Optional ReadonlyallowedOptional ReadonlyallowedWhen set, only these hostnames may be dialled.
Optional ReadonlyallowWhether a client may name a server-side database file at all. Off unless set: the CLI turns it on for a loopback bind, where the caller is the machine's own user.
ReadonlyenabledMust be explicitly true; anything else leaves the endpoints returning 404.
Directories a client-supplied SQLite/DuckDB path may live under. Unset means anywhere.