< ciso
brief />
Tag Banner

All news with #cloudflare tag

447 articles · page 6 of 23

Cloudflare OS: A Platform for Enterprise AI Workspaces

🛠️ Cloudflare OS provides each employee with an agent-backed workspace grounded in company context, skills, and systems. It supports agent-driven docs, apps, and workflows while enforcing security via Gatekeepers and observation-based access control. The platform runs server code in Dynamic Workers and client code in sandboxed frames, integrates with MCP and AI Gateway, and is open sourced for organizations to deploy and customize.
read more →

Cloudflare launches integrated agent observability

🛰️ Cloudflare announces a unified Agents experience to deploy, observe, and manage hosted agents, starting with agent-level observability. The platform adds agent-aware tracing that captures model calls, tool executions, token usage, and subagent behavior alongside existing Workers infrastructure spans. Integrations for Think, Flue, and AI SDK emit traces to the dashboard or OTLP destinations, and recording controls let you exclude sensitive payloads. Tracing is free in beta and will be folded into Workers Observability pricing from October 1, 2026.
read more →

Cloudflare adds local tracing for Worker development

🔍 Cloudflare now captures OpenTelemetry traces automatically during local Worker development in Wrangler and Vite. When a supported coding agent session is detected, the development server exposes a Local Explorer API that lets agents query traces and correlated logs without installing SDKs or configuring observability. The Local Explorer also offers a browser interface to inspect spans, timing, attributes, errors, and local state for D1, KV, R2, Durable Objects, and Workflows.
read more →

Cloudflare CI Workflows for Builds and Deployment

🛠️ Cloudflare introduces the CI SDK built on Workflows to run CI pipelines directly on its platform. The system ties Artifacts (versioned code storage) to Workflows so repository pushes can trigger CI jobs, with sandboxed steps, dependency caching, and parallel execution. Platforms can manage CI for many repos while allowing customers to run custom Workflows in the same namespace. The CI SDK supports self-healing agents, R2-backed caches, and improved observability in the Workflows dashboard.
read more →

Introducing the Agent Development Lifecycle (ADLC)

🚀 Cloudflare describes how AI agents are transforming the Software Development Lifecycle and introduces the Agent Development Lifecycle (ADLC). The post argues agents can and should manage more of the SDLC, and presents Cloudflare Workflows and Artifacts as primitives to orchestrate complex, long-running processes. It frames software factories as the future of autonomous software delivery and invites developers to experiment with @cloudflare/ci and agent-driven workflows.
read more →

Automated Issue Triage Reduces Open Issues Fast

🛠️ Cloudflare ran an automated triage pipeline on the Astro repository, using isolated AI subagents to read, reproduce, diagnose, and ship preview fixes for incoming bug reports. The pipeline—implemented as a GitHub Action and generalized into the Flue framework—reduced open issues from over 200 to about 30 and aims for zero. The system emphasizes transparency, sequential reasoning, and maintainability, and the triage logic was extracted into a standalone repo, triagebot-action, for reuse and adaptation.
read more →

Cloudflare Codex for Enforcing Engineering Standards

🔎 Over four months, Cloudflare’s AI code reviewer flagged nearly 230,000 deviations from internal engineering standards and blocked almost 16,000 merges. The company consolidated dispersed guidance into the Cloudflare Codex, a governed RFC-based repository of SHOULD and MUST requirements that agents can consume across the engineering lifecycle. Codex-driven agents now review code, specs, and incident reports, improving consistency and surfacing issues earlier while leaving final judgment to engineers.
read more →

Cloudflare Wallets for Agentic Commerce

🔐 Cloudflare introduces Wallets to give AI agents stable identities and payment capabilities for buying APIs and content. Account Wallets hold funds and set policies while Virtual Wallets let agents spend within defined guardrails. Wallets integrate with the Monetization Gateway and x402 micropayments to enable low-friction, machine-native commerce and optional human-readable agent handles.
read more →

Malware Bypassing DNS: Direct-to-IP Threats Rise

🔎 Analysis of 4 million dynamic reports shows nearly half (45.32%) of malware with C2 activity connects directly to IP addresses, bypassing DNS. This behavior—seen in ransomware droppers, P2P botnets and IoT threats—evades DNS-based defenses. The article introduces zero trust IP (ZT-IP), a network-level enforcement model that permits only DNS-sanctioned outbound IP connections and validates its efficacy against real-world samples and traffic.
read more →

Cloudflare launches an agent runtime with isolates

🖥️ Today Cloudflare announced an early preview of @cloudflare/computer, a runtime that gives each agent a virtual "computer" — a primed filesystem and selectable execution environments. The package uses Durable Objects and isolates as the primary, horizontally scalable compute primitive while optionally attaching containers for heavier tasks. It provides a durable filesystem, tools (read, write, edit, ls, exec), and multiple execution backends, aiming to minimize container usage and improve efficiency for agentic systems.
read more →

