Cloudflare Outage Map
The map below depicts the most recent cities worldwide where Cloudflare users have reported problems and outages. If you are having an issue with Cloudflare, make sure to submit a report below
The heatmap above shows where the most recent user-submitted and social media reports are geographically clustered. The density of these reports is depicted by the color scale as shown below.
Cloudflare users affected:
Cloudflare is a company that provides DDoS mitigation, content delivery network (CDN) services, security and distributed DNS services. Cloudflare's services sit between the visitor and the Cloudflare user's hosting provider, acting as a reverse proxy for websites.
Most Affected Locations
Outage reports and issues in the past 15 days originated from:
| Location | Reports |
|---|---|
| New York City, NY | 3 |
| Los Angeles, CA | 1 |
| Paris, Île-de-France | 1 |
| Manchester, England | 1 |
Community Discussion
Tips? Frustrations? Share them here. Useful comments include a description of the problem, city and postal code.
Beware of "support numbers" or "recovery" accounts that might be posted below. Make sure to report and downvote those comments. Avoid posting your personal information.
Cloudflare Issues Reports
Latest outage, problems and issue reports in social media:
-
TomOnTech (@TomOnTech) reportedAI AGENTIC PAYMENTS: The Middle Layer May Capture the Most Value AI agents are beginning to purchase data, software, computing power and services without a person initiating each transaction. Over time, agents could conduct more transactions than people, with many payments worth only a few cents or fractions of a cent. This does not necessarily mean payment processors will collect large fees. Coinbase reported more than 165 million x402 transactions but only about $50 million in cumulative volume—roughly $0.30 per transaction. The x402 protocol is also open and charges no protocol fee. If basic settlement becomes inexpensive and standardized, more value may accrue to the middle layer between the agent and the payment rail. That includes: • Identifying the agent • Confirming its permissions • Setting spending limits • Metering resource consumption • Requesting and verifying payment • Routing the transaction • Managing fraud and compliance • Granting access to the requested resource Public companies positioned around this middle layer: Cloudflare $NET Cloudflare may have the most strategically important position because it sits directly between agents and online resources. Its Monetization Gateway is designed to let an API, dataset, webpage or AI tool require payment before providing access. Cloudflare can potentially handle the payment request, usage metering, verification and access decision at the edge. Cloudflare Wallets could also give agents programmable spending limits, approved merchants and maximum transaction sizes. This places Cloudflare on both sides of the transaction: helping online resources collect payments and helping agents make them. The products are still early, however, and meaningful revenue has not yet been demonstrated. Coinbase $COIN Coinbase has the most developed overall agent-payment stack. It created x402, operates Base, provides agent wallets, facilitates payments and participates in USDC economics. Because x402 is open and vendor-neutral, Coinbase’s long-term opportunity is not charging a large protocol fee. It is monetizing wallets, balances, compliance, business services and activity occurring through its infrastructure. Mastercard $MA Mastercard’s potential role extends beyond processing the payment. Agent Pay for Machines is designed to manage identity, permissions and trust across cards, bank accounts and stablecoins, including high-frequency payments worth fractions of a cent. Even if settlement moves to inexpensive stablecoin networks, Mastercard could remain involved as the credentialing and risk-management layer. Visa $V Visa is developing agent scoring, tokenized credentials, fraud models, stablecoin settlement and an agent directory. Its infrastructure may be especially relevant when an agent makes a larger purchase for a person and the merchant needs to confirm that the agent is legitimate, authorized and operating within the user’s instructions. PayPal $PYPL PayPal combines merchant distribution, consumer wallets, PYUSD, fraud management and dispute resolution. Its strongest opportunity may be serving as the connection between consumer agents and merchants rather than processing sub-cent machine-to-machine payments. Circle $CRCL USDC currently dominates x402 settlement, making Circle an important part of the underlying payment rail. However, Circle primarily earns reserve income on USDC balances rather than revenue from each transaction. High transaction volume matters only if it also creates larger funded balances or demand for Circle’s paid wallet, compliance and developer services. Marqeta $MQ Marqeta can issue virtual cards with detailed spending limits and programmatic controls. This makes it a useful middle layer while agents still need to purchase from merchants that accept cards but not stablecoins. Its role may become less important if direct wallet-to-wallet payments become widely accepted. My current ranking: $NET — payment and access decisions at the internet edge $COIN — wallets, facilitation, Base and USDC economics $MA — agent identity, permissions and trust $V — credentials, fraud protection and merchant acceptance $PYPL — connection between consumer agents and merchants $CRCL — underlying stablecoin settlement $MQ — programmable card bridge
-
Ryan K 🌥 (@Yank) reported@steven_levey @Cloudflare Sorry to hear about the issues. If you can submit a ticket and share the ticket number with me I can try to make sure the right people see it.
