Forum Discussion

julesmiles's avatar
julesmiles
New Contributor
6 months ago
Solved

Can we add an extra layer of encryption within 1 password?

Hi All, I currently use 1 password for family - been using it for I suppose 5+ years now.  In terms of security architecture, I understand that our master password on the client tool locks everythi...
  • 1P_Dave's avatar
    6 months ago

    Hello julesmiles! 👋

    Thanks for reaching out! I'm happy to go into detail on how 1Password protects the important information that you save into your 1Password account. 

    1Password uses your account password to encrypt and protect your data locally and someone with access to your device won't be able to unlock 1Password without knowing your account password. However, 1Password doesn't just use your account password to protect your data once it leaves your device. Your data is protected using an encryption key that is the combination of your account password and your Secret Key: About your Secret Key

    Even if someone were to learn your account password they would be unable to get their hands on your data from our servers without also having the Secret Key. Beyond your account password and Secret Key, 1Password also uses Secure Remote Password (SRP) and Transport Layer Security (TLS) to protect your data when it leaves your device: How Secure Remote Password protects your 1Password account

    This means that your 1Password data is protected using three layers of encryption. You can read more about our security model here: About the 1Password security model

    -Dave