Switch from Bitwarden to KutunaCo
Last updated:
KutunaCo imports a Bitwarden vault from its unencrypted JSON or CSV export in one step: logins, secure notes, cards, identities and SSH keys, together with folders, collections, custom fields, password history and 2FA (TOTP) secrets. Only passkeys and encrypted exports cannot be brought over. Nothing leaves your phone: the file is read on the device, without an account or a server.
How do I export my vault from Bitwarden?
Export the vault as an unencrypted .json file. Menu names vary slightly between Bitwarden versions:
- Web vault (vault.bitwarden.com or vault.bitwarden.eu): Tools › Export vault › File format .json › confirm with your master password › Export vault.
- Mobile app: Settings › Vault › Export vault › File format .json › confirm.
- Desktop app: File › Export vault.
- Organisation vault: Admin Console › Tools › Export vault (only members with the export permission can do this).
Choose the plain .json format, not ".json (Encrypted)" and not the password-protected export: KutunaCo cannot read encrypted files and will tell you so. Bitwarden's export does not contain file attachments or Sends.
Should I choose JSON or CSV?
JSON. Bitwarden's CSV export only holds logins and secure notes, while the JSON export carries every item type and all of the details KutunaCo can keep. Use CSV only if the JSON file cannot be created.
What is imported from Bitwarden?
- Logins: name, all URIs, username, password, notes and the TOTP secret. Extra URIs beyond the first are kept with the item.
- Secure notes: as notes.
- Cards: cardholder name, number, expiry date and security code as card items. An expiry date that cannot be read is written into the note instead of being lost.
- Identities: as notes with the name, company, e-mail, phone, username, address and identity numbers as labelled lines.
- SSH keys: as API key items with the private key; the public key and fingerprint go into the note.
- Folders and collections: as tags on each item.
- Custom fields: appended to the note as "name: value" lines. Linked fields have no value of their own and are left out.
- Favourites, creation and revision dates, and the password history of each login.
How do I import the file into KutunaCo?
- Move the exported file to your phone (AirDrop, USB, a cable, or a cloud folder you will clean afterwards).
- In KutunaCo, go to Ayarlar › Veri Yönetimi › Geri Yükle / İçe Aktar › Dosya Seç (Settings › Data Management › Restore / Import › Choose file) and pick the file. Opening it from the Files app with KutunaCo works too.
- The preview shows "Bitwarden" as the source, the number of items found and any that are already in your vault.
- Confirm with İçe Aktar (Import).
- Delete the export file from your phone, your computer and any cloud folder or e-mail you used to move it.


Do my 2FA codes in Bitwarden come along?
Yes. The TOTP secret stored on a Bitwarden login is placed in the item's 2FA field and KutunaCo generates the codes offline, like Bitwarden's authenticator did. SHA1, SHA256 and SHA512 with 6 to 8 digits are supported. Steam and HOTP tokens cannot generate codes in KutunaCo, so their setup is saved to the note instead of being dropped.
What is not imported?
- Passkeys. KutunaCo does not support passkeys. Logins that had one get a line in their note saying so, so you know which services to set up again.
- Items in Bitwarden's trash and completely empty items.
- Encrypted or password-protected exports. Export again without encryption.
- Attachments and Sends, which Bitwarden does not include in the export.
- Files over 20 MB or exports with more than 50,000 items: split them into parts.
Will items be duplicated if I import twice?
No. Items already in your vault, and entries repeated inside the file, are recognised by content and shown in the preview as already saved. If the same account carries a different password than the one in your vault, it is added as a separate item and the preview warns you, so you can keep the right one.
What should I do after the move?
Check a few items, including one with a 2FA code, before you leave Bitwarden. Delete the unencrypted export file everywhere it was stored, and then make an encrypted KutunaCo backup as described on the help page. Because KutunaCo does not sync, keep that backup somewhere safe: it is the only copy of your vault outside this phone. The import overview lists every other app KutunaCo can read.