LastPass has had way too many breaches for my comfort. I switched to BitWarden years ago, which at the time seemed like nearly a drop-in replacement.
I think LastPass did finally switch to using the master password for encrypting a user's vault (rather than just for access to it), but I believe they've had security incidents since then, so either I'm wrong or they're doing something else stupid.