© 2026 Hedgehog Software, LLC

TwitterGitHubDiscord
More
CommunitiesDocsAboutTermsPrivacy
Search
Star
Setup for Free
SupabaseS
Supabase•4y ago•
1 reply
willsch

Preventing OTP auth sign in abuse?

I'm using phone numbers with OTP to log users into my app. This requires an SMS to be sent for each login attempt. I'm concerned that a malicious user could abuse the signin() endpoint costing me a lot of money. What's the right way to prevent that from happening?
Supabase banner
SupabaseJoin
Supabase gives you the tools, documentation, and community that makes managing databases, authentication, and backend infrastructure a lot less overwhelming.
45,816Members
Resources

Similar Threads

Was this page helpful?
Recent Announcements

Similar Threads

Testing OTP sign-in locally
SupabaseSSupabase / help-and-questions
4y ago
Does Supabase auth support sign ups via OTP? (`Signups not allowed for otp`)
SupabaseSSupabase / help-and-questions
14mo ago
Using OTP for Auth
SupabaseSSupabase / help-and-questions
3y ago
Sign Up / Sign In, Users management and auth error
SupabaseSSupabase / help-and-questions
2mo ago