‹ 首页

1password

@qianleigood · 收录于 昨天 · 上游提交 1 个月前

Set up and use 1Password CLI (op). Use when installing the CLI, enabling desktop app integration, signing in (single or multi-account), or reading/injecting/running secrets via op.

适合你,如果常用命令行管理密码和密钥

/ 通过 npx 安装 校验哈希
npx oh-my-skill add qianleigood/crawclaw/1password
/ 通过 bash 安装
curl -fsSL https://oh-my-skill.com/install.sh | bash -s -- qianleigood/crawclaw/1password
/ 已经装过?验证本机副本,不用重装
npx oh-my-skill verify qianleigood/crawclaw/1password
安装目标可用 --agent / --scope 或 --to 明确指定;省略时只会在唯一已存在的 agent 目录上自动选择,零命中或多命中会停止并提示。content_hash 缺失或不一致均拒装。
30GitHub stars
~594最小装载
~988含声明引用
~988文本包总量
索引托管

怎么用

商店整理自技能原文 · 版本 f27e175 · 表述以原文为准
它做什么

Claude 会引导你安装 1Password CLI、启用桌面应用集成、登录账户,并通过 op 命令在 tmux 会话中安全地读取或注入密钥,避免直接暴露。

什么时候触发

当你需要安装 1Password CLI、启用桌面应用集成、登录(单个或多个账户),或通过 op 读取/注入/运行密钥时。

装好后可以这样说
Claude 会创建 tmux 会话并引导完成登录。
Claude 会用 op run 注入密钥执行。
技能原文 SKILL.md作者撰写 · MIT · f27e175

1Password CLI

Follow the official CLI get-started steps. Don't guess install commands.

References
  • references/get-started.md (install + app integration + sign-in flow)
  • references/cli-examples.md (real op examples)
Workflow
  1. Check OS + shell.
  2. Verify CLI present: op --version.
  3. Confirm desktop app integration is enabled (per get-started) and the app is unlocked.
  4. REQUIRED: create a fresh tmux session for all op commands (no direct op calls outside tmux).
  5. Sign in / authorize inside tmux: op signin (expect app prompt).
  6. Verify access inside tmux: op whoami (must succeed before any secret read).
  7. If multiple accounts: use --account or OP_ACCOUNT.
REQUIRED tmux session (T-Max)

The shell tool uses a fresh TTY per command. To avoid re-prompts and failures, always run op inside a dedicated tmux session with a fresh socket/session name.

Example (see tmux skill for socket conventions, do not reuse old session names):

SOCKET_DIR="${CRAWCLAW_TMUX_SOCKET_DIR:-${TMPDIR:-/tmp}/crawclaw-tmux-sockets}"
mkdir -p "$SOCKET_DIR"
SOCKET="$SOCKET_DIR/crawclaw-op.sock"
SESSION="op-auth-$(date +%Y%m%d-%H%M%S)"

tmux -S "$SOCKET" new -d -s "$SESSION" -n shell
tmux -S "$SOCKET" send-keys -t "$SESSION":0.0 -- "op signin --account my.1password.com" Enter
tmux -S "$SOCKET" send-keys -t "$SESSION":0.0 -- "op whoami" Enter
tmux -S "$SOCKET" send-keys -t "$SESSION":0.0 -- "op vault list" Enter
tmux -S "$SOCKET" capture-pane -p -J -t "$SESSION":0.0 -S -200
tmux -S "$SOCKET" kill-session -t "$SESSION"
Guardrails
  • Never paste secrets into logs, chat, or code.
  • Prefer op run / op inject over writing secrets to disk.
  • If sign-in without app integration is needed, use op account add.
  • If a command returns "account is not signed in", re-run op signin inside tmux and authorize in the app.
  • Do not run op outside tmux; stop and ask if tmux is unavailable.
按 MIT 许可原样转载,未经改动 · 在 GitHub 查看 →

评论

登录即可评论;带「已验证安装」的,是发布者名下有本店的安装或持有记录。