The History of 1Password

From a small Mac utility to a password manager trusted on every continent

This website is an independent fan project dedicated to the 1Password password manager and is not an official 1Password resource.

Before 1Password: A World of Unsafe Habits

To appreciate why 1Password became what it is today, you have to picture password management as it existed in the early 2000s. Broadband internet had turned the average household into a small hub of online accounts — email, auctions, forums, early banking portals — and almost everyone responded to that explosion the same way: with two or three memorized passwords rotated everywhere, or a notebook beside the keyboard. Dedicated password managers were rare, awkward, and mostly aimed at enterprises with deep pockets.

The human cost of those habits was starting to become visible. Security researchers published studies showing how quickly a cracked password from one site could be replayed against another, and the first massive credential breaches were just around the corner. People needed a tool that was both effortless for a non-technical person and trustworthy enough to hold their most sensitive data. The security industry kept telling everyone to use long, unique passwords everywhere, yet almost nothing on the market made that advice actually livable.

Into that gap stepped two developers from Canada who were solving the problem first for themselves. Their early work would grow into the 1Password that millions of families and companies now open every single day through their 1password account login.

The Early Days: A Mac Utility Born From Necessity

1Password traces its beginnings to 2005, when developers Dave Teare and Roustem Karimov, working within a small Mac software collective, started building a tool to manage their own growing collections of logins. The first public version shipped in 2006 for Mac OS X, at a time when the platform had virtually no serious password managers at all. That early Mac focus shaped the product's personality: careful interface design, keyboard-driven convenience, and a refusal to treat security as an excuse for ugliness.

In its first years, 1Password worked as a local application with a keychain-style encrypted file, paired with a browser extension for autofill. Syncing between machines initially relied on whatever users already had — Dropbox, folder syncing, later Wi-Fi sync — which sounds primitive today but was remarkably forward-thinking for the era. The company behind the product, later formalized as AgileBits, stayed deliberately independent and funded entirely by license sales, which freed the team to concentrate on the product rather than investors.

Word spread through Mac communities and tech blogs, and by 2010 1Password had become a fixture of Apple-enthusiast culture. Windows support arrived in 2011, a significant engineering effort that brought the manager to a far wider audience and proved the encrypted format could travel cleanly across operating systems.

The Subscription Era and the Two-Key Revolution

The most important architectural decision in 1Password's history came with the shift to individual accounts. Early versions protected the vault with the master password alone, a design shared by nearly every competitor. The relaunched service, built around individual accounts, introduced the now-famous two-key system: a 128-bit Secret Key generated on the user's device, combined with the master password before any encryption happens. This means a database stolen from 1Password's servers cannot be attacked offline with guessable passwords, because the attacker is missing half of the key material entirely.

Alongside the new architecture came modern sync through 1Password's own infrastructure, a redesigned family of apps, and the transition from one-time licenses to subscriptions in 2018. Some long-time customers grumbled about the pricing change, but the model paid for what users actually wanted: continuous updates, cloud sync with no device limits, and a support team legendary for answering quickly. The Families plan, launched the same year, let up to five people share selected logins while keeping private vaults invisible to one another — a design that quickly made 1Password the default recommendation for households.

During this era the company also began a tradition that still distinguishes it today: regular third-party security audits. External firms examined the encryption implementations, the apps, and eventually even internal practices, and 1Password published the results. For a product whose entire value is trust, that transparency proved decisive with security-conscious buyers.

Growth Into a Platform for Teams and Businesses

Through the late 2010s, 1Password steadily expanded beyond individuals. Teams and business plans added shared vaults with granular permissions, administrative policies, and integrations with identity providers using SSO. The launch of the Secrets Automation product in 2021 pushed further into infrastructure territory, letting engineering teams distribute API keys and service credentials to servers and pipelines without ever pasting secrets into config files.

Consumer-facing features kept pace. Watchtower arrived as a proactive security dashboard, checking vault contents against known data breaches, flagging weak and reused passwords, and warning when important sites supported two-factor authentication that had not been enabled. Travel Mode introduced a genuinely novel capability: removing designated vaults from devices entirely before international trips and restoring them with a click afterward. And as passkeys emerged as the successor to passwords, 1Password moved early to store and autofill them natively, positioning the vault as a home for the passwordless future rather than a relic of the password era.

Investment followed growth. In 2021 the company raised what was then one of the largest funding rounds in Canadian software history, valuing it in the billions and giving it room to expand enterprise features while keeping the consumer product polished. Through all of this scaling, the founding principle held: the company cannot read customer data, and it says so in plain language rather than legal footnotes.

Modern 1Password: What the Product Looks Like Today

Today 1Password is far more than a password list. A single vault holds logins, payment cards, identities, secure documents, software licenses, SSH keys, and even the API credentials that power modern development workflows. The password generator produces random strings or human-friendly passphrases. The universal autofill experience works across browsers, desktop apps, and mobile keyboards, and biometric unlock means the master password is needed only occasionally rather than dozens of times a day.

The companion ecosystem has matured as well. A command-line tool and SSH agent bring vault secrets directly into developer terminals, while a browser extension handles everything from one-time codes to passkeys. Recovery and delegation are handled thoughtfully too: family organizers can recover a locked-out member's account, and trusted emergency contacts can be granted time-delayed access to a loved one's vault if something happens to them.

For anyone evaluating the product today, the experience is streamlined to the point of invisibility: create an account, save the Emergency Kit, import old passwords, and let the app take over. The 1password login itself has become almost invisible — a fingerprint, a quick master password, and the entire vault is ready. That quiet reliability is exactly what the founders set out to build nearly two decades ago.

Looking Ahead

The history of 1Password is a story of patient, opinionated engineering in an industry that usually rewards speed over care. From a two-person Mac project in 2005 to a platform protecting individuals, families, schools, and Fortune 500 companies, the product has grown without ever abandoning its core promise: only you hold the keys. As authentication continues its shift toward passkeys and digital identity wallets, 1Password is evolving right along with it, and the vault that once stored a handful of forum logins now stands ready to guard whatever comes next. One thing is easy to predict — the need for a place to keep our digital keys safe will only grow, and 1Password intends to remain the vault people trust with them.