Env Linter
BetaLint .env text for duplicate keys, invalid names, unquoted spaces, export prefixes, masked secret candidates, and drift against .env.example in your browser.
- Free, no sign-up
- REST + MCP
- Updated
- Reviewed by Olgun Ozoktas
The .env text stays in your browser. Secret-looking values are masked. Analytics and ads may load on the page.
Duplicate keys and unquoted values with spaces are flagged.
Missing or extra keys are reported.
How to lint a .env file
-
Paste .env
Paste the file you want to check. The sample has a duplicate key and an unquoted value with spaces. -
Optional example
Paste .env.example to see missing or extra keys. -
Lint
Read duplicate keys, unquoted spaces, and export prefixes. Secrets appear masked. -
Fix in your editor
Quote values that contain spaces and remove duplicate keys.
Common Use Cases
Duplicate Key Checks
Example File Drift
Dotenv Syntax Review
Secret Candidate Review
Why lint a .env file
FindUtils Env Linter checks common KEY=value files for mistakes that can change application configuration. It reports duplicate keys, invalid lines, invalid names, export prefixes, and unquoted values that contain spaces.
An optional .env.example comparison finds keys that exist in only one file. The report also marks common token patterns and secret-like key names, and it masks those candidate values in the table. Detection is heuristic and cannot identify every secret.
Linting runs in your browser and does not change the pasted files. Use the JSON Formatter for JSON configuration, and use the JWT Decoder only with non-sensitive test tokens.
How it compares
A basic dotenv parser can tell you whether it accepts a file. FindUtils Env Linter also reports duplicate keys and example-file drift, but it does not replace application startup checks, framework-specific parsing, or a dedicated secret scanner.
Use the HMAC Generator for controlled signature test data. Do not paste a production secret into any unrelated tool.
Env Linting Tips
- Paste .env.example with .env when you need a key drift report.
- Remove duplicate keys even when your current dotenv parser accepts them.
- Quote a value that contains spaces so its intended boundary is clear.
- Treat secret masking as a warning aid, not a complete secret scanner.
- Fix the source file in your editor because this tool does not change pasted text.