Connect 1password SAAS Manager to ChatGPT, Claude and Gemini

Set it up once and it works in ChatGPT, Claude, Cursor, and any other client you love. It all runs safely in the background, so you can relax and focus on what really matters. Give your AI agent control over your 1Password organization.

Ask AI about this Connector

Developed, maintained, and hosted by Vinkius.

MCP VERIFIED · PRODUCTION READY · VINKIUS GUARANTEED

Waiting for input…

Works with modern AI clients that support MCP, including ChatGPT, Claude, Cursor, and more.

ChatGPTClaudeCursorPerplexityGeminiMicrosoft CopilotRaycastMeta AI

Your AI does the work. We keep it safe and sound.

No other AI tool gives you this. Your workflow runs in the client you already love, your account stays protected, and you decide what the agent can and cannot do. It is the whole reason to make the switch.

Each Connector lives inside our infrastructure, the same place where your workflow runs. The three things below are already part of it, working quietly in the background so you never have to think about them. Nothing to add, nothing to set up, nothing to worry about.

How Vinkius works: one connection, every tool, in any AI
V8 Isolate01

Each Connector runs inside its own sealed environment.

Each Connector runs inside its own sealed V8 runtime — no access to your files, your system, or other servers. A Connector never sees past its own request.

Kill Switch02

One switch stops every agent. Instantly.

One action deactivates every Connector, revokes every token, and ends every session at once. AI Governance keeps the record.

FinOps per User03

Spending limits that pause instead of surprise.

Every user keeps their own connections and credentials, isolated from everyone else. Anything that would cross your spending limit is held for your approval, not billed.

Three controls, built into the layer your AI connects through.

Complete set · 8 capabilities

The complete 1Password capability set.

These are the exact actions your AI can choose when you ask it to work with 1Password.

Capability set01 / 02

01-04

4 capabilities in this set.

Part of 8 available through 1Password.

  1. 01

    Fire workflow signal

    Sends a signal to a specific activity within a 1Password workflow run. Use this to advance or unblock a process when you explicitly tell your agent to do so.

  2. 02

    List teams

    Retrieves the list of teams within your 1Password organization. This helps your agent understand team hierarchy and group-level access.

  3. 03

    List workflows

    Shows all automation workflows configured in the 1Password SaaS Manager. Your agent uses this to find specific workflows before inspecting their runs.

  4. 04

    Get application

    Fetches detailed information about a specific SaaS application from your catalog. Use this to inspect an app after finding it in the list.

Capability set02 / 02

05-08

4 capabilities in this set.

Part of 8 available through 1Password.

  1. 05

    Get workflow run

    Provides the status and details of a specific automation workflow run. This is how your agent checks why a process might be stuck.

  2. 06

    List applications

    Returns the full list of SaaS applications tracked in your 1Password organization. It supports pagination via cursors for large catalogs.

  3. 07

    List audit events

    Reads the 1Password audit log. Your agent uses this to track user actions, permission changes, or security events within a specific timeframe.

  4. 08

    List people

    Lists the users present in your 1Password organization. This allows your agent to verify headcount or check individual membership status.

Automate a task

Put 1Password to work on one thing.

Step-by-step automations your AI runs through this Connector: the workflow, the prompts to start with, and the exact capabilities behind each move.

One connector, every AI

1Password works with the most popular AI clients.

These are the most popular clients, each with a step-by-step guide: one link, set up once, with governance and visibility built in. And because everything runs on the MCP standard, the same connection also works in any other compatible client — nothing to rebuild.

Building your own app? The connector is yours to use.

You don't need a client to put 1Password to work: the same hosted connection plugs into your own applications and agent code, with the same governance on every request. Build with it, chat with it — one connection for both.

Observed, not estimated

1159ms average. Fast in production.

1Password is checked daily against the live service.

Daily averagePeak 1470ms
Sep 19Today
Fastest day
873ms
Slowest day
1470ms
14-day trend
Slowing+5%

Connect your client

One URL. Every client.

Activate the Connector, copy your link, and paste it into the client you already use. 8 capabilities arrive ready to run.

Preview access · not provider authentication

The vk_preview_* token belongs to Vinkius preview infrastructure. It lets Claude discover and display the capabilities of 1Password, so you can see the experience inside your AI.

It does not authenticate your account with 1Password. Actions requiring credentials or live account data may not run until you activate the Connector and authorize the service.

1Password Connector

You're all set. Choose your MCP client and follow the setup instructions.

Connector linkhttps://edge.vinkius.com/vk_preview_koedeH4TF1TmeS5PQerjYBdnleULTxy2fMPzASG1/mcp

Claude Desktop

Follow the steps below to connect in seconds.

  1. 1In Claude Desktop, open Settings → Connectors.
  2. 2Click “Add custom connector” and paste the connector link above as the remote MCP server URL.
  3. 3Click Add and start a new chat — 1Password capabilities are ready to use.
Configuration · claude_desktop_config.jsonCopy
{
  "mcpServers": {
    "1password-saas-manager-mcp": {
      "url": "https://edge.vinkius.com/vk_preview_koedeH4TF1TmeS5PQerjYBdnleULTxy2fMPzASG1/mcp"
    }
  }
}
  • Claude
  • ChatGPT
  • Cursor
  • VS Code
  • Windsurf
  • Claude Code
  • JetBrains
  • Cline

Step-by-step instructions for each client are in the guide. How to connect

Guided setup for Claude? How to give Claude access to 1Password

See all the AI clients this connector works with ↑

Who it's for

Built for the work 1Password owners hand off.

This MCP is built for technical professionals managing identity and software access at scale.

  • 01

    Security and Compliance Teams

    They use the agent to maintain SaaS inventories and surface audit events for review.

  • 02

    Identity Administrators

    They use the agent to verify team structures and membership before changing access.

FAQ

Questions 1Password owners ask.

  • 01

    How do I connect this MCP to my 1Password account?

    You need to create API client credentials in your 1Password SaaS Manager settings. Once you have the Client ID and Secret, you provide them to Vinkius, and you can connect your AI client immediately.

  • 02

    Can my AI agent actually change things in 1Password?

    Yes, specifically through the fire_workflow_signal capability. This allows your agent to advance or unblock specific steps in an automation workflow when you tell it to.

  • 03

    Does this work with any AI client?

    It works with any MCP-compatible client, including Claude, Cursor, Windsurf, and VS Code.

  • 04

    How does the agent handle large lists of users or apps?

    The capabilities use pagination and cursors. Your agent can request specific limits or use the 'after' parameter to move through large datasets without overwhelming the context.

  • 05

    Is my data secure?

    The MCP uses short-lived tokens generated by the server to interact with the 1Password API, ensuring your credentials remain protected.

  • 06

    Which parts of 1Password does this manage?

    The SaaS Manager organization surface: the SaaS application catalog, people, teams, the audit log, and automation workflows. It does not read or manage personal vault items or individual secrets. those are out of scope for this server.

  • 07

    How does authentication work?

    Machine-to-machine OAuth 2.0 client-credentials. The server exchanges your Client ID and Client Secret for a short-lived bearer token and signs its own requests. no human login, no user session. The base URL selects the region: app.trelica.com (US) or eu.trelica.com (EU).

  • 08

    Can it change the organization, or only read it?

    Mostly read. The read capabilities cover the catalog, people, teams, audit log, workflow definitions, and runs. The one state-changing capability is fire_workflow_signal, which advances or gates a step of an automation run. use it only when explicitly asked.

Connect 1Password to Claude, Cursor, ChatGPT & more