All analysis was generated autonomously, without human review. Scores are analytical opinions drawn from the cited public sources, without hands-on testing. They are not audits, certifications, investment reports, purchasing advice, or evaluations of quality.
This analysis is scoped to 1Password Unified Access.
1Password, founded in 2005, sells a password and secrets vault. Its Unified Access line, launched in March 2026, serves companies deploying AI agents. It finds AI tools and exposed secrets on endpoints, vaults the secrets, and delivers them to agents and pipelines when needed. 1Password raised a $620 million Series C in 2022 at a $6.8 billion valuation. It has over 180,000 business customers, and research firm Sacra estimates it hit $400 million in annual recurring revenue in 2025. It names DigitalOcean as a customer using Unified Access and has not published a customer count for the line. Its strongest asset for the line is the businesses already using its vault. Its position depends on those customers extending its vault to their agents' credentials rather than turning to a specialist.
| Description | 1Password Unified Access finds the unmanaged side of workplace AI, from shadow AI tools to local agents to credentials exposed on endpoints, and governs how those credentials and secrets get used. | [f1] |
|---|---|---|
| Founded | 2005 | [f2] |
| HQ | Toronto, Ontario, Canada | [f2] |
| Subsidiaries | Apono (Israel-based just-in-time access governance for humans, machines, and AI agents. Acquired by 1Password (announced June 2026, reported $250M-$300M) to extend the Unified Access line.) | |
| Latest funding | Series C, $620M, January 2022, $6.8B valuation | [f3] |
| Deployment | SaaS | [f4] |
| Compliance | ISO 27001, ISO 27017, ISO 27018, ISO 27701, SOC 2 Type 2 | [f4] |
| Product | What it does |
|---|---|
| 1Password Unified Access | 1Password Unified Access: Discovers AI tools, agents, and exposed credentials across endpoints, then vaults and governs the secrets that human, agent, and machine identities use. |
AI Defense Matrix
| Govern | Identify | Protect | Detect | Respond | Recover | |
|---|---|---|---|---|---|---|
| AI-Workload Platforms Inference servers, training platforms, vector DB platforms, and the model-loading supply chain. | ||||||
| AI Orchestration Tools Agentic orchestration tools, plus their plugins, skills, hooks, system prompts, scaffolding, harnesses, configuration settings, and MCP clients on user devices. | ||||||
| AI-Generated Code Code produced by AI tools, AI-assisted reviews, AI-generated infrastructure-as-code and tests, and vibe-coded apps that bypass CI/CD. | ||||||
| AI Gateways & Routers MCP proxies and gateways, LLM routers, outbound AI-service traffic, shadow AI egress, and model-registry traffic. | ||||||
| AI Model Model weights, fine-tuning checkpoints, model cards, registries, AIBOM, and the third-party LLMs your enterprise consumes. | ||||||
| Training Data Datasets used for training, fine-tuning, and continued learning. | ||||||
| Runtime AI Data User prompts, inference inputs, RAG content, vector DB content, persistent agent memory, and interaction history. | ||||||
| AI Agent Identities AI agents as non-human principals, plus credentials, keys, permission scopes, service accounts, and delegation chains across agents and tools. |
1Password Unified Access discovers AI tools, agents, and exposed credentials across endpoints, then vaults and governs the secrets that human, agent, and machine identities use. It is mapped to the AI Defense Matrix. [f5]
How well the company can compete in its security market, scored across eight dimensions against public evidence.
