Nicheloom

Market intelligence for builders — see what's gaining traction before it's crowded.

Dotenv Mask Editor: No more embarrassing screen leaks of your .env

Details

External ID
46713473
Source
HN
Company
β€”
Product
Dotenv Mask Editor: No more embarrassing screen leaks of your .env
Website domain
visualstudio.com
Launched
Jan. 22, 2026
Cohort
β€”
Upvotes
28
Upvotes percentile
0.7002635046113307
Tags
β€”
Fetched at
Sept. 7, 2026, 9:25 p.m.
Updated at
Sept. 7, 2026, 9:25 p.m.

Description

Hi HN,I built this because I often work in coworking spaces or do screen sharing, and I've always had this fear of accidentally flashing my .env file with production secrets to the whole room (or recording).It’s a simple VS Code extension that opens .env files in a custom grid editor. It automatically masks any value longer than 6 characters so I can safely open the file to check keys without exposing the actual secrets.It runs 100% locally with zero dependencies (I know how sensitive these files are). It just reads the file, renders the grid, and saves it back as standard text.It's open source (MIT) and I'd love any feedback on the masking logic or other features that would make it safer to use.Marketplace: https://marketplace.visualstudio.com/items?itemName=xinbenlv... Github https://github.com/xinbenlv/dotenv-mask-editor

Enrichment

Theme
self-hosted infrastructure and security tools
Vertical
Horizontal
Function
Dev tools
Audience
Developer
AI stance
Not AI
Project type
Commercial product
Normalized one-liner
mask sensitive environment variables from screenshots
Manually corrected
False

Could you build this?

Yes It is a standard VS Code extension using the Custom Editor API to display key-value pairs from .env files in a masked UI grid.

Discussion

20 comments analyzed.

Competitors mentioned: direnv, Vault, AWS SSM, pass (password manager), Postman

Concerns raised: Production secrets shouldn't be in .env files at all, Masking is a band-aid, not proper secret management, Doesn't prevent npm packages from reading env files, Scope too narrow - problem extends beyond .env to configs, databases, terminals, browser tabs, Better to use local dev stack with dummy credentials instead

Feature requests: Support masking beyond .env files (YAML, JSON, TOML, database GUIs, API tools, terminals), Detect secrets across multiple applications during screen sharing, More sophisticated secret detection beyond pattern matching

Competitors

Other products that read as similar to this one — 49 launches clear the similarity bar, closest 8 shown.

Attention rank: #24 of 50 (itself plus its competitors, highest first — normalized so YC and Product Hunt are compared fairly).

Launched 62 days after the earliest competitor.

Other launches for this product

Same idea, different domain

Nobody's really built a dev tools tool for Sales yet.