惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

T
Troy Hunt's Blog
Blog — PlanetScale
Blog — PlanetScale
Engineering at Meta
Engineering at Meta
F
Full Disclosure
Recorded Future
Recorded Future
The GitHub Blog
The GitHub Blog
Microsoft Security Blog
Microsoft Security Blog
GbyAI
GbyAI
博客园_首页
博客园 - 叶小钗
MongoDB | Blog
MongoDB | Blog
Exploit-DB.com RSS Feed
Exploit-DB.com RSS Feed
Recent Commits to openclaw:main
Recent Commits to openclaw:main
H
Hacker News: Front Page
人人都是产品经理
人人都是产品经理
The Cloudflare Blog
博客园 - 司徒正美
Webroot Blog
Webroot Blog
Google DeepMind News
Google DeepMind News
Help Net Security
Help Net Security
Cloudbric
Cloudbric
PCI Perspectives
PCI Perspectives
有赞技术团队
有赞技术团队
K
KPMG report finds enterprise disconnect between AI and its ROI | CIO
TaoSecurity Blog
TaoSecurity Blog
L
Lohrmann on Cybersecurity
量子位
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint
T
Tailwind CSS Blog
Hacker News - Newest:
Hacker News - Newest: "LLM"
B
Blog RSS Feed
Apple Machine Learning Research
Apple Machine Learning Research
大猫的无限游戏
大猫的无限游戏
P
Proofpoint News Feed
N
News and Events Feed by Topic
罗磊的独立博客
T
Threat Research - Cisco Blogs
Schneier on Security
Schneier on Security
T
Tor Project blog
IT之家
IT之家
M
MIT News - Artificial intelligence
S
Security @ Cisco Blogs
O
OpenAI News
AI
AI
S
Securelist
Simon Willison's Weblog
Simon Willison's Weblog
The Last Watchdog
The Last Watchdog
月光博客
月光博客
Security Archives - TechRepublic
Security Archives - TechRepublic
L
LINUX DO - 热门话题

