1password

Pass

Audited by Gen Agent Trust Hub on Aug 14, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes shell commands to interact with the 1Password CLI, including sign-in operations, secret retrieval, and template injection.
  • [COMMAND_EXECUTION]: Employs tmux to maintain authenticated sessions across non-interactive terminal calls when using desktop app integration.
  • [SAFE]: Instructions for installing the 1Password CLI leverage official package managers (Homebrew, Winget) and point to official 1Password documentation.
  • [SAFE]: Implements standard secret management practices by using service account tokens and providing guardrails to prefer op run or op inject over writing secrets to disk.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 14, 2026, 08:31 PM
Security Audit — agent-trust-hub — 1password