Skip to main content

Credentials

1. Get Your Connection DSN

Local Postgres

Managed Postgres (Supabase, Neon, RDS, …)

Copy the connection string from your provider’s dashboard. It usually looks like:

2. Set Environment Variables

Permissions

The Postgres VFS is read-only. Grant the role you connect with at minimum:
If you only want to expose a subset of schemas, set schemas in the VFS config:

Limits

The VFS has built-in safety limits to keep an agent from accidentally pulling a whole table:
  • default_row_limit (1,000): rows a windowed read returns when it passes an offset but no limit.
  • max_read_rows (10,000): hard ceiling per read. A whole read past it is refused (on the rows the table really has, not only on the planner’s estimate); head -n / tail -n past it print that many rows, then a notice on stderr, and exit 1.
  • max_read_bytes (10 MiB): hard ceiling per read.
Override in the config if you need bigger reads.