Cloudflare status: hosting issues and outage reports
No problems detected
If you are having issues, please submit a report below.
Cloudflare is a company that provides DDoS mitigation, content delivery network (CDN) services, security and distributed DNS services. Cloudflare's services sit between the visitor and the Cloudflare user's hosting provider, acting as a reverse proxy for websites.
Problems in the last 24 hours
The graph below depicts the number of Cloudflare reports received over the last 24 hours by time of day. When the number of reports exceeds the baseline, represented by the red line, an outage is determined.
At the moment, we haven't detected any problems at Cloudflare. Are you experiencing issues or an outage? Leave a message in the comments section!
Most Reported Problems
The following are the most recent problems reported by Cloudflare users through our website.
- Domains (35%)
- Cloud Services (26%)
- Web Tools (17%)
- Hosting (13%)
- E-mail (9%)
Live Outage Map
The most recent Cloudflare outage reports came from the following cities:
| City | Problem Type | Report Time |
|---|---|---|
|
|
Cloud Services | 1 day ago |
|
|
Cloud Services | 17 days ago |
|
|
Hosting | 20 days ago |
|
|
Domains | 1 month ago |
|
|
Cloud Services | 2 months ago |
|
|
Domains | 2 months ago |
Community Discussion
Tips? Frustrations? Share them here. Useful comments include a description of the problem, city and postal code.
Beware of "support numbers" or "recovery" accounts that might be posted below. Make sure to report and downvote those comments. Avoid posting your personal information.
Cloudflare Issues Reports
Latest outage, problems and issue reports in social media:
-
Jamie (@TaxPayerxxxxx) reported@Cloudflare So your WARP Client for #ZeroTrust is limited to 25! Come on! If we could add a spot to type an organisation name in manually as well would fix this.
-
GrainStats 🌾 (@GrainStats) reported@HTSCommodities @bfl_ai @NousResearch anything is possible right now i'm betting on agentic flows being monetized. there is a market for this, it will take time, but it will get done. that and IP rights being monetized (e.g. buy my chart, limited to 100 views) most of our traffic is bots these days anyway...maybe charge them a nickel per visit? surely cheaper than burning tokens for no reason no doubt in my mind that *everything* and i mean everything of value will be paywalled and locked down in the next few years (also thesis to long Cloudflare)
-
The Tech Buzz (@tbuzzdaily) reported$200M raised: Spur just proved that detecting who isn't human on the internet was worth waiting nine years to fund Spur Intelligence raised $200M led by Insight Partners, the company's first institutional round since founders Riley Kilmer and Ethan Smith, both former US Department of Defense software engineers, started it in 2017. The company spent nine years bootstrapped before taking outside money. No valuation was disclosed. Spur detects VPNs, residential proxies, mobile gateways, and other anonymization infrastructure, selling the underlying signal through APIs and data feeds to fraud and security teams who then decide what to do with it. A Spur study found 94% of companies encountered anonymizing proxies during a security incident in the past year, and Cloudflare recently reported that bot traffic surpassed human traffic on the web for the first time. A nine-year-old company just took its first outside check the same year the internet quietly crossed a line most people haven't noticed yet: more of the traffic hitting websites is now machines than humans. Knowing which is which used to be a niche fraud-team problem. It's about to become the question every website, every login, and every AI agent interaction has to answer before anything else happens.
-
gabrielstuff (@gabrielstuff) reported@anilsoylu @Cloudflare I’ve been reporting fake ecom websites to @Cloudflare for years, yet I’ve never managed to trigger this warning or get a single site taken down. In France and across Europe, countless scammers operate behind Cloudflare. In my experience, reporting them has had virtually no effect
-
Kimera2345 (@Kimera2345_) reportedI love getting randomly dinged as supposedly being a bot for no given reason. I assume it's because I was setting up a second account on another device and it freaked whatever AI **** they have out. (I was jailed in Cloudflare hell)
-
abipraya; (@rbayuokt) reported@CloudflareHelp @Cloudflare I'm getting error when deploying my pages project with wrangler “received a malformed response from the API blablvalabla” and a 522 response is there an issue with the pages API at the moment?
