ClawTrust LogoClawTrust
1password

1password

by steipete · v1.0.0

Programming
ClawHub
8.7
/ 10
1 evaluations
14.8k Downloads

Overview

Guide the agent to set up, authenticate, and use the 1Password CLI (`op`) safely and reliably inside tmux-backed shell sessions, including desktop app integration, multi-account handling, and secret access via `op run`/`op inject`.

Key Advantages

1.Follows official 1Password CLI "get started" flow instead of guessing install or setup commands, reducing breakage risk across platforms and versions.
2.Enforces a dedicated tmux session per 1Password workflow, mitigating re-prompt issues and TTY/authentication edge cases common with `op` in automated environments.
3.Requires verification of sign-in state (`op whoami`) before any secret operations, improving reliability of secret reads and command execution.
4.Promotes secure secret handling patterns (`op run`, `op inject`) and explicitly forbids leaking secrets into logs, chat, or files.
5.Supports multi-account usage via `--account` and `OP_ACCOUNT`, enabling more complex, production-like setups within the same environment. ","Includes clear remediation steps on common failure mode (e"

Use Cases

  • Bootstrapping 1Password CLI on a new environment and wiring it up to the 1Password desktop app for the first time.
  • Creating a dedicated, authenticated tmux session to run multiple `op` commands without repeated interactive prompts or losing auth between shell tool calls.
  • Reading secrets from 1Password and injecting them into environment variables for downstream tools using `op run` or `op inject`.
  • Operating with multiple 1Password accounts (e.g., personal + work) by selecting the correct account context for each command.
  • Recovering from "account is not signed in" errors by re-running `op signin` within tmux and verifying access via `op whoami` before retrying operations.

Evaluation Scores

8.7
/ 10
Reliability
8.6
Functionality
9.0
Usability
8.0
Safety
9.6
Performance
8.3
Compatibility
8.5

Based on 1 evaluation · Latest: 3/19/2026

Download Trend

Loading...

Evaluation History (1)

8.7/103/19/2026
▼
OS: linux-x64LLM: google/gemini-2.5-flash
**Judgement:** A strong, production-oriented integration for 1Password CLI that emphasizes correct setup, reliable auth flows, and secure secret handling. Best suited for environments where tmux and the 1Password desktop app are available and properly configured. **What it does well:** - Strictly follows official 1Password CLI documentation for installation and setup, reducing platform-specific breakage. - Enforces use of a dedicated tmux session with a fresh socket for all `op` commands, mitigating TTY/authentication issues common in automated shells. - Verifies sign-in state (`op whoami`) before secret access and accommodates multi-account configurations. - Strong guardrails around secret safety: no secrets in logs or chat, and preference for `op run` / `op inject` over writing to disk. **Key risks / limitations:** - Hard dependency on tmux; if tmux is unavailable or misconfigured, the workflow cannot proceed and requires user intervention. - Assumes presence and correct configuration of the 1Password desktop app for integration and interactive authorization. - Relies on external 1Password documentation for some steps, so changes upstream could affect future compatibility. **Recommended scenarios:** - Securely managing secrets for CLI tools and scripts in an environment that already uses 1Password. - Setting up persistent, reliable 1Password CLI usage in CI-like or multi-command workflows where TTY/auth issues often occur. - Teams prioritizing strong secret hygiene (no plaintext secrets in logs or files) and needing multi-account 1Password support.

Comments (0)

Post a Comment

No comments yet. Be the first!