| Dimension | Score | Rationale |
|---|---|---|
| Problem Clarity How precisely the company defines its problem, with evidence the problem exists at the scale claimed. | 3/5 | The pain that agents use credentials outside identity visibility is qualitative, and BetaKit and SiliconANGLE frame the problem without independently quantifying it, so the evidence sits at the present-but-unproven bar. [s1, s4, s5] |
| Capability Depth How specific the technical capabilities are, with evidence beyond marketing claims such as docs and third-party validation. | 3/5 | Two of the four marketed pillars are generally available, Discover (AI tools and exposed secrets such as plaintext .env files across endpoints) and Secure (one-click vaulting into a unified human, agent, and machine vault). Audit is coming soon and runtime scoped credentials are a later-2026 roadmap item, so the shipped surface is thinner than the depth the documentation describes. [s1, s6] |
| Market Timing Whether the market is ready for this product, with evidence that buyers are actively seeking solutions. | 3/5 | Enterprise deployment of autonomous AI agents from 2024 to 2026 is a credible enabler, but the launch collaborations with Anthropic, Cursor, GitHub, Perplexity, and Vercel are ecosystem and integration signals rather than independent buyer-side demand, so the demand is indirect. [s9, s6, s1] |
| Team Credibility Demonstrated domain expertise with public signals such as prior exits, publications, and industry recognition. | 4/5 | 1Password is a 20-year identity-security operator with sustained company standing, and CEO David Faugno is quoted by name positioning the launch against the installed base. That operator tenure and named leadership support the score. [s1, s7] |
| GTM Proof Evidence of actual traction (customers, revenue signals, partnerships) beyond stated intentions. | 3/5 | The launch names mostly integration and design partners (Anthropic, Cursor, GitHub, Perplexity, Vercel), and it also carries one named reference, DigitalOcean, quoted as using Unified Access to govern AI usage. That is a published reference rather than broad repeatable line traction three months in. The company-wide base of 180,000+ businesses is scale rather than line proof, applied here as the indirect-signal adjustment that lifts the score off 2 to adequate. [s9, s3, s1] |
| Funding Efficiency Whether funding matches go-to-market ambition, with signs of capital-efficient growth. | 3/5 | Scoring the line on its own evidence, the parent $400M ARR cannot lift it, the $620M Series C dates to January 2022 and is not contemporaneous with that estimate, so line-level output per dollar stays unconfirmed. [s7, s8] |
| Category Clarity Whether the company creates or fits a recognizable category that buyers can quickly place in their stack. | 3/5 | Agent identity and non-human identity is still forming as a buyer-placed slot, and BetaKit, SiliconANGLE, and IT Pro describe it without it being an established standalone budget line yet. CB Insights tracks the segment and places 1Password in it, an independent analyst signal that the category is recognized even though it is not yet a settled budget line. [s4, s5, s6, s19] |
| Incumbent Defensibility How vulnerable the core value proposition is to absorption as a feature by a platform vendor. | 3/5 | 1Password vaults over 1.3 billion human credentials across millions of endpoints, which is distribution into the buyer rather than a moat in agent identity specifically. The public record does not yet show those credentials acting as the root of trust for agent workflows, so the value proposition stays absorbable until that conversion is evidenced. [s1, s4] |
1Password Unified Access targets the credentials that AI agents use after a human logs in. Single sign-on improved control at the login moment, but neither it nor SaaS sprawl addressed how secrets and tokens get used programmatically by agents, scripts, and pipelines. BetaKit captured the shift plainly: traditional tools had to keep one human in check at a time, and those humans now deploy agents that act on their behalf.
The timing enabler is the move of autonomous agents into production environments through 2024 to 2026, which 1Password answered with the March 2026 launch of Unified Access. The window is the next two to three years, because cloud identity providers and AI gateway vendors can ship agent-credential controls inside a release cycle. The distribution lead matters most before the capability becomes a platform feature. [s1, s4, s5]
Unified Access ships two of its four marketed pillars today. Discover finds AI tools, agent activity, and exposed secrets such as unencrypted SSH keys and plaintext .env files across endpoints and browsers, then maps that usage to users and devices. Secure pulls those secrets into a unified vault that governs human, agent, and machine credentials under shared policy.
The other half is still arriving. Audit, the record of which credential an identity used and under whose authority, is described as coming soon. The plan to issue scoped, short-lived credentials to agent and machine workloads at runtime is set for later in 2026. Until those ship, the product covers discovery and vaulting rather than the full authorization loop the four marketed pillars describe. [s1, s6]
Unified Access enters the agent-identity and non-human-identity space, where CB Insights lists 1Password in its AI agents and copilots collection and names it a Challenger among 15 other companies in its secrets management and detection market map. Gartner Peer Insights carries end-user reviews of the core product. Both are third-party signals beyond the company's own framing.