Blog on 1Password Blog

Why secure-by-design is an incentives problem, with Bob Lord | 1Password NIST and AI agents: 1Password’s approach to agent identity | 1Password Go beyond device health with External Checks in 1Password Device Trust | 1Password Natoma and 1Password help enterprises scale AI securely with governed agent access | 1Password New integrations between 1Password SaaS Manager and EPM | 1Password A first step toward post-quantum security | 1Password RSA 2026: Leading the way to secure agentic AI | 1Password How 1Password is Building a Culture of AI Fluency Through AI Champions | 1Password 1Password vs. Keeper Security: A comparison | 1Password 1Password vs. LastPass: Which is right for you? | 1Password Secure MCP credentials with 1Password and Runlayer | 1Password The next layer of AI security | 1Password Building the next chapter of Go-to-Market in EMEA | 1Password Automating SOC workflows with 1Password Enterprise Password Manager | 1Password Automated Provisioning hosted by 1Password: A Simpler, Smarter Way to Manage Access | 1Password Introducing 1Password® Unified Access: Identity Security for Humans and Their AI Agents | 1Password Next-generation automated provisioning, without compromising zero-knowledge security | 1Password Bitwarden vs. 1Password: Which password manager is right for you? | 1Password Password Manager for Families, Enterprise & Business | 1Password | 1Password How to wrangle SaaS contract renewals | 1Password Stop trusting consumer browsers with work credentials | 1Password IAM stops at sign-in. Your credentials do not. | 1Password Your digital pit crew: a 10-minute pre-race security checklist | 1Password 1Password Device Trust is coming to EMEA | 1Password The identity transformation: Analyst and CIO insights | 1Password Why now is the moment to join 1Password Go-To-Market | 1Password Identity and Accountability in the Age of AI Agents | 1Password How 1Password secures agent architectures | 1Password 1Password becomes the first global partner to transact through Express Private Offers in AWS Marketplace | 1Password Start Learning on 1Password Academy | 1Password Zero knowledge vs. a malicious server: A look at ETH Zurich’s research | 1Password Agents are making filesystems cool again | 1Password Black History Month employee spotlight: Joseph Ojelade | 1Password 1Password's new benchmark teaches AI agents how not to get scammed | 1Password Streamlining SaaS onboarding and offboarding | 1Password 3 common SaaS Management challenges and how to avoid them | 1Password How 1Password Is Evolving Its Partner Ecosystem | 1Password How to build secure agent swarms that power production-grade autonomous systems | 1Password From magic to malware: How OpenClaw's agent skills become an attack surface | 1Password Solving the unsanctioned SaaS problem | 1Password 1Password and 60 Day Hustle: cybersecurity for small businesses | 1Password Security advisory for AI-assisted browsing interactions with the 1Password browser extension | 1Password It’s incredible. It’s terrifying. It’s OpenClaw. | 1Password Managing the risks of social logins | 1Password What’s the first security tool your small business should buy? | 1Password As AI Supercharges Phishing Scams, 1Password Introduces Built-In Protection | 1Password How to interview with confidence at 1Password | 1Password Five tips for successful SaaS Management | 1Password SaaS Manager | 1Password Why SaaS License Waste Is a Cost and Security Problem | 1Password AI is changing the IDE. With 1Password, security keeps up | 1Password How IT teams can get a handle on shadow IT | 1Password Bringing secure, just-in-time secrets to Cursor with 1Password | 1Password The Chasing Entropy Podcast Season One is in the Books | 1Password Now available via QBS Software: 1Password Enterprise Password Manager – MSP Edition | 1Password The role of credentials in the AI espionage campaign reported by Anthropic | 1Password The hidden offboarding step draining your budget | 1Password AWS and 1Password: Innovation in AI and beyond | 1Password Simplifying credential security on OpenAI Atlas | 1Password From Social Work to Social Impact: Growing at 1Password | 1Password Improving in-page notifications in the 1Password browser extension | 1Password Password Manager for Families, Enterprise & Business | 1Password | 1Password Now available via Renaissance: 1Password Enterprise Password Manager – MSP Edition | 1Password Behind the wheel at Oracle Red Bull Racing | 1Password Securing MCP servers with 1Password: Stop credential exposure in your agent configurations | 1Password What’s new in 1Password Enterprise Password Manager - Q4, 2025 | 1Password Belonging as a catalyst for high performance | 1Password Password habits are worsening, but leaders see a path to passwordless | 1Password A simpler, faster way to unlock 1Password | 1Password Oracle Red Bull Racing Episode 4, CIO Matt Cadieux | 1Password 70% of IT and security pros say SSO is falling short | 1Password 1Password's Phishing Survey: Avoid Holiday Phishing Scams | 1Password Securing the Win | 1Password SaaS optimization: How to maximize value and reduce costs | 1Password The enterprise AI crisis: Unsanctioned tools and unenforced policies | 1Password An Identity Security taxonomy for Agentic AI | 1Password Introducing new .env file support in 1Password environments | 1Password Speed and security: Mark Hazelton on protecting Oracle Red Bull Racing’s most valuable asset – its data | 1Password 1Password for Good: Giving back during cybersecurity awareness month | 1Password Utah Mammoth and Utah Jazz score with identity security | 1Password Oracle Red Bull Racing CEO and Team Principal | 1Password Three signs you need a SaaS Management Platform | 1Password Closing the credential risk gap for AI agents using a browser | 1Password Microsoft and Dropbox password managers are sunsetting: What it means and what to do next | 1Password From hackathon nerves to internship wins: Kavya’s journey at 1Password | 1Password 1Password now available in Comet, the AI-powered browser by Perplexity | 1Password 1Password announces new integration with Zscaler | 1Password Breaking the mold: Why more women should consider a career in sales | 1Password What security leaders need to know about mergers and acquisitions | 1Password Clickjacking: What it means for 1Password users | 1Password AI and security at Black Hat: 5 key takeaways from a security expert panel | 1Password Blog | 1Password Do any CISOs feel lucky? | 1Password How to lead with confidence in the AI era: a conversation with Nancy Wang, VP, Engineering | 1Password New Device Trust Check makes browser extension enforcement easier | 1Password Purpose, performance, and trust: Inside the culture powering 1Password’s next chapter | 1Password Now available on Pax8 Marketplace: 1Password Enterprise Password Manager - MSP Edition | 1Password The security principles guiding 1Password’s approach to AI | 1Password Choosing the right SaaS management platform for your business | 1Password Simplify access reviews with 1Password SaaS Manager | 1Password How great usability tripled Duke University's password manager adoption | 1Password
Expanding Programmatic Access to 1Password | 1Password
info@1password.com (Francine Boulanger) · 2026-02-19 · via Blog on 1Password Blog

The era of secrets living in fixed systems and accessed through a handful of workflows is long gone. Modern development is faster, more automated, and increasingly AI-assisted. Developers need access to secrets everywhere their code runs – across CI/CD pipelines, local environments, and AI-driven workflows. 

