is safe in browsers; secret keys stay on servers; sessions are JWTs signed with your project's own key.

  • Policies enforced by Postgres

    Row-level security decides what each caller sees in the Data API today, and in storage and realtime as they ship. Policies are never re-implemented in application code.

  • Metered like everything else

    Each plan includes allowances; above them you pay published prices, inside the same spend cap, budgets and invoices as your databases.

Start a project

A free Postgres instance with Auth and the Data API on its endpoint, no card. Upgrade when you need more.