> ## Documentation Index
> Fetch the complete documentation index at: https://docs.stackone.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Connect 1Password with Connect Server Access Token – StackOne Hub

> Link a 1Password account in the StackOne Hub using Connect Server Access Token. End-user guide to authorize the integration and start using 1Password actions.

<section data-guide-section data-guide-scopes="">
  <h2>Create a Connect server environment</h2>

  <p>StackOne connects to 1Password through a self-hosted 1Password Connect server. First, create a<br />Secrets Automation workflow in your 1Password account to get the Connect server credentials.</p>

  <Steps>
    <Step title="Open the Developer section">
      <div data-guide-step data-guide-scopes="" data-guide-display-scopes-list="">
        <p>Sign in to your 1Password account on the <a href="https://start.1password.com/signin" target="_blank" rel="noopener noreferrer">1Password sign-in page</a><br />as an owner or administrator, then select <strong>Developer</strong> in the sidebar.</p>

        <img src="https://mintcdn.com/stackone-60/taSDfrd-ek8zJVcR/connectors/onepassword/images/custom-config-developer-sidebar.png?fit=max&auto=format&n=taSDfrd-ek8zJVcR&q=85&s=793456a46b3c926c1ec2a4f42d95a681" alt="1Password dashboard with the Developer item highlighted in the sidebar" width="1280" height="800" data-path="connectors/onepassword/images/custom-config-developer-sidebar.png" />
      </div>
    </Step>

    <Step title="Open Infrastructure Secrets Management">
      <div data-guide-step data-guide-scopes="" data-guide-display-scopes-list="">
        <p>On the <strong>Developer</strong> page, open the <strong>Directory</strong> tab. In the<br /><strong>Infrastructure Secrets Management</strong> section, select <strong>Other</strong>.</p>

        <img src="https://mintcdn.com/stackone-60/taSDfrd-ek8zJVcR/connectors/onepassword/images/custom-config-infrastructure-secrets-other.png?fit=max&auto=format&n=taSDfrd-ek8zJVcR&q=85&s=44cfd2033a6c5448bcc50742405b23df" alt="Developer Directory tab with the Other tile highlighted under Infrastructure Secrets Management" width="1280" height="800" data-path="connectors/onepassword/images/custom-config-infrastructure-secrets-other.png" />
      </div>
    </Step>

    <Step title="Choose Create a Connect server">
      <div data-guide-step data-guide-scopes="" data-guide-display-scopes-list="">
        <p>On the <strong>Set up your integration</strong> screen, use the <strong>Connect</strong> option and click<br /><strong>Create a Connect server</strong>.</p>

        <img src="https://mintcdn.com/stackone-60/taSDfrd-ek8zJVcR/connectors/onepassword/images/custom-config-create-connect-server.png?fit=max&auto=format&n=taSDfrd-ek8zJVcR&q=85&s=1d6ccd55c6e6e26c9090425a28ed08bc" alt="Set up your integration screen with the Create a Connect server link highlighted" width="1280" height="800" data-path="connectors/onepassword/images/custom-config-create-connect-server.png" />
      </div>
    </Step>

    <Step title="Set up an environment">
      <div data-guide-step data-guide-scopes="" data-guide-display-scopes-list="">
        <p>On the <strong>Set up a Secrets Automation workflow</strong> screen, enter an <strong>Environment Name</strong><br />(for example, `Production`). Under <strong>Vaults</strong>, click <strong>Choose Vaults</strong>, tick the vaults<br />this Connect server should access in the <strong>Manage Vaults</strong> dialog, and click<br /><strong>Update Vaults</strong>. Then click <strong>Add Environment</strong>.</p>

        <ul>
          <li>The environment will have access to these vaults — StackOne can only read items from the vaults you select here.</li>
        </ul>

        <img src="https://mintcdn.com/stackone-60/taSDfrd-ek8zJVcR/connectors/onepassword/images/custom-config-add-environment.png?fit=max&auto=format&n=taSDfrd-ek8zJVcR&q=85&s=2598e22ef010c7bc939f03ec91dbf054" alt="Set up a Secrets Automation workflow screen with the Add Environment button highlighted" width="1280" height="800" data-path="connectors/onepassword/images/custom-config-add-environment.png" />
      </div>
    </Step>
  </Steps>
</section>

<section data-guide-section data-guide-scopes="">
  <h2>Issue an access token</h2>

  <p>Issue the access token StackOne will use to authenticate with your Connect server.</p>

  <Steps>
    <Step title="Set up your first access token">
      <div data-guide-step data-guide-scopes="" data-guide-display-scopes-list="">
        <p>On the <strong>Set up your first access token</strong> screen, enter a <strong>Token Name</strong> (for example,<br />`StackOne`). Leave <strong>Expires After</strong> set to <strong>Never</strong> to keep the token valid until it is<br />revoked, or pick a validity period. Under <strong>Vaults</strong>, click <strong>Choose Vaults</strong> and select<br />the vaults the token can access. Then click <strong>Issue Token</strong>.</p>

        <ul>
          <li>The token will have access to these vaults. You’ll need to issue a new token if you want to change these later.</li>
        </ul>

        <img src="https://mintcdn.com/stackone-60/taSDfrd-ek8zJVcR/connectors/onepassword/images/custom-config-issue-token.png?fit=max&auto=format&n=taSDfrd-ek8zJVcR&q=85&s=e68c9a82607ac93cfa19d492f200b3db" alt="Set up your first access token screen with the Issue Token button highlighted" width="1280" height="800" data-path="connectors/onepassword/images/custom-config-issue-token.png" />
      </div>
    </Step>

