惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

The Hacker News
The Hacker News
GbyAI
GbyAI
雷峰网
雷峰网
罗磊的独立博客
WordPress大学
WordPress大学
博客园_首页
Hugging Face - Blog
Hugging Face - Blog
The Cloudflare Blog
云风的 BLOG
云风的 BLOG
F
Full Disclosure
Google DeepMind News
Google DeepMind News
C
Cyber Attacks, Cyber Crime and Cyber Security
NISL@THU
NISL@THU
S
Schneier on Security
T
Tor Project blog
C
Cybersecurity and Infrastructure Security Agency CISA
Recent Announcements
Recent Announcements
酷 壳 – CoolShell
酷 壳 – CoolShell
C
Check Point Blog
P
Palo Alto Networks Blog
C
CERT Recently Published Vulnerability Notes
S
Secure Thoughts
Application and Cybersecurity Blog
Application and Cybersecurity Blog
Last Week in AI
Last Week in AI
T
Threatpost
I
Intezer
Y
Y Combinator Blog
G
GRAHAM CLULEY
MyScale Blog
MyScale Blog
阮一峰的网络日志
阮一峰的网络日志
T
The Exploit Database - CXSecurity.com
Scott Helme
Scott Helme
A
Arctic Wolf
Martin Fowler
Martin Fowler
Hacker News: Ask HN
Hacker News: Ask HN
V
V2EX
B
Blog RSS Feed
The Last Watchdog
The Last Watchdog
博客园 - 司徒正美
Simon Willison's Weblog
Simon Willison's Weblog
V
Vulnerabilities – Threatpost
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
N
News and Events Feed by Topic
www.infosecurity-magazine.com
www.infosecurity-magazine.com
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
P
Proofpoint News Feed
CTFtime.org: upcoming CTF events
CTFtime.org: upcoming CTF events
AI
AI
C
Cisco Blogs
T
The Blog of Author Tim Ferriss

