AI agents can automate your most essential tasks, giving you an edge in the workplace or saving you time to do more of what really matters. But getting the maximum benefits often requires access to your private accounts, which is fraught with dangers.
To give you better control over your AI agent, Proton Pass now offers credential sharing via AI access tokens. Now you can easily give AI agents the credentials they need and nothing else, while monitoring their activity and staying organized. Every time an agent needs one of your credentials, it will have to give a reason, so you always know what your agent is doing and why.
Create access tokens from your Proton Pass settings and start deploying advanced AI automations in minutes. AI access tokens are now included at no extra cost on Pass Plus (included in Proton Unlimited), Pass Family, Pass Professional, and Proton Workspace — no expensive add-on required. You can now get the full benefits of agentic AI with reduced security risks while staying in complete control.
Learn how to use access tokens
Use your AI agent with confidence
Individuals and companies are deploying AI agents at breakneck speed. But the rollout has so far been uneven, inefficient, and unsafe. Most companies that have AI usage policies are violating them constantly. A survey from McKinsey(new window) found that while 62% of companies are experimenting with AI agents, only 23% are actually scaling AI agent usage. Why? In part because until now, it’s been difficult to give AI agents safe access to account credentials.
Most apps are still built for people, not AI agents that operate through APIs, Model Context Protocol (MCP) calls, and command-line tools. As a result, when an AI agent needs a credential, you might provide it in plaintext on an ad hoc basis or using complicated methods requiring specialized knowledge. Many people understandably just skip the AI agent altogether rather than take the risk, missing out on exponential efficiency gains.
Proton Pass for AI solves this problem by allowing you to share access in a convenient, auditable, and structured way — with a single prompt.
With Proton Pass, you can:
- Segment and control access: Organize unique credentials for your agent inside dedicated vaults, sharing only what you need and nothing else.
- Monitor credential usage activity: Every time your AI agent needs a credential, it leaves an audit log including a reason for access, so you can review and monitor every login.
- Restrict and revoke access: Set an expiration for each access token and shut off access at any time.
Now it’s easier to stay organized when sharing multiple credentials with your agent, while keeping visibility and control over how they’re used.
Enable dozens of AI use cases, securely
AI access tokens are easy to set up. In your Proton Pass settings, create a new access token and copy and paste the setup instructions to your AI agent. Then simply ask your agent to perform actions that require access to the items you’ve shared with it.
Within minutes, you’ll be able to have your agent perform any number of time-saving tasks autonomously: Ask your agent to check your bank’s transaction history and categorize spending for the month, pull data from your fitness tracker and create a weekly wellness report, or ask your CRM to summarize the last three interactions with a specific client before a call with them.
Even if you’re not using an AI agent, you can also use access tokens in your own scripts and automatons, using the list of commands(new window) that Pass CLI accepts.
How Proton Pass protects your credentials
Proton Pass uses end-to-end encryption to secure your usernames, passwords, API keys, bank cards, and other items. Whatever you store in Proton Pass is only accessible to you, unless you choose to securely share it. AI access tokens are our newest secure sharing option to bring password management into the age of agentic AI.
Read-only vault access
Proton Pass vaults are encrypted digital containers for your items, such as logins, aliases, and credit card details. You can assign items to different vaults and then create access tokens specific to those vaults. AI agents only access the items they need and nothing else, and they won’t be able to create or edit items.

For extra security, you can also set an expiration for each token, from one hour to one year, after which it can no longer be used.
Every access is logged and explained
Every time an AI agent uses an access token, this is logged and a reason for the access must be provided. These logs are easy to access, so you always know exactly what your AI agents are doing and why.

Learn how to use access tokens
Your agent does the work – you stay in control
Agentic AI can greatly amplify your personal productivity or improve your team’s workflows, but it’s vital that we harness its full power securely. Proton Pass lets you do just that, allowing you to embrace the efficiency of autonomous agents without surrendering control.
Whether you’re managing Jira tickets, analyzing energy usage, or researching papers, you can let your AI do the heavy lifting with greater peace of mind. Thanks to granular permissions, strict time limits, and full audit logs that explain every action, your sensitive data remains secure while your agent gets to work.






