Skip to main content

What this integration contributes

1Password can contribute normalized account, authentication, administrative, and credential-vault activity. Reviewed examples include:
  • mfa.factor.activated — activates additional MFA factors
  • credential.vault.created — adds entries to the credential vault
  • credential.downloaded — credential exported
See how integration data becomes signals.

What Living Security needs

Select access to sign-in attempts, item usages, and audit events when issuing the token. A 1Password Business owner or administrator must create the integration.

Setup

1

Create an Events Reporting integration in 1Password

In the 1Password web app, open Integrations, choose Events Reporting, and add an integration for Other. Give it a recognizable name such as Living Security.
2

Issue a bearer token

Select sign-in attempts, item usages, and audit events. Set an expiration that matches your credential-rotation policy, issue the token, and save it securely. 1Password displays the token once.

Verify and troubleshoot

After connecting, verify that the connection test succeeds and that the first synchronization begins. A successful connection can initially report zero records when the selected event types have no recent activity.
The token is invalid, expired, or revoked. Issue a new token from the Events Reporting integration and reconnect.
Edit or replace the token and confirm that sign-in attempts, item usages, and audit events are selected.
Use the Events API host for your account without https:// or a trailing slash. The host can differ for regional or enterprise environments.
For vendor-side details, see 1Password’s Events API setup guide.