Blog on 1Password Blog

Why secure-by-design is an incentives problem, with Bob Lord | 1Password NIST and AI agents: 1Password’s approach to agent identity | 1Password Go beyond device health with External Checks in 1Password Device Trust | 1Password Natoma and 1Password help enterprises scale AI securely with governed agent access | 1Password New integrations between 1Password SaaS Manager and EPM | 1Password A first step toward post-quantum security | 1Password RSA 2026: Leading the way to secure agentic AI | 1Password How 1Password is Building a Culture of AI Fluency Through AI Champions | 1Password 1Password vs. Keeper Security: A comparison | 1Password 1Password vs. LastPass: Which is right for you? | 1Password Secure MCP credentials with 1Password and Runlayer | 1Password The next layer of AI security | 1Password Building the next chapter of Go-to-Market in EMEA | 1Password Automating SOC workflows with 1Password Enterprise Password Manager | 1Password Automated Provisioning hosted by 1Password: A Simpler, Smarter Way to Manage Access | 1Password Introducing 1Password® Unified Access: Identity Security for Humans and Their AI Agents | 1Password Next-generation automated provisioning, without compromising zero-knowledge security | 1Password Bitwarden vs. 1Password: Which password manager is right for you? | 1Password Password Manager for Families, Enterprise & Business | 1Password | 1Password How to wrangle SaaS contract renewals | 1Password Stop trusting consumer browsers with work credentials | 1Password IAM stops at sign-in. Your credentials do not. | 1Password Your digital pit crew: a 10-minute pre-race security checklist | 1Password 1Password Device Trust is coming to EMEA | 1Password The identity transformation: Analyst and CIO insights | 1Password Why now is the moment to join 1Password Go-To-Market | 1Password Identity and Accountability in the Age of AI Agents | 1Password How 1Password secures agent architectures | 1Password 1Password becomes the first global partner to transact through Express Private Offers in AWS Marketplace | 1Password Start Learning on 1Password Academy | 1Password Expanding Programmatic Access to 1Password | 1Password Zero knowledge vs. a malicious server: A look at ETH Zurich’s research | 1Password Agents are making filesystems cool again | 1Password Black History Month employee spotlight: Joseph Ojelade | 1Password 1Password's new benchmark teaches AI agents how not to get scammed | 1Password Streamlining SaaS onboarding and offboarding | 1Password 3 common SaaS Management challenges and how to avoid them | 1Password How 1Password Is Evolving Its Partner Ecosystem | 1Password How to build secure agent swarms that power production-grade autonomous systems | 1Password From magic to malware: How OpenClaw's agent skills become an attack surface | 1Password Solving the unsanctioned SaaS problem | 1Password 1Password and 60 Day Hustle: cybersecurity for small businesses | 1Password Security advisory for AI-assisted browsing interactions with the 1Password browser extension | 1Password It’s incredible. It’s terrifying. It’s OpenClaw. | 1Password Managing the risks of social logins | 1Password What’s the first security tool your small business should buy? | 1Password As AI Supercharges Phishing Scams, 1Password Introduces Built-In Protection | 1Password How to interview with confidence at 1Password | 1Password Five tips for successful SaaS Management | 1Password SaaS Manager | 1Password Why SaaS License Waste Is a Cost and Security Problem | 1Password AI is changing the IDE. With 1Password, security keeps up | 1Password How IT teams can get a handle on shadow IT | 1Password The Chasing Entropy Podcast Season One is in the Books | 1Password Now available via QBS Software: 1Password Enterprise Password Manager – MSP Edition | 1Password The role of credentials in the AI espionage campaign reported by Anthropic | 1Password The hidden offboarding step draining your budget | 1Password AWS and 1Password: Innovation in AI and beyond | 1Password Simplifying credential security on OpenAI Atlas | 1Password From Social Work to Social Impact: Growing at 1Password | 1Password Improving in-page notifications in the 1Password browser extension | 1Password Password Manager for Families, Enterprise & Business | 1Password | 1Password Now available via Renaissance: 1Password Enterprise Password Manager – MSP Edition | 1Password Behind the wheel at Oracle Red Bull Racing | 1Password Securing MCP servers with 1Password: Stop credential exposure in your agent configurations | 1Password What’s new in 1Password Enterprise Password Manager - Q4, 2025 | 1Password Belonging as a catalyst for high performance | 1Password Password habits are worsening, but leaders see a path to passwordless | 1Password A simpler, faster way to unlock 1Password | 1Password Oracle Red Bull Racing Episode 4, CIO Matt Cadieux | 1Password 70% of IT and security pros say SSO is falling short | 1Password 1Password's Phishing Survey: Avoid Holiday Phishing Scams | 1Password Securing the Win | 1Password SaaS optimization: How to maximize value and reduce costs | 1Password The enterprise AI crisis: Unsanctioned tools and unenforced policies | 1Password An Identity Security taxonomy for Agentic AI | 1Password Introducing new .env file support in 1Password environments | 1Password Speed and security: Mark Hazelton on protecting Oracle Red Bull Racing’s most valuable asset – its data | 1Password 1Password for Good: Giving back during cybersecurity awareness month | 1Password Utah Mammoth and Utah Jazz score with identity security | 1Password Oracle Red Bull Racing CEO and Team Principal | 1Password Three signs you need a SaaS Management Platform | 1Password Closing the credential risk gap for AI agents using a browser | 1Password Microsoft and Dropbox password managers are sunsetting: What it means and what to do next | 1Password From hackathon nerves to internship wins: Kavya’s journey at 1Password | 1Password 1Password now available in Comet, the AI-powered browser by Perplexity | 1Password 1Password announces new integration with Zscaler | 1Password Breaking the mold: Why more women should consider a career in sales | 1Password What security leaders need to know about mergers and acquisitions | 1Password Clickjacking: What it means for 1Password users | 1Password AI and security at Black Hat: 5 key takeaways from a security expert panel | 1Password Blog | 1Password Do any CISOs feel lucky? | 1Password How to lead with confidence in the AI era: a conversation with Nancy Wang, VP, Engineering | 1Password New Device Trust Check makes browser extension enforcement easier | 1Password Purpose, performance, and trust: Inside the culture powering 1Password’s next chapter | 1Password Now available on Pax8 Marketplace: 1Password Enterprise Password Manager - MSP Edition | 1Password The security principles guiding 1Password’s approach to AI | 1Password Choosing the right SaaS management platform for your business | 1Password Simplify access reviews with 1Password SaaS Manager | 1Password How great usability tripled Duke University's password manager adoption | 1Password
Bringing secure, just-in-time secrets to Cursor with 1Password | 1Password
info@1password.com (Nancy Wang) · 2025-12-19 · via Blog on 1Password Blog

Developers are moving faster than ever with AI. Cursor is redefining how software gets built, and 1Password is redefining how teams secure access to SaaS and AI. Today, we are announcing a new integration that brings these two worlds together in a way that keeps development speed high and credential risk near zero.

