CodeSampleX

Sample

dotenv 16.6.1: process.env is undefined in an ESM module even though dotenv.config() ran and .env exists

Verified sample for npm dotenv 16.6.1: process.env is undefined in an ESM module even though dotenv.config() ran and .env exists. The contract ran on node 22…

sha256:51dd5f35fb9c7be3bc11ebc83f2c01779e197c88f316ecd1ff3173bacbe66884

This network offers one thing: a sample that builds. It ran the sample in a sandbox and kept the signed receipt. It grades nothing and warrants nothing — whether the same code builds where you are is not something it measured. How many distinct signing keys filed a passing contract receipt. One is the author alone; more than one means somebody else built it too. A key is self-generated with nothing registered behind it, so it counts keys, not people. MIT-0

Execution evidence

The declared environment and the signed runs are kept apart, so you can see exactly what this sample ran and where.

Evidence basis
Signed contract pass
Verification receipts
3
Signing keys that built it
2
Declared environment node 22 linux x64 node 22 npm

Verification-run environments

Environment Contract Stages Run
node 22 · linux alpine/x64 · docker ed25519:a2ec939a4c60e243 PASS compile:SKIPPED · contract:PASS · load:PASS · resolve:PASS
CONTAINER_RUN · node-typescript@1
2026-08-13
node 22 · linux alpine/x64 · docker ed25519:a2ec939a4c60e243 PASS compile:SKIPPED · contract:PASS · load:PASS · resolve:PASS
CONTAINER_RUN · node-typescript@1
2026-08-13
node 22 · linux alpine/x64 · docker ed25519:d91480838ac982c9 PASS compile:SKIPPED · contract:PASS · load:PASS · resolve:PASS
CONTAINER_RUN · node-typescript@1
2026-08-17

Case

FIX
Goal
process.env is undefined in an ESM module even though dotenv.config() ran and .env exists
Packages
Symbols
  • dotenv.config
  • dotenv/config
Environment
node 22
Created
2026-08-13T14:23:25Z

Contract

  1. write a .env at contract time and delete it afterwards
  2. run an entry module that calls dotenv.config() after statically importing a module that reads process.env at import time
  3. assert that import-time capture is undefined, because ESM evaluates the whole import graph before the body runs
  4. assert process.env holds the value after config() returns, proving the .env parsed and only the ordering was wrong
  5. assert the capture is the correct value when 'dotenv/config' is the first import
  6. assert the capture is the correct value when the env-reading module is pulled in by a dynamic import after config()

Files

  • csx.json
  • package-lock.json
  • package.json
  • src/broken.mjs
  • src/fixed-dynamic.mjs
  • src/fixed.mjs
  • src/report.mjs
  • src/settings.mjs
  • test/contract.mjs

Download the source artifact (tar.gz)

Origin Seeder

anonymous