1Password
Read and write vaults, items, and files through a self-hosted 1Password Connect server, and query audit events, item usage, and sign-in attempts through the 1Password Events API.
Three ways to use 1Password
Chat with Geni
Ask Geni to pull data, take actions, or answer questions using this integration in a conversation.
Build a workflow
Create automated workflows that trigger on events, run on a schedule, or chain multiple tools together.
Power an app
Use this integration as a data source or action layer behind a dashboard, form, or internal tool.
Supported tools
Actions your AI agents can perform with 1Password.
Create Item
Create a new item in a vault, optionally having 1Password generate field values.
Delete Item
Permanently delete an item from a vault.
Download File Content
Download the raw bytes of a file attachment.
Get File Details
Fetch metadata for one file attachment, optionally with its content inlined.
Get Item Details
Retrieve a single item with all of its sections, fields, and secret values.
Get Prometheus Metrics
Scrape the Connect server's Prometheus metrics.
Supported triggers
Start a workflow when something happens in 1Password.
New Sign-in Attempt in 1Password
Triggers on new 1Password sign-in attempts, successful or failed. Filter to failure categories (e.g. "credentials_failed, mfa_failed") to watch for suspicious access. Requires an Events API credential whose token holds the signinattempts feature.
New Audit Event in 1Password
Triggers on new administrative and team member actions in the 1Password account (invites, grants, vault changes, device authorizations). Requires an Events API credential whose token holds the auditevents feature.
New Item Usage in 1Password
Triggers when an item in a shared vault is accessed or modified. Scope to a vault or item to watch sensitive credentials. Requires an Events API credential whose token holds the itemusages feature.
Get started automating 1Password
Ready-to-use workflows
Prompts using 1Password
Triage 1Password sign-in failures without alerting on typos
Watches every failed 1Password sign-in, works out which ones actually look like an attack, and alerts your security channel only for those.
Flag risky 1Password vault access against your HR records
Every time someone opens a shared credential, we check them against your employee directory and alert IT only when the access looks wrong.
Weekly 1Password vault audit with Slack digest and Jira tickets
Every Monday morning, spot stale passwords, missing two-factor, and duplicate logins across your vaults, then assign the risky ones for rotation.
Keep a nightly 1Password activity log in Google Sheets
Every night this copies the day's 1Password sign-ins and admin activity into a spreadsheet, so you get searchable security history without a costly SIEM.