Protect what matters – even after you're gone. Make a plan for your digital legacy today.
device trust
18 TopicsUpcoming 1Password webinars
Hi folks, Here's an overview of all the webinars we have coming up in the next several weeks. I hope we'll see you there! Thursday, April 2nd at 9 AM PDT / 12 PM EDT (60 minutes): Inside Unified Access: Taking Enterprise Password Manager to the next level In this webinar, Jeff Malnick, VP of Engineering, Developer & AI, and Jason Meller, VP of Security Strategy, will give an inside look at Unified Access and how it helps you discover, secure, and audit credentials used by human, machine, and AI agent workflows. Wednesday, June 3rd at 9 AM PDT / 12 PM EDT (60 minutes): What's new? The 1Password quarterly security spotlight and roadmap review In this webinar, you can look forward to learning about our recent product releases, a glimpse into our product roadmap, upcoming events with 1Password, a deep dive into actionable ways 1Password can support your business' security goals. Thursday, June 4th at 11 AM BST / 12 PM CEST / 1 PM EEST (60 minutes): What's new? The 1Password quarterly security spotlight and roadmap review This is the same webinar, but scheduled to be more convenient for Europe, the Middle East, and Africa.16Views0likes0Comments1Password deployment on VDI / Citrix environments - best practices and support status?
Hi everyone, We're evaluating 1Password for our organization and need to deploy it in a Citrix Virtual Apps and Desktops environment. I've read through the deployment documentation, but I'd like to get some clarity on a few points from the community or 1Password team. Our scenario: Citrix Virtual Apps and Desktops (mix of persistent and non-persistent VDI) Windows Server-based session hosts User profiles managed via FSLogix / Citrix Profile Management Questions: Non-persistent VDI: What's the recommended approach for non-persistent/pooled desktops where the VM is reset after each session? Is it sufficient to persist the local data folder via FSLogix or Profile Management, or are there additional considerations? Multi-session hosts (RDSH): Is 1Password supported on multi-session Windows Server environments where multiple users share the same server? Are there any known limitations? Browser extension: Does the browser extension work reliably in VDI scenarios, especially when connecting to a locally installed 1Password app on the virtual desktop? Installer choice: The documentation mentions that MSIX is preferred over MSI. Are there specific VDI-related reasons for this recommendation beyond the passkey limitation? Any insights from organizations running 1Password in similar environments would be greatly appreciated. Thanks!80Views0likes0CommentsKolide Custom Checks?
Hi everyone, We have rolled out 1Password XAM and are really liking the Kolide Device checks. However we are running into edge-cases where we need to configure some custom checks and are struggling a bit. For example, we want to allow people with devices owned by other (partner) organisations access to some of our Kolide-protected apps. They have been allowed by their admins to install Kolide but they use a different EDR product that is not covered by the supplied checks. (Ie we use Crowdstrike Falcon, they use Palo Alto Cortex) Has anyone worked out a way to implement this sort of thing? Both in terms of a custom checks for Cortex and an either/or setup for EDR.12Views0likes0CommentsUpcoming 1Password webinars
Hi folks, Here's an overview of all the webinars we have coming up in the next several weeks. I hope we'll see you there! Wednesday, March 4th at 9 AM PST / 12 PM EST (60 minutes): What's new? The 1Password quarterly security spotlight and roadmap review Join us to learn how Alliants uses 1Password Enterprise Password Manager (EPM) and 1Password SaaS Manager to simplify SaaS management, enhance security, and align IT operations with business goals. Plus, hear the latest 1Password news, product updates, and releases to help you get the most out of the 1Password platform. Thursday, March 5th at 11 AM GMT / 12 PM CET / 1 PM EET (60 minutes): What's new? The 1Password quarterly security spotlight and roadmap review This is the same webinar, but scheduled to be more convenient for Europe, the Middle East, and Africa. Wednesday, March 11th at 9 AM PDT / 12 PM EDT (60 minutes): How IT and finance can collaborate to take control of SaaS spend Join us for a live webinar designed for IT and finance leaders who want to regain visibility, reduce waste, and align SaaS investments with business value. Thursday, March 19th at 10 AM GMT / 11 AM CET / 12 PM EET (60 minutes): What's new? The 1Password quarterly security spotlight and roadmap review This is the same webinar, but scheduled to be more convenient for Europe, the Middle East, and Africa.47Views0likes0CommentsAdmin Being Prompted To Transfer Encryption Key
