🐧 Linux TippsDebian 11 Long Term Support reaches end-of-life(31.08.2026 um 02:00 Uhr)
🐧 Linux TippsUpdated Debian 13: 13.7 released(12.09.2026 um 02:00 Uhr)
🕵️ SicherheitslückenUSN-8741-1: Flatpak vulnerabilities(10.09.2026 um 10:44 Uhr)
🕵️ SicherheitslückenUSN-8742-1: Netty vulnerability(10.09.2026 um 11:01 Uhr)
🕵️ SicherheitslückenUSN-8737-2: GNU C Library vulnerabilities(10.09.2026 um 13:25 Uhr)
🕵️ SicherheitslückenUSN-8743-1: PHP vulnerabilities(10.09.2026 um 13:48 Uhr)
🕵️ SicherheitslückenUSN-8744-1: Python vulnerabilities(10.09.2026 um 15:53 Uhr)
🐧 Linux TippsUSN-8748-1: Linux kernel (NVIDIA) vulnerabilities(10.09.2026 um 17:32 Uhr)
🕵️ SicherheitslückenUSN-8745-1: KissFFT vulnerabilities(10.09.2026 um 17:36 Uhr)
🕵️ SicherheitslückenUSN-8746-1: libEBML vulnerability(10.09.2026 um 17:48 Uhr)
🐧 Linux TippsDebian 11 Long Term Support reaches end-of-life(31.08.2026 um 02:00 Uhr)
🐧 Linux TippsUpdated Debian 13: 13.7 released(12.09.2026 um 02:00 Uhr)
🕵️ SicherheitslückenUSN-8741-1: Flatpak vulnerabilities(10.09.2026 um 10:44 Uhr)
🕵️ SicherheitslückenUSN-8742-1: Netty vulnerability(10.09.2026 um 11:01 Uhr)
🕵️ SicherheitslückenUSN-8737-2: GNU C Library vulnerabilities(10.09.2026 um 13:25 Uhr)
🕵️ SicherheitslückenUSN-8743-1: PHP vulnerabilities(10.09.2026 um 13:48 Uhr)
🕵️ SicherheitslückenUSN-8744-1: Python vulnerabilities(10.09.2026 um 15:53 Uhr)
🐧 Linux TippsUSN-8748-1: Linux kernel (NVIDIA) vulnerabilities(10.09.2026 um 17:32 Uhr)
🕵️ SicherheitslückenUSN-8745-1: KissFFT vulnerabilities(10.09.2026 um 17:36 Uhr)
🕵️ SicherheitslückenUSN-8746-1: libEBML vulnerability(10.09.2026 um 17:48 Uhr)

🔧 Programmierung 🕛 vor 4 Monaten 2 Min Lesezeit
0

I built a CLI that scans, validates and audits your .env files and it works with any stack

↗ Quelle (dev.to)
🗣️ Stimme:
📑 Inhaltsübersicht

Every dev team has lost hours to .env problems.



A missing variable breaks a deploy.

An API key gets committed to Git.

A new teammate spends half a day figuring out which variables they need.

Nobody documented anything.



I built Razify to make all of that stop happening.







What is Razify?



Razify is a single binary CLI tool for .env file management.

It diffs, scans, validates, documents, and audits your environment

variables — all from your terminal.




  • No cloud account

  • No tracking

  • No Go installation required



Works with Node.js, Python, Ruby, Laravel, Rails — anything that uses .env files.







What it does





🔍 Secret scanning





CODE
   razify scan .env





Detects leaked secrets using 80+ regex patterns combined with

Shannon entropy analysis to catch what pattern matching alone would miss.




CODE
   ✘  [CRITICAL] Line 6: DB_PASSWORD — weak or default value
⚠ [HIGH] Line 5: AWS_ACCESS_KEY — cloud provider credential

Summary: 1 CRITICAL 4 HIGH 1 MEDIUM












✅ Pre-deploy validation






CODE
   razify validate .env .env.example






Catches missing required variables before you deploy.

Returns exit code 1 — plugs straight into CI/CD.




CODE
   - name: Validate environment
run: razify validate .env .env.example --json












🛡️ Git commit protection






CODE
   razify guard install






Installs a pre-commit hook that blocks any commit

containing exposed secrets. Set it once, forget about it.









📊 Health score






CODE
   razify audit .env .env.example






Runs scan + validate + diff together.

Gives you a score out of 100 with actionable recommendations.









📄 Auto-generated docs






CODE
   razify docs .env.example -o ENV_DOCS.md






Generates a markdown table from your inline comments.

No more "what does this variable do?"









Installation






CODE
   # macOS / Linux
brew tap Hossiy21/tap && brew install razify

# Windows
scoop install razify

# Go users
go install github.com/Hossiy21/razify@latest












Open source



MIT licensed. PRs very welcome — especially for new secret

patterns or improving the scoring algorithm.



⭐ github.com/Hossiy21/razify

🎬 Demo: https://github.com/Hossiy21/razify/raw/master/razify-demo.gif






Would love your feedback — especially on the entropy detection

and health scoring. What would make this useful for your workflow?

Vollständiger Original-Bericht
Ausführliche Details, Code-Beispiele & Hersteller-Stellungnahme auf dev.to.
↗ Original-Artikel auf dev.to lesen
Wie bewertest du diesen Beitrag?
1 Klick Feedback
Teilen mit Netzwerk & Team:

Community-Analysen & Experten-Meinungen 0

Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf Eigene Analyse verfassen“!
Community Pulse: Relevanz-Einschätzung
1 Klick Experten-Votum
🔴 Akute Relevanz 0%
🟡 In Evaluierung 0%
🟢 Keine Auswirkung 0%
Spannende Innovation 0%
Verwandte Story-Cluster & Quellen (Vektor-KI)
Port 8095 Engine
1 Quelle
Debian 11 Long Term Support reaches end-of-life
1 Quelle
Updated Debian 13: 13.7 released
1 Quelle
USN-8741-1: Flatpak vulnerabilities
Ähnliche Beiträge
🔍 Verwandte News

Auch interessante Nachrichten I built a CLI that scans, validates and audits your .env files and it works with any stack

Thematisch verwandte Begriffe: built, that, scans, validates · 6 Treffer

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...