# 1Password

We use [1Password](https://1password.com/) to manage and share credentials securely across the team. It organises passwords into **vaults** - think of them as folders, one per client or purpose - so you only ever have access to what you need.

#### Roles

There are three roles in our 1Password setup:

* **Owner**: Jayne looks after all the billing and oversight.
* **Administrators** - the PCs and Sammy. They manage the overall account, create vaults, and control who has access to what.
* **Team Members** - everyone else. You'll have access to the vaults relevant to your work, and in some cases you may have vault-level admin permissions (for example, Dylan, Thushan and Vic have full access for the \<specific-client> vault).

#### What access looks like

When you're given access to a vault, you'll get full permissions - view, create, edit, and share credentials within that vault. The only things you won't be able to do are **export** or **print** vault contents, which is intentional. If you ever feel like you need to do either of those things, have a chat with a PC first.

#### Requesting access to a client vault

If you need access to a client vault (e.g. you've just been staffed on a new engagement), **reach out to the PC for that client** and they'll get you set up.