1Password's entry runs opposite to a purpose-built entrant's. It brings an embedded credential store and a buyer relationship in 180,000 businesses to a category where a specialist has to build that distribution rather than inherit it. The competitive question is whether agent-identity buyers prefer a specialist or the vendor that already holds the secrets the agents need. [s3, s19, s20]
Three months after launch, public traction is mostly ecosystem partnerships plus one named reference. 1Password lists collaborations with Anthropic, Cursor, GitHub, Perplexity, and Vercel, and IT Pro reports Anthropic and OpenAI integrating vault access into agent and developer flows. Alongside those integrations, DigitalOcean is quoted by name using Unified Access to gain visibility into AI systems and govern AI usage, a published reference rather than a channel or integration signal.
One reference is not repeatable adoption yet. 1Password's other asset is its installed base. It protects more than 1.3 billion credentials across millions of endpoints and serves 180,000+ businesses, so the company can route Unified Access to an existing buyer rather than win attention cold. That lowers the cost of demand generation without yet proving the line converts at scale. [s9, s6, s1]
1Password is a two-decade identity-security operator, and CEO David Faugno positioned the launch by name against the company's deployment footprint. The leadership has run an enterprise security business at scale, a verifiable track record rather than a set of LinkedIn titles.
The relevant credibility for this line is whether the team can extend a password and secrets business into agent authorization. The shipped Discover and Secure pillars show the team can deliver the discovery-and-vaulting half quickly. The unshipped Audit and runtime-credential pillars are where execution still has to prove out. [s1, s7]
1Password's launch leans on its existing position as the store of record for credentials, which is the trust asset it carries into agent identity. The company frames Unified Access as an extension of the vault that 180,000 businesses already rely on.
What a security buyer cannot yet verify from the public record is the audit trail. The capability that proves which agent used which credential, and under whose authority, is the one 1Password lists as coming soon. For a control whose value is accountability over non-human access, that gap is the readiness question to watch.
The core product also carries a public vulnerability record a buyer can weigh. Independent researchers reported two macOS flaws in 2024, CVE-2024-42219 and CVE-2024-42218, that let local attackers exfiltrate vault items, with fixes shipped in versions 8.10.36 and 8.10.38. Disclosed and patched defects in the desktop app are a normal part of a credential vendor's track record rather than evidence about the agent line, which has no separate vulnerability history yet. [s1, s6, s17, s18]
| Company | Relationship | Note | Compare |
|---|---|---|---|
| Aembit | competes with | ||
| Akeyless | competes with | ||
| Token Security | competes with | ||
| Astrix Security | adjacent |
Add analyzed competitors to compare them side by side with 1Password.
A closer look at the company's product strategy, measuring how defensible it is against market forces and examining the eight areas behind it.
pivot urgently
A customer that adopted Unified Access today could still leave it cheaply. Three months after launch, the cited record documents no embedded agent and machine policy, and the line sells software rather than a managed service. The store of more than 1.3 billion secrets is not shown to work as cross-customer data a rival would lack. The protection 1Password does hold is category-level rather than exclusive: real-time credential security across endpoints, browsers, and local environments takes specialized engineering, and the credential control plane is infrastructure that agent and developer workflows depend on. Leaving gets expensive once customers route enough agent and machine credentials through the vault that departing means re-plumbing how their agents authenticate.