-
Tyler (@TylerChud) reported@AgeOfInversion Leonarda Jonie frequently calls for violence But if i even insinuate violence My post or reply is deleted and im stuck in a Cloudflare login loop
-
WIV Reports — Uncensored (@WIVReports) reportedThere is no greater love than Christian hate. Gab, a company that constantly preaches its "Christian values" responds to a long term paying customer with pure disdain the second they get called out on technical incompetence. After dropping slurs and throwing a tantrum over standard DevTools logs, their CTO sent this email and immediately blocked my account on Gab so I couldn't reply. I am also sharing the email notification I received. Here is the full timeline of how Gab handles paying subscribers reporting a legitimate bug: 1: Socket io connections failed and looped infinitely, triggering a Cloudflare 429 Too Many Requests status code at their edge. 2: Support claimed a Cloudflare 429 signed by Cloudflare IPs was an issue with my "home Wi-Fi." A VPN on that same Wi-Fi instantly bypassed it, proving it was a server-side edge filter. 3: Instead of checking their WAF rules, their CTO claimed checking origin logs for 6 hours was "VIP treatment," accused me of using AI, and threw a fit. 4: I deleted my gab ai account, posted the DevTools receipts, and told him to fix his edge. 5: He sent a profanity-laden, slur-filled email, blocked me on the platform, and tried to hide it. Never once did I name-call or throw insults, I just posted raw HTTP response headers. This is how Gab treats the people who keep their lights on. Absolute amateur hour You can see the entire unfolding here on my X account, as I posted everything said verbatim. And again, here are the screenshots of the HTTP responses showing the issue is on them.
-
Rahul Gupta (@rg5353070) reportedIs Cloudflare down?
-
Daniel Morales (@Princedany96) reported@eastdakota @Cloudflare Would love agents/voice to support WebRTC as an alternative to websockets
-
Josh Duncan (@joshualeond) reported@morganlinton I’m used to using Expo + Cloudflare + AWS for some of my iOS agentic stuff. Not familiar with Bolt or Lovable. Do you recommend either of them? I have a customer that wants an mvp app in a couple weeks and trying to weigh pros and cons.
-
The intern (@intern_11) reportedHonestly, if it were not for the Model Context Protocol going stateless, we would probably still be dealing with clunky session handshakes and sticky sessions for every AI integration. MCP 2.0 dropped July 28. No more initialize handshake. No more protocol sessions. Every request is now independent. GitHub removed Redis session storage, eliminated a database write on every call and a read on every request. Cloudflare runs each MCP request on a fresh stateless server. Manufact cut its SDK package size by 83% and made it 25% faster. MCP servers now behave like any other HTTP service. Simon Willison built three MCP tools this week alone. The protocol just became the default for AI-to-system integration. Are you building on MCP yet?
-
Benjamin Shelton (@zancarius) reported@kwrob24 Yeah... I have most of my blogs behind Cloudflare specifically for this reason, but for historical (read: lazy) reasons, this instance lives on a domain I use for a *lot* of personal projects and home-lab-esque sort of things, even if most of it has been migrate to cloud services. It's not really a huge problem, and it's not (yet) consuming a bunch of egress traffic. But, this isn't the first time I've had issues with AI-related crawlers. I may be forced to move this to another domain at some point.
-
IRONSCALES (@IRONSCALES) reportedAn email claiming to be Interactive Brokers told recipients their W-8BEN tax form had expired. Clean branding, right down to the NYSE, FINRA, SIPC footer. The Renew Certification button ran through the recipient organization's own link-protection wrapper, which reported it clean because the proxy loaded. The real destination was a domain registered the same morning the email went out, and it answered automated scanners with a Cloudflare challenge instead of a page. No history to score, nothing to render, verdict unknown. Themis weighed the convergence instead: a sending domain unrelated to the brand, a DKIM body-hash failure, a same-day destination hiding behind a bot check, and zero personalization sprayed across multiple mailboxes. Any one signal is deniable. All of them together are not. (Link to full teardown in comments)
-
Warya Wayne (@WaryaWayne) reported4000 telegram messages notifying me that the sites are down every 180 seconds when they are not down. This must be a glitch with cloudflare or something. It happens on some schedule where the worker is probably glitching or something. How can a fetch to a homepage return 503?
-
Dane Knecht 🦭 (@dok2001) reportedTwice in nine days. OpenAI's models chained a zero-day to get out of an eval environment. Anthropic just found three incidents of the same shape. This is what capable models do. Every reachable path is an invitation. Credit to both for publishing. We rebuilt Cloudflare OS, our internal agent platform, assuming exactly this. Sandboxes have no network path out. Agents don't get every MCP tool up front, each workspace gets only what it needs. And instead of stopping for every approval until someone gives up and enables auto-approve, the platform simulates pending actions so the agent keeps working, then queues the real ones for review at the end. The app side goes further. Apps carry no auth code at all, the sandbox provides it, so there is no auth logic to get wrong. Multi-document apps are isolated per document, so a bug can't leak between separately shared items. Anyone viewing an app must have direct permission to each of its data sources, so a dashboard on sensitive data can't overshare. Actions need the user's own permission or an approval from someone who has it, so an app can't escalate its author's privileges. And everything an app does is logged, even when the service it calls doesn't support logging. Most companies are about to point agents at real systems. Build for what the models actually do. We will open source this next week!
