Core concepts
Database
Realtime
Functions
Auth
Row-level rules
Decide who can read and write each row, enforced inside the database.
Writing a rule
Rules are attached to tables in the schema. They compile to Postgres row-level security policies, so they apply to every client and every API call.
Team access
Testing rules
Use tessera rules test to run a query as a given user and see which rows it returns.
Deny by default
Tables with no rules are readable only by server keys. Add rules before exposing a table to the browser.
Was this helpful?
© 2026 Tessera, Inc.
Support
Status