1. Home
  2. Companies
  3. Cloudflare
Cloudflare

Cloudflare status: hosting issues and outage reports

No problems detected

If you are having issues, please submit a report below.

Full Outage Map

Cloudflare is a company that provides DDoS mitigation, content delivery network (CDN) services, security and distributed DNS services. Cloudflare's services sit between the visitor and the Cloudflare user's hosting provider, acting as a reverse proxy for websites.

Problems in the last 24 hours

The graph below depicts the number of Cloudflare reports received over the last 24 hours by time of day. When the number of reports exceeds the baseline, represented by the red line, an outage is determined.

At the moment, we haven't detected any problems at Cloudflare. Are you experiencing issues or an outage? Leave a message in the comments section!

Most Reported Problems

The following are the most recent problems reported by Cloudflare users through our website.

  • 33% Cloud Services (33%)
  • 29% Domains (29%)
  • 19% Web Tools (19%)
  • 10% E-mail (10%)
  • 10% Hosting (10%)

Live Outage Map

The most recent Cloudflare outage reports came from the following cities:

CityProblem TypeReport Time
New York City Cloud Services 7 days ago
Los Angeles Cloud Services 8 days ago
Paris Cloud Services 24 days ago
New York City Hosting 26 days ago
Manchester Domains 2 months ago
Angers Cloud Services 2 months ago
Full Outage Map

Community Discussion

Tips? Frustrations? Share them here. Useful comments include a description of the problem, city and postal code.

Beware of "support numbers" or "recovery" accounts that might be posted below. Make sure to report and downvote those comments. Avoid posting your personal information.

Cloudflare Issues Reports

Latest outage, problems and issue reports in social media:

  • heyak21
    AK (@heyak21) reported

    @techrealm @Cloudflare Interesting! Could you please share couple of examples. I also have 40+ domains, never used and am now thinking about how to make them work

  • toasterlighting
    Celene is in Seattle! (@toasterlighting) reported

    @levelsio Yeah, this happened to me too. Annoyingly, meta's web-indexer gets classified as a Search Bot, so cloudflare lets it through a lot despite how rude it is

  • ethanniser
    Ethan Niser (@ethanniser) reported

    one of the stated "benefits"* of durable objects is because their state is inherently very optimally shared you can theoretically very optimally place that state (and compute together) very close to users celld drops this in favor of one centralized bucket not necessarily a bad thing, centralization has a lot of benefits, and cloudflare DOs currently do not give a lot of control over exact placement and you can not move a DO once its placed which can lead to some non-optimal outcomes

  • test_acccount_
    Predict (@test_acccount_) reported

    NEW IN: Cloudflare reports that ‘non-human traffic’ now accounts for over 57% of all activity on its network.

  • _vu
    vu (@_vu) reported

    @jpschroeder I had the same issue. Cloudflare did not give a ****. Honestly **** their durable objects

  • VicentZacky
    Zacky vicent (@VicentZacky) reported

    THE “SAASPOCALYPSE” IS HERE — AND WALL STREET IS GETTING ITS TEETH KICKED IN Software stocks just delivered a brutal reminder: AI isn’t simply changing software. It is forcing Wall Street to question what software is actually worth. The carnage started with Airtable. Once valued at nearly $12 billion in 2021, the cloud-software darling agreed to be acquired for less than $1.3 billion — roughly 90% below its peak valuation. That is not a correction. That is a ******* valuation massacre. Then came the earnings bloodbath. HubSpot and Datadog were hammered. Datadog plunged 19%, its worst single-day decline since going public in 2019. Its largest AI customer — widely believed by analysts to be OpenAI — reportedly reduced usage beginning in June. The message to investors was ******* clear: If AI companies can build, monitor, automate, and operate more of their own software internally, why should they keep paying massive recurring fees to traditional SaaS vendors? That is the question terrifying the entire sector. And it gets uglier. Software stocks collapsed 24% in Q1, their worst quarterly performance since 2008. Venture-backed SaaS companies are now trapped between two worlds: They raised enormous amounts of capital at absurd pre-AI valuations — and now they have to prove those valuations weren't bullshit. There hasn't been a significant SaaS IPO in 2026 so far. Meanwhile, 86% of the value of private deals in the first half of 2026 went to AI companies, according to PitchBook. Capital isn't disappearing. It is ******* moving. And Wall Street is following it. But then came the plot twist. Atlassian jumped 35% in one day — its best session since its 2015 IPO. Twilio surged more than 20%. Cloudflare gained 5.6%. Suddenly, the “software is dead” narrative looked a little ******* premature. Atlassian delivered its strongest quarterly profit since 2021, reminding investors that AI doesn't automatically destroy every software business. Sometimes it does the opposite. AI can become a weapon for software companies that adapt fast enough. Atlassian had already cut 10% of its workforce — roughly 1,600 jobs — five months earlier, explicitly to fund further investments in AI and enterprise sales while strengthening its financial profile. That is the new battlefield. Cut costs. Deploy AI. Increase productivity. Defend margins. Prove the customer still needs you. Because the real threat isn't AI itself. The real threat is becoming irrelevant. Salesforce knows it. The company has lost more than 40% of its value since the end of 2024, despite continued revenue growth and consistent margins. Marc Benioff can tell investors that Salesforce's software isn't going anywhere. But Wall Street isn't paying for promises anymore. It wants evidence. And that's why companies like OpenAI Codex and Anthropic's Claude Code are causing such ******* anxiety. If AI agents can increasingly build software that once required expensive teams, then the economic moat around traditional SaaS starts getting attacked from the inside. But here's the part Wall Street may have underestimated: Software isn't necessarily dying. The business model is being ******* rewritten. The winners won't simply be the companies selling software. They will be the companies that use AI to make their software 10x more useful, cheaper to operate, harder to replace, and deeply embedded into enterprise workflows. That explains the violent market swings. Investors are no longer asking: “Is this a great software company?” They're asking: “Will this company still matter when AI agents become exponentially more capable?” That is a much more ******* brutal question. And the market is repricing companies accordingly.

