A password manager is a secure vault for login credentials, shared between the people who need them without the actual passwords ever being typed into a text message, an email, or a sticky note. Instead of handing someone a password directly, you grant them access to an entry in the vault. They can use it to log in, but in many setups they never actually see the characters, and access can be revoked instantly the moment it is no longer needed.

This matters more for a business than for an individual, because a business almost always has more than one person who needs to touch its accounts: the owner, a contractor doing the technical work, maybe a staff member handling bookings. Every one of those handoffs is a moment where a password could end up somewhere it should not, in an old email thread, a shared document, or a phone that gets lost. A password manager removes that moment entirely.

Why it matters to you

Practices and businesses handling any kind of sensitive information, whether that is client health records or customer payment details, cannot afford for a login to end up sitting in plain text in an inbox. A password manager like 1Password lets a business owner share exactly the credentials a contractor needs, such as the domain registrar or a booking system, without exposing anything else and without a plain-text password existing anywhere that can be searched or leaked later.

It also solves the handoff problem directly. When the working relationship ends, or a staff member leaves, access is revoked in the vault rather than through a scramble of password resets across every affected service.

How I set it up

I recommend 1Password to clients who do not already have a password manager and help set it up as part of onboarding, alongside two-factor authentication on the accounts that matter most. Credentials the client and I both need day to day, things like a booking system login, the domain registrar, or a shared account, go into a vault the client owns. I get access to what I need to do the work. The client can see everything in the vault and revoke any piece of it at any time, without notice or penalty.

This is the same principle behind access, not ownership: I hold the access required to do the job, the business holds the vault itself, and the two are never confused.

What it looks like in practice

Instead of receiving a password by text or email, a new person gets an invite to a shared vault, or a specific item within it. They log in with 1Password’s own app, filling credentials automatically rather than typing or copying them. If access needs to end, the owner removes the entry, and it is gone, with nothing left behind in an old message thread for someone to find later.

Questions I get about this

Why not just text or email a password when it is needed?
Because that copy of the password sits in a text thread or an inbox forever, readable by anyone who later gets into that account, and there is no way to revoke it. A password manager shares access without ever exposing the actual password, and it can be revoked instantly.
What happens if I need to cut off access?
You remove the entry from the shared vault, or the whole vault, and access ends immediately. There is no separate step of asking someone to delete an email or forget a password, because they never had the plain password to begin with.
Does a password manager cost extra?
1Password has a modest monthly cost, usually a few dollars per person, which is genuinely worth it for a business handling client or customer information. It replaces the far riskier habit of texting or reusing passwords.

Want this set up properly for your business?

This is the kind of thing I build every week. Grab a time and we will talk through what fits.