AMPass Extension Settings

Server Connection

The URL of your AMPass installation. HTTPS required for production.

A friendly name to identify this browser in your AMPass settings.

Autofill

By default, autofill is disabled on non-HTTPS pages except localhost.

Autosave

Security

🛡️ Browser Lock System (Zero-Trust Gate)

Lock your entire browser to prevent unauthorized access when idle or when starting the browser.

🛡️
Maximum Zero-Trust Shield Active
Zero-Leak Tab Shield + PBKDF2 (100,000 rounds) + Intruder Lockout
Tier-1 Security

Master toggle for all browser-level locking features.

When your browser starts up, immediately require password before opening any tabs.

Automatically locks the browser after inactivity to prevent walk-up snooping.

Locks the browser if no mouse or keyboard activity is detected for this duration.

Choose whether to unlock with your master password or a dedicated browser PIN.

Biometric Security (Windows Hello / Touch ID)

Use your fingerprint scanner or Windows Hello / Touch ID to unlock your vault quickly without typing master password.

When enabled, AMPass will prompt for a quick fingerprint scan every time you autofill credentials on a webpage.

Status: Checking platform biometrics...

Desktop App Bridge

When enabled, the extension communicates with the installed AMPass desktop app via native messaging. The desktop app must be running and unlocked. If unavailable, falls back to server API.

Status: Not tested

Appearance

🧠 Duress PIN & Decoy Vault (Coercion Defense)

If you are coerced or forced to unlock your vault, entering your Duress PIN will open a realistic Decoy Vault with innocuous fake accounts, keeping your real vault 100% secret and locked.

Must be completely different from your Master Password.

⏱️ Emergency Access & Inheritance (Dead Man's Switch)

A trusted contact who can request emergency access to your vault.

If an emergency request is made, you will receive notifications. If you do not decline within this period, access is granted automatically.

Backup & Data Management

Export an encrypted JSON backup of your vault items or restore items from a backup file.

🛡️ Anti-Tamper & Extension Removal Protection

Blocks unauthorized attempts to open chrome://extensions, disable, or delete AMPass while locked. Accessing extension settings will require verifying your Master Password.

Instantly terminates any tab attempting to open chrome://extensions, edge://extensions, or browser settings while browser lock is engaged.

To physically lock and remove the "Remove from Chrome" button in Chrome's UI with an administrative policy lock, run the built-in PowerShell script: scripts/protect-extension-windows.ps1.

To legitimately uninstall this extension, you must verify your Master Password.