Pull a project's .env secrets into your workspace, or insert a single credential at the
cursor — without leaving the editor. Talks to a ThreatVault
instance over its /api/v1 API using a scoped API token.
Features
ThreatVault: Pull .env into workspace — writes the project's ENV secrets to .env.
ThreatVault: Insert secret at cursor — inserts a single decrypted value.
ThreatVault: Configure URL & token — opens the extension settings.
Setup
In ThreatVault, create an API token (Settings → API Tokens), scope secrets:read.