  • TwelveCacti
    HIGHLY EVOLVED PLANT (@TwelveCacti) reported

    Cloudflare shipped a browser yesterday with no tabs, no themes, and nobody to look at it. It's called Kitesurf, it's built for AI agents instead of people, and it's free while in beta. What it means for you: the next visitor to your website may not have eyes. An agent reads your text, your prices, your hours, your service area. It cannot be charmed by a hero video or a photo that fades in. The businesses that get recommended by the machine are the ones whose pages read like a plain answer to a plain question. Yours is either readable or it's decoration.

  • raviojhax
    Ravi Ojha (@raviojhax) reported

    after our ios app went live, someone has unleashed an AI harness of sorts that's just persistently trying ways to pentest our backend if it was a human, there would've been breaks, but this is just runnign 24x7 since last 3 days the worst part is, we have so many useless entries in db now although, credit where its due, it's found some good stuff that I'll be rate limiting on that most seCuRiTy rEseArCheRs fail to figure out also, one more thing, it is able to pass cloudflare turnstile (although, it does fail like 60-70% of the time)

  • LevDubinets
    Lev (@LevDubinets) reported

    @rough__sea Do you plan to support the cloudflare workers kv api as well? Or do you already support it?

  • Sousinr
    Sourabh (@Sousinr) reported

    How to give Claude Code permanent memory of your entire coding style & stack 👀 I use this 3-step workflow: 1. Create a personal skill folder: mkdir -p ~/.claude/skills/my-stack 2. Drop a SKILL.md inside with your rules: - Preferred stack (Nextjs + Cloudflare + whatever you use) - Naming conventions - Error handling patterns - “Never do X” 3. Restart Claude Code or just type /skills Now every new project automatically follows your rules. No more repeating yourself every chat.

  • Mo_ali
    Mo RezaAli (@Mo_ali) reported

    People assume it's all n8n. It isn't. Reporting is Claude Code and a cron job. Some is Cloudflare Workers. One piece is a 40-line script that will never be a product. That's the difference between twelve dollars a month and two thousand. It's glue, not a platform.

  • malekanoms
    Omid Malekan (@malekanoms) reported

    Here's a hypothetical scenario of where stablecoin netting makes sense: The volume of agentic micropayments the Cloudflare CEO is talking about below cannot be handled by any known blockchain architecture. Even a corpo DLT with 5 validators can't scale that high (and even if it did, the centralization would eliminate the point of using stables in the first place). So instead what Cloudlfare could do is net the micropayments. It's highly likely an AI agent paying a micropayment to access the content of one Cloudflare website also needs to access many others in a short window. So Cloudflare can play the role of trusted central counterparty, performing multilateral netting on all the micropayments that go to a particular website and settling on-chain periodically. The best chain to do this on would be a highly performant ETH L2, because rollups do their own type of netting, posting the blobs and proofs of a bunch of transactions happening on fast L2 blocks to the slower L1. Tiered netting is standard practice in TradFi. If this model sounds familiar to you, it's the same trusted service card schemes perform between banks and merchants. So in theory, Visa and Mastercard could offer multilateral netting for agentic micropayments as well. The problem they will have is that they are offering one set of users a similar service to what they offer another but at a fraction of the cost. That's a tough juggling act and incumbents seldom pull it off. Cloudflare doesn't have this problem.

