WebDAV cloud configuration backup
Updated: October 5, 2026.
Google Drive and WebDAV share Settings → Backup and restore → Cloud backup. WebDAV stores your configuration on the cloud drive, NAS, or server you choose. Saving, restoring, and merging are manual operations. Each method keeps its own comparison baseline; selecting WebDAV does not transfer a Google Drive backup.
Backups sync only general settings by default. Sensitive connections can be included only with explicit consent to enable sensitive settings. Wordbooks, chat history, and usage statistics are excluded. The WebDAV URL, username, and app password used to access the backup server always stay on this device and are excluded from backups. This feature requires the browser extension background; use local backup files in the userscript.
Review local settings before saving them to cloud storage.
Scope of this operation
The default scope includes general settings such as language, appearance, shortcuts, and website rules. It excludes the entire sensitive connection configuration: API keys, configured OAuth tokens, authentication information, translation service selections and models, service URLs, custom request bodies, and authentication parameters in URLs. Private prompts and unrecognized fields are also excluded. Restoring or merging general settings keeps this device’s keys, translation services, URLs, and custom connections unchanged.
To migrate sensitive connections, enable Sensitive settings, read the risks, check the acknowledgement, then choose Agree and enable. Saving or merging includes this device’s sensitive information. Restoring applies only what the cloud backup actually contains; a general-settings backup still preserves this device’s keys and connections. The choice is saved in this browser until you turn it off. It remains enabled after completion, failure, cancellation, reopening settings, or switching providers or accounts. Other browsers and devices need their own confirmation.
The current extension still reads older complete v1 backups and applies only their general settings by default. Complete sensitive backups saved with consent keep the original v1 format, which older extensions can still read. New general-settings backups use v2; older extensions safely reject them and must be upgraded. Unconfirmed transactions from before the upgrade expire and require a new preview.
Turning the option off or restoring only general settings does not change an older complete backup. Sensitive information is removed from the current cloud file only after you confirm saving or merging general settings. This does not delete old files or versions retained by the provider; manage those copies separately.
Prepare a connection
The server must support Basic authentication, PROPFIND, GET, MKCOL, and PUT. When strong ETags are available, updates use If-Match and initial creation uses If-None-Match to protect other devices’ changes. The extension checks the download response header, the file's DAV:getetag property, then the HEAD response header. Property and HEAD lookup are followed by a conditional read and an exact ciphertext check to avoid pairing old content with a new version. Use HTTPS with a valid certificate and a dedicated app password. Property responses are parsed using XML namespaces and the requested resource, including local prefixes, CDATA and character references. Versions from other files or failed properties are never used for replacement.
Enter the WebDAV URL of an existing directory, not the website homepage, a sharing link, or the backup file URL. Do not put credentials or query parameters in the URL.
For Nextcloud, a typical URL is:
https://cloud.example.com/remote.php/dav/files/USERNAME/Copy the personal WebDAV URL from Files settings and create an app password under your account’s security settings. See the official Nextcloud guide. Other services and NAS devices provide their own directory URLs. Your account needs read, directory-creation, and write permission.
For Nutstore, use https://dav.jianguoyun.com/dav/, your account email, and a dedicated app password. You do not need to create the FluentRead folder in advance. The first sync checks for a backup and only creates the folder and file after you confirm saving. A 409 caused by a missing backup parent directory is treated as a first backup only after the entry directory is verified; invalid entry URLs and permission errors still stop the operation.
Save your first backup
- Select WebDAV in cloud configuration backup, then click the primary Set up WebDAV button at the left below the basic and sensitive settings options.
- Enter the directory URL, username, and app password. HTTP requires acknowledging unencrypted transport; prefer HTTPS.
- Choose Test connection. This only checks directory access, changes no cloud files, and does not prove write permission.
- Choose Test and save to store the connection on this device. This still creates no cloud backup.
- Check this operation’s scope and choose Sync with WebDAV now. If no backup exists, review saving this device’s configuration, with general settings only by default, and confirm.
The file is stored under your chosen directory at:
FluentRead/fluentread-config.encrypted.jsonPreviews expire after 10 minutes. Cancel or leaving settings ends the preview without deleting an existing backup. There is no automatic background sync or persistent connected state.