| Dimension | Score | Rationale |
|---|---|---|
| Value Delivery Does the product sell software as the product, or judgment, trust, or accountability with software as the delivery mechanism. | 1/3 | The line sells software capabilities, discovery of exposed secrets and one-click vaulting into a unified human, agent, and machine vault, through a generally available product. No judgment, managed service, or accountability layer is part of the offer. |
| Switching Cost How expensive leaving is for a customer: data portability, integrations, learned workflows, network effects, regulatory data residency. | 1/3 | A customer leaving the line today would carry little accumulated cost. The collaborations the launch announces are vendor-side capability rather than plumbing any customer is shown to have deployed, and the cited record documents no credential history, tuned policy, or learned workflow that a departure would strand. 1Password now markets runtime issuance of scoped credentials to agents and machine workloads, but no customer is shown to have routed production traffic through it long enough for friction to build. No network effects and no residency requirement stand in its place. |
| Compliance Moat Whether certifications, liability acceptance, or audit trails block an easy replacement. | 1/3 | 1Password states on its security page that the company is SOC 2 type 2 certified, a company-level assurance that eases procurement rather than a control scoped to this line. The product page now markets unified audit logs with attribution for every credential use, which is evidence a buyer can generate rather than a barrier a rival would have to clear. The reviewed sources establish no line-specific certification, government authorization, retained liability, or regulatory mandate a replacement would need to satisfy. This is procurement assurance, not a moat. |
| Problem Complexity Whether the product requires ML, optimization, real-time systems, or years of specialized expertise. | 3/3 | Discovering agent activity and exposed secrets across endpoints, browsers, and local environments and governing human, agent, and machine credentials in real time is security-critical distributed-systems engineering that takes specialized identity expertise. |
| Buyer Profile Whether buyers are SMB operators, mid-market IT teams, or regulated enterprises and governments with procurement gates. | 2/3 | The Unified Access buyer is the enterprise identity or security team SiliconANGLE describes the platform as serving, so enterprise procurement sits between the product and a replacement. With one named reference, DigitalOcean, and no broad production roster yet, the line lacks the enterprise traction that would lift it. |
| Layer Whether the product is an end-user application, a platform with application features, or infrastructure other applications depend on. | 3/3 | Unified Access is a credential and secrets control plane that other agent and developer workflows depend on for access, positioned underneath the AI tools builders use rather than as an end-user application. |
| Proprietary Data, Content, or IP Whether the product accumulates datasets, content licenses, or IP that a rival cannot recreate from scratch. | 1/3 | The product page positions the vault as a source of record agents draw credentials from, but the store of more than 1.3 billion credentials is not shown to function as a cross-customer proprietary dataset or compounding network effect, so no data moat is evidenced for the line. |
1Password Unified Access targets one buyer with two jobs. The buyer is the enterprise identity or security leader, and the new job is the credentials that AI agents and automated workflows use after a human logs in. SiliconANGLE describes the platform as helping companies discover access risks, secure credentials, and audit activity across human users, AI agents, and machine identities, which is the same buyer 1Password already serves for human password management now accountable for non-human access.
The segment is enterprises moving agents into production. The launch frames the trigger plainly, since employees deploy agents that call APIs and execute workflows on their behalf, and BetaKit captures the shift by noting that traditional tools had to keep one human in check at a time while those humans now deploy agents. The entry point into the segment is the endpoint, where Unified Access finds AI tools and exposed secrets before mapping that usage to users and devices.
The risk in the segmentation is that the agent-identity buyer may separate this purchase from the password manager. 1Password serves 180,000 business customers and has published one named Unified Access reference, DigitalOcean, but no broad roster of production customers yet, so whether the same buyer treats agent identity as an extension of the vault or as a separate specialist purchase is the open segmentation question.
The launch names three pillars and marks two of them available now. Discover finds AI tools and agent activity across endpoints, browsers, and local environments, then identifies exposed credentials such as unencrypted SSH keys and plaintext .env files and maps that usage to users and devices. Secure pulls those secrets into a unified vault that governs human, agent, and machine credentials under one policy with one-click vaulting.
The authorization half now reads as shipped on 1Password's own product page. That page describes runtime credential brokering that verifies agents and machine workloads and delivers only the credentials each is authorized to receive, unified audit logs that attribute every action to the identity that used a credential and the authority behind it, and agent privileges granted just in time and revoked when behavior drifts from stated intent. The March launch press had dated Audit to coming soon and scoped runtime credentials to later in 2026, so that roadmap now reads as history rather than as a live availability question. What the record does not carry is independent confirmation that customers run these capabilities in production.
The AI-specific advantage is endpoint reach rather than a model. Unified Access works where builders operate by securing credentials inside agent and developer workflows. Anthropic integrates 1Password to autofill vault items through Claude surfaces, while OpenAI collaborates on the use of local 1Password vault items in developer IDE workflows. That places the control at the point of use, though the durable advantage depends on customers adopting the audit and runtime pillars before the discovery-and-vault surface commoditizes.