  • test_acccount_
    Predict (@test_acccount_) reported

    NEW IN: Cloudflare reports that non-human traffic now accounts for over 57% of all activity on its network.

  • ScienceDegen
    Science Degen (@ScienceDegen) reported

    @Cloudflare Trying to connect using BYOK. Is this user error or a bug for the grok BYOK? cloudflare,openai,google,grok The problem: Cloudflare OS's model picker uses xai as the model prefix (e.g., xai/grok-4.5), but the BYOK system stores your key under the slug grok. Cloudflare OS can't connect the two.

  • Synapse_Brief
    Synapse Brief (@Synapse_Brief) reported

    Three separate companies just told you where AI capex is actually going, and it's not more GPUs. AMD bought Taalas Thursday. Toronto startup, undisclosed price, does something genuinely different: etches model weights straight into silicon instead of running them on general compute. Their HC1 chip runs Llama 3.1 8B at ~17,000 tokens/sec on a 6nm TSMC die, which Taalas claims is roughly 48x a comparable Nvidia setup on that specific workload. That's a vendor number, not an audited one, but AMD didn't buy this for the marketing. Design-to-silicon in about two months because they only touch 2 of ~100 metal layers per model swap. Lisa Su has been saying GPUs stay the majority of the market because they're flexible. This is the bet on the workloads that aren't: stable, high-volume, latency-sensitive inference where a chip that can only run one model is a feature, not a bug. Same day, SpaceX and Tesla confirmed Terafab: a $16.8B first-phase fab in Grimes County, Texas, on the site of a shut-down coal plant, pulling water from its old cooling reservoir. Logic, memory, packaging, and testing under one roof, chips going into Optimus, Cybercab, and orbital data centers. Worth knowing: SpaceX's own May IPO filing proposed $55B initial and up to $119B total for this project, and called the whole arrangement a "general framework" with no binding commitments on either side. $16.8B is real money and a real site. It is not the whole plan, and Musk's framing has moved the topline number around before. Also Thursday: Cloudflare shipped Kitesurf, a browser built for agents instead of humans, running in V8 isolates on Workers instead of Chromium. 3 to 7x less CPU and memory on screenshot and extraction workloads, already passing 215,000+ Web Platform Tests, drop-in compatible with Puppeteer and Playwright. The insight isn't the perf number, it's what it's for: every research agent and scraping pipeline has been eating Chromium's full resource bill for tasks that never needed a rendering engine built for 50 human tabs. Cloudflare's making the same "stateless, cheap, disposable" bet across its whole agent stack this week. Three different companies solving the same underlying problem from three angles: chips too generic for the workload, fab capacity too scarce for the demand, browser infra too heavy for what agents actually do. None of this is about better models. It's about whether the stuff underneath them can afford to run.

  • tohjuapp
    Tohju.com (@tohjuapp) reported

    🧵 Debugging production AI pipelines is an adventure. We had an issue where Civitai generation jobs (like Krea 2 Turbo and Anima) would fail or get stuck in infinite retry loops on Cloudflare Queues. Here’s what I found when I dug into the logs: 👇

  • nicolasembleton
    Nick Emb (@nicolasembleton) reported

    @jpschroeder Sorry to hear that... That's what I'm the most scared about on CloudFlare and makes it impossible to use in production. Just too damn scary. If anything goes rogue, Cloudflare is having a field day but you're broke.

