# Password Manager

> >

- **Type:** Skill
- **Install:** `agentstack add skill-claude-world-claude-agent-password-manager`
- **Verified:** Yes — security-reviewed for prompt injection and unsafe behavior
- **Seller:** [claude-world](https://agentstack.voostack.com/s/claude-world)
- **Installs:** 0
- **Category:** [Agent Skills](https://agentstack.voostack.com/c/agent-skills)
- **Latest version:** 0.1.0
- **License:** MIT
- **Upstream author:** [claude-world](https://github.com/claude-world)
- **Source:** https://github.com/claude-world/claude-agent/tree/main/.claude/skills/password-manager

## Install

```sh
agentstack add skill-claude-world-claude-agent-password-manager
```

Requires the [AgentStack CLI](https://agentstack.voostack.com/docs/cli). Works with Claude Code, Cursor, and any MCP-compatible agent.

## About

# Password Manager (1Password)

Read secrets and inject environment variables from 1Password using the `op` CLI.

## Prerequisites

```bash
brew install 1password-cli
```

Sign in:
```bash
op signin
```

Or for biometric unlock (recommended):
1. Open 1Password app → Settings → Developer → enable "Integrate with 1Password CLI"
2. Then `op` commands will use Touch ID automatically

Verify:
```bash
op whoami
```

## Commands

| Command | Description |
|---------|-------------|
| `op whoami` | Show current signed-in account |
| `op vault list` | List all vaults |
| `op item list` | List all items |
| `op item list --vault ""` | List items in a vault |
| `op item get ""` | Get full item details |
| `op item get "" --fields password` | Get just the password field |
| `op read "op:////"` | Read a specific field by URI |
| `op run --env-file=.env.1p -- ` | Inject secrets as env vars and run command |
| `op inject -i .env.tpl -o .env` | Render a secrets template to a file |

## Usage Examples

**Get an API key:**
```bash
op read "op://Personal/OpenAI/api_key"
```

**Get a database password:**
```bash
op item get "Production DB" --fields password
```

**Inject secrets and run a script:**
```bash
# .env.1p file contains: API_KEY=op://Work/MyService/api_key
op run --env-file=.env.1p -- python3 script.py
```

**List all items in Work vault:**
```bash
op item list --vault "Work" --format json | jq '.[].title'
```

## Rules

- Always check if CLI is installed and signed in: `op whoami`
- If not installed, show `brew install 1password-cli` and stop
- If not signed in, show `op signin` and stop
- NEVER print secret values in assistant responses — only confirm "retrieved" or use them directly in commands
- NEVER write secrets to files that might be committed (e.g., `.env` in a git repo) without warning the user
- NEVER log, store, or repeat credential values in memory or workspace files
- Use `op read` URI format for precise field access; use `op item get` when unsure of field names
- For injecting into commands, prefer `op run` over reading the secret and passing it as an argument
- If the user asks "what's my password for X", retrieve it and only show the value in the terminal — do not include it in any saved file

## Source & license

This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.

- **Author:** [claude-world](https://github.com/claude-world)
- **Source:** [claude-world/claude-agent](https://github.com/claude-world/claude-agent)
- **License:** MIT

Install and usage instructions live in the source repository linked above.

## Pricing

- **Free** — Free

## Security capabilities

Automated source analysis of v0.1.0 — what this tool can access:

- **Network access:** no
- **Filesystem access:** no
- **Shell / process execution:** no
- **Environment & secrets:** yes
- **Dynamic code execution:** no

*"Yes" means the capability is present in the source — more access means more to trust, not that it is unsafe.*


## Versions

- **0.1.0** — security scan: passed — Imported from the upstream source.

## Links

- Listing page: https://agentstack.voostack.com/l/skill-claude-world-claude-agent-password-manager
- Seller: https://agentstack.voostack.com/s/claude-world
- Browse the marketplace: https://agentstack.voostack.com/browse

---
Listed on AgentStack — the marketplace for AI agent skills and MCP servers. Every listing is security-reviewed. Creators keep 70%.
