Per-app restriction on vaults : cannot prevent access to browser extensions

Community Member
edited June 5 in Business and Teams

1Password supports specifying which app can access shared vaults. However, after granting access only to "1Password for Windows":

it turns out that the vault can also be access from browser extensions:

I'm wondering if this is just an oversight, or if there are intrinsic reasons to prevent forbidding access to browser extensions? I guess the browser extension somehow connect to the local native app, but the app could still decide not to expose certain vaults to the browser.

