Free tools Windows power users keep installed
One-click scans. No signup required.
Some links on this page are affiliate links: if you buy through them we may earn a commission, at no extra cost to you.
To move saved browser passwords into a local KeePass vault, export them to a temporary CSV file, import that file into KeePass 2.x or KeePassXC, verify the entries, then delete the plaintext CSV. KeePass 2.x offers dedicated import formats for some password managers; its Generic CSV Importer is the flexible fallback when the browser’s column names or file format do not match.
A CSV export is readable as plain text, so perform the migration on a trusted device and keep the file out of shared or cloud-synchronized folders. This process moves passwords and related fields that the export contains—not necessarily passkeys, shared credentials, or other saved data.
Choose your KeePass application and prepare a database
KeePass Password Safe 2.x and KeePassXC are separate applications that can use KeePass-compatible KDBX databases. KeePass 2.x is primarily associated with Windows; KeePassXC supports Windows, macOS, and Linux. Menu names and importer options differ, so follow the procedure for the application you actually use.
Quick wins for a faster PC:
Repair Windows errors before they cause bigger problemsFix Now →Fix the driver behind crashes, sound loss and screen glitchesFind Drivers →Clear out junk files and repair common Windows errorsFree Scan →- Download the application from its official project site. KeePass 2.x downloads are at keepass.info/download.html; KeePassXC downloads are at keepassxc.org.
- Create a new database or open the destination database before importing. Choose a strong, memorable master password and save the KDBX file somewhere you can back up.
- Decide whether to add a key file as well as the master password. KeePass supports using both, but losing the key file can make the database unrecoverable. Store a backup of it separately and safely. See KeePass’s security features.
- Export only on a trusted, malware-free device. Close unnecessary applications, and plan to save the CSV briefly in a private local folder—not Downloads if it syncs to cloud storage, a shared folder, or a network drive.
Do not email the CSV, upload it to a spreadsheet service, or open it in an online viewer. Google warns that Chrome’s exported CSV is readable by anyone with access to the device, and Apple likewise describes its password export as unencrypted. See Google Chrome’s export instructions and Apple’s Passwords export guidance.
#1 Best Overall
- ✅ PROTECT ONLINE ACCOUNTS – A password manager, two-factor security key, and secure communication token in one, OnlyKey can keep your accounts safe even if your computer or a website is compromised. OnlyKey is open source, verified, and trustworthy.
- ✅ UNIVERSALLY SUPPORTED – Works with all websites including Twitter, Facebook, GitHub, and Google. Onlykey supports multiple methods of two-factor authentication including FIDO2 / U2F, Yubico OTP, TOTP, Challenge-response.
- ✅ PORTABLE PROTECTION – Extremely durable, waterproof, and tamper resistant design allows you to take your OnlyKey with you everywhere.
- ✅ PIN PROTECTED – The PIN used to unlock OnlyKey is entered directly on it. This means that if this device is stolen, data remains secure, after 10 failed attempts to unlock all data is securely erased.
- ✅ EASY LOG IN –No need to remember multiple passwords because by plugging OnlyKey to your computer, it automatically inputs your username and password. It works with Windows, Mac OS, Linux, or Chromebook, just press a button to login securely!
Export passwords from your browser
Browser interfaces change, and exports can differ by operating system, browser version, and profile. Keep the browser signed in and unlocked if required. Export each profile separately if you use more than one, and note which source profile each file came from.
Chrome and Google Password Manager
- In Chrome, select More → Passwords and autofill → Google Password Manager.
- Select Settings, scroll to Export passwords, then choose Download file.
- Authenticate if prompted and save the CSV temporarily in your private local folder.
Google’s instructions and security warning are at support.google.com/chrome/answer/13068232?hl=en. Any Google-documented import limit applies to Google Password Manager, not automatically to KeePass.