-
Domen Kožar (@domenkozar) reportedAny Cloudflare engineers following me? We're having issues with your upstream proxy, please someone take a look at P1 case in 02262626
-
RejectNova (@RejectNova1917) reported@GalliusStrados @ItsLunarArray @meaty_tw I remember a day when cloudflare didn't exist, now damn near every site i go to has their stupid verification crap
-
feranmi (@_bumblebee7_) reported@vxnuaj @treejordan @LemonLime_AI i wouldn’t say hopeless tbh. it’s just a tough world out there. being a cs major is tough. cloudflare got 1 million applications for internship spots of about 1000 people. the field is so densely packed. not everyone goes to waterloo or a big tech school where the names can speak for you. it’s easy to say “put in the work” but that can only come from someone who’s blind and insensitive. students are asked to send cold emails upon cold emails to people who don’t care. “your cold email must make my middle finger twitch before you get a response”. it’s tough working your *** off with no results or anyone noticing you. a good number of cs majors are also immigrants who don’t have a network or know anyone. most of them just came to the U.S. with dreams and ambitions to help support those back at home. so when they see opportunities like this, sure, it looks so bad and you wonder “why would they do it?”. but when you’re in a pool where all hope seems to be lost, you happily take any rope thrown at you even if the person offering it is the devil himself. it’s a tough world out there. anyone who doesn’t have to experience it should be grateful.
-
U N C L E BIGBAY ✨ (@unclebigbay143) reportedEvery external service increases your blast radius. Redis Stripe Cloudflare OpenAI Email providers The more services your request depends on, the more ways it can fail. Always ask: "If this service disappears for an hour, does my product still work?"
-
Jonas Templestein (@jonas) reported@dok2001 @jachands @mattzcarey I think even outside MCP oauth, managing scopes on access tokens on cloudflare is super confusing and tedious There seem to be two similar but different UIs that are each really fiddly and require advance knowledge of what scopes are called. There is no “manifest” support as far as I can tell where I could just paste a Jain blob or something to update scopes
-
2024=2023+1 (e/acc) (@commondoubts) reported@paularambles Site is down now. @Cloudflare to the rescue?
-
MoroJS (@Moro_Js) reported@TheHackersNews routing webRTC through twilio via cloudflare is clever. it’s basically tunneling the signal inside a proxy chain to hide the source ip. no chrome patch needed because it’s not exploiting a browser bug, just leveraging existing infrastructure as camouflage. smart move for evasion.
-
Warya Wayne (@WaryaWayne) reported@zeeg Hey David, I'm a Sentry user. One task for Junior could be to maybe clean up the Sentry integration in Tanstack Start? Based on if we choose Nitro or Cloudflare it's dist or output and the scripts are wrong in package[.]json, there is a conflict my agents fix on deploy everytime
-
Jack Culpan (@JackCulpan) reported@Thom_K_NL @GoDaddy @Cloudflare Damn yeah
-
CalC (@Not_CalC) reportedIt would be good if there's a BAAS on cloudflare. Cloudflare already supports everything to build one, and it would be so fast due to cloudflare's vast network
-
🧞♂️Martin Donadieu - oss/acc (@martindonadieu) reportedSo France is joining spain to make all @Cloudflare down during games? 😭 Europe is omega doomed it's so sad
-
Gabe Fletcher (@gabefletcher) reportedpicks up phone dials 1800 @Cloudflare yeah hi. could you please fix the gateway for MCP authing, its currently more dead than a day 30 day old vibe coder and cant auth anything. okthx
-
flavio (@flaviocopes) reported@dnnskr91 Yeah but I’m doing all on Cloudflare these days from domain to compute and database for new apps so not an issue for me rn
-
Nico Szerman ⛵ (@nicoszerman) reportedcloudflare's bot-protection is ruining the internet with checkboxes and will be totally useless soon. furthermore blocking bots from fetching your page is almost always a bad idea and should not be enabled by default by cloudflare.