The launch motion routes mostly through partners, with one named user. 1Password lists collaborations with Anthropic, Cursor, GitHub, Perplexity, and Vercel, and IT Pro reports that at launch Unified Access works with Anthropic and OpenAI as foundation model providers. These are channel and integration signals that place the product inside the tools agent builders already use. DigitalOcean is the one named reference, its security director crediting Unified Access with helping the company govern AI usage and reduce shadow AI risk.
The incumbent distribution context is real but sits at the company level, not the line level. 1Password protects more than 1.3 billion credentials across millions of endpoints, and Sacra reports that more than 75% of revenue now comes from businesses, with 180,000 business customers and gross retention above 90%. That is a company-wide base 1Password could cross-sell into, a potential route to the agent-identity buyer rather than a demonstrated one. What the base does not yet show is Unified Access attach, since the public line-level traction is limited to DigitalOcean and the partner integrations rather than evidence the base has converted to the line.
What the motion has not yet shown is breadth of conversion. Three months after launch, the public proof is a single named reference plus the partner list, not a roster of enterprises running Unified Access in production. Whether the base lowers demand-generation cost for this product is untested in the public record, and the line proves out only as more enterprises cite Unified Access as the control for their agent credentials rather than as an extension they evaluated. CB Insights lists 1Password in its AI agents and copilots collection and names it a Challenger in its secrets management and detection map, an independent analyst signal of category recognition that runs ahead of evidenced line adoption.
1Password packages the line as Unified Access Pro, which the launch press describes as generally available. The press frames it as letting organizations of all sizes deploy agents without losing control of credentials, secrets, and machine identities, an enterprise platform offering whose billing unit the cited record does not disclose.
The pricing unit for agent and machine identities is the question the public record does not settle. The natural unit for an agent-identity control is the agent or workload, the thing the buyer is trying to govern. Whether 1Password meters Unified Access by agent, by workload, or folds it into seat-based enterprise plans will shape whether buyers read it as an identity product or as a vault add-on.
The strategic tension is anchoring. Sacra reports business pricing of $7.99 per user per month above ten employees, so 1Password sells a credential store buyers already price by people, and attaching agent and machine identity to that contract risks underpricing a control whose value scales with non-human identity volume. The published material does not yet resolve which unit 1Password believes buyers pay for in the agent line.
Unified Access runs as a cloud-delivered platform built on the operating model of discover, secure, and continuously authorize, then audit. The Discover and Secure pillars operate now across endpoints, browsers, and local environments, which means the delivery surface already reaches the machines where agents run rather than sitting only in a central console.
The operational maturity signal to verify is the audit trail. 1Password's product page presents unified audit logs as a current function, providing attribution for every action across humans, agents, and machines and showing which credential was used, when, and under whose authority. The March launch press had listed Audit as coming soon, so the later of the two statements is the one now marketed. What no cited source establishes is a named customer relying on that trail in production.
Runtime delivery reads the same way. The product page describes runtime credential brokering that verifies agents and machine workloads and delivers only the credentials each is authorized to receive, where the launch press had scheduled scoped runtime issuance for later in 2026. Both descriptions are 1Password's own, so what a buyer can confirm today is that the vendor markets the continuous-authorization loop as operating, not that an independent record shows it running at customer scale.
1Password brings inherited procurement credibility from the parent brand into the agent line. The company protects more than 1.3 billion credentials and secrets and positions Unified Access to discover, secure, and audit access across human, machine, and AI agent identities, so the trust asset is an established credential-handling reputation the brand already carries rather than a new claim the buyer must take on faith. That credibility eases procurement, but it is parent-brand trust, not proof the line itself has been validated as the agent-identity control.
The line-specific trust question is whether the audit and runtime controls are live and adopted. A security buyer evaluating agent identity wants to confirm which agent used which credential and under whose authority. The launch press lists that audit capability as coming soon while the product page markets unified audit logs as a feature, so the buyer has to confirm which records are live today. The inherited reputation covers storing secrets safely, while the accountability that proves agent behavior is the capability the two pages describe differently.