I'm the sole active Admin in our environment and I've been essentially locked out of my 1Password account the entire day with no response to my submitted ticket from a Solutions Engineer. I'm an admin who is setting up 1Password with Okta for the first time and during the process, my session was kicked out. Upon trying to log back in, I'm being prompted for a Recovery Code but I'm unable to view recovery codes, as I'm the only admin in the system and I can't get to the admin settings to log in. I've searched and searched and the only solution seems to be to contact support. Support can only be contacted via the Chatbot which seems to be very limited in the actual solutions it can provide, as the responses are fairly canned. I'm hoping there's someone out there from 1Password that can help escalate my issue as our entire system is essentially completely locked out for anyone.69Views0likes1CommentUpcoming 1Password webinars
Hi folks, Here's an overview of all the webinars we have coming up in the next several weeks. I hope we'll see you there! Thursday, January 22nd at 10:30 AM PST / 1:30 PM EST: Best practices for uncertain times: A new framework for identity security Join Abe Ankumah, Chief Product Officer at 1Password, Francis Odum, cybersecurity analyst and founder of Software Analyst Cyber Research, and Blaine Carter, Global CIO at FranklinCovey as they share how forward-thinking companies are preparing for the identity security challenges of the year ahead. Wednesday, March 4th at 9 AM PST / 12 PM EST: What's new? The 1Password quarterly security spotlight and roadmap review Join us to learn how Alliants uses 1Password Enterprise Password Manager (EPM) and 1Password SaaS Manager to simplify SaaS management, enhance security, and align IT operations with business goals. Plus, hear the latest 1Password news, product updates, and releases to help you get the most out of the 1Password platform. Thursday, March 5th at 11 AM GMT / 12 PM CET / 1 PM EET: What's new? The 1Password quarterly security spotlight and roadmap review This is the same webinar, but scheduled to be more convenient for Europe, the Middle East, and Africa.95Views0likes3CommentsHELP! Some of our team member cant access the app within the vault.
I need some help. I’m the admin and password manager, and some team members can’t access the platforms in the vault I shared with them. A few users can log in without issues, but others are getting “incorrect password” errors even though the credentials are correct. I can log in fine on my end, so I’m not sure where the issue is. Because they needed urgent access, we had to share the passwords manually, which defeats the purpose of the vault. I’d really appreciate your help resolving this.33Views0likes1CommentResearch opportunity: Help shape the future of 1Password + gift card for your time
Hey 1Password community 👋 Our team is running 1:1 research interviews with current 1Password Business customers, and we’d love your insights. We’re especially interested in hearing from folks using the 1Password Enterprise Password Manager (with or without 1Password Device Trust or 1Password SaaS Manager), and who are involved in managing access, identity, and device posture at their company. Our goal with this research is to better understand how access is managed in the real world, especially in places where SSO, IdPs, and MDMs may not reach. Your feedback will directly influence how we evolve our products and features going into 2025. Who we’re looking for: Admins, IT, or Security leads at companies with 500–3,000 employees in North America, Europe, or Australia Decision-makers, or those with hands-on experience managing access tools Current users of 1Password Business and/or Extended Access Management What to expect: A 60-minute live interview Flexible scheduling between August 4th and 15th A $100 gift card from popular retailers as a thank-you We only have 10 slots available, so if you’re interested, please fill out this short screener survey. Thanks for being part of the community, we’re excited to learn from you!77Views1like0CommentsThe Access-Trust Gap: Annual Report 2025
