Hey r/1Password!
We are excited to announce the beta launch of the MSIX installer for 1Password for Windows. The MSIX installer combines the benefits of our existing EXE and MSI installers, meaning that you no longer need to compromise between features that are exclusive to the EXE or MSI. Like MSI installations, MSIX installs to a directory that requires admin privileges to modify, providing additional tamper-proofing measures. In addition to this, MSIX offers an improved ability to detect other common forms of tampering, notifying the user and giving them the option to repair or reset the install.
| EXE | MSI | MSIX | |
|---|---|---|---|
| Protected install* | ❌ | ✅ | ✅ |
| Improved tamper detection | ❌ | ❌ | ✅ |
| ARM64 support | ✅ | ❌ | ✅ |
| In-app updates | ✅ | ✅ | ✅ |
| Access to Beta and Nightly channels | ✅ | ✅ | ✅ |
*Protected install refers to installing in a directory requiring admin privileges to modify, providing additional tamper-proofing measures against threats such as local malware.
Accessing the Beta
We’d love for you to try out the MSIX beta and provide feedback about your experience.
To try out the beta, first make sure that you are running Windows 10 20H1 or later. Then, download the installer by clicking on this link and install 1Password.
Additional Notes
When will the MSIX be officially released? We are looking to officially launch MSIX in late-June of this year, both as a direct download from our website and via the Microsoft Store.
Do I need to uninstall 1Password before installing the MSIX version? It’s recommended but not required. Once the MSIX is installed, you’ll no longer be able to open other versions of 1Password and will be prompted to uninstall old versions, if opened.
Can I use the MSIX beta long-term? Yes! Over the course of the beta, you’ll be locked to the beta channel, but once the MSIX is officially released, you will be able to switch to Stable and Nightly channels upon updating.
Where can I learn more about MSIX? Check out this Microsoft article on MSIX to learn more.
Where can I ask questions and/or provide feedback about the MSIX installer? Feel free to ask your questions and/or provide feedback directly in this thread.
Looking to ensure 1Password app is always up to date on endpoints, once its deployed with Intune. Any idea is welcome
There are two different versions of the 1Password Windows installer, the MSI version and the EXE version. Both installers have different behaviors, with different consequences for Intune/Autopilot deployment.
The MSI installer:
Installs to Program Files and is available for all device users
Can be packaged - this also seems to be what is currently available in the MS Store.
Does not auto update. It must be manually updated.
Must be installed as system, will fail if installed as user. Works best if targeted to a device.
This is your only option if you want 1Password installed as a blocking app during self-provisioned Autopilot.
The EXE installer:
installs to %LocalAppData%\1Password
Must be Intune packaged as a Win32 App
Auto updates without the need for admin rights.
Must be installed as user. Must be targeted to a user.
This installer will fail during self-provisioned Autopilot and will block ESP if it is a blocking app, since there's no user. It will also fail if installed as system.
If you want to use this version (since auto updates are nice) you must assign to a user and have it install when they log in. This seems to work fine after self-provisioning Autopilot completes.
Install command: 1PasswordSetup-latest.exe --silent
Uninstall command: %LocalAppData%\1Password\app\8\1Password.exe --uninstall
Detection Rules:
Path: %LocalAppData%
File or folder exists: 1Password