1password

1password MCP integration

Lists vaults and items a service account can reach, reads an item's fields, files new credentials, and permanently removes retired ones.

6actions available

Three actions you can hand over today

Every action runs live through MCP. Nothing to build, nothing to maintain.

  • Get item

    Lyro retrieves stored credentials, API keys, or secrets from your vault without copying. Customers access passwords they need directly within your support conversation.

  • Create item

    Lyro securely stores a new password, API key, or secret in your team vault. The credential becomes immediately available to authorized members with full audit trail.

  • Update item

    Lyro modifies an existing password or secret while keeping previous versions in history. Your team adopts the refreshed credential with no service interruption.

See all 6 actions

How businesses use 1password + Lyro

Each card is one request a support team gets, and the 1password actions Lyro runs to close it.

  • Find the item without anyone opening a vault by hand

    Lyro lists the vaults the 1Password service account can reach and the items inside a chosen vault, so an internal request for a specific record is narrowed down before anything is retrieved.

    List VaultsList Items
  • File a new credential where it belongs

    When a new key, login, or secure note is issued, Lyro creates the item in the correct vault and updates its title or field values later, so the record does not sit in a chat message or a spreadsheet.

    Create ItemUpdate Item
  • Retire a credential that should no longer exist

    Lyro reads the item to confirm which record is which, then permanently deletes the one that has been rotated out, keeping the vault free of superseded keys.

    Get ItemDelete Item

How it works

Get started in 3 steps

Connect once, then just ask. There is no workflow builder to learn and nothing to maintain — Lyro reads the 1password actions it has and picks the ones a request needs.

  1. 01

    Connect 1password

    Authorize the 1password account your team already uses — one consent screen, no API keys, no mapping tables. Lyro can only do what you granted that account, and you can disconnect it at any time.

  2. 02

    Tell your agent what you need

    Describe the job the way you would hand it to a teammate. Lyro maps it to the 1password actions that close it and chains as many as the request needs.

  3. 03

    Watch it work

    The agent runs the actions inside the conversation the customer is already in, so nobody copies data between tabs and your team can take over at any point.

    Get started free
1password · Lyro

Everything else about 1password

Setup, permissions, and the limits of what Lyro can do inside 1password.

  • Only the ones granted to the 1Password service account you connect. List Vaults returns exactly that set, so scoping access is a 1Password permissions decision rather than something configured on our side.

Every action available in 1password

All 6 actions your agent can call on 1password, straight from the live MCP connection.

  • Create item

    Creates a new item in a 1Password vault.

  • Delete item

    Permanently deletes an item from a 1Password vault.

  • Get item

    Retrieves a specific item from a vault, including all fields and secrets.

  • List items

    Lists all items in a given vault.

  • List vaults

    Lists all vaults the service account has access to.

  • Update item

    Updates an existing item's title or field values.

Ready to connect 1password?

Authorize the account and your agent has all 6 actions from the first conversation.

Support agent working at a laptop next to the Lyro mascot