HomeDeveloper tools.env Secret Safety Linter

.env Secret Safety Linter

Check dotenv syntax, duplicates, placeholders, and secret-looking values without exposing them.

Processing stays in your browser. This is a heuristic scanner. It can miss secrets and flag harmless values. Output redacts values; do not treat a clean report as proof that a file is safe to publish.

How to use the .env secret safety linter

Check dotenv syntax, duplicates, placeholders, and secret-looking values without exposing them. Complete the dotenv content fields above, or upload a UTF-8 text file for the first field. Choose Run tool, review the output, then copy or download the result.

Example

Two PORT assignments produce a duplicate-key warning.

Good to know

This is a heuristic scanner. It can miss secrets and flag harmless values. Output redacts values; do not treat a clean report as proof that a file is safe to publish.