diff --git a/apps/www/_blog/2026-07-09-searchable-field-level-encryption-with-cipherstash.mdx b/apps/www/_blog/2026-07-09-searchable-field-level-encryption-with-cipherstash.mdx new file mode 100644 index 00000000000..d51b501164a --- /dev/null +++ b/apps/www/_blog/2026-07-09-searchable-field-level-encryption-with-cipherstash.mdx @@ -0,0 +1,59 @@ +--- +title: 'Searchable field-level encryption on Supabase with CipherStash' +description: 'Add field-level encryption to your Supabase project with CipherStash. Searchable ciphertext, zero-knowledge key management, and no schema changes required.' +author: bilharmer +imgSocial: searchable-field-level-encryption-with-cipherstash/og.png +imgThumb: searchable-field-level-encryption-with-cipherstash/thumb.png +categories: + - product +tags: + - postgres + - security + - encryption + - integrations +date: '2026-07-09T10:00:00' +toc_depth: 2 +--- + +The [CipherStash integration](https://supabase.com/partners/integrations/cipherstash) for Supabase is now available. + +[CipherStash](https://cipherstash.com) is a Data Level Access Control (DLAC) platform for applications built on Postgres. DLAC extends traditional access control, which typically operates at the row or table level, down to individual encrypted values, so policies are enforced at decryption rather than at the query layer. + +With CipherStash, teams can encrypt sensitive fields at the application layer with a unique key per value, run searches and joins against encrypted data without decrypting it, and keep keys under their own control through ZeroKMS, CipherStash's zero-knowledge key management service. Because keys never leave your control, neither CipherStash nor Supabase can access your plaintext data. + +The Supabase integration enables teams to add field-level encryption to any Supabase project using the encrypted Supabase SDK wrapper without changing the schema. Setup is one CLI command: `npx stash init --supabase`. + +
+