Skip to main content
September 19, 2026

[Feature request] Password protected vault/nested encryption

  • September 19, 2026
  • 1 reply
  • 2 views

I have read some similar requests on this forum. Most of the 1Password team members responded that 1Password treats every vault as maximum security. So an account-level master password is good enough. But in my opinion, there’s always an exception. For example, the computer gets RAT and the user decrypts the vault without knowing it.  

Some of you recommended users upgrade the account to a family plan and store that information in a separate family account. But many users are single users, or maybe the family is already full; paying for a family plan just to store several pieces of sensitive information doesn’t make much sense. It is also not that convenient.  

 

 

I wonder if you can allow users to encrypt a vault with another master password. I understand that once the vault is decrypted by the user, the attacker can retrieve the password no matter what. However, these vaults protected by a secondary master password might not be decrypted as frequently as the primary vault. And they can take actions before protected vault gets compromised.    

 

For example, people can store their primary crypto wallet where they put most of their money there. And daily drive the secondary crypto wallet with a small amount of money. And they only decrypt the primary wallet when they need to top up the secondary wallet with the primary wallet.  

Or maybe someone has two credit cards with lower and higher spending limits. They make purchases with the one that has a lower spending limit most of the time. And only use the higher one when purchasing something expensive. If the lower one gets compromised, the higher one will eventually. But they might get notified before the higher one gets compromised. And take action before the higher one ever gets decrypted.  

1 reply

1P_Dave
1Password Employee
1Password Employee
September 22, 2026

Hello ​@Coolkie! 👋

Thanks for the suggestion! All of the information that you save in 1Password is protected using end-to-end encryption and the secret to unlock that information is your account password and Secret Key. There isn’t a way to encrypt different vaults using different passwords. You can read more about our security model here: About the 1Password security model

As you’ve noted, if your device is compromised then an attacker would get access to data in any vault that is unlocked on your device, even if they’re encrypted using different passwords. The best protection is to only use 1Password on devices that you trust: How 1Password protects information on your devices (and when it can’t)

That being said, I’ve filed your suggestion as a feature request so that our team can look into possibly offering more options here in the future.

-Dave