That puts developers in a familiar bind: they need secrets everywhere their code runs, but that can easily introduce more risk or friction into their workflows. That can easily feel like a choice between security that gets in the way and speed that cuts corners.

One of our goals at 1Password is to remove that tradeoff by providing trusted, continuous access to secrets without slowing build or deploy cycles. Today, we’re introducing two complementary capabilities to support this model. One focuses on runtime access to secrets, and the other on user-authenticated access for desktop integrations. Together, these releases help you close the gap between security and productivity by integrating secure access into both automated workflows and everyday developer tools.

Now in beta: Programmatic, read‑only access to 1Password Environments

We introduced 1Password Environments last year to give you and other developers a dedicated place to manage application secrets. Early access patterns focused on a narrow set of workflows, such as mounting .env files locally and syncing secrets with Amazon Secrets Manager.

A screenshot of 1Password Enterprise Password Manager, showing a working Environment titled Docker Compose Config. A series of variables are visible.

This proved powerful in its initial form, particularly for setting up projects, but we always knew this was just the start. CI/CD pipelines, local tooling, and AI-assisted IDEs need secrets at runtime – not copied into files or preloaded into fixed destinations. 

Our integration with Cursor demonstrated a better approach: let tools pull secrets exactly when they’re needed, and only for the duration they’re needed.

This release follows that same pattern: Secrets can now be fetched programmatically from 1Password Environments at runtime through the CLI and SDKs. Instead of managing .env files or maintaining secret syncs, tools can read secrets directly from 1Password as code runs.

Example workflows

  • During a deployment, a GitHub Actions workflow uses a 1Password service account to retrieve and inject environment variables into the build process.

  • A Node.js application running in a Kubernetes pod uses the 1Password SDK with a service account to read database connection strings from a 1Password Environment at startup.

  • While working in an AI‑assisted IDE, a developer asks the agent to run a 1Password CLI-powered Makefile command, automatically injecting credentials from 1Password Environments while keeping secrets out of the model's context.

  • A Python script running on a developer's laptop uses the 1Password SDK with local authentication to retrieve API tokens from a 1Password Environment before making requests to a third-party service.

Desktop authentication for 1Password SDKs: Now GA (and shaped by developer feedback)

Following a four-month beta, SDK‑based integrations can now authenticate programmatically through our desktop password manager using biometric or password prompts. This brings the same trusted, user-approved authentication flow developers rely on across 1Password’s local developer tools to native SDK-based integrations.

Supporting user-authenticated access unlocks sensitive operations that were previously impossible to offer securely, including one of our most requested capabilities: vault management. With full vault management – including create, read, update, delete, and list functionalities – SDK-based integrations can now perform the same high-impact actions developers expect from our other developer tools. This includes managing vault permissions, which lets you programmatically grant and revoke access to vaults – something that wasn’t possible with service-account–based access.

We also heard from enterprise teams managing large numbers of vaults that performance at scale mattered. In response, we introduced batch item operations, reducing overhead and enabling faster, more efficient large-scale vault management.

Together, these capabilities empower you to build entirely new classes of trusted, user-approved integrations and workflows.  

A screenshot of the 1Password desktop app, showing the Developer settings page with the SDK option enabled.

SDK integrations run with a user‑authenticated session, inheriting the same account access as the signed‑in user. Authorization is time‑bound and expires after 10 minutes of inactivity, or when 1Password locks.

This enables secure, human‑approved workflows and supports more advanced SDK use cases beyond item‑level automation, without relying on service accounts or introducing long-lived credentials.

Example integrations

  • Desktop productivity tools, such as Postman‑ or Raycast‑style integrations, that feel native to the 1Password experience.

  • Internal admin tools, like access management or IT operations dashboards, that manage vaults, permissions, and access at scale as a signed-in user.

  • Local AI agents that securely retrieve credentials for some workloads, with user approval via the 1Password desktop app.

Securing programmatic access across every development workflow

Bringing programmatic access to 1Password Environments allows you to use secrets directly in the tools and workflows where code runs, not just in a fixed set of destinations. Meanwhile, desktop authentication for SDK integrations gives you a simple, secure way to build tools that act with a signed‑in user’s session.

Together, these capabilities expand how you can access and use 1Password programmatically, whether it’s powering your CI/CD pipelines via user-authenticated sessions or enabling automated AI agents to pull secrets at runtime. 1Password becomes a deeper part of the development workflow, making it easier to secure access to every secret without disrupting how teams work.

How to get started

To get started, explore the documentation: