ANADI THAKUR← VIBE CODE RESCUE

THE PRODUCTION KIT · FOR CLAUDE CODE, CURSOR, LOVABLE AND BOLT

Make your AI tool write code that survives real users.

Rules, skills and checklists for React / Next.js + Supabase apps, so your AI coding tool follows what a senior engineer would tell it, and you can check the result yourself before launch.

One-time payment through Stripe. Instant download, plus a copy of the link by email.

WHO IT’S FOR

It works on your machine. Then real users arrive.

You built your app with an AI coding tool. It works on your machine. But:

  • you’re not sure if strangers can read your database
  • sign-up emails don’t arrive, or the link sends people to localhost
  • pages 404 when someone refreshes
  • every fix the AI makes seems to break something else
  • your site doesn’t show up in Google, and link previews are blank

You don’t need to become a senior engineer. You need your AI tool to follow the rules a senior engineer would give it, and a way to check the result. The kit is for non-technical and semi-technical founders who build with Claude Code, Cursor, Lovable, Bolt or v0 and run on Supabase and Vercel (or similar).

WHAT’S INSIDE

Rules, skills, checklists, SQL.

PROJECT RULES FOR YOUR AI TOOL

  • CLAUDE.md for Claude Code: security, Supabase Row Level Security, auth, environment variables, deployment, database changes, error handling, performance, SEO, and how to make changes without breaking working code.
  • Cursor rules (.mdc): the same rules, set up to load automatically.
  • A condensed version sized to paste into Lovable or Bolt project knowledge.

FIVE CLAUDE CODE SKILLS

  • Supabase RLS audit: finds tables anyone can read or write, writes the fixes, and tests as a logged-out visitor and as a second user.
  • Pre-deploy check: env vars, build, routing, auth redirect URLs, error pages, console errors, Lighthouse.
  • Auth flow fix: diagnoses sign-up, email confirmation, login, password reset, OAuth and session problems.
  • AI visibility: gets a client-rendered app readable by Google, social previews and AI crawlers, and proves it with curl.
  • Safe change: the discipline for fixing things without breaking other things.

CHECKLISTS

  • Launch checklist: 11 areas, from data security to rollback, as checkboxes.
  • Security checklist: every item says how to check it.

SQL YOU CAN RUN TODAY

  • A read-only RLS status report: every table, RLS on/off, policy counts, risky views and functions, public buckets, missing indexes.
  • Example policies for the common patterns: owner-only data, public profiles, team workspaces, per-user file storage.

WHAT IT’S NOT

Honest about the edges.

  • Not a course or video series. It’s files you drop into your project.
  • Not a guarantee. It makes your AI tool much less likely to ship the common mistakes, and gives you the checks to catch the rest. The checklists only work if you run them.
  • Not a substitute for a professional review if you handle payments at scale, health data or other sensitive information.
  • Not written for every stack. It’s specific to React / Next.js with Supabase, deployed on Vercel or similar. Much of it applies elsewhere, but the SQL and auth details are Supabase-specific.

FAQ

Before you buy.

I’m not technical. Can I use this?

Yes, if you can copy files into your project or paste text into your tool’s settings. The skills tell the AI what to do; the checklists tell you what to click and what you should see.

Which tools does it work with?

Claude Code (rules + skills), Cursor (rules; skills can be referenced in chat), Lovable and Bolt (condensed rules pasted into project knowledge). Tools that read AGENTS.md can use the main rules file too.

Will it fix my existing app?

The rules apply to new work. The skills and checklists are for auditing and fixing what’s already there: run the RLS audit and pre-deploy check first.

Is the SQL safe to run?

rls-status.sql only reads; it changes nothing. example-policies.sql creates tables and policies, so read the comments, rename things to match your schema, and run only the parts you need.

Does it work with Firebase / another backend?

The deployment, change discipline and SEO parts do. The database and auth parts are written for Supabase.

Do I get updates?

Yes. Your download link always serves the current version of the kit, so come back to it whenever you like.

WHO MADE IT

Anadi Thakur.

A senior full-stack engineer with 4+ years building React, Next.js, React Native and Node apps, running Supabase/Postgres in production, deploying on Vercel, and working on performance and technical SEO. These days a lot of that work is fixing apps built with Lovable, Bolt, Cursor and v0. This kit is the set of rules and checks used in that work, written so your AI tool can follow them.

$19 · ONE-TIME

Give your AI tool the rules.

One-time payment through Stripe. Instant download, plus a copy of the link by email.

RATHER HAVE IT FIXED FOR YOU?

Get a free audit of your app: security, auth, deploys and performance, with a fixed price for the fix.

FREE PRODUCTION AUDIT →