-
2 AM (@2AM_007) reported@avemii Yes, cloudflare is down
-
Krishna Gupta (@kgupta_2005) reported@itz_komal01 @SidharthVijay_ I think you should give cloudflare a try, belive me you will never regret
-
Faye Xiao (@faye_xiao_) reportedThe spirit of Spirit just sold for $10 million Google is buying Spirit Airlines' data out of bankruptcy. Emails, internal communications, spreadsheets, bookings, frequent flyer and HR records, all de-identified, for $10 million. Judge Sean Lane rules on the sale Wednesday. The obvious read is that Google wants more data. But de-identified data doesn't work for advertising, since you can't target someone you can't name, and Google already sees more airfare information through Google Flights than Spirit ever generated internally. An airline that went under in May is also a strange place to look for pricing wisdom. What's worth buying is the internal material. The emails and the spreadsheets they reference record how work moved through the company: a question gets asked, a document gets built, a decision gets made, a system gets updated. Consumer text is everywhere, and records of how an organization actually functions are not, which is what you need if you want models that operate inside workflows rather than talk about them. Google's own statement uses the word enterprise, and the runner-up bid of $7.5 million came from Mercor, a company whose entire business is sourcing training data for AI labs. When the second bidder isn't another airline, the market has told you what was being priced. The strange part is that Google isn't short on this data at all. It runs Gmail and Workspace and sits on possibly the largest collection of business correspondence in the world, and it has promised enterprise customers it will not train on their content, which is not a promise it can quietly break. So it has the material and no permission to use it. What $10 million buys is clean title, a court approved dataset nobody can sue over, at a moment when everyone else is defending scraping claims. Dead companies can agree to things live ones can't. Any of this is worth paying for because the public supply is running down. Epoch AI's 2024 analysis put the stock of quality public human text at roughly 300 trillion tokens and projected it would be consumed between 2026 and 2032, a window that opens this year, and access has closed faster since than the arithmetic alone suggests. A census of the top 100,000 domains this July found 19.1% blocking at least one AI crawler, and in September Cloudflare begins blocking mixed use crawlers by default across its entire free tier. Private operational records are the obvious next reserve, and they are almost untouched. Epoch left them out of its estimate because private data is fragmented and legally too messy to use at scale, which is precisely the condition a bankruptcy court removes. That makes Wednesday's ruling more interesting than the sale. If it goes through, every bankruptcy from here has a new asset to offer, and the value will depend on how well documented the industry already is. A corner store has nothing worth buying, since you can watch how it works from the sidewalk. A hospital or a law firm is the opposite, because even with names removed the record shows how a case moves through the organization, who escalates what to whom, and which exceptions get made. That knowledge lives in internal systems and in people's heads and appears nowhere public. The catch is that the supply is biased toward failure, since no healthy company would sell its internal record, so every dataset that reaches the market comes from an operation that didn't work. That's useful for learning how a process runs, and much less useful for learning what good judgment looks like.
-
@tobeycodes (@tobeycodes) reportedanyone having issues with gitCheckout in cloudflare sandboxes today? seems to always timeout and can never close. it was working fine before today
-
Lewis Smith 🦀 (@LewsmithUk) reportedAnyone else getting random 522 errors on @Cloudflare via London? It's happened to me a couple of times last few days, today I managed to make sure my server had no spike during two occurrences. @CloudflareHelp have you had any other reports like this for London recently?