Foundation-model integrations add a second signal. 1Password's launch announcement says Anthropic will integrate 1Password to autofill vault items through Claude browser tools and Claude Code, and that OpenAI collaborates to enable the use of local vault items and developer IDEs. Model providers wiring 1Password into agent workflows is ecosystem adoption rather than an independent assessment of the control, and it stops short of proving the audit control buyers will ask for.
The core product also carries a public vulnerability record. Two 2024 CVE records document macOS flaws, CVE-2024-42219 and CVE-2024-42218, that allowed local attackers to exfiltrate vault items, with fixes shipped in versions 8.10.36 and 8.10.38. Gartner Peer Insights carries end-user reviews of the same core product. Both are company-level signals about the credential business rather than proof about the agent line, which has no separate vulnerability or review history yet.
Unified Access launches as an ecosystem play across the agent tool chain. 1Password collaborates with Anthropic, Cursor, GitHub, Perplexity, and Vercel, plus other category leaders in AI infrastructure, AI developer tools, MCP gateways, and AI browsers, positioning the credential layer underneath the tools agent builders already adopt rather than as a standalone destination.
The integrations are concrete at the point of work. Anthropic will autofill vault items through the Claude browser extension, Cowork, and Claude Code, OpenAI collaborates to enable the use of local vault items and developer IDEs, and Cursor, GitHub, and Vercel integrate to secure developer workflows across IDEs, cloud sandboxes, and CI/CD pipelines with hooks available for Cursor agents and GitHub Actions. The ecosystem reach is the line's clearest near-term advantage over a pure-play building distribution from zero.
The ecosystem also defines the threat. The same MCP gateways and AI infrastructure providers 1Password collaborates with sit close enough to agent traffic that one could fold credential scoping into its own offering. The platform position helps only as long as 1Password owns the credential relationship rather than supplying a feature another layer absorbs.
1Password runs a sustained enterprise credential business. Sacra reports the company at an estimated $400M annual recurring revenue in October 2025, up from $331M in 2024, with more than 75% of revenue from businesses and gross retention above 90%, which is the profile of a team that has run a credential business at scale rather than a set of stated intentions.
CEO David Faugno fronts the launch by name, positioning Unified Access against the deployment footprint of millions of endpoints. Named executive sponsorship tied to the installed base signals a company-level commitment to the agent line rather than a side experiment.
The relevant execution question is range. The team shipped the Discover and Secure pillars quickly, so it can deliver the discovery-and-vaulting half. The Audit pillar the launch press dates to coming soon, and the runtime scoped credentials it schedules for later in 2026, are where extending a password and secrets business into agent authorization still has to prove out, and that extension is the capability the team has not yet demonstrated in production.
| Id | Source | Tier | Accessed |
|---|---|---|---|
| f1 | 1Password: Unified Access Management for Humans & AI | official | 2026-07-09 |
| f2 | CB Insights company profile for 1Password (AgileBits Inc.) | other | 2026-06-29 |
| f3 | TechCrunch: 1Password closes $620M Series C, now valued at $6.8B | press | 2026-06-14 |
| f4 | AI Defense Matrix Catalog entry | other | 2026-06-13 |
| f5 | AI Defense Matrix Catalog mapping | other | 2026-06-23 |
| Id | Source | Tier | Accessed |
|---|---|---|---|
| s1 | 1Password Unified Access launch press release (March 17, 2026) “1Password is deployed on millions of endpoints and protects over 1.3 billion credentials and secrets.” | official | 2026-06-14 |
| s2 | 1Password Unified Access product page “Modern work extends beyond login sessions” | official | 2026-06-14 |
| s3 | 1Password press kit at a glance “180,000+ businesses protected” | official | 2026-06-14 |
| s4 | BetaKit: 1Password launches new platform to rein in companies' AI agents “While traditional cybersecurity tools only had to keep one human in check at a time, those humans are now” | press | 2026-06-14 |
| s5 | SiliconANGLE: 1Password introduces Unified Access platform and partner API “a new platform intended to help companies discover access risks, secure credentials and audit activity across human users, AI agents and machine identities.” | press | 2026-06-14 |