Restore or merge on another device
Configure the same directory and account on the other device. Read the backup, choose Restore cloud configuration or Save device configuration, then continue to review and confirm.
General-settings mode restores or merges only general settings, preserving this device’s keys, translation services, URLs, and custom connections. Saving replaces the current cloud file within this operation’s scope. With consent to include sensitive information, saving or merging can include all sensitive connections; restoring still depends on the backup’s actual content. If both sides contain changes you want to keep, use the secondary Review and merge action and resolve conflicts. In sensitive-information mode, credentials, services, models, and custom connections are masked and selected as a group.
Before committing, the extension rechecks both configurations. A change on either side requires a fresh preview. Updates use ETag conditions to reject stale writes. A successful operation records the account and time locally.
The current account, server URL, and last backup time for that connection appear beside the sync button. Use Edit connection beside the sync button in the left action area to change accounts or servers. The confirmation screen lists changed settings and their device and cloud values. Connection changes show categories while keys, addresses, and custom content stay hidden. Merge conflicts appear before automatically retained changes. Identical configuration only updates the local sync record without uploading again.
If none of these methods provides a strong ETag, the preview still offers saving, restoring, and merging. Compatibility mode downloads the backup again before saving, merging, or deleting and compares its ciphertext SHA-256 digest. Changes since the preview stop the operation. Uploads are read back and checked; deletion verifies that the file is absent. If-Match: * checks existence only, and content checks cannot atomically prevent changes after verification. The confirmation screen asks you to avoid syncing other devices at the same time. Authentication, network, corrupt-file, and conditional-request failures still stop the operation without retrying an unconditional write.
Change accounts or delete data
Change accounts or delete data
Use Edit connection to change the server, account, or password. Changing the URL or username requires entering the password again. Old previews and baselines cannot apply to a new connection. Saved passwords are not returned to the form.
Click Delete cloud backup, check the account and server address, then confirm. The extension deletes only the fixed backup file, using a strong ETag and If-Match when available or the content-check compatibility mode above; an updated file requires a new preview. Old-format or unreadable backups can also be deleted. Canceling or closing confirmation keeps the file. Successful deletion clears local sync records while keeping local settings, API keys, the connection password and other files in the directory. Manual sync can create a new backup later.
Deletion requires DELETE; version protection depends on the server honoring If-Match. Avoid simultaneous syncs in compatibility mode. If the server does not support deletion, use its management interface. Manage provider trash, retained versions and copies on other devices separately.
Clear connection settings removes this device’s WebDAV connection, app password, and sync record, while keeping device configuration and cloud files. Revoke an app password with the service to stop its authorization. Uninstalling the extension does not delete server files.
Protection and troubleshooting
Protection and troubleshooting
Backups use AES-GCM encryption before upload with the same fixed public application passphrase as Google Drive. No additional encryption password is required. Anyone who obtains the file can decrypt it using the public passphrase. A compromised third-party account, access to a shared directory, or a leaked backup could expose API keys and other sensitive information in that backup. Protection primarily depends on the server account, directory permissions, HTTPS, and device security. We recommend syncing only general settings. When migrating keys, protect your account and directory permissions and avoid sharing backup files. See the privacy policy.
| Message | What to check |
|---|---|
| Incorrect username or password | Account, app password, and Basic authentication support |
| Missing or invalid WebDAV directory | The full directory URL and whether WebDAV is enabled |
| Cannot connect | Network, certificate, and final URL; credentials are never forwarded through redirects |
| Provider cannot prevent concurrent writes | Saving, restoring, merging, and deleting remain available. Review the preview and avoid simultaneous syncs. Use strong ETags and conditional writes when concurrent version protection is required |
| Cloud backup changed | Generate a new preview and check other devices’ changes |
| Storage full or backup too large | Free server space or use a local backup; JSON is limited to 20 MiB and encrypted files to 32 MiB |
See RFC 4918 for the WebDAV protocol. Server permissions, certificates, and conditional-write behavior vary. After connection testing, perform a real save and restore to confirm compatibility with your service.