For the complete documentation index, see llms.txt. This page is also available as Markdown.

1Password

Connect 1Password to Radiant Security to forward sign-in attempts, item usage, and audit events for AI triage.

1Password is a password manager and enterprise credential vault that protects against credential theft, account takeover, and shadow IT. Connecting 1Password forwards sign-in attempts, item usage events, and audit events to Radiant Security via the 1Password Events API. Radiant uses this telemetry to surface credential misuse, anomalous vault access, and risky sign-in patterns during AI triage.

Prerequisites

Issue an Events API token in 1Password

For vendor instructions, refer to 1Password's Events API documentation.

1

Open the Integrations page

Sign in to the 1Password web app as an Owner or Admin. In the left sidebar, click Integrations. In the Integrations list, select Other.

2

Add an integration and name the token

Click Add Integration. Enter an identifiable name for the integration (e.g., RadiantSecurity), then enter an identifiable name for the token (e.g., RadiantSecurityDataConnector).

3

Grant event permissions

Grant the token permission to access the following event types:

  • auditevents

  • itemUsages

  • sign-in attempts

4

Issue and save the token

Click Issue Token, then click Save in 1Password and choose a vault to store the token in. Copy the token value: you will paste it into Radiant in the next section.

Note the Base URL for your 1Password environment. You will need it in the next section.

1Password environment
Base URL

1Password.com (Business)

https://events.1password.com

1Password.com (Enterprise)

https://events.ent.1password.com

1Password.ca

https://events.1password.ca

1Password.eu

https://events.1password.eu

Add the data connector in Radiant Security

  1. Sign in to Radiant Security.

  2. From the navigation menu, select Settings > Data Connectors and click + Add Connector.

  3. Search for and select 1Password, then click Data Feeds.

  4. Under Select your data feeds, select 1Password and click Credentials.

  5. Under Credential Name, enter a descriptive name (e.g., 1Password API).

  6. In the Base URL field, enter the URL that corresponds to your 1Password environment.

  7. In the API Token field, paste the token you issued in 1Password.

  8. Click Add Connector to save the configuration.

Verify ingestion

After 1Password begins forwarding, confirm events are reaching Radiant.

  1. In Radiant, navigate to Log Management.

  2. Filter by rs_connectorType:"onepassword_api".

  3. Confirm recent events appear.

Allow several minutes for events to be parsed, indexed, and available for search.

Last updated

Was this helpful?