mirror of
https://github.com/supabase/supabase.git
synced 2026-10-06 01:45:10 +03:00
Bare `auth: 'secret'` and `auth: 'publishable'` match only the key named `default`. They don't fall back to named keys, so a project whose keys are all named rejects every call the page says they accept. Verified in supabase/server: `parseAuthMode` leaves `keyName` null for a bare mode, and `matchApiKey` resolves a null `keyName` to `default`. Documents the `secret:*` and `publishable:*` wildcards, which are the forms that accept any key in the set.