Bil Harmer

2.6K posts

Bil Harmer banner
Bil Harmer

Bil Harmer

@WilHarm3

CISO Supabase

Katılım Mart 2011
453 Takip Edilen484 Takipçiler
Bil Harmer retweetledi
Supabase
Supabase@supabase·
Supabase has hit an impressive 100,000 GitHub stars! 🌟 A massive THANK YOU to our amazing community for your unwavering support. Let’s keep building together!!
Supabase tweet media
English
26
39
407
14.1K
Bil Harmer
Bil Harmer@WilHarm3·
@jameszhou02 @kpolley James trying to get a hold of you. My team has checked the backend, it's not public. I'd like you to send me the technical details of how you signed or got access to the URL you're using so I can investigate further.
English
1
0
1
44
James Zhou
James Zhou@jameszhou02·
@kpolley it's publicly available, anyone can do this. they shouldn't vibecode everything :)
English
6
0
44
2K
James Zhou
James Zhou@jameszhou02·
btw their supabase storage bucket is publicly accessible via any signed url token 😭 exposes: > employee background checks > equity vesting schedules and grant amounts > performance reviews > session tokens for stripe, notion, etc > screenshots below 🧵 i also got access to their notion 😛
James Zhou tweet media
erin griffith@eringriffith

A detailed and brutal look at the tactics of buzzy AI compliance startup Delve "Delve built a machine designed to make clients complicit without their knowledge, to manufacture plausible deniability while producing exactly the opposite." substack.com/home/post/p-19…

