@@ -40,21 +40,35 @@ select
40
40
m.admin_option
41
41
from
42
42
pg_roles r
43
- left join
43
+ join
44
44
pg_auth_members m on r.oid = m.member
45
45
left join
46
46
pg_roles g on m.roleid = g.oid
47
- where r.rolname in ('pg_create_subscription', 'pg_maintain', 'pg_use_reserved_connections')
48
- or g.rolname in ('pg_create_subscription', 'pg_maintain', 'pg_use_reserved_connections')
49
47
order by
50
48
r.rolname, g.rolname;
51
- member | member_of (can become) | admin_option
52
- -----------------------------+------------------------+--------------
53
- pg_create_subscription | |
54
- pg_maintain | |
55
- pg_use_reserved_connections | |
56
- postgres | pg_create_subscription | f
57
- (4 rows)
49
+ member | member_of (can become) | admin_option
50
+ -------------------------+------------------------+--------------
51
+ authenticator | anon | f
52
+ authenticator | authenticated | f
53
+ authenticator | service_role | f
54
+ pg_monitor | pg_read_all_settings | f
55
+ pg_monitor | pg_read_all_stats | f
56
+ pg_monitor | pg_stat_scan_tables | f
57
+ pgsodium_keyholder | pgsodium_keyiduser | f
58
+ pgsodium_keymaker | pgsodium_keyholder | f
59
+ pgsodium_keymaker | pgsodium_keyiduser | f
60
+ postgres | anon | t
61
+ postgres | authenticated | t
62
+ postgres | authenticator | t
63
+ postgres | pg_create_subscription | f
64
+ postgres | pg_monitor | t
65
+ postgres | pg_read_all_data | t
66
+ postgres | pg_signal_backend | t
67
+ postgres | pgtle_admin | f
68
+ postgres | service_role | t
69
+ supabase_read_only_user | pg_read_all_data | f
70
+ supabase_storage_admin | authenticator | f
71
+ (20 rows)
58
72
59
73
-- Check version-specific privileges of the roles on the schemas
60
74
select schema_name, privilege_type, grantee, default_for
@@ -137,12 +151,13 @@ order by
137
151
pgsodium_keymaker | pgsodium_keyiduser | f
138
152
postgres | anon | t
139
153
postgres | authenticated | t
140
- postgres | pg_monitor | f
141
- postgres | pg_read_all_data | f
142
- postgres | pg_signal_backend | f
154
+ postgres | authenticator | t
155
+ postgres | pg_monitor | t
156
+ postgres | pg_read_all_data | t
157
+ postgres | pg_signal_backend | t
143
158
postgres | pgtle_admin | f
144
159
postgres | service_role | t
145
160
supabase_read_only_user | pg_read_all_data | f
146
161
supabase_storage_admin | authenticator | f
147
- (18 rows)
162
+ (19 rows)
148
163
0 commit comments