Optimizing large-model inference for speed and safety

🔧 Cloudflare describes techniques to serve demanding long-context models like Moonshot's Kimi and Z.ai's GLM efficiently by reducing memory use and protecting shared caches. They run experiments with SGLang and separate prefill and decode phases. Key optimizations are FP8 KV-cache quantization, INT4 weight compression for decode, and KV cache integrity checks to prevent cross-request corruption, all while preserving model accuracy.
read more →

Cloudflare brings cross-language RPC to Workers

🧩 Cloudflare has extended Workers RPC to enable direct cross-language calls between JavaScript and Python Workers. Using Pyodide’s FFI and a custom type-conversion layer, objects, functions, keyword arguments and callbacks translate seamlessly across the boundary. The workers-runtime-sdk provides native Python wrappers for Web API objects, and no extra dependencies are required to call Python from JS or vice versa. Examples include calling Python packages like Pygments from JavaScript using simple Service bindings.
read more →

Cloudflare launches Billable Usage API for FinOps

🧾 Cloudflare announced a new Billable Usage API for self-serve accounts that returns usage and cost by product and charge period in a machine-consumable format. The single endpoint covers usage-based products like Workers, R2, D1, Workers AI, Vectorize, Images, and Stream, with daily updates today and more real-time data planned. The response aligns with the FinOps Open Cost and Usage Specification (FOCUS) naming and integrates natively with Vantage for cost reporting, budgets, and alerts.
read more →

Cloudflare Workers add inbound TCP and gRPC support

🛠️ Cloudflare announces private beta support for inbound TCP connections and expanded gRPC capabilities on Workers. The update adds a connect() handler to accept raw sockets, routing via Durable Objects and Containers, and a Spectrum integration to expose TCP applications. Developers can deploy bidirectional gRPC servers in any language, use gRPC-web translation for Workers, and leverage Cloudflare’s global network for low-latency, real-time voice and AI applications.
read more →

Introducing Agents Week and the Agent Cloud Vision

🤖 This week Cloudflare is hosting Agents Week to explore what an Agent Cloud must provide for autonomous software agents. The company reframes the question away from human-centric design toward agent-native needs for speed, structure, and access. The series will cover primitives, the agentic development lifecycle, secure enterprise integration, and how agents reshape the web. Readers are invited to query their own agents and share insights.
read more →

Cloudflare launches provisioned MoQ relay scopes

🛰️ Cloudflare has added isolation and access controls to its global Media over QUIC (MoQ) network by introducing a provisioning API that creates isolated relays (scopes) and issues publish/subscribe tokens. The relays are available across Cloudflare’s network within seconds with no servers to deploy and support draft-14 and draft-16 MoQ transport features; the beta is free to use. Tokens are scoped, revocable, and manageable via API or dashboard, and Cloudflare is documenting the control-plane model as an IETF Internet-Draft for broader interoperability.
read more →

cdnjs migrated to Cloudflare Developer Platform

🛠️ cdnjs, a major open-source CDN for JavaScript and CSS, now runs entirely on the Cloudflare Developer Platform. The migration centralized file content in R2, moved metadata to KV, and rebuilt the publishing pipeline with Workflows, Queues, Containers, and Durable Objects. The change improved observability, simplified architecture, and introduced multi-region mirrors with DigitalOcean Spaces as a live fallback.
read more →

Cloudflare adds post‑quantum origin authentication

🔒 Cloudflare now supports post-quantum authentication for Authenticated Origin Pulls and the Custom Origin Trust Store using ML-DSA signatures. This enables mutually authenticated TLS between Cloudflare and customer origin servers to resist quantum-enabled impersonation attacks. The company describes configuration steps, verification methods, and engineering changes made to support ML-DSA in its control and data plane services.
read more →

Q2 2026 Summary of Major Internet Disruptions

🛰️ In Q2 2026 Cloudflare Radar documented notable Internet disruptions worldwide, from Super Typhoon Sinlaku near Guam to frequent government-mandated shutdowns in Sudan. The quarter also included Iran’s partial restoration after an 88-day blackout, AWS region outages following drone strikes, a DNSSEC mishap affecting Germany’s .de zone, and a submarine cable cut impacting Saint Lucia. These incidents highlight the fragility and interdependence of global Internet infrastructure.
read more →

Cloudflare open sources a privacy proxy CLI

🔒 Cloudflare has open sourced pvcli, a command-line tool designed to simplify debugging and testing of privacy-preserving protocols such as Oblivious HTTP (OHTTP). The tool automates binary HTTP encoding, key parsing, encryption steps, and protocol flows across relay, gateway, and origin, replacing fragile, script-heavy workflows. Released under the Apache-2.0 License, pvcli supports curl-like arguments, detailed logs, headers forwarding, and mTLS, and will expand to include MASQUE and other privacy protocols.
read more →