Microsoft Edge
In current Edge builds, look in the profile password-management area for an Export passwords control and save the result as CSV; exact labels can vary. Microsoft’s support article documents a CSV import route—Settings and more → Settings → Profiles → Import browser data, then Import beside Import passwords now and choose Passwords CSV file—rather than establishing one universal export path. See Microsoft’s Edge import guidance.
Firefox
- Open Firefox’s application menu and choose Passwords or Logins and Passwords, depending on version.
- Open the three-dot menu and select Export Logins.
- Confirm the warning and save the CSV to your private temporary folder.
Labels vary by release and operating system. Mozilla’s current browser-data guidance also describes CSV password migration and notes that automatic Chrome-password migration on Windows is no longer available; consult Mozilla’s import-data article if your menu differs.
Rank #2
- POWERFUL SECURITY KEY: The Security Key C NFC is the essential physical passkey for protecting your digital life from phishing attacks. It ensures only you can access your accounts.
- WORKS WITH 1000+ ACCOUNTS: Compatible with Google, Microsoft, and Apple. A single Security Key C NFC secures 100 of your favorite accounts, including email, password managers, and more.
- FAST & CONVENIENT LOGIN: Plug in your Security Key C NFC via USB-C and tap it, or tap it against your phone (NFC) to authenticate. No batteries, no internet connection, and no extra fees required.
- TRUSTED PASSKEY TECHNOLOGY: Uses the latest passkey standards (FIDO2/WebAuthn & FIDO U2F) but does not support One-Time Passwords. For complex needs, check out the YubiKey 5 Series.
- BUILT TO LAST: Made from tough, waterproof, and crush-resistant materials. Manufactured in Sweden and programmed in the USA with the highest security standards.
Passwords or Safari on Mac
On macOS versions with the Passwords app, open Passwords → File → Export All Passwords to File, select Export Passwords, and save the CSV privately. Apple says this file is unencrypted. Its export omits Wi-Fi passwords, certain shared passwords, and Sign in with Apple account access. Details: Apple Passwords User Guide.
Older macOS and Safari releases may place password controls in Safari settings or preferences. Apple also documents Safari → File → Export Browsing Data to File, which creates a ZIP of selected browsing data rather than the direct password CSV: Export browsing data from Safari.
Safari on iPhone or iPad
Apple’s current iPhone workflow is Settings → Apps → Safari → Export under History and Website Data. Select Passwords, deselect other categories if needed, tap Save to Downloads, then Done. Transfer the unencrypted export to a trusted computer and import it there; Apple’s instructions are at Export browsing data from iPhone.
What’s actually slowing this PC down?
Pick the symptom - the matching free tool is one click away.
Brave, Vivaldi, Opera, and other Chromium-based browsers
Export support and menu labels vary by browser and version. Look in the browser’s password manager for an export option, save a CSV locally if available, and inspect its column headings before import. If the browser offers no export, check its official help for the version and platform you use rather than assuming Chrome’s exact menus apply.
Rank #3
- Requires 3 "AAA" batteries (included)
- Unit auto-locks for 30 minutes after 5 consecutive incorrect PINs
Import the CSV into KeePass 2.x
KeePass supports dedicated import formats for some products, including Chrome and Firefox, as well as a Generic CSV Importer. There is no universal password-database format, and CSV column names and order vary. The generic importer is the practical fallback for unfamiliar browser exports. KeePass documents its formats at Import and export and the importer at Generic CSV Importer.
- Open KeePass 2.x and the destination database.
- Select File → Import. If KeePass lists a format matching your exact browser export, you can try it. If it is absent, fails, or produces malformed entries, choose Generic CSV Importer.
- Select the CSV and configure the import. Use the preview to check settings before committing.
- Set the encoding—try UTF-8 first. Set the field separator to the character used between values, usually a comma. If the file uses semicolons or tabs, select that instead.
- Set the text qualifier, usually a double quote (
"). Choose the record separator used by the file, typically a new line. - If the first row contains headings such as
name,url,username, andpassword, select Ignore first row so it does not become a fake login. - Map the actual columns to KeePass fields. Common mappings are shown below; do not assume the order or headings will match.
