HELP FILE

Link or Unlink Your Personal Account from LastPass Enterprise or Identity

We understand that you like to keep your personal and work life separate – so do we! When you link your personal LastPass account with your Teams, Enterprise, or Identity account, you can keep your Vault entries all in one place while both accounts remain separate.

Your personal account will continue to remain private (as your Teams, Enterprise, or Identity admin is never able to view your personal account data), and if you ever leave the company, your personal account data remains active and accessible to you. Additionally, login events for your personal account will never be logged in admin reporting.

Link your personal account

Once your personal account is linked, your personal LastPass account is treated as a shared folder within your company LastPass account, and is subject to the same restrictions and properties therein.

  1. Log in to LastPass and access your Vault by doing either of the following:
    • In your web browser toolbar, click the LastPass icon LastPass then click Open My Vault.
    • Go to https://lastpass.com/?ac=1 and log in with your username and Master Password.
  2. Select Link Account in the left navigation.
  3. When prompted, enter your personal account email address and Master Password.
  4. Click Link Account.
  5. If your company account is enabled for Multifactor Authentication, you will be prompted to authenticate.
  6. Once authenticated, your LastPass Vault will refresh and "Link Account" will no longer be displayed as a menu item in the left navigation. Your and your sites and secure notes entries will be displayed as a folder listed as your personal account's username with "Linked Personal Account" displayed in the right navigation.

Migrate data between your accounts

You can move relevant items between your company and personal Vaults by dragging and dropping (or right-clicking on the entry and selecting Move to folder) to migrate your data.

If you have a LastPass Teams, Enterprise, or Identity account, the ability to perform these actions may be limited or prohibited due to policies enabled by your LastPass admin.

Unlink your personal account from within your company account

If at any time you wish to unlink a personal account from your Teams, Enterprise, or Identity account, you can do so by logging in to your company account.

  1. Log in to your company LastPass account and access your Vault by doing either of the following:
    • In your web browser toolbar, click the LastPass icon LastPass then click Open My Vault.
    • Go to https://lastpass.com/?ac=1 and log in with your username and Master Password.
  2. Select More Options in the left navigation.
  3. Go to Advanced > Remove Linked Personal Account.
  4. When prompted, click Yes to confirm.

    Note:  If your LastPass company account admin resets your Master Password using the "Permit super admins to reset Master passwords" policy, your LastPass personal account will automatically become unlinked.

Unlink your account from within your personal account

If you want to unlink your personal account but no longer have access to your company account, you can do so by logging in to your personal account.

  1. Log in to your personal LastPass account and access your Vault by doing either of the following:
    • In your web browser toolbar, click the LastPass icon LastPass then click Open My Vault.
    • Go to https://lastpass.com/?ac=1 and log in with your username and Master Password.
  2. Select Account Settings in the left navigation.
  3. Go to Show Advanced Settings > Unlink Account From Enterprise
  4. Click OK on the confirmation message, then click Update to close the Account Settings window.

Policies involving linked personal accounts (LastPass Enterprise and Identity only)

Admins can configure the following policies that involve linking personal accounts:

  • Prohibit Linking Personal Account – Disallows linking of your personal account into your company account. 
  • Prohibit Updating Personal Account – Disallows adding/updating/deleting of personal account data when it is linked through your company's account.
  • Setting Default Account for New Sites – If this policy is in place, and a user has a linked personal account, sites will be saved to the personal account by default, unless the new site’s URL matches a domain specified in the ‘value’ field. Additionally, multiple domains can be separated by commas (e.g., aaa.com,bbb.com, etc.).
  • Recommend or Require Linked Personal Account – When enabled, this policy will force each user to create a personal account that will be linked automatically to the user's company account. Existing personal account holders will be required to link their personal account. New users will enter their personal email address which will serve as the username for the account, while the Master Password will be the same for both accounts. Additional configurations can allow this policy to be mandatory or give users the ability to opt-out if desired.
  • Save Personal Sites to Personal Vault – When this policy is enabled, LastPass detects the username for every new site. If the username matches the master username for the Personal Linked Account (such as @gmail.com), the site will be saved directly to the personal Vault by default. If any other username is used for the site (such as @work.com or any non-email username), the site will be saved directly to the company Vault by default. The user can override the LastPass personal account selection if needed.
    Note:  A personal LastPass Vault must be linked to the user’s company Vault in order to auto-sort. Otherwise, all logins will save to the company Vault by default. For this reason, we recommend enabling the “Recommend or Require Linked Personal Account” policy in order to help automate this function for users.