惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Hacker News: Ask HN
Hacker News: Ask HN
月光博客
月光博客
Martin Fowler
Martin Fowler
人人都是产品经理
人人都是产品经理
有赞技术团队
有赞技术团队
Hugging Face - Blog
Hugging Face - Blog
T
Tailwind CSS Blog
爱范儿
爱范儿
博客园_首页
Last Week in AI
Last Week in AI
N
Netflix TechBlog - Medium
NISL@THU
NISL@THU
H
Help Net Security
A
Arctic Wolf
K
Kaspersky official blog
Y
Y Combinator Blog
G
GRAHAM CLULEY
T
Threatpost
I
Intezer
Attack and Defense Labs
Attack and Defense Labs
Jina AI
Jina AI
Recent Announcements
Recent Announcements
D
Docker
博客园 - 聂微东
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
www.infosecurity-magazine.com
www.infosecurity-magazine.com
GbyAI
GbyAI
The Hacker News
The Hacker News
C
Cyber Attacks, Cyber Crime and Cyber Security
Help Net Security
Help Net Security
Microsoft Azure Blog
Microsoft Azure Blog
G
Google Developers Blog
F
Fortinet All Blogs
S
Security Affairs
Security Archives - TechRepublic
Security Archives - TechRepublic
量子位
AWS News Blog
AWS News Blog
Google DeepMind News
Google DeepMind News
罗磊的独立博客
V
Vulnerabilities – Threatpost
阮一峰的网络日志
阮一峰的网络日志
T
Tor Project blog
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
H
Hacker News: Front Page
Security Latest
Security Latest
The Cloudflare Blog
cs.CV updates on arXiv.org
cs.CV updates on arXiv.org
M
MIT News - Artificial intelligence
B
Blog
云风的 BLOG
云风的 BLOG