    <Step title="Copy the Access Token">
      <div data-guide-step data-guide-scopes="" data-guide-display-scopes-list="">
        <p>On the <strong>Deploy a Connect server</strong> screen, under <strong>Get your credentials</strong>, download the<br /><strong>Credentials File</strong> (`1password-credentials.json`) — you’ll need it to deploy the Connect<br />server — and copy the <strong>Access Token</strong> value. Paste it into the <strong>Access Token</strong> field in<br />StackOne Hub.</p>

        <ul>
          <li>The Access Token is only displayed on this screen and cannot be retrieved later — copy it now, or use <strong>Save in 1Password</strong> to store it securely.</li>
        </ul>

        <img src="https://mintcdn.com/stackone-60/taSDfrd-ek8zJVcR/connectors/onepassword/images/custom-config-copy-access-token.png?fit=max&auto=format&n=taSDfrd-ek8zJVcR&q=85&s=4ad6aec5f96897d0229707a833ae7749" alt="Get your credentials screen with the Access Token copy button highlighted and the token value redacted" width="1280" height="800" data-path="connectors/onepassword/images/custom-config-copy-access-token.png" />
      </div>
    </Step>
  </Steps>
</section>

<section data-guide-section data-guide-scopes="">
  <h2>Deploy the Connect server and connect StackOne</h2>

  <p>Deploy the Connect server in your infrastructure, then enter its details in StackOne Hub.</p>

  <Steps>
    <Step title="Deploy your Connect server">
      <div data-guide-step data-guide-scopes="" data-guide-display-scopes-list="">
        <p>Deploy a 1Password Connect server inside your own infrastructure using the downloaded<br />`1password-credentials.json` file — follow the<br /><a href="https://developer.1password.com/docs/connect/get-started/" target="_blank" rel="noopener noreferrer">1Password Connect server deployment guide</a>.<br />The Connect server must be reachable from StackOne over HTTPS.</p>
      </div>
    </Step>

    <Step title="Fill in the connection fields">
      <div data-guide-step data-guide-scopes="" data-guide-display-scopes-list="">
        <p>In StackOne Hub, fill in the connection fields:</p>

        <ul>
          <li><strong>Connect Server URL</strong> — the base URL where your deployed 1Password Connect server is reachable.</li>
          <li>Format: `https://{your-connect-server-host}`</li>
          <li>Example: `https://connect.example.com`</li>
          <li><strong>Access Token</strong> — the JWT bearer token you copied in the previous step; it authenticates StackOne with the Connect API.</li>
        </ul>
      </div>
    </Step>
  </Steps>
</section>

<section data-guide-section data-guide-scopes="">
  <h2>Optional — SCIM bridge for IAM actions</h2>

  <p>Only needed for the unified IAM actions (users, groups, and roles); otherwise skip this section.</p>

  <Steps>
    <Step title="Provide SCIM bridge credentials (optional)">
      <div data-guide-step data-guide-scopes="" data-guide-display-scopes-list="">
        <p>Fill in these two fields only if you want to use the unified IAM actions (users, groups,<br />and roles). They require a 1Password Business account with a deployed<br /><a href="https://support.1password.com/scim/" target="_blank" rel="noopener noreferrer">1Password SCIM Bridge</a> — set up automated user<br />provisioning from the <strong>Integrations</strong> page of your 1Password account. If you don’t use<br />IAM actions, leave both fields empty.</p>

        <ul>
          <li><strong>SCIM Bridge URL</strong> — the base URL of your deployed 1Password SCIM bridge; paste it into the <strong>SCIM Bridge URL</strong> field in StackOne Hub.</li>
          <li>Format: `https://{your-scim-bridge-host}`</li>
          <li>Example: `https://op-scim.example.com`</li>
          <li><strong>SCIM Bridge Bearer Token</strong> — the bearer token generated when you set up automated user provisioning. If you lose it, you can regenerate it by following the <a href="https://support.1password.com/scim/" target="_blank" rel="noopener noreferrer">1Password SCIM bridge setup guide</a>. Paste it into the <strong>SCIM Bridge Bearer Token</strong> field in StackOne Hub.</li>
        </ul>
      </div>
    </Step>
  </Steps>
</section>

<div data-whitelabel-hide>
  <h2>Linking the Account from the Hub</h2>

  <Steps>
    <Step title="Navigate to the Hub">
      Use one of the three <a href="/guides/accounts-section#linking-accounts">Linking Account Methods</a> to access the Hub.
    </Step>

    <Step title="Fill out the fields">
      Fill out the following fields using details from your provider:

      <ul>
        <li><strong>Connect Server URL</strong></li>
        <li><strong>Access Token</strong></li>
        <li><strong>SCIM Bridge URL</strong> (Optional)</li>
        <li><strong>SCIM Bridge Bearer Token</strong> (Optional)</li>
      </ul>
    </Step>

    <Step title="Connect">
      <ul>
        <li>Click <strong>Connect</strong></li>
        <li>If applicable, the provider will redirect you to a sign-in or authorization page. Complete the provider's authorization flow.</li>
        <li>Once authorization is successful, you will see a confirmation popup</li>
      </ul>
    </Step>
  </Steps>

  <p>If the account linking is successful, you will see the newly linked account in your <a href="/guides/accounts-section">Accounts</a> page.</p>
</div>
