Skip to content

Incident detail

401 errors due to JWT rejections

Active incidentMinor

Timeline window

Started

Get alerted the next time Supabase breaks

Free email alerts for the handful of vendors you cannot afford to miss. No card, live in about a minute. Paid plans add Slack, Teams, Discord, and webhook delivery across your whole stack, plus higher API quotas.

Timeline

Incident updates

Every update Supabase posted, oldest to newest, exactly as it appeared on their official status page.

  1. Identified

    We have identified the root cause of newly refreshed JWTs being rejected by the API, resulting in HTTP 401 errors for affected sessions. We are working on a fix and will provide updates as things progress.

  2. Identified

    Our teams are continuing to work on the fix and rollout is underway for selected customers. We will provide another update as we are applying the fix to all impacted users.

  3. Identified

    Fixes for this issue are being sequentially rolled out. The impact of the issue is limited to a subset of new projects that can experience it upon some JWT renewals. We will update the status when all the fix rollouts have completed.

  4. Identified

    As part of the incident remediation flow, we have separately identified "/lib/aarch64-linux-gnu/libc.so.6: version `GLIBC_2.34' not found" error between 11:15 - 16:24 UTC today affecting PostgREST. This has been fixed and we can see the error rates have subsided.

  5. Identified

    We are continuing to test and rollout the fixes for intermittent HTTP 401 errors. In most cases, waiting and refreshing is successful.

    We will monitor eu-central-2 over the weekend and are preparing for the fix to be pushed to all regions starting Monday. Thank you for your patience while we've worked on multiple fixes for this issue.

  6. Identified

    We are continuing to rollout the fixes for intermittent HTTP 401 errors. In most cases, waiting and refreshing is successful.

    This fix has been applied to the following regions:

    ap-east-1

    ap-northeast-1

    ap-northeast-2

    ap-south-1

    ap-southeast-1

    ap-southeast-2

    ca-central-1

    eu-central-1

    eu-central-2

    eu-north-1

    eu-west-2

    eu-west-3

    We will continue rolling out this fix to the remaining regions throughout this week and provide updates as more regions are successful.

  7. Identified

    PostgREST 14.17 has now been rolled out to all regions.

    Some customers have reported that restarting their project after the rollout resolved this issue.

    To restart your project, go to the General settings page in the dashboard and select Restart project.

    Please contact our support team if the issue persists after a restart.

  8. Identified

    We continue to monitor the fixes introduced by this latest rollout. If you are continuing to see these errors, some customers have reported that restarting their project after the rollout resolved this issue.

    To restart your project, go to the General settings page in the dashboard and select Restart project.

    Please contact our support team if the issue persists after a restart.

  9. Identified

    We have seen reports that the JWT rejection issue persisted with 14.17, and due to <a href="https://status.supabase.com/incidents/bv4ntm4x0btf">some unintended performance side effects</a>, we have rolled back to Postgrest 14.5. The team continues to investigate the JWT issue and hopes to have a solution soon.

  10. Identified

    A stale time cache has been identified as the cause of this issue. A targeted fix has been written and is undergoing internal testing. It will be rolled out when testing is complete. Thank you for your patience while we investigated this issue. We will update the status page when the fix is rolled out.

Keep exploring

More from Supabase

Neighboring incidents on Supabase's timeline and the rest of their record on OutageDeck.