Connect
Optimize
Secure
Announcing StackOne Defender: leading open-source prompt injection guard for your agent • Read More →
Production-ready 1Password MCP server with extensible actions — plus built-in authentication, security, and optimized execution.
Coverage
Create, read, update, and delete across 1Password — and extend your agent's capabilities with custom actions.
Authentication
Per-user OAuth in one call. Your 1Password MCP server gets session-scoped tokens with zero credentials stored on your infra.
Agent Auth →Security
Every 1Password tool response scanned for prompt injection in milliseconds — 88.7% accuracy, all running on CPU.
Prompt Injection Defense →Performance
Free up to 96% of your agent's context window to enhance reasoning and reduce cost, on every 1Password call.
Tools Discovery →A 1Password MCP server lets AI agents read and write 1Password data through the Model Context Protocol — Anthropic's open standard for connecting LLMs to external tools. StackOne's 1Password MCP server ships with pre-built actions, fully extensible via the Connector Builder — plus managed authentication, prompt injection defense, and optimized agent context. Connect it from MCP clients like Claude Desktop, Cursor, and VS Code, or from agent frameworks like OpenAI Agents SDK, LangChain, and Vercel AI SDK.
Every action from 1Password's API, ready for your agent. Create, read, update, and delete — scoped to exactly what you need.
Retrieve API request activity logs from the Connect server
Retrieve all files attached to an item
Retrieve metadata and optionally content of a specific file
Download the binary content of a file
Check if the Connect server is alive and responsive
Retrieve Connect server health status and dependencies
Retrieve Prometheus metrics from the Connect server
Create a new item in a vault
Retrieve all items within a specific vault
Retrieve detailed information about a specific item
Delete an item from a vault
Replace an existing item with new data
Retrieve all vaults accessible by the Connect server
Retrieve detailed information about a specific vault
One endpoint. Any framework. Your agent is talking to 1Password in under 10 lines of code.
MCP Clients
Agent Frameworks
{
"mcpServers": {
"stackone": {
"command": "npx",
"args": [
"-y",
"mcp-remote@latest",
"https://api.stackone.com/mcp?x-account-id=<account_id>",
"--header",
"Authorization: Basic <YOUR_BASE64_TOKEN>"
]
}
}
}137+ actions
109+ actions
69+ actions
67+ actions
57+ actions
53+ actions
37+ actions
Anthropic's code_execution processes data already in context. Custom MCP code mode keeps raw tool responses in a sandbox. 14K tokens vs 500.
11 min
Benchmarking BM25, TF-IDF, and hybrid search for MCP tool discovery across 916 tools. The 80/20 TF-IDF/BM25 hybrid hits 21% Top-1 accuracy in under 1ms.
10 min
MCP tools that read emails, CRM records, and tickets are indirect prompt injection vectors. Here's how we built a two-tier defense that scans tool results in ~11ms.
12 min
origin_owner_id.All the tools you need to build and scale AI agent integrations, with best-in-class connectivity, execution, and security.