Blog on 1Password Blog

Why secure-by-design is an incentives problem, with Bob Lord | 1Password NIST and AI agents: 1Password’s approach to agent identity | 1Password Go beyond device health with External Checks in 1Password Device Trust | 1Password Natoma and 1Password help enterprises scale AI securely with governed agent access | 1Password New integrations between 1Password SaaS Manager and EPM | 1Password A first step toward post-quantum security | 1Password RSA 2026: Leading the way to secure agentic AI | 1Password How 1Password is Building a Culture of AI Fluency Through AI Champions | 1Password 1Password vs. Keeper Security: A comparison | 1Password 1Password vs. LastPass: Which is right for you? | 1Password Secure MCP credentials with 1Password and Runlayer | 1Password The next layer of AI security | 1Password Building the next chapter of Go-to-Market in EMEA | 1Password Automating SOC workflows with 1Password Enterprise Password Manager | 1Password Automated Provisioning hosted by 1Password: A Simpler, Smarter Way to Manage Access | 1Password Introducing 1Password® Unified Access: Identity Security for Humans and Their AI Agents | 1Password Next-generation automated provisioning, without compromising zero-knowledge security | 1Password Bitwarden vs. 1Password: Which password manager is right for you? | 1Password Password Manager for Families, Enterprise & Business | 1Password | 1Password How to wrangle SaaS contract renewals | 1Password Stop trusting consumer browsers with work credentials | 1Password IAM stops at sign-in. Your credentials do not. | 1Password Your digital pit crew: a 10-minute pre-race security checklist | 1Password 1Password Device Trust is coming to EMEA | 1Password The identity transformation: Analyst and CIO insights | 1Password Why now is the moment to join 1Password Go-To-Market | 1Password Identity and Accountability in the Age of AI Agents | 1Password How 1Password secures agent architectures | 1Password 1Password becomes the first global partner to transact through Express Private Offers in AWS Marketplace | 1Password Start Learning on 1Password Academy | 1Password Expanding Programmatic Access to 1Password | 1Password Zero knowledge vs. a malicious server: A look at ETH Zurich’s research | 1Password Agents are making filesystems cool again | 1Password Black History Month employee spotlight: Joseph Ojelade | 1Password 1Password's new benchmark teaches AI agents how not to get scammed | 1Password Streamlining SaaS onboarding and offboarding | 1Password 3 common SaaS Management challenges and how to avoid them | 1Password How 1Password Is Evolving Its Partner Ecosystem | 1Password How to build secure agent swarms that power production-grade autonomous systems | 1Password From magic to malware: How OpenClaw's agent skills become an attack surface | 1Password Solving the unsanctioned SaaS problem | 1Password 1Password and 60 Day Hustle: cybersecurity for small businesses | 1Password Security advisory for AI-assisted browsing interactions with the 1Password browser extension | 1Password It’s incredible. It’s terrifying. It’s OpenClaw. | 1Password Managing the risks of social logins | 1Password What’s the first security tool your small business should buy? | 1Password As AI Supercharges Phishing Scams, 1Password Introduces Built-In Protection | 1Password How to interview with confidence at 1Password | 1Password Five tips for successful SaaS Management | 1Password SaaS Manager | 1Password Why SaaS License Waste Is a Cost and Security Problem | 1Password AI is changing the IDE. With 1Password, security keeps up | 1Password How IT teams can get a handle on shadow IT | 1Password Bringing secure, just-in-time secrets to Cursor with 1Password | 1Password The Chasing Entropy Podcast Season One is in the Books | 1Password Now available via QBS Software: 1Password Enterprise Password Manager – MSP Edition | 1Password The role of credentials in the AI espionage campaign reported by Anthropic | 1Password The hidden offboarding step draining your budget | 1Password AWS and 1Password: Innovation in AI and beyond | 1Password Simplifying credential security on OpenAI Atlas | 1Password From Social Work to Social Impact: Growing at 1Password | 1Password Improving in-page notifications in the 1Password browser extension | 1Password Password Manager for Families, Enterprise & Business | 1Password | 1Password Now available via Renaissance: 1Password Enterprise Password Manager – MSP Edition | 1Password Behind the wheel at Oracle Red Bull Racing | 1Password Securing MCP servers with 1Password: Stop credential exposure in your agent configurations | 1Password What’s new in 1Password Enterprise Password Manager - Q4, 2025 | 1Password Belonging as a catalyst for high performance | 1Password Password habits are worsening, but leaders see a path to passwordless | 1Password A simpler, faster way to unlock 1Password | 1Password Oracle Red Bull Racing Episode 4, CIO Matt Cadieux | 1Password 70% of IT and security pros say SSO is falling short | 1Password 1Password's Phishing Survey: Avoid Holiday Phishing Scams | 1Password Securing the Win | 1Password SaaS optimization: How to maximize value and reduce costs | 1Password The enterprise AI crisis: Unsanctioned tools and unenforced policies | 1Password An Identity Security taxonomy for Agentic AI | 1Password Introducing new .env file support in 1Password environments | 1Password Speed and security: Mark Hazelton on protecting Oracle Red Bull Racing’s most valuable asset – its data | 1Password 1Password for Good: Giving back during cybersecurity awareness month | 1Password Utah Mammoth and Utah Jazz score with identity security | 1Password Oracle Red Bull Racing CEO and Team Principal | 1Password Three signs you need a SaaS Management Platform | 1Password Closing the credential risk gap for AI agents using a browser | 1Password Microsoft and Dropbox password managers are sunsetting: What it means and what to do next | 1Password From hackathon nerves to internship wins: Kavya’s journey at 1Password | 1Password 1Password now available in Comet, the AI-powered browser by Perplexity | 1Password 1Password announces new integration with Zscaler | 1Password Breaking the mold: Why more women should consider a career in sales | 1Password What security leaders need to know about mergers and acquisitions | 1Password Clickjacking: What it means for 1Password users | 1Password AI and security at Black Hat: 5 key takeaways from a security expert panel | 1Password Blog | 1Password Do any CISOs feel lucky? | 1Password How to lead with confidence in the AI era: a conversation with Nancy Wang, VP, Engineering | 1Password Purpose, performance, and trust: Inside the culture powering 1Password’s next chapter | 1Password Now available on Pax8 Marketplace: 1Password Enterprise Password Manager - MSP Edition | 1Password The security principles guiding 1Password’s approach to AI | 1Password Choosing the right SaaS management platform for your business | 1Password Simplify access reviews with 1Password SaaS Manager | 1Password How great usability tripled Duke University's password manager adoption | 1Password
New Device Trust Check makes browser extension enforcement easier | 1Password
info@1password.com (Evan Sandhu) · 2025-08-19 · via Blog on 1Password Blog

Your identity and access management solutions only work if your users comply with the policies you set. Even with the right controls in place, enforcement can break down when users – intentionally or not – find ways around them. That’s why, as we continue to develop Extended Access Management (XAM), we’re focused on embedding enforcement more deeply into everyday workflows across 1Password’s suite of solutions.

