
In Progress
Posted
Paid on delivery
I'm seeking an experienced full-stack developer to audit and complete my Lovable/Supabase/Stripe Connect marketplace. Key Focus Areas: - Security: Prioritize user authentication, data encryption, and API security. - Payment Integration: Ensure Stripe Connect is fully integrated and secure. - Bug Fixing: Identify and resolve existing bugs. - Testing: Conduct thorough testing to ensure launch readiness. - Launch Readiness: Verify all components are functional and secure. - Eventified uses Stripe Connect, with a 12% platform commission on transactions. Transfers and refunds are part of the existing payment flow. The developer will need to verify the current implementation and ensure everything is working correctly end-to-end. Requirements: - Proven experience with Lovable, Supabase, and Stripe Connect. - Strong background in security protocols and vulnerability assessment. - Proficiency in bug fixing and marketplace development. - Excellent testing and verification skills. Please provide examples of similar work done and a brief outline of your approach. I have built a marketplace website using Lovable, Supabase and Stripe Connect. The platform connects customers planning events with local businesses such as cakes, balloons, florists, venues, photographers, caterers etc. The website is already substantially built and functional. I'm hoping to change the aesthetics (Figma-style templates) with top-quality effort expected from the developer. (I am NOT looking for someone to rebuild it from scratch or simply redesign it.) I need an experienced full-stack developer to audit the existing codebase and get it genuinely launch-ready. The most important areas are Stripe Connect and the 12% transaction commission, payments/payouts, webhooks, refunds and payment security, Supabase/RLS and data protection, authentication, customer/business journeys, enquiries, messaging, notifications, marketplace/search, AI assistant and mobile functionality. Targeted promotions / future sponsored placements/ads. Uses Stripe Connect, with a 12% platform commission on transactions. Transfers and refunds are part of the existing payment flow. The developer will need to verify the current implementation and ensure everything is working correctly end-to-end. I need someone who can test the actual application thoroughly, identify anything that could cause problems with real customers or real money, fix genuine launch blockers, clearly explain what can safely wait until after launch, and ensure Figma-level aesthetics are achieved before final approval of deliverables. I am particularly looking for strong experience with Supabase, Stripe Connect, marketplace/payment systems, security/RLS and full-stack development. Please do not propose a complete rebuild unless you can demonstrate that the existing architecture genuinely cannot be made secure and reliable. I would prefer to start with an audit/launch-readiness assessment followed by separately quoted fixes if required.
Project ID: 40674463
234 proposals
Remote project
Active 5 days ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
234 freelancers are bidding on average €440 EUR for this job

Hi — Elias here from Miami. I understand you're looking for a full-stack developer to audit and enhance your marketplace built on Lovable, Supabase, and Stripe. Your main goal is to ensure security and functionality across the platform. What usually matters most here is identifying potential vulnerabilities and ensuring robust integration with payment systems like Stripe. A common issue in marketplaces is managing user permissions and securing sensitive data. The tricky part is usually ensuring the system remains scalable while implementing security measures. My approach would focus on a thorough assessment of the current architecture, prioritizing maintainability and future-proofing. I would review your API interactions, user roles, and payment workflows to identify any weaknesses. I've worked on similar marketplace platforms, enhancing security and optimizing performance without compromising user experience. A few questions to better understand the scope: Q1 – What specific areas of the platform do you feel need the most attention regarding security? Q2 – Are there any compliance requirements or regulations we should be aware of? Q3 – How do you currently handle user roles and permissions in the marketplace? Happy to go through the details and suggest the best technical approach. Looking forward to hearing from you.
€500 EUR in 3 days
7.5
7.5

✅ Hello, We’d start with an audit of your existing Lovable/Supabase/Stripe Connect marketplace, not a rebuild. The first checks would be the 12% commission flow, transfers/refunds/webhooks, Supabase RLS/auth, and real customer/business journeys before any UI polish. - Backend: keep Supabase Postgres, Edge Functions, RLS, and Stripe webhook hardening. - Frontend: keep the Lovable/React app and refine screens to match Figma-level templates. - Roles: customer, business, admin, with tested permissions and data isolation. - Launch: test payments, enquiries, messaging, search, notifications, mobile, then deploy fixes. We are Webcapitan, a Ukrainian web development studio with 8+ years, Preferred Freelancer status, and 580+ 5★ reviews. Do you already have Stripe test cases for commission, payout, refund, and failed webhook scenarios? Which areas are custom code versus Lovable-generated flows we should treat carefully? Please let me know your thoughts. Looking forward, Roman
€444 EUR in 3 days
7.3
7.3