-
Mark Lyck (@MarkLyck) reported@leerob @poteto @ericzakariasson can you please improve these simple Cursor PR features? Tried switching to Cursor this month, but there's a lot of missing / annoying stuff. 1. Add a preview link button. If the PR has a preview deployment from Vercel/Cloudflare/Netlify etc. Just give me a button I can click to quickly go to that preview deployment in Cursor or Browser. I don't want to have to go into the PR and go through review comments to find it. 2. Give me a keyboard shortcut to copy the Github PR link. Right now I have to click the chat, wait for it to load, then click "View PR" then click the 3 dots next to the github logo, then click copy link. That's way too many steps to share a Github/Origin link. 3. Why can't I configure trusted domains in the agent mode? Everytime I click a link I get this error "It's outside Cursor's trusted set. Only continue if you trust the source." And yes I did add it to my trusted domains in the IDE mode, but doesn't seem to work in agent mode. 4. Give me an indicator somewhere that shows how many approvals my PR has gotten if it has any. Right now the fastest way is to go to the github link, second fastest way is to go to the review section and scroll down and count manually if the PR doesn't have a lot of discussions. These are easy UX wins that would really help. 🙏🏻
-
Dain Bramage Entertainment ❄️ (@EOTWoffgrid) reportedI swear to THE CREATOR..... THESE FLARGIN 522 ERRORS ARE MAKING ME MORE THAN MILDLY DISGRUNTLED!!! Just when i think its fixed and workings.... nope! the blog posts still time out.... not sure if its because they aren't cached yet on @Cloudflare .... or if @GoDaddy is just trying to make me want to find a new webhost...... but there is a problem i have been dealing with for almost 2 weeks now.... dealt with support from both... and still... This:
-
Hassan (@thisdothassan) reported@rxnnie_tech @ossynoya This tissue is a different one from the Airtel issue. Cloudflare behaves this way sometimes until you use a vpn
-
Jared James (@jaredjames_) reported@RichHickson @brieanna_jade @maeve_social Ahh, looks like DMARC never got published in Cloudflare. My bad. Good catch man. TY, I owe you.
-
Sarath (@shekkizh) reportedfinally got around to reading this post. @gdb captures a lot of the thoughts in a manner that emphasizes the immediacy of the situation. have been on a similar boat for a while now after witnessing in my own experiments some of the things models are able to do - calling it reward hacking doesn't quite capture it imo. To quote two paragraphs from the blogpost: > In about 15 minutes, it uncovered 13 issues, many of which probably aren’t exploitable on their own—but I could imagine them being chained together with other vulnerabilities to significant effect. I hadn’t configured my DNS records to prevent attackers from forging emails from me; my site used an insecure version of jQuery; Cloudflare was forwarding requests to AWS over unencrypted HTTP. I then asked ChatGPT Work to fix these issues, which it did over the course of an hour. It opened the Cloudflare control panel in my browser, and proceeded to click many buttons to configure DNS, TLS, and advanced security settings correctly; it dropped jQuery entirely from the site; it migrated me off of AWS and onto Cloudflare Pages; it began a phased rollout of DMARC(opens in a new window). notice the difference in time to identifying vulnerabilities and time for fix. this will matter moving forward - response time for defense needs to come down relative to attack.
-
Harry|| WEB3_DEVELOPER (@harry_boy01) reported@juiceboy_of_abj It’s true. Even websites routed through cloudflare struggle to work on AIRTEL network too
-
Technopolis.tv (@technopolis_tv) reported@geerlingguy ...and then never opens (possible died behind cloudflare captcha)
-
Andrew Rulnick (@MickeySteamboat) reported@sierracatalina going to say there's a good chance it's hardware related sometimes it can be internet provider based, I had cloudflare challenging my nets and it was causing a LOT of problems with GPT in general until I identified that was the issue. ) :