English
103
105
2.1K
959.6K
Bil Harmer retweetledi
Supabase
Supabase@supabase·
Use Supabase Realtime Broadcast to send and receive messages: - Delivered in real time - Scoped to specific channels - Message persistence with onMessage and Message props - Customizable appearance - Auto scroll-to-bottom for new messages - Room-based isolation
English
6
7
224
14.6K
Bil Harmer retweetledi
Paul Copplestone - e/postgres
There are now 7M developers using @supabase Signups have been accelerating since the start of the year Our growth rate right now is as fast as it was during YC, except that we are doing it from a base of millions of developers instead of thousands
Paul Copplestone - e/postgres tweet media
English
59
69
469
76.5K
Bil Harmer retweetledi
Supabase
Supabase@supabase·
Log Drains are now on Pro Send your Postgres, Auth, Storage, Edge Functions, and Realtime logs directly to Datadog, Sentry, Grafana Loki, Axiom, S3, or your own endpoint Full-stack observability, no context switching
Supabase tweet media
English
7
10
148
51.8K
Bil Harmer retweetledi
Supabase
Supabase@supabase·
We are pleased to inform our community that access to Supabase’s website supabase.co has now been fully restored for all users across India. We sincerely thank the Ministry of Electronics and Information Technology (MeitY) for their prompt action and constructive engagement in resolving this matter. Access to our services has been fully restored, and we deeply appreciate the continued patience and support of builders, developers, and businesses across India. Thank you for your patience while we worked through this incident. status.supabase.com
English
132
105
1.2K
152.7K
Bil Harmer
Bil Harmer@WilHarm3·
I spent years at SuccessFactors running SAS 70 audits with full transparency, giving customers the actual workbooks so they knew exactly what was being tested. That process helped shape what became SOC 2. That was nearly two decades ago. The infrastructure has changed beyond recognition. The audit model hasn't. So I built the replacement. OTVP — the Open Trust Verification Protocol — replaces static audit reports with verification agents that scan live infrastructure and produce cryptographically signed trust assessments in seconds, not months. This weekend I deployed 11 agents against a real AWS account covering 10 SOC 2 criteria. They found unencrypted databases, users without MFA, missing audit logs, and zero backup coverage — all named by resource ARN, all signed with Ed25519, all chained into Merkle trees for tamper-proof verification. The full spec and SDK are open source. The dashboard shows real results from live infrastructure. I wrote up the full story below: linkedin.com/pulse/i-helped… Live dashboard: lnkd.in/gQa-dBih Spec: github.com/wharmer68/otvp SDK: lnkd.in/gn5H7x7C Looking for security practitioners who are tired of compliance theater, companies willing to run early agents, and GRC teams interested in integration. The spec is open. The code runs. The conversation starts now. #cybersecurity #soc2 #audit #opensource
English
0
1
4
67
Bil Harmer retweetledi
Paul Copplestone - e/postgres
we've added 7 new security events to @Supabase Auth to take action on suspicious behavior: ◆ Password changed ◆ Email address changed ◆ Phone number changed ◆ Identity linked ◆ Identity unlinked ◆ MFA method added ◆ MFA method removed works with @resend:
Paul Copplestone - e/postgres tweet media
English
6
21
280
14K
Bil Harmer retweetledi
Paul Copplestone - e/postgres
at @supabase we're building: ◆ a new storage engine for Postgres ◆ an open source sharding engine for Postgres ◆ an open source ETL engine for Postgres ◆ an FDW extension to query anything from Postgres we hire talented people who just want to build. come us ↓
English
55
58
983
96.3K
Bil Harmer retweetledi
Aaron Cort (AC)
Aaron Cort (AC)@aaronjcort·
🧵 Search isn’t dying — it’s evolving. AI didn’t replace SEO. It just revealed who’s been doing it right all along. Before joining @craft_ventures , I led organic growth at @clickup — where our team generated $10M+ in free traffic every month and scaled SEO from a few thousand to hundreds of thousands of signups. Now, across the Craft portfolio, I help Founders and GTM leaders do the same — but the playbook has changed. That’s why our recent private session with @5le hit differently. Eli isn’t just an SEO expert — he helped define the discipline. Welcome to the era of GEO / LLM Search 👇 We’re no longer optimizing for humans using Google. We’re optimizing for AI as the end user. ChatGPT, Gemini, Perplexity, Claude — they’re now the front-end of discovery. Eli wrote Product-Led SEO, scaled organic growth at SurveyMonkey, and now advises teams at Coinbase, Quora, Gusto, Faire, and Zendesk on building search systems that compound authority, not vanity metrics. And tools like @tryprofound , @getathenahq , and @peec_ai show how brands are performing when AI agents do the searching. Visibility isn’t just about ranking anymore — it’s about being referenced. In our fireside for the Craft Marketing & Growth Network and Portfolio, Eli broke down what he calls the Search Stack of 2025 — where human intent, AI models, and product utility converge. It was one of the clearest frameworks I’ve seen for how organic growth is evolving. Here are the 5 principles that stood out 👇
English
4
3
22
2.9K
Bil Harmer retweetledi
Paul Copplestone - e/postgres
One thing that we don’t shout about much at @supabase, but I’m particularly proud of: we have engineered the entire company to be as open source as possible: 1/ we prioritise supporting existing open source projects over building from scratch 2/ we upstream everything we can 3/ we donate to frameworks and projects, and acquire them if they can’t find stability 4/ we prioritise community contributors over building ourselves (and sponsor them for their work) 5/ our code is 100% free and open source (and to back this up: used by behemoths like Alicloud who don’t pay us anything). Essentially every engineer we employ is working on open source products it has been incredibly difficult to pull this off, striking the balance between commercialization and giving away as much as possible. As we grow bigger I only hope to support more open source communities
English
16
18
263
19.4K
Supabase
Supabase@supabase·
SupaCrocs 🐊 Giveaway To enter reply with: - Your favorite meme - Your US shoe size Most liked reply wins ⚡️
Supabase tweet media
English
290
32
983
106.8K
Bil Harmer retweetledi
˗ˏˋ Terry Sutton ˎˊ˗ — e/shadcn/ui
𝙉𝙚𝙬 𝙍𝙁𝘾: 𝙎𝙌𝙇 𝙀𝙙𝙞𝙩𝙤𝙧 𝙨𝙣𝙞𝙥𝙥𝙚𝙩𝙨 We just published a new RFC on how the SQL Editor handles snippet saving in Supabase. We’re proposing a switch from autosave ➡️ manual save, to simplify the experience. 🙏 Read & share your feedback 👇
English
2
9
26
980