Hi, I'm Shofiur, CEO of Pentest Testing Corp. Marketplaces on Stripe Starting with an audit before committing to fixes is the right call. Rebuilding is rarely needed; most launch blockers in Lovable/Supabase stacks come from the same spots: RLS policies scoped for development and never tightened, webhooks missing signature verification or idempotency, and Connect transfers that work fine until a partial refund or dispute hits. My approach for Eventified: Phase 1, Audit: trace the full payment lifecycle (checkout, 12% fee calc, transfer to connected accounts, full/partial refunds) to confirm fees reverse correctly per Stripe's rules. Review RLS policies against actual roles (customer/business/admin), test auth and session handling, and check webhook signature validation and retries. Test core journeys (enquiries, messaging, notifications, search) since bugs here often show up as data leakage rather than crashes. You get a prioritized report: real blockers vs. safe-to-defer items, each with risk rating. Phase 2, Fixes: quoted separately based on actual findings. Security and payment issues first, aesthetics after the platform is safe with real money moving. Background: I run a pentest firm working across 30+ countries, with direct experience auditing Supabase RLS and Stripe Connect marketplaces, fee splits, refund reversals, webhook hardening. Happy to share sanitized examples. Ready to start with a fixed-scope audit. Md Shofiur CEO & Founder, Pentest Testing Corp
€750 EUR in 7 days
7.3
7.3

Hi, I reviewed your Full-Stack Marketplace Security Audit and understand the goal: make the Lovable/Supabase/Stripe Connect marketplace genuinely launch-ready without a full rebuild. I’ll audit authentication, API security, encryption, and user/business journeys, then verify data protection with Supabase RLS and secure authorization paths across enquiries, messaging, notifications, and marketplace/search. For payments, I’ll harden Stripe Connect integration end-to-end: checkout, payouts, commission (12% transaction commission), webhooks, refunds, and payment-security edge cases. I’ll also run full site testing to catch launch blockers, confirming mobile functionality and any AI assistant flows, then clearly explain what’s safe to defer post-launch. I prioritize clean, verifiable fixes with responsive communication, soundness over guesswork. Let’s discuss here now.
€250 EUR in 30 days
5.7
5.7

Hi, I can help audit your existing Lovable + Supabase + Stripe Connect marketplace and get it genuinely launch-ready without rebuilding it unnecessarily. I’d focus first on the areas that can create real customer, security or payment issues: Supabase Auth and RLS/data isolation Stripe Connect payments, 12% commission, payouts and refunds Webhook reliability, idempotency and payment edge cases API/security vulnerabilities and exposed data Customer and business journeys Enquiries, messaging and notifications Marketplace/search functionality AI assistant and mobile responsiveness Error handling, permissions and launch blockers End-to-end testing of critical workflows I’d start with a paid audit/launch-readiness assessment, document the findings by severity (critical/high/medium/low), and clearly separate must-fix-before-launch items from improvements that can safely follow later. Fixes can then be quoted separately. I’m comfortable working directly with existing Lovable-generated code and Supabase/Stripe, rather than automatically recommending a rewrite. Best Regards, Dinesh L
€500 EUR in 4 days
5.7
5.7

Your existing Lovable/Supabase/Stripe Connect marketplace needs a launch-readiness audit, not a rebuild. I’ll inspect the current architecture and preserve the working product while identifying issues that could affect real customers or real money. I have 10+ years of full-stack experience and have delivered marketplace, payment, API, and security-focused applications. My review will cover Supabase Auth, RLS policies, storage exposure, service-role usage, input validation, API authorization, data protection, and customer/business access boundaries. For Stripe Connect, I’ll verify onboarding, the 12% commission logic, payment and payout flows, webhook signature validation, idempotency, refunds, disputes, failed payments, and account reconciliation. I’ll test complete customer and business journeys, including enquiries, messaging, notifications, search, AI assistant, mobile layouts, and promotion-related permissions. I’ll use Stripe test mode and realistic edge cases, then provide a prioritized report separating launch blockers from safe post-launch improvements. I can also resolve clearly scoped blockers without changing the existing architecture or Figma-style aesthetic direction. Is the current Stripe integration running in test mode, with a staging URL and test credentials available? Muhammad Saad
€500 EUR in 4 days
5.4
5.4

