The browser extension

Devolutions Password Manager with a small network bridge for the PMA demos.

Download extension SHA-256 checksum

What it does

Page โ†’ extension worker โ†’ Bitwarden โ†’ page

The worker forwards login and vault-reading requests, avoiding browser CORS restrictions. C# / WASM hashes passwords and decrypts the vault locally. Cloudflare hosts only the static app.

One extension works with both pma-cs.pages.dev and pma-rs.pages.dev, plus localhost on port 4200. The bridge checks exact origins and restricts endpoints, methods and headers to configured US/EU Bitwarden servers.

Password and API-key login work in this C# demo. SSO and two-step login are not implemented here.

Install in Chrome

  1. Download the ZIP and extract it into a folder you will keep.
  2. Open chrome://extensions and enable Developer mode.
  3. Choose Load unpacked and select the folder containing manifest.json.
  4. Return to the demo and reload the page.

Already installed? Replace the files in that same folder, reload the extension, then reload the page. Disable any duplicate PMA demo copy.

What changed in the extension?

2 upstream files changed, 3 files added, 343 files unchanged. The manifest registers a content script; the original worker imports the bridge. The three additions are its two JavaScript bundles and a provenance record.

No permissions were added. The original extension retains its broad host access; the bridge applies its own narrower request rules. This unpacked demo is separate from the store extension and does not auto-update.

Bridge source

For the C# port and interface changes, see the code report.