Unsanctioned AI tools. Patchy access controls. Unmanaged apps and devices. And of course, compromised credentials. These are the issues revealed in our latest 1Password Annual Report 2025: The Access-Trust Gap. Based on a survey of over 5,000 knowledge workers, IT and security professionals, and CISOs, the report captures a moment of rapid technological and cultural change. The rise of hybrid work, SaaS sprawl, personal device use, and generative AI have all stretched identity and access tools like SSO and MDM beyond their limits. The result is what we call the Access-Trust Gap — the divide between the access that IT and security teams can govern, and the reality of how people (and now AI agents) actually access sensitive data. The report highlights four areas where that gap is widest: AI tools: High enthusiasm, low policy compliance. SaaS apps: Shadow IT and unmanaged access remain rampant. Credentials: Weak and reused passwords still drive breaches. Devices: MDM alone can’t keep pace with today’s hybrid workforce. Together, these findings paint a picture of an enterprise world struggling to keep up with how (and where) work happens today. The good news? There’s a clear path forward. We outline how organizations can close the Access-Trust Gap by pairing stronger governance with modern tools like 1Password Extended Access Management, 1Password SaaS Manager, and 1Password Device Trust — helping companies embrace AI and modern work securely. 📘 Read the full report: 1Password Annual Report 2025 📰 Read the blog post: The enterprise AI crisis: Unsanctioned tools and unenforced policies46Views0likes0Commentsdebsig package signing issue for 1password & 1password-cli
Problem: I have already raised this issue by email (no response from 1password yet), and BitBot has given this matter reference CKQ-37366-878. 1Password uses the weak, deprecated algorithm SHA1, with debsig, to sign its Debian packages (this affects both 1password [gui app package], and 1password-cli, each in their deb package form). Way back in Nov-2021, debsig v0.24 deprecated SHA1 as an acceptable way to sign packages. This is because a practical collision attack for SHA1 was first demonstrated in 2017. debsig release announcement: https://lists.debian.org/debian-dpkg/2021/11/msg00006.html#:~:text=*%20reject%20weak%20ripemd160%20and%20sha1%20algorithms Any Ubuntu or Debian distro using debsig >= v0.24 will by default not verify 1password or 1password-cli packages, due to the use of weak SHA1 packages. To further prove it is use of weak SHA1 algo for signing that is root cause of debsig-verify failing, and nothing else, you can put "allow-weak-digest-algos" (without quotes) into /etc/gnupg/gpg.conf and then debsig-verify command will confirm that latest 1password or 1password-gui deb package was signed appropriately in "_gpgorigin" file. Yes, an SHA1 collision is still hard, and so SHA1 signing is still better than nothing, and Debian packages is a smaller subset of an already small linux user base for 1password, but it still disappoints me that 1password appears not on top of ensuring all of it crypto algorithm use, are strong, secure, not depricated ones! It makes me wonder and worry where else depricated crypto cyphers are in use, and should I switch to something with more open source code that I can check for myself, like Proton or Bitwarden. Fix required: Please restore my faith in 1password by switching your signing algorithm for all Debian packages, from using SHA 1 (digest algo 2) to SHA 256 (digest algo 8), or even better, SHA 512 (digest algo 10), for debsig. This does not need to change the keys you use, and changes nothing about the underlying packages for 1password or 1password-cli. It is just a change to the deb packages. Steps to reproduce and analyse the issue: (1) Fire up an Ubuntu or Debian instance with debsig >= v0.24 (I used Debian 13 Trixie) (2) wget -O "1password-latest.deb" https://downloads.1password.com/linux/debian/amd64/stable/1password-latest.deb This gets you a suitable package to test the problem on. (3) debsig-verify -d 1password-latest.deb This runs debsig-verify, with debug output visible, on the just downloaded deb package. You can see the signature failure message on the final output line. Higher you can see complaints about an invalid digest algorithm as the root cause (4) Add "allow-weak-digest-algos" (without quotes) into /etc/gnupg/gpg.conf and then re-run the debsig-verify command from step 3 above. Now that we move away from default secure config to reject old, weak depriecated algorithms, such as SHA1, the 1password deb package successfully shows as signed. You could keep all the same keys, and just switch the signing algorithm used by debsig, to SHA256 or even better SHA512 (SHA512 is 64-bit words, so no slower on 64-bit architectures than SHA256, but larger and more secure), and you would fix this problem. If you are still using SHA1 here, and had not noticed until user pointed it out, you should probably (re-)audit where else you are using weak, old, deprecated cyphers in your codebase too, as a good step to continuously improve 1password security!70Views0likes1Comment