Hello, I am Dr. Rajesh Rolen, PhD in Computer Science & Engineering, with experience of over 20+ years in API, Website Testing, Testing / QA, Stripe, Full Stack Development, Web Security As a preferred freelancer in the top 1%, I have done 400+ projects here on freelancer.com, I have 4.9 ratings out of 5 on average, which showcases my quality of work and timely delivery. Key Highlights: - Free Hosting Support on the Cloud or any desired platform. - Free 3 months of post-delivery support to ensure that our client doesn’t face any challenges after the launch of the project. - Free Dedicated tester on projects to ensure quality delivery, so clients don’t need to act as a tester. - 10+ Years experience UI/UX team to ensure intuitive UI. Portfolio: https://www.freelancer.com/u/Microlent Please open the chat and send me a message, so we can have a more detailed discussion about the project to give you the project timeline and cost. Thank you for considering my services. I look forward to engaging in a productive conversation and understanding how I can be of assistance in bringing your project to life. Regards Rajesh Rolen
€500 EUR in 30 days
7.1
7.1

I have 8+ years of experience in web development and am familiar with modern web technologies, frameworks like Supabase, Stripe Connect, and other tools. The project is to audit the existing Lovable and Supabase marketplace and get it launch-ready, not rebuild it. My focus is on Stripe Connect payments, including the 12% commission, payouts, webhooks, and refunds. I will also check row-level security, authentication, and data protection. Then I will test the main customer and business journeys, messaging, and search. I will identify genuine launch blockers and explain what can wait. I will start with a launch-readiness audit, then list any fixes separately for your approval. I can start right away.
€250 EUR in 7 days
5.1
5.1

Hi As an experienced full-stack developer and the leader of a talented team, we have a versatile skillset that can flawlessly meet your project’s requirements. Our proficiency with the Lovable, Supabase, and Stripe Connect platforms, as demonstrated in numerous previous projects, makes us the perfect fit for your marketplace security audit needs. Moreover, our deep understanding of API integrations and our proven ability to prioritize user authentication, data encryption, and API security will ensure that we address every aspect of the project with unwavering diligence. One of our key strengths lies in conducting thorough testing to guarantee launch readiness. We have developed meticulous processes to identify even the most nuanced bugs in a system. As security is the paramount concern in your project, let me assure you that as an ISO 9001 and ISO 27001 certified company, information security is ingrained in our DNA. Don’t worry; we are not looking to rebuild your platform. Instead, we’d approach this assignment by starting with a rigorous audit/launch-readiness assessment. Thanks...
€500 EUR in 7 days
5.2
5.2

I understand you're looking for a developer to secure your Lovable/Supabase/Stripe Connect marketplace, similar to how I recently secured a complex SaaS platform's authentication and payment flows, identifying critical vulnerabilities before go-live. My expertise in these specific technologies will ensure your marketplace is robust and protected. My approach involves a multi-layered security audit. I'll begin with a threat modeling exercise tailored to your marketplace architecture. For Supabase, I'll review Row Level Security policies, database triggers, and API endpoint configurations, ensuring data access is strictly controlled. Lovable's authentication and authorization mechanisms will be scrutinized for common attack vectors. Stripe Connect integration will be audited for PCI compliance, webhook security, and correct handling of sensitive payment data. I'll utilize tools like OWASP ZAP for automated scanning, alongside manual penetration testing and code reviews for critical components. A comprehensive test suite will then be developed to cover functional, security, and edge cases, with a focus on reproducible bug fixing. To ensure a smooth launch, could you elaborate on any specific security concerns you've already encountered or areas you feel are particularly high-risk? I'm confident I can deliver a secure and stable marketplace. Let's schedule a brief call to discuss the project in more detail.
€565 EUR in 21 days
4.5
4.5

Hello, A marketplace built around Lovable, Supabase and Stripe Connect needs a thorough review of both the application logic and the payment/data flows before launch. I’ve worked on marketplace platforms involving authentication, payments, user roles, APIs and transaction workflows, so I can audit the existing implementation rather than unnecessarily rebuilding what already works. I can review authentication, Supabase database policies/RLS, API endpoints, sensitive data handling, Stripe Connect onboarding and payment flows, webhooks, commissions/payouts, and role-based access. I’ll also identify existing bugs, test the critical user journeys, fix the issues found, and verify the platform is stable and secure for production. The audit will focus on practical launch readiness, including edge cases around failed payments, webhook events, unauthorized access, incomplete transactions and data exposure. I’ll document the findings, fixes and remaining risks so you have a clear picture before launch. If you provide access to the existing Lovable project, Supabase environment and Stripe test configuration, I can review the current architecture and prioritise the highest-risk areas first. Regards, Nikita Gupta
€400 EUR in 7 days
4.5
4.5

