BREAKING: Supabase JWT Authentication Issues - 401 Errors Identified
Supabase experiencing widespread JWT rejection errors. Authentication services degraded. Immediate workarounds and recovery steps inside.
Incident Summary
Supabase is currently experiencing authentication failures resulting in 401 JWT rejection errors across multiple services. This affects API requests, real-time connections, and database access for applications relying on Supabase authentication.
What's Down
How to Check If You're Affected
1. Test authentication: Try logging in or making an authenticated API request
2. Check browser console: Look for 401 responses on auth endpoints
3. Review logs: POST /auth/v1/token or similar endpoints returning 401
4. Monitor real-time: Subscriptions will fail to establish
5. Check official status: https://status.supabase.com
Immediate Workarounds
Workaround 1: Token Refresh (Short-term)
session.refresh() in your applicationWorkaround 2: Implement Client-Side Caching
Workaround 3: Fallback Authentication
Workaround 4: Database Queries
Alternatives During Outage
1. Firebase Authentication - Quick migration for auth layer 2. Auth0 - Enterprise alternative with similar JWT workflows 3. Clerk - Modern auth platform with similar feature set 4. AWS Cognito - AWS ecosystem alternative 5. Custom JWT Server - Temporary self-hosted auth (requires infrastructure)
Recovery Checklist
Note on Uncertainty
This report identifies the JWT rejection issue clearly, but specific details remain unclear:
Check official Supabase status page and Discord community for authoritative updates.