Home › Converters › LastPass to Enpass
LastPass to Enpass converter
LastPass and Enpass both use CSV, but LastPass writes 8 columns; Enpass expects 6 in a different order — so Enpass rejects a raw LastPass export or silently files everything into the wrong fields. Drop your export below and get back a file Enpass accepts.
Convert your LastPass export
The conversion runs entirely in this tab using JavaScript. Your file is never sent to a server — you can confirm it by opening your browser's Network tab, or by turning off Wi-Fi before you drop the file in. Prefer not to do this in a browser tab at all? Download the converter and run it from your own disk.
What's actually different between the two formats
Only 4 of 8 column names match (url, username, password), and they're in a different order — enough for Enpass to accept the file and then put your passwords in the wrong fields.
| LastPass column | Enpass column | What happens |
|---|---|---|
name | Title | Renamed and repositioned |
username | Username | Renamed and repositioned |
password | Password | Renamed and repositioned |
url | URL | Renamed and repositioned |
totp | TOTP | Renamed and repositioned |
extra | Notes | Renamed and repositioned |
grouping | — none — | Enpass has no folder field. Written into notes instead of dropped. |
fav | — none — | Enpass has no favorite field. Written into notes instead of dropped. |
What carries over
| Field | LastPass | Enpass | Result |
|---|---|---|---|
| Item name / title | Yes | Yes | Carried over |
| Username and password | Yes | Yes | Carried over |
| Website URL | Yes | Yes | Carried over |
| Notes | Yes | Yes | Carried over |
| Folders / groups | Yes | Yes | Carried over |
| Two-factor (TOTP) secrets | Yes | Yes | Carried over |
| Favorites | Yes | No | Dropped — re-star your important entries after importing. |
| Custom fields | Yes | No | Flattened into notes as name: value pairs. |
| Multiple URLs per entry | No | No | Not in the source file |
| File attachments | Yes | No | No CSV export includes attachments. Download them out of LastPass separately before you close the account — this is the one thing people lose permanently. |
Step 1 — Export from LastPass
- Sign in to your LastPass vault in the browser extension or at lastpass.com.
- Open Advanced Options → Export.
- Re-enter your master password and complete the email confirmation if prompted.
- LastPass either downloads a CSV or prints the data to a browser page — if it prints to the page, copy all of it into a plain text file and save it as .csv.
Official instructions: LastPass export documentation
Watch out for
- Secure notes come out in the same CSV as logins, with the note body in the "extra" column and url set to http://sn. Converters that ignore this turn every note into a broken login.
- LastPass sometimes renders the export as an HTML page instead of downloading a file. Copy the raw text — do not save the page itself.
Step 2 — Convert it
Drop the file onto the converter above. It parses LastPass's layout, maps each field onto the universal record, then writes Enpass's exact expected columns — including the empty ones its importer requires and, where the two differ, the right shape for 2FA secrets. You'll see a preview and a list of anything Enpass can't hold before you download.
Rather not put this file in a browser tab connected to the internet? The same converter is available as a single HTML file you can download and open with your network switched off.
Step 3 — Import into Enpass
- Open Enpass → Menu → File → Import.
- Choose "Other" → CSV.
- Select the converted file and map the columns.
Watch out for
- Enpass CSV export flattens custom item templates. Anything beyond title/username/password/URL/notes arrives as note text.
- Enpass exports per-vault. If you use more than one vault, export each separately and convert each file.
Step 4 — Verify and clean up
- Open ten entries in Enpass at random and check them against LastPass.
- Generate a 2FA code for one account in Enpass and confirm it matches LastPass. A TOTP secret that imported wrong fails silently until you're locked out.
- Sign in to one real site using Enpass to confirm autofill works.
- Delete both CSV files and empty your trash. If your Downloads folder syncs to iCloud, OneDrive or Dropbox, confirm the deletion propagated there too.
- Only then close your LastPass account — and change any password you suspect was exposed while the plaintext file existed.
Questions
Why won't Enpass import my LastPass file directly?
Only 4 of 8 column names match (url, username, password), and they're in a different order — enough for Enpass to accept the file and then put your passwords in the wrong fields. The converter rewrites the file into Enpass's exact expected layout, including the column order and any empty columns its importer requires.
Do my passwords get uploaded anywhere?
No. The conversion is JavaScript running in your own browser tab — the file is read with the FileReader API, transformed in memory, and handed back to you as a download. There is no upload, no server-side processing and no analytics attached to the file. You can verify this by disconnecting from the internet before you drop the file in: the conversion still works.
What gets lost moving from LastPass to Enpass?
Enpass can't natively store: favorites, custom fields, file attachments. Rather than drop that data, the converter writes it into the notes field where Enpass has one, so you can move it back by hand. Keep your LastPass account active until you've confirmed everything you need made it across.
Will my two-factor codes still work after the move?
Yes, as long as LastPass exported the secrets. LastPass and Enpass store them in different shapes — one uses a bare Base32 secret, the other a full otpauth:// URI — and the converter translates between them, which is the step most manual migrations get wrong. Check a couple of codes against your old vault before you delete it, since a TOTP secret that fails to import is silent until you're locked out.
Is the export file from LastPass encrypted?
No. A LastPass CSV export is plaintext — every password in it is readable by anything that can open the file, including other apps on your machine and anything that syncs your Downloads folder to the cloud. Convert it, import it, then delete both files and empty your trash. If your Downloads folder syncs to iCloud, OneDrive or Dropbox, check that the deletion propagated.
Anything unusual about LastPass's export?
Secure notes come out in the same CSV as logins, with the note body in the "extra" column and url set to http://sn. Converters that ignore this turn every note into a broken login.
Anything unusual about importing into Enpass?
Enpass CSV export flattens custom item templates. Anything beyond title/username/password/URL/notes arrives as note text.
Related converters
Other routes out of LastPass
- LastPass → 1Password
- LastPass → Apple Passwords
- LastPass → Bitwarden
- LastPass → Dashlane
- LastPass → Google Chrome
- LastPass → KeePassXC
- LastPass → Keeper
- LastPass → Microsoft Edge
- LastPass → Mozilla Firefox
- LastPass → NordPass
- LastPass → Proton Pass
- LastPass → RoboForm
- LastPass → Safari
Other ways into Enpass
- 1Password → Enpass
- Apple Passwords → Enpass
- Bitwarden → Enpass
- Dashlane → Enpass
- Google Chrome → Enpass
- KeePassXC → Enpass
- Keeper → Enpass
- Microsoft Edge → Enpass
- Mozilla Firefox → Enpass
- NordPass → Enpass
- Proton Pass → Enpass
- RoboForm → Enpass
- Safari → Enpass
Moving the other way? Enpass → LastPass · All 210 converters