DEV Community

Discussion on: How to use .env file in JavaScript applications with webpack

Collapse
 
sanfra1407 profile image
Giuseppe • Edited

Hi Jérôme,
thank you for you comment. You're right: you shouldn't expose your sensible info (API users, tokens, passwords and so on). This is meant only for sharing silly information and to avoid some harcoded values related to specific envs.

But I'd say yes: is not definitely a best practice to share everything, because being a front end stuff everybody could easily get those info. So I'd suggest to put your private datas one the server side, for sure.