Hello, I’ve already completed similar marketplace projects using Supabase, Stripe Connect, authentication, RLS, APIs, and payment workflows. I can audit your existing Lovable application first rather than starting over, focusing on Stripe commissions, payouts, webhooks, refunds, security, RLS, user journeys, messaging, notifications, search, AI features, and mobile responsiveness. I’ll identify real launch blockers, fix the important issues, and clearly separate post launch improvements. How is the 12% commission currently handled between the customer payment, platform fee, and business payout in Stripe Connect? I’d be happy to review the current application and share a clear audit plan. Let’s schedule a quick meeting to discuss the setup and next steps. I will share my portfolio in chat I look forward to hear from you. Thanks Best Regards, Mughira
€500 EUR in 7 days
4.5
4.5

Hello, I'm Denis, a full-stack developer with experience building and securing marketplace systems, particularly around Stripe Connect, Supabase, and payment workflows. I understand you need a security-focused audit for your existing Lovable/Supabase/Stripe Connect marketplace to ensure it's truly launch-ready. The priority areas—Stripe Connect integration, payment security, Supabase RLS, user authentication, and testing—align well with my recent work on similar systems. I'd approach this in two phases: first, a detailed audit to identify security gaps, payment flow issues, and potential launch blockers in authentication, webhooks, refunds, and data protection. Then, we'd prioritize fixes based on what could actually disrupt real transactions or customer data, separating critical issues from post-launch improvements. For Supabase, I'd focus on RLS policies, data isolation between customers and businesses, and secure API endpoints. With Stripe Connect, I'd verify payout flows, commission handling, refund logic, and webhook reliability to prevent failed payments or data leaks. Two realistic risks stand out: unclear RLS policies in Supabase could expose sensitive data, and Stripe Connect webhook failures might disrupt payouts. I'd address these by reviewing current policies and testing webhook retries under load. I can start working right away. Let's connect and discuss the details. Thanks, Denis.
€250 EUR in 3 days
4.2
4.2

⭐⭐⭐⭐⭐ Full-Stack Developer for Marketplace Audit and Completion ❇️ Hi My Friend, I hope you're doing well. I've reviewed your project requirements and noticed you're looking for an experienced full-stack developer. Look no further; Zohaib is here to help you! My team has successfully completed 50+ similar projects for marketplace development. I will audit your existing codebase, focusing on security, payment integration, and testing to ensure everything is launch-ready. ➡️ Why Me? I can easily do your marketplace audit and completion as I have 5 years of experience in full-stack development, specializing in security protocols, payment systems, and bug fixing. Not only this, I have a strong grip on Lovable, Supabase, and Stripe Connect, ensuring a comprehensive approach to your project. ➡️ Let's have a quick chat to discuss your project in detail. I’ll provide samples of my previous work and outline my approach. Looking forward to discussing this with you in our chat. ➡️ Skills & Experience: ✅ Full-Stack Development ✅ Security Protocols ✅ Stripe Connect Integration ✅ Bug Fixing ✅ Payment Systems ✅ Supabase Expertise ✅ API Security ✅ Testing & Verification ✅ Marketplace Development ✅ User Authentication ✅ Data Encryption ✅ Webhooks Management Waiting for your response! Best Regards, Zohaib
€350 EUR in 2 days
5.4
5.4

I’ve built and secured two Stripe Connect marketplaces with Supabase RLS—one handling 12% commissions and payouts, the other with webhooks, refunds, and AI-assisted search—so this is well within scope. I’ll run a Supabase/RLS and Stripe Connect audit first, checking auth flows, data isolation, and webhook reliability, then validate payment states, commission splits, and refund paths under load. After that, I’ll fix blockers in customer/business journeys, messaging, and notifications, followed by targeted security hardening and mobile responsiveness checks. The output will be a launch-readiness report with prioritized fixes and a clear post-launch backlog. I can start immediately. Thanks, Andrii.
€450 EUR in 6 days
4.2
4.2

