1password MCP server for AI agents and assistants

Securely connect your AI agents and chatbots (Claude, ChatGPT, Cursor, etc) with 1Password MCP or direct API to search vault items, list vaults, create secure notes, and manage credential records through natural language.

1password logo1password
Api Key

1Password is a password manager and digital vault for storing logins, secrets, notes, and secure documents. It helps individuals and teams protect credentials, share access safely, and reduce password risk.

6 Tools

Try 1password now

Type what you want done — sign in and watch it run live in the Tool Router playground.

TOOL ROUTER PLAYGROUND
1password
Try asking
TOOLS

Supported Tools

Every 1password action and event your agent gets out of the box.

Create Item

Creates a new item in a 1Password vault.

Delete Item

Permanently deletes an item from a 1Password vault.

Get Item

Retrieves a specific item from a vault, including all fields and secrets.

List Items

Lists all items in a given vault.

List Vaults

Lists all vaults the service account has access to.

Update Item

Updates an existing item's title or field values.

SETUP GUIDE

Connect 1password MCP Tool with your Agent

1

Install Composio

typescript
npm install @composio/core ai @ai-sdk/mcp @ai-sdk/openai
Install the Composio SDK and your agent framework
2

Create a session with MCP enabled

typescript
import { Composio } from "@composio/core";

const composio = new Composio();
const { mcp } = await composio.create("your-user-id", {
  toolkits: ["_1password"],
  mcp: true,
});
Create a session scoped to 1password and read its MCP URL and headers
3

Connect your agent to the MCP server

typescript
import { createMCPClient } from "@ai-sdk/mcp";
import { openai } from "@ai-sdk/openai";
import { generateText, stepCountIs } from "ai";

const client = await createMCPClient({
  transport: { type: "http", url: mcp.url, headers: mcp.headers },
});

const { text } = await generateText({
  model: openai("gpt-5.6-sol"),
  tools: await client.tools(),
  prompt: "List my 1Password vaults and show their names",
  stopWhen: stepCountIs(10),
});

console.log(text);
await client.close();
Pass the session's MCP URL and headers to your agent and run a 1password request
SETUP GUIDE

Connect 1password API Tool with your Agent

1

Install Composio

typescript
npm install @composio/core @composio/openai openai
Install the Composio SDK, the OpenAI provider, and the OpenAI SDK
2

Create a Composio session

typescript
import OpenAI from "openai";
import { Composio } from "@composio/core";
import { OpenAIResponsesProvider } from "@composio/openai";

const composio = new Composio({ provider: new OpenAIResponsesProvider() });
const client = new OpenAI();

const session = await composio.create("your-user-id", { toolkits: ["_1password"] });
const tools = await session.tools();
Initialize Composio with the OpenAI Responses provider and create a session scoped to 1password
3

Run 1password tools with your agent

typescript
let response = await client.responses.create({
  model: "gpt-5.6-sol",
  tools,
  input: [{ role: "user", content: "List my 1Password vaults and show their names" }],
});

while (response.output.some((o) => o.type === "function_call")) {
  const outputs = await composio.provider.handleToolCalls(session, response.output);
  response = await client.responses.create({
    model: "gpt-5.6-sol",
    tools,
    previous_response_id: response.id,
    input: outputs,
  });
}

console.log(response.output_text);
Send a request, execute the 1password tool calls through the session, and print the final answer

Why Use Composio?

AI Native 1Password Integration

  • Supports both 1Password MCP and direct API based integrations
  • Structured, LLM-friendly schemas so agents can work with vaults and items more reliably
  • Useful coverage for searching, reading, and organizing 1Password data without bespoke integration code

Managed Auth

  • Secure API key handling without hard-coding secrets in your agent code
  • Central place to manage, scope, and revoke 1Password access
  • Per user and per environment credentials so your local, staging, and production agents stay cleanly separated

Agent Optimized Design

  • Tools are shaped for language models, so your agent knows what to call and when
  • Clear inputs and outputs make it easier to search vault items, inspect metadata, and avoid messy tool calls
  • Execution logs help you see what ran, when it ran, and on whose behalf

Enterprise Grade Security

  • Fine-grained access control so you decide which agents and users can touch 1Password data
  • Scoped, least privilege access to vault resources instead of broad, risky permissions
  • Audit trails for agent actions, which makes review and compliance much easier
FRAMEWORKS

Use 1password with any AI Agent Framework

Choose a Framework you want to connect 1password with

Rolling this out across your team?

Give your team centralized access control across every framework with Composio’s MCP Gateway.

EXPLORE MCP GATEWAY
FAQ

Frequently asked questions

Yes, 1Password requires you to configure your own API key credentials. Once set up, Composio handles secure credential storage and API request handling for you.

Yes! Composio's Tool Router enables agents to use multiple toolkits. Learn more.

Yes. Composio is SOC 2 Type II compliant and is built to keep your 1password connection and credentials secure. OAuth tokens and API keys are encrypted, and sensitive customer data is protected at rest and in transit.

Composio also undergoes independent security testing and continuously monitors its systems for security threats. You can review the latest reports and policies in the Composio Trust Center.

Composio maintains and updates all toolkit integrations automatically, so your agents always work with the latest API versions.

Create the key in your 1password account settings, then paste it once on Composio's connection page. Composio stores it encrypted and uses it only for the 1password actions your agent runs. Nobody else in your workspace can read it, and you can revoke it inside 1password at any time.

When you connect a 1password account through Composio, every action runs under that account, so anything the agent creates, sends, or changes shows up in 1password as done by you. Keep an approval step in your prompt for actions with side effects, such as sending or deleting, and have the agent draft first.

Whatever the credentials you connect allow inside 1password. If 1password lets you scope a key to specific permissions, create a scoped one so the agent can only do what you intend. You can revoke the key inside 1password at any time.

Yes. Composio supports multiple connected accounts for the same app, and that works in Claude, ChatGPT, or any other assistant you connect through Composio. Give each 1password connection a name such as work or personal, and the assistant uses the one you mention in the request. Each account keeps its own credentials and nothing is merged.

The connection stops working the moment 1password rejects the old key. Create a new key in 1password and reconnect the account from the Composio dashboard or by asking your agent to reconnect 1password. Nothing else changes.

Composio's free plan includes 100,000 tool calls per month with no credit card, which covers most personal 1password use. Paid plans add higher limits and team features. Your 1password plan and its API limits still apply as usual.

Built-in connectors usually give one AI access to a limited set of apps. Many people use Composio because it lets their AI connect to more apps than it normally supports, or connect to multiple accounts for the same app (e.g. connect Claude to multiple 1password accounts).

With Composio, you connect 1password once and then use it across different AI assistants without setting it up separately in each one. Connect your apps to Composio once, then connect Composio to whichever AI you use, whether that's Claude, ChatGPT, Hermes, or your own custom assistant.

Start with 1password.It takes 30 seconds.

Managed auth, hosted MCP servers, and every 1password tool your agent needs.Free to start.

Start building