1Password has partnered with Cursor to build a Hooks Script that gives developers a secure, just-in-time way to ensure required secrets are made available to Cursor’s AI agents via 1Password Environments. The result is an AI-native development workflow where secrets are never hardcoded, raw credentials are never handled directly by AI agents, and secure access becomes a natural part of writing and running code.

This functionality is available today as a first step and lays the foundation for a broader set of secure developer workflows we intend to build together.

Why this matters

Developers should never have to paste tokens into config files or store long-lived credentials on disk. AI agents in their editors should not have unrestricted access to secrets either.

By integrating 1Password with Cursor Hooks, we are making 1Password the secure source of secrets for Cursor. When the Cursor agent needs to run a command, call an API, or perform an action that requires a credential, the required secret can be made available at runtime through 1Password, only when authorized by the user. 

No plaintext keys committed to disk or source code. No hard-coded environment variables. No tokens lingering in history. Everything is made available securely via 1Password and governed by the access policies your team already relies on. Furthermore, the project owner can configure 1Password secrets management, helping ensure secure practices are consistently followed across the team.

This provides teams with a clear path to adopt AI-powered development while maintaining a strong security posture.

About Cursor

Cursor is an AI-powered IDE built on Visual Studio Code that adds deeply integrated AI assistance throughout the development workflow. Developers can write or modify code using natural language, search across large projects by meaning, and perform structured, multi-line edits with a simple prompt.

Cursor also provides a powerful integration layer through the Model Context Protocol (MCP). This enables the editor to interact directly with APIs, databases, and external tools within the development environment. Cursor Hooks extend this further by enabling teams to run scripts automatically at specific points in an AI-assisted workflow.

This new Hooks system is the cornerstone of our integration.

What Cursor Hooks enable

Cursor Hooks allow teams to configure a file called hooks.json at the project, user, or system level. This file outlines what should occur at specific lifecycle stages of an AI-assisted interaction. For example, before Cursor runs code, executes a command, or interacts with a tool, Cursor invokes the Hook Script to prepare the right environment.

Our new Hooks Script makes 1Password the secure source of truth for secrets, configurations, and credentials that Cursor might need.

Here is how it works at a high level:

  1. Before the Cursor agent runs any shell commands, the Hook Script is invoked.

  2. The script verifies that all required locally mounted .env files from 1Password Environments are properly configured, ensuring commands that depend on them run without issue.

  3. After the script checks your .env files, it either runs the command or returns an error message to help you fix your 1Password Environments setup.

  4. When a process requests access, 1Password prompts the user to authorize and makes the secret available in memory for the runtime session. It never touches disk or Git history.

This creates a secure, repeatable workflow where developers do not need to manually copy credentials, rotate tokens, or worry about accidental exposure.

Explore the full 1Password Environments documentation for Cursor Hooks.

What is available today

With 1Password, Cursor users can:

  • Use 1Password as the secure credential store for AI-driven tasks in Cursor.

  • Configure Cursor Hooks that validate required .env files managed by 1Password at runtime, ensuring secrets are available only when needed and governed by 1Password.

  • Version control Hooks configuration files without exposing any sensitive values.

  • Enable AI-powered development in Cursor without changing existing 1Password policies, vaults, or user permissions.

This initial functionality is intentionally simple: it keeps secrets out of code and provides developers with a safer way to allow Cursor to perform tasks that require credentials.

What we are building next

The work launching today is the foundation for a deeper collaboration. In the coming months, we plan to expand the integration to support:

  • Richer policies and permissions that allow teams to define granular, task-specific access rules for AI agents.

  • Broader support for MCP integrations so that Cursor can interact with external APIs and services entirely through 1Password-mediated access.

  • Automated secret rotation for AI-driven workflows.

  • Enhanced audit visibility to enable security teams to monitor how AI agents access credentials throughout the development lifecycle.

Our goal is to create the first AI native development environment where secure access is not an afterthought but a built-in part of the workflow.

Accelerate securely with 1Password and Cursor

AI is transforming how software gets built, but speed only helps when teams can trust the workflows behind it. By integrating 1Password with Cursor Hooks, we are eliminating one of the biggest sources of risk in modern development: uncontrolled secrets.

Developers get a faster workflow. Security teams get centralized control. And AI agents get only the access they need, exactly when they need it.

This is just the beginning. We are excited to continue building with the Cursor team and help shape the future of secure AI-assisted development. You can get started with the integration here.