Works with the AI tools you already use

    CClaude CodeCCursorCCodex CLIGGitHub CopilotGGemini CLIVVS CodeWWindsurf+15 more

    Nex Multitenant Saas Fastapi

    by Nex AI

    2

    Prevent data leaks with auto-injected SQLAlchemy tenant scoping and Cloudflare Access auth for FastAPI SaaS apps.

    Secure checkout via Stripe

    0 installsSecurity scanned

    See it in action

    You say

    Set up a new FastAPI SaaS core with multi-tenancy, using Cloudflare Access for auth and an initial tenant named 'Acme Corp'.

    Your agent does

    I've generated the multitenant-core/ package. It includes:

    • app/database.py: SQLAlchemy listener for auto-filtering queries.
    • app/dependencies.py: Cloudflare JWT verification & tenant context injection.
    • app/models/: User and Tenant base models.

    Run python -m app.scripts.seed_tenant to begin.

    What you get

    Enforce row-level isolation so devs can't accidentally query other tenants.Secure a FastAPI backend using Cloudflare Access JWT authentication.Create an auditable 'Owner' dashboard that safely queries across all tenants.Implement role-based access for Owners, Partners, and scoped Client Viewers.

    About this skill

    Multi-Tenant Security for FastAPI

    Building a multi-tenant SaaS requires more than just adding a tenant_id column; it requires a bulletproof architecture that prevents data leaks by design. This skill generates a production-ready multi-tenancy core for FastAPI and SQLAlchemy that implements row-level isolation at the database layer.

    What it does

    • Automatic Row-Level Isolation: Uses a SQLAlchemy event listener to automatically inject WHERE tenant_id into every query. Developers literally cannot forget to scope a read.
    • "Secure by Default" Failure: The system defaults to a null tenant context. If a tenant isn't identified, queries return zero rows instead of leaking data across tenants.
    • Auditable Escape Hatches: Provides an explicit no_tenant_scope() context manager for cross-tenant admin operations, requiring a logged reason for every bypass.
    • Cloudflare Access Integration: Bundles JWT authentication with fallbacks for local development and trusted-network header modes.
    • Role-Based Access Control (RBAC): Includes three pre-defined roles (Owner, Partner, Client Viewer) with logic to handle global vs. scoped access permissions.

    Why use this skill?

    Instead of manually writing .filter(tenant_id=...) on every single endpoint—a process prone to human error—this skill applies isolation globally. It solves the "noisy neighbor" problem and data leakage concerns before you write your first business logic route. It is based on the proven architecture used in high-scale SaaS products.

    Supported Stack

    • FastAPI (Async)
    • SQLAlchemy 2.0+ (Async)
    • Pydantic v2 (Settings & Validation)
    • Cloudflare Access (Auth)
    • PostgreSQL (Shared database, row-level isolation)

    Built by Nex AI. More skills and info at nex-ai.be and slopsome.com.

    How to install

    Drop the file into your AI Agent. Works with Claude, Cursor, ChatGPT, and 20+ more.

    Reviews

    No reviews yet

    Be one of the first to try it. Every listed skill passes our trust checks below.

    Security scanned

    Passed our 8-point scan before listing

    Fresh listing

    Recently published to Agensi

    30-day refund

    Not a fit? Get your money back

    Trust & safety

    Security scanned

    Verified clean 8 days ago

    Listed1 month ago
    Updated8 days ago

    Creator

    Founder of Nex AI. I build production-grade Claude Skills from systems that actually run: multi-tenant SaaS, Telegram agents, Raspberry Pi infrastructure, 3D multiplayer rooms. Every skill ships battle-tested patterns, not theory. 33+ open source skills published, commercial catalog growing.

    Frequently Asked Questions

    Popular in Security & Compliance