- Map a group or folder column if present, or import into a new group such as
Imported - Chrome. Review the preview, import, confirm the resulting entry count, and save the database.
| CSV column examples | KeePass field | What to check |
|---|---|---|
name, title, application |
Title | Use the label that identifies the login. |
username, userName |
User Name | Check that email addresses and other long values remain intact. |
password |
Password | Do not map this to Notes. |
url, origin, login_uri |
URL | Choose the website or sign-in address; some exports call it an origin. |
note, notes, comment |
Notes | Check the preview for line breaks or punctuation. |
group, folder, category |
Group, if supported | Set the group-path delimiter if values represent nested folders. |
favIconUrl, times_used, or other metadata |
Ignore, unless you need and can map it | Ordinary CSV migration may not preserve metadata. |
For example, if the CSV has Personal/Shopping in a group column and the path delimiter is /, the entry should appear in a Personal group and nested Shopping group. KeePass’s importer permits group paths using a chosen delimiter; follow the delimiter setting shown in its import dialog. See KeePass’s CSV importer documentation.
KeePass also documents a specialized older CSV format with the five-field order "Account","Login Name","Password","Web Site","Comments", corresponding to Title, User Name, Password, URL, and Notes. That format is not a universal requirement for browser CSVs: use direct column mapping instead of rewriting a valid export. KeePass’s specific legacy CSV rules should not be confused with the options supported by the Generic CSV Importer. See KeePass import/export formats.
The Tool Desk
Outbyte Driver Updater FREEFix the driver behind crashes, sound loss and screen glitchesFind Drivers →Outbyte PC Repair FREERepair Windows errors before they cause bigger problemsFix Now →Import into KeePassXC
KeePassXC is a separate application, so do not assume KeePass 2.x menus or dedicated import formats appear in it. Open or create a database, then use KeePassXC’s import function and select its CSV import option if available in your installed version. Follow the importer’s prompts to identify the file’s fields and review any preview before completing the import. If the labels differ, consult the help for that version rather than applying KeePass 2.x menu instructions blindly. The source CSV’s headings and field contents still need checking, and the verification and deletion steps below apply equally.
Rank #4
Fix common import problems
Entries have blank or misplaced fields
The separator or text qualifier may be wrong, the headings may be treated as an entry, or the columns may have been mapped in the wrong order. Start a fresh import into a new group, inspect the CSV locally in a plain-text editor, then retry the Generic CSV Importer. Check the preview, enable Ignore first row if it contains headings, and map the actual headings rather than relying on their positions. A password showing in Notes usually means the password column was mapped incorrectly.
Accented characters look wrong
Try UTF-8 first, then use the importer’s other encoding choices if the preview is still corrupted. Choose the encoding that displays the text correctly before importing; retyping data is not a fix for an encoding mismatch. KeePass’s importer supports encoding selection: Generic CSV Importer documentation.
URLs are missing or do not match
Exports may label the address column origin, signon_realm, or login_uri rather than url. Map the relevant website field to URL. If the export contains only a domain or origin, correct important entries manually and test site matching; this matters especially if you plan to use KeePassXC-Browser, whose matching uses the visited site and stored entry information. See KeePassXC browser integration documentation.
There are duplicate or missing entries
Duplicates can come from repeated imports, multiple browser profiles, old and current logins, or separate accounts on one site. Import into a named group first, then search or sort by title and URL. Compare usernames before removing anything; two accounts on one domain may both be valid. Ordinary CSV may not preserve last-used or modification metadata, so do not expect that information to settle every duplicate.