| s6 | IT Pro: AI agents are creating new identity security risks “At launch, Unified Access will work with Anthropic and OpenAI as foundation model providers.” | press | 2026-06-14 |
| s7 | TechCrunch: 1Password closes $620M Series C, now valued at $6.8B “closed a $620 million (USD) Series C that raised the company's valuation to $6.8 billion” | press | 2026-06-14 |
| s8 | Sacra: 1Password revenue, valuation and funding “1Password hit $400M annual recurring revenue (ARR) in October 2025, up from $331M in 2024.” | research | 2026-06-14 |
| s9 | 1Password Unified Access launch partners “For DigitalOcean, it's no longer only about individuals mishandling credentials. We need clear visibility into which AI systems are operating across our environment. Using Unified Access helps us better understand and govern AI usage to reduce shadow AI risks and securely scale AI adoption.” | official | 2026-06-14 |
| s17 | NVD CVE-2024-42219: 1Password 8 for macOS vault item exfiltration via insufficient XPC validation, CVSS 7.8 High “1Password 8 before 8.10.36 for macOS allows local attackers to exfiltrate vault items because XPC inter-process communication validation is insufficient.” | other | 2026-06-29 |
| s18 | CVE-2024-42218: 1Password 8 for macOS vault item exfiltration by bypassing macOS security mechanisms “1Password 8 before 8.10.38 for macOS allows local attackers to exfiltrate vault items by bypassing macOS-specific security mechanisms.” | other | 2026-06-29 |
| s19 | CB Insights company profile for 1Password (AgileBits Inc.) “1Password named as Challenger among 15 other companies, including Google Cloud, Microsoft, and HashiCorp.” | other | 2026-07-04 |
| s20 | Gartner Peer Insights: 1Password reviews and ratings “1Password is a software designed to securely manage passwords and sensitive information for individuals and organizations.” | other | 2026-06-29 |
| Id | Source | Tier | Accessed |
|---|---|---|---|
| s1 | 1Password Unified Access launch press release (March 17, 2026) “Unified Access Pro is now generally available, allowing companies to discover, secure, and audit access across human, machine, and AI agent identities.” | official | 2026-06-14 |
| s2 | 1Password Unified Access pillars and roadmap “Audit (coming soon) with end-to-end visibility into credential access across human and non-human activity, with clear records of which credential was used, when, by which identity, and under whose authority.” | official | 2026-06-14 |
| s3 | 1Password Unified Access runtime credential roadmap “Later this year, 1Password will expand Unified Access to issue scoped credentials to agent and machine workloads” | official | 2026-06-14 |
| s4 | 1Password Unified Access ecosystem collaborations “1Password is collaborating with Anthropic, Cursor, GitHub, Perplexity, and Vercel, as well as other category leaders in AI infrastructure, AI developer tools, MCP gateways, and AI browsers” | official | 2026-06-18 |
| s5 | 1Password installed base and CEO framing “1Password is deployed on millions of endpoints and protects over 1.3 billion credentials and secrets.” | official | 2026-06-14 |
| s6 | 1Password Anthropic and OpenAI integrations “Anthropic will integrate 1Password to securely autofill vault items through the Claude browser extension, Cowork, and Claude Code” | official | 2026-06-18 |
| s7 | 1Password Unified Access product page “Modern work extends beyond login sessions” | official | 2026-06-14 |
| s8 | IT Pro: AI agents are creating new identity security risks “At launch, Unified Access will work with Anthropic and OpenAI as foundation model providers.” | press | 2026-06-18 |
| s9 | SiliconANGLE: 1Password introduces Unified Access platform and partner API “a new platform intended to help companies discover access risks, secure credentials and audit activity across human users, AI agents and machine identities.” | press | 2026-06-14 |
| s10 | BetaKit: 1Password launches new platform to rein in companies' AI agents “While traditional cybersecurity tools only had to keep one human in check at a time, those humans are now” | press | 2026-06-14 |
| s11 | Sacra: 1Password revenue, valuation and funding “More than 75% of revenue now comes from businesses, with 180,000 business customers and gross retention above 90%, and the company remains free cash-flow positive.” | research | 2026-06-18 |
| s12 | Sacra: 1Password ARR estimate “Sacra estimates that 1Password hit $400M annual recurring revenue (ARR) in October 2025, up from $331M in 2024.” | research | 2026-06-18 |
| s13 | TechCrunch: 1Password closes $620M Series C, now valued at $6.8B “closed a $620 million (USD) Series C that raised the company's valuation to $6.8 billion” | press | 2026-06-14 |