  • Sloemo_dzn
    Sloemo (@Sloemo_dzn) reported

    I FOUND THE WAY TO BYPASS CLOUDFLARE TURNSTILE HOLY **** USING HERMES TUTORIAL TOMORROW

  • UK_Daniel_Card
    mRr3b00t (@UK_Daniel_Card) reported

    Daniel's Daily Threat Intel & CVE Briefing — Fri 7 Aug 2026 Top of the stack: Today is CISA's federal remediation due date for the N-able N-central / Langflow / Tomcat KEV batch — and the N-central bug is the one that matters: CVE-2026-18577, an auth-bypass that is a bypass of the incomplete fix for CVE-2026-18556, is being exploited in the wild since Aug 1 to seize admin on RMM servers and pivot into managed endpoints. If you or clients run N-central, patch to 2026.3.1 Hotfix 1 (2026.3.1.7) and hunt for post-compromise activity before anything else today. 1. CISA KEV / actively exploited (lead) CVE-2026-18577 — N-able N-central, all versions ≤ 2026.3.1 (pre-Hotfix 1). Unauth auth-bypass → full admin. Exploited in the wild from Aug 1; added to KEV Aug 3. Post-exploit TTPs: abuse of the Take Control feature to reach managed endpoints + Cloudflare Tunnel for persistent backdoor. Fix: 2026.3.1.7. So what: RMM = one box to own the whole estate; treat any unpatched N-central as presumed-compromised. CVE-2026-18556 — N-able N-central auth-bypass (the incompletely-patched precursor to 18577), CVSS 8.2. KEV, federal due date today. CVE-2026-9198 — Langflow (open-source AI app-dev platform), CVSS 9.8, unauth code-injection → RCE. Fixed 1.10.1. Repeatedly weaponized in recent months; KEV, due today. So what: internet-exposed AI/LLM tooling is now a routine initial-access target. CVE-2026-34486 — Apache Tomcat, CVSS 7.5, EncryptInterceptor cluster-messaging bypass. Fixed 11.0.21 / 10.1.54 / 9.0.117. Tied to SNOWLIGHT malware campaign; KEV, due today. CVE-2026-63077 — JetBrains TeamCity deserialization flaw, added to KEV this week. Verify your CI/CD estate isn't exposing TeamCity to untrusted networks. 2. Edge / network gear CVE-2026-20316 — Cisco Secure Firewall Management Center (FMC) 7.0–7.7 / 10.0. Static credentials for a low-priv account → unauth remote access to sensitive data; actively exploited as a zero-day (disclosed Jul 30). Base CVSS only 5.3 but Cisco rates SIR High because it's chainable for privilege escalation. So what: not the headline score, but it's live and it's your firewall manager — patch and rotate. Fortinet/Ivanti criticals (FortiSandbox CVE-2026-25089 9.8; Ivanti Sentry CVE-2026-10520 10.0 / CVE-2026-10523 9.9) are from the June 10 cycle — no new exploitation reported in the last 24–48h; flagged only in case anything remains unpatched. 3. Microsoft / Windows / AD Quiet in the last 24h. No new in-the-wild Windows/AD/Exchange/Entra items surfaced. August Patch Tuesday lands Aug 11 — July's record 622-flaw cycle (2 zero-days under active attack) should already be deployed; if not, that's your gap. 4. Web / cloud / DevOps CVE-2026-66066 — Rails Active Storage (< 7.2.3.2, 8.0.x < 8.0.5.1, 8.1.x < 8.1.3.1; 6.x only if configured off-default). Critical; unauth arbitrary file read → potential RCE via libvips ("KindaRails2Shell", pivots on the app master key). Public PoC available (disclosed Aug 1). Mitigation: upgrade Rails/Active Storage, libvips ≥ 8.13, ruby-vips ≥ 2.2.1. CVE-2026-63030 + CVE-2026-60137 — WordPress core "wp2shell" chain (REST batch-route confusion + author__not_in SQLi). Unauth RCE on default installs 6.9.0–6.9.4 / 7.0.0–7.0.1. Public exploits on GitHub; watchTowr reports in-the-wild exploitation. Fixed 6.9.5 / 7.0.2 (forced auto-update pushed). Slightly older (Jul 18) but still actively exploited — worth a scan sweep. Watch / developing Oracle out-of-band Security Alert CVE-2026-35273 surfaced this week — details thin, worth confirming scope. Senserva notes ~30 KEV entries this month with 2 tied to ransomware campaigns (Microsoft/Fortinet/Cisco most-affected) — watch for ransomware operators folding the N-central and Langflow bugs into their access-broker playbooks. Sign-off: 7 items flagged actively exploited today (N-central ×2, Langflow, Tomcat, TeamCity, Cisco FMC, WordPress wp2shell); the single must-do is patching N-central before CISA's due date closes. Sources: CISA — Adds Three KEVs (Aug 4) CISA — Adds One KEV (Aug 3) The Hacker News — CISA flags Langflow, Tomcat, N-central Rapid7 — CVE-2026-18577 N-central exploited in the wild N-able — N-central Security Update (Aug 2) The Hacker News — Cisco FMC zero-day actively exploited BleepingComputer — Rails Active Storage RCE (CVE-2026-66066) BleepingComputer — WordPress wp2shell RCE public exploits SecurityWeek — Fortinet/Ivanti critical patches Senserva — CISA KEV additions this week One caveat worth noting for your own verification: NVD detail pages were unreachable during this run, so severities above are corroborated against vendor advisories, CISA, and reputable trackers rather than NVD directly — the Langflow 9.8 and Cisco 5.3 figures each have two independent sources, but confirm against NVD before citing formally.