Today, we're introducing a new Device Trust Check that helps admins ensure the 1Password browser extension is installed and active on user devices. This Check represents a step forward in how the 1Password Enterprise Password Manager (EPM) and 1Password Device Trust work better together to solve real workplace security problems.

Enforce the browser extension automatically

The 1Password browser extension plays a critical role in delivering a secure and seamless login experience by powering user-facing features like autofill and credential management for EPM, while helping admins enforce security policies through Device Trust and Extended Device Compliance. But until today, there hasn’t been a way to ensure that the extension stays installed and active after initial onboarding.

This new Device Trust Check changes that. Now, admins can automatically verify whether the extension is installed and active. If it’s missing or disabled, 1Password will prompt the user to fix it before access to the desktop app is denied. It’s a low-lift way to address a high-impact enforcement issue.

Stronger, connected enforcement without extra work

When our products work together, they play a big role in making our enforcement model smarter, more cohesive, and harder to evade. Here’s how it works in this case:

  • Device Trust’s Extended Device Compliance feature evaluates device posture for apps outside SSO

  • EPM provides access policy controls to those apps

  • This new Check connects the two, closing the loophole where users could disable or uninstall the browser extension to authenticate without passing a device health assessment

By embedding this Check directly into the desktop app, we’re ensuring that security isn't a one-time setup; it’s continuous. It's a concrete step toward delivering on the promise of closing the Access-Trust Gap by strengthening enforcement where traditional tools fall short, and pushing us closer to a connected, always-on access layer.

How it works

Let’s say you’ve deployed 1Password EPM and 1Password Device Trust across your organization. As part of the setup, you’ve required the 1Password browser extension to be installed so browser-based device health checks (via Extended Device Compliance) can be enforced.

On the surface, you’ve done everything correctly. But what happens when a user forgets to enable the extension? Or even worse, when a user silently uninstalls it?

Previously, that created a blind spot. Browser-based Device Trust Checks would stop running, enforcement could quietly break, and IT teams might think everything is fine, leading to security and compliance risks for both admins and users.

Now, when the extension is uninstalled or disabled, users are met with:

  • Escalating modals in the 1Password desktop app with clear options to fix the issue

  • Snoozable banners that act as persistent reminders

  • A redirect webpage if the extension is uninstalled

  • A full block after 7 days, preventing access to the 1Password desktop app until the extension is restored

This is all made possible by the deep integration between EPM and Device Trust, giving you confidence that enforcement policies hold well beyond initial onboarding.

End user experience: from missing extension to guided recovery

Here’s how the end-user experience looks, from uninstalling the extension to self-remediated recovery, when this Check is enabled.

Instance 1: Users land on a post-delete redirect page after removing the extensionIf a user uninstalls or doesn’t enable the 1Password Browser Extension, they’re immediately redirected to a branded browser page prompting them to fix the issue. This is the first touchpoint that helps minimize disruption and encourages self-remediation.

Users land on a post-delete redirect page after removing the extension.

Instance 2: Initial 1Password desktop app modalIf a user fails to act on the first warning, when the user next opens the 1Password desktop app, they’ll see a modal pop-up via our new Device Trust Check that informs them that access will be blocked if the extension remains uninstalled and inactive. They’ll get options to fix the issue, recheck, or snooze, which gives them time to self-remediate without contacting IT.

Instance 2: Initial 1Password desktop app modal.

Instance 3: Grace period banner while the check is snoozedIf the user hits snooze on the modal, a persistent banner appears at the top of the 1Password desktop app, reminding them to reinstall or re-enable the extension. This grace period gives users a chance to fix the issue themselves before enforcement kicks in, without being blocked immediately.

Grace period banner while the check is snoozed.

Instance 4: Snooze period ends, and user access is blockedOnce the snooze period expires, the user is fully blocked from using 1Password until the extension is reinstalled or re-enabled. This enforces compliance while still guiding users with a clear next step and helpful prompts to remediate on their own.

Snooze period ends, and user access is blocked.

Instance 5: Access is fully restored once the extension is activeAs soon as the extension is installed and active again, full access is restored automatically. No IT intervention is needed, and users can pick up right where they left off.

Access is fully restored once the extension is active.

Start securing every identity, app, and device – activate Device Trust & EPM today

Already using Device Trust and EPM?

  • You can enable this new Check directly in the Device Trust admin console. If you have questions or want help rolling it out, your Customer Success Manager is there to support you.

Not using 1Password Extended Access Management yet? Or would you like to see how the full system works together?

  • Book a demo to see how 1Password helps secure every identity, app, and device, with enforcement that adapts to how your workforce works.