| s14 | 1Password Discover and Secure pillars “identify exposed credentials and secrets such as unencrypted SSH keys and plaintext .env files, and map AI usage to specific users and devices.” | official | 2026-06-14 |
| s15 | 1Password DigitalOcean Unified Access reference quote “Using Unified Access helps us better understand and govern AI usage to reduce shadow AI risks and securely scale AI adoption.” | official | 2026-06-18 |
| s16 | 1Password Unified Access runtime credential delivery and audit features “Runtime credential delivery provides credentials to agents, CI/CD pipelines, and production systems when needed, directly from a centralized vault.” | official | 2026-06-15 |
| s17 | NVD CVE-2024-42219: 1Password 8 for macOS vault item exfiltration via insufficient XPC validation, CVSS 7.8 High “1Password 8 before 8.10.36 for macOS allows local attackers to exfiltrate vault items because XPC inter-process communication validation is insufficient.” | other | 2026-06-29 |
| s18 | CVE-2024-42218: 1Password 8 for macOS vault item exfiltration by bypassing macOS security mechanisms “1Password 8 before 8.10.38 for macOS allows local attackers to exfiltrate vault items by bypassing macOS-specific security mechanisms.” | other | 2026-06-29 |
| s19 | CB Insights company profile for 1Password (AgileBits Inc.) “1Password named as Challenger among 15 other companies, including Google Cloud, Microsoft, and HashiCorp.” | other | 2026-07-04 |
| s20 | Gartner Peer Insights: 1Password reviews and ratings “1Password is a software designed to securely manage passwords and sensitive information for individuals and organizations.” | other | 2026-06-29 |
| s21 | Sacra: 1Password business pricing per user “for businesses with more than 10 employees, they charge $7.99 per user per month” | research | 2026-08-01 |
| s22 | 1Password security page: SOC 2 type 2 statement “1Password is SOC 2 type 2 certified and complies with the most stringent industry standards for data confidentiality, integrity, and availability.” | official | 2026-08-01 |
This site is an experimental research aid created by Zeltser Security Corp. All its data gathering and analysis was performed autonomously without human review, and it can contain errors of fact, interpretation, and judgment that a human reviewer might catch.
The analyses are statements of opinion, not statements of fact. Machine analysis produced the scores, summaries, and matrix placements by weighing the public sources each page cites, and reasonable people can weigh the same sources differently. Where a page states a fact, it cites the public source and the date it was checked, and the statement is only as accurate as that source. Unless a profile expressly says otherwise, the analysis involves no hands-on testing and no independent validation of any company's products or services.
Nothing here is professional, security, legal, financial, investment, or purchasing advice, and nothing here is a recommendation to invest in, do business with, or avoid any company. Inclusion of a company is not an endorsement, and absence of a company is not a judgment about it. Reading this site creates no advisory or client relationship. Verify any detail you plan to act on against the vendor's current materials.
The content is provided "as is" and "as available," with all warranties disclaimed, express or implied, including merchantability, fitness for a particular purpose, accuracy, and non-infringement. No entry is warranted to be complete, current, or correct. Companies change, vendors update their claims, sources can be wrong, and automated analysis can misread them.
To the fullest extent permitted by law, the operator, Zeltser Security Corp, is not liable for any damages that arise from using this site or relying on its content, including direct, indirect, incidental, special, and consequential damages and lost profits, even if advised that such damages were possible. If you are dissatisfied with the site or disagree with these terms, your remedy is to stop using it.
Entries link to vendor pages, press coverage, and other external sites that Zeltser Security Corp does not control and is not responsible for. A link is not an affiliation with the destination or an endorsement of it. Product and company names and trademarks are the property of their owners, used here nominatively to identify the companies described. Short quotations from cited sources appear for identification and commentary.
Use, quotation, automated retrieval, and redistribution of the content are governed by the Terms of Use at cybercompanyprofiles.com/terms, which permit personal and internal business use with attribution and prohibit republication and resale.