  • EvanKirstel
    Evan Kirstel #B2B #TechFluencer (@EvanKirstel) reported

    @Cloudflare Cron job plus a webhook. Never going back. @techimpactTV

  • Oddhootcapital
    Odd Hoot Capital (@Oddhootcapital) reported

    @stock_logging Even with urgn, I think the knowledge people have lies in the chart. So its not really insider knowledge as we get to see the chart. Controversely, guidance raises, as we see tonight with sezzle, can still lead to -20%, as I guess institutions trick retail or overleveraged other institutions. I had 40% of my ardx position on a broker I could do after hours and sold at -7%. The other half I sold in the last hour at -25%. I leave like 10%. I do get tax refund as I had a lot of wins this year I already paid taxes for, so its not as bad. Like a 10% loss or 2% of portfolio. I bought aaoi, mara, abvx & nktr I trimmed urgn half at 40 and now will never trim the rest if no thesis changing revisions. That will be my plan going forward. Maybe after a 4x another quarter and 8x another 25% trim. Interestingly I opened a fake money wikifolio in 2021 but never touched it. What happened? 2 100% losses, 4 100% wins and 1 8x (cloudflare) and lots of -60 to + 30% performers. Its overall at 30% after 6 years, very poor but the next years should do well cos of the 5 runners compounding. (allianz, eon, cloudflare, gilead, opera) I had 10% aaoi in winter so my entire portfolio would be up 25% due to it. even 12% if I had trimmed half. with my cut at 45, only up like 4%. thats not happening to me again. same with amazon/google/facebook/microsoft/amd/nvidia that I all bought 10-15 years ago and only 2-3xed instead of 20-1000xed. even 1k at 1000x is a million. cant be that I miss another game-changer for my personal wealth.

  • myvidster
    MyVidster (@myvidster) reported

    @poundtownusa1 Getting performance issues with cloudflare, I implemented caching to help, restart your app or webpages.

  • financespotnews
    Finance Spot (@financespotnews) reported

    Cloudflare $NET remains elevated after raising full-year revenue guidance on accelerating AI-related traffic and customer growth.

  • ____zee___
    ZEE (@____zee___) reported

    @Cloudflare I remember tweeting this about 6 months ago having the same issue, I have eventually found the screen and it was one click transfer but I have 0 idea how I got there..

  • kaka_ruto
    Kaka Ruto (@kaka_ruto) reported

    @nickgraynews For the cloudflare discussion, I feel like cloudflare is okay but it much further upstream for this kinda problem I feel like the best solution to this would be one that sits between your application and cloudflare, but it would sit much closer to your application than to cloudflare And it would identify all traffic and be able to essentially do what you're currently doing with cloudflare, while doing better at caching and other stuff that cloudflare won't go into

  • 0xBOYD
    Boyd (@0xBOYD) reported

    Ah, turns out the budget alert for account wide spend is new and added by Cloudflare, but didn't take effect during the last billing cycle. We had alerts for workers but that would not have caught this. This is a very bad feeling that we will make sure we never feel again.

  • Reism4k
    Bomba (@Reism4k) reported

    @SwamiMalode @vercel move to Cloudflare Pages, if your website is static, which looks like it is, you can have INFINITE bandwidth, usage, as-well as make use of Cloudflare's Global CDN network

  • ____zee___
    ZEE (@____zee___) reported

    @ashleypeacock @safehouse_run 15 years of writing C# and PHP, 18 months ago I discovered the Cloudflare Developer Platform and have never looked back. There’s literally no reason to do anything else, useful is an understatement 🫡

  • BryIsTheGuy
    Bryan (@BryIsTheGuy) reported

    @gregorojstersek No, I'm burned out because we are adding a million different tools and AWS services to our app that has been running on a single server under nginx for years without a single issue. K8s, Kafka, Shopify, Cloudflare Workers (I actually like these), and breaking everything.

  • davidrobertson
    David Robertson (@davidrobertson) reported

    @0xBOYD I’ve had my issues with @Cloudflare I had a domain arbitrarily black listed, it messed up a clients web store. I’ve had them lock an account and I couldn’t pay for a domain renewal, after the six weeks that it took to get it unlocked, I had to pay $200 to get the domain renewed. I do not trust them with anything important. It’s like amateur hour dealing with them.