Hi, I've built and integrated Stripe payment flows with user login and admin panels before, so the commission split, payouts, webhooks and refund paths on a Connect setup are familiar ground for me. Build a ChatGPT API Integrated Website with User Login, Stripe Payment, Admin Panel: (Freelancer contract, 5 stars) The part I'd want to look at first is your Supabase RLS. On marketplaces the most common launch blocker is policies that leak one business's data to another, or let a customer read enquiries they shouldn't. I'd start with an audit that separates real money and data risks from things that can safely wait, then quote fixes separately as you asked. One question: is Stripe Connect running in test mode now, or already live with real payouts? That changes how I test refunds. Adil
€429.19 EUR in 7 days
4.3
4.3

Hello There! I’m Md Toriqul Islam, an experienced Full-Stack Developer specializing in Supabase, Stripe Connect, marketplace architecture, authentication, RLS, APIs, testing, and launch-readiness audits. I understand you need your existing Lovable/Supabase/Stripe Connect marketplace thoroughly audited—not rebuilt—including payment flows, 12% commissions, payouts, webhooks, refunds, RLS/data protection, authentication, customer/business journeys, messaging, notifications, search, AI assistant, and mobile functionality. I’m skilled in Supabase, PostgreSQL, Stripe Connect, webhooks, RLS, authentication, API security, marketplace workflows, debugging, and full-stack testing. I have a few questions: 1) Can you provide access to the Lovable project, Supabase dashboard, and Stripe test environment for the initial audit? 2) Is the 12% commission currently implemented through Stripe Connect, and which Connect account type are you using? 3) Do you already have a test checklist or staging environment for customer and business journeys? I can clearly distinguish critical launch issues from improvements that can safely wait until after launch. I’m ready to begin with the audit and provide a structured launch-readiness assessment. Looking forward to hearing from you. Best regards, Md Toriqul Islam
€250 EUR in 4 days
4.4
4.4

This marketplace is already substantially built, so the priority should be a launch-readiness audit rather than a rebuild. The highest-risk areas are the Stripe Connect 12% commission, payouts, refunds and webhooks, plus Supabase RLS, authentication, and the customer/business journeys handling real data and money. I’d audit the existing Lovable/Supabase architecture and Stripe flow end to end, verify authorization boundaries, RLS policies, webhook signatures, commission calculations, transfers, refunds, and failure/retry scenarios. I’d then test the main marketplace, messaging, notifications, AI assistant, and mobile flows, separate genuine launch blockers from post-launch improvements, and apply targeted fixes within the current architecture while refining the UI to the requested Figma-level standard. My matching skills include Supabase, PostgreSQL/RLS, Stripe integrations, marketplace workflows, authentication, API security, full-stack debugging, responsive UI, and launch-readiness testing. 1. Is the 12% commission calculated and enforced server-side, or is any part of that logic currently handled in the frontend? 2. Do you already have Stripe test scenarios for successful payments, failures, refunds, disputes, and connected-account payouts, or should I establish that test matrix during the audit? Reply with those two details and I can focus the assessment on the highest-risk areas first. Best regards, Opeyemi
€300 EUR in 2 days
4.0
4.0

Hi, there - Truong here. "MARKETPLACE SECURITY AUDIT" — you need a launch-ready marketplace without risking payments or user data. I would audit your existing Lovable/Supabase/Stripe Connect setup first, focusing on RLS rules, webhook handling, payouts, refunds, authentication, and real customer journeys. The goal is to find real launch blockers, not rebuild a working system. I will test edge cases like failed Stripe transfers, incorrect access permissions, refund flows, and mobile issues, then clearly separate urgent fixes from future improvements. How is your current Stripe Connect flow handling failed payments and webhook retries? thanks.
€250 EUR in 3 days
4.1
4.1

**DO NOT PAY ME UNTIL I COMPLETE! :)** Hello my valuable client :) I can definitely work on your working hours. My profile is new over here but I have 7 years of experience in this field. I have completely understood about your project. Also I will provide you free maintenance on your project for 1 year after project completion. Give me one chance to prove myself. Hit the chat button to get started. If you will not like my work then you dont need to pay me any money so dont worry and have faith in me :) I am eagerly waiting for your message.
€251 EUR in 7 days
3.8
3.8

Donegal, Ireland
Payment method verified
Member since Aug 22, 2026
₹750-1250 INR / hour
$750-1500 USD
$15-25 USD / hour
€750-1500 EUR
$15-25 AUD / hour
€30-250 EUR
$250-750 USD
$30-250 AUD
$2-8 USD / hour
₹12500-37500 INR
₹1500-12500 INR
₹12500-37500 INR
₹750-1250 INR / hour
₹600-1500 INR
$250-750 USD
$750-1500 USD
$250-750 USD
$15-25 USD / hour
$250-750 USD
£30-40 GBP