Best Value
- FIDO-ONLY FUNCTIONALITY: Supports FIDO2 (passkeys) and FIDO U2F protocols for passwordless and second-factor authentication. Does not support OTP, TOTP, Smart Card (PIV), or other advanced features - upgrade to YubiKey 5 Series for extended functionality
- SECURE AND CONVENIENT: Passwordless MFA login with the YubiKey Bio authenticator and biometric information using a fingerprint, with a PIN as a fallback. Simply plug in via USB and use your fingerprint to authenticate
- DEVICE & OS COMPATIBILITY: Compatible with Windows, macOS, ChromeOS, and Linux. Works seamlessly with supported services like Google and Microsoft accounts, and major password managers. See the full compatibility list at "Works With YubiKey"
- DURABLE & RELIABLE: Resistant to tampering, water, and crushing. No batteries or network connectivity required, offering dependable authentication without any downtime. Securely manufactured in USA & Sweden
- Yubico Authenticator App - Fingerprint enrollment, passkey management and PIN configuration available via the app app - Upgrade to YubiKey 5 Series to generate one-time-passwords (OTP) via Yubico Authenticator and for advanced compatibility (OATH, PIV)
If entries are missing, check that you exported each relevant browser profile, that the browser was signed in to the expected account, and that you did not export only a selection. Compare the source and destination counts, allowing for excluded data such as passkeys or shared credentials.
The file appears damaged after spreadsheet editing
A spreadsheet can change quoting, encoding, leading zeroes, long numeric-looking values, embedded commas, line breaks, or strings that resemble formulas. Import the original export directly whenever possible. If repair is unavoidable, work only on a local copy and inspect it carefully; KeePass warns that spreadsheet applications may not preserve CSV formatting it expects. See KeePass import/export guidance.
Verify the vault, then remove the plaintext export
- Compare the approximate source and destination entry counts and search for several logins you know.
- Open representative entries and check title, username, password, URL, notes, and group. Include entries with unusual punctuation or multiple accounts for one site.
- Check whether subdomains and URL schemes were preserved. Test a login on a noncritical site before relying on the vault for important accounts.
- Review duplicates rather than deleting them automatically. Keep distinct accounts where usernames differ.
- Save the KDBX database and create a backup of the encrypted file in a location you control.
- Close any editor that opened the CSV. Delete the plaintext file, then empty Trash or Recycle Bin. Check for copies in Downloads, cloud-sync folders, backups, and recent-file locations where practical.
Deleting the visible CSV does not necessarily remove every synchronized or backed-up copy. If the file was emailed, uploaded, or otherwise exposed, treat the affected passwords as potentially compromised and change them.
Recommended Free Tools
Use KeePassXC with browser autofill
Importing credentials does not automatically make a browser fill them. KeePassXC can connect to Chrome, Firefox, Edge, Chromium, Vivaldi, and Brave through KeePassXC-Browser. The documented setup is:
- Install KeePassXC and the KeePassXC-Browser extension for your browser.
- In KeePassXC, open Tools → Settings → Browser Integration, enable integration, and select the browser.
- Unlock the database, open the browser extension, and choose Connect.
- Give the connection a unique name, then select Save and allow access.
- Test autofill on a site whose entry URL you have verified. Correct the stored URL if the extension does not find the right entry.
Consult the project’s KeePassXC-Browser integration guide for current extension and connection details. Until the new workflow is verified, you can leave browser password saving enabled temporarily. Disable it and remove browser-stored passwords only after the KDBX and its backup are confirmed usable.
What a browser-password CSV does not necessarily move
A password CSV is not a complete export of every sign-in method or piece of browser data. Importing passwords does not automatically migrate passkeys. Passkeys may remain with the browser, operating system, phone, hardware security key, or another passkey provider; test those sign-ins separately before removing the old browser data.
Depending on the source and export method, payment cards, Wi-Fi passwords, shared credentials, Sign in with Apple access, bookmarks, history, browser-specific metadata, attachments, and custom fields may also be absent. Apple explicitly lists Wi-Fi passwords, certain shared passwords, and Sign in with Apple access among items not included in its Mac Passwords export. KeePass notes that CSV supports only a limited set of fields, so timestamps, expiration data, icons, and attachments may not transfer through a simple CSV migration. Check the source manager for anything important that is not represented in the exported file.
Quick Recap
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

