1password

Pass

Audited by Gen Agent Trust Hub on Aug 1, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes 1Password CLI (op) commands to manage vaults, read secrets, and perform authentication. It also utilizes tmux to manage persistent shell sessions for authentication states across transient agent tool invocations.
  • [SAFE]: The skill facilitates the installation of the 1Password CLI via Homebrew (1password-cli), which is a well-known service and a standard package manager.
  • [SAFE]: The instructions include explicit security guardrails, such as advising against pasting secrets into logs or chat and recommending op run to inject secrets directly into process environments rather than storing them in plain text files.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 1, 2026, 08:32 AM
Security Audit — agent-trust-hub — 1password