Cloudflare Outage Map
The map below depicts the most recent cities worldwide where Cloudflare users have reported problems and outages. If you are having an issue with Cloudflare, make sure to submit a report below
The heatmap above shows where the most recent user-submitted and social media reports are geographically clustered. The density of these reports is depicted by the color scale as shown below.
Cloudflare users affected:
Cloudflare is a company that provides DDoS mitigation, content delivery network (CDN) services, security and distributed DNS services. Cloudflare's services sit between the visitor and the Cloudflare user's hosting provider, acting as a reverse proxy for websites.
Most Affected Locations
Outage reports and issues in the past 15 days originated from:
| Location | Reports |
|---|---|
| Los Angeles, CA | 1 |
| Paris, Île-de-France | 1 |
| New York City, NY | 1 |
| Manchester, England | 1 |
| Angers, Pays de la Loire | 1 |
| London, England | 1 |
Community Discussion
Tips? Frustrations? Share them here. Useful comments include a description of the problem, city and postal code.
Beware of "support numbers" or "recovery" accounts that might be posted below. Make sure to report and downvote those comments. Avoid posting your personal information.
Cloudflare Issues Reports
Latest outage, problems and issue reports in social media:
-
RejectNova (@RejectNova1917) reported@yeusep3 What actually happened with it? Is it just linked to the platform you're trying to upload it to?... another note, why ******** dose cloudflare exist anyway, seems like a "useful" but also completely useless service.
-
kedy (@big_kedy) reportedQuick explainer on @moonpay PayBox since I keep seeing confusion about it. It’s not a coin. It’s not an airdrop. It’s a payment tool. Basically, it lets you connect Claude or ChatGPT to your money so you can just type what you want, like swap $100 into SOL or book me a flight, and the AI sets it up for you. The security model is the actual innovation here: Your wallet key isn’t stored in one place. It’s split into fragments using multi party computation and kept across separate, hardware isolated enclaves. That means no single party, not MoonPay, not the AI model, not your phone by itself, ever holds enough of the key to move your money alone. For card payments, it routes through Visa’s agentic commerce protocol, which keeps your actual card number out of the transaction entirely. You control how much autonomy it has. Two modes: “Always Ask” makes it stop and get your passkey approval on every single transaction. “Autonomous” lets it act on its own but only within spending limits and rules you set ahead of time. Where the tech comes from: MoonPay acquired an Israeli cryptography firm called Sodot for around $100 million earlier this year specifically for this kind of key splitting infrastructure, it already secures over $50 billion in assets and 10 million+ wallets for other crypto companies, so it’s not brand new or unproven tech, just newly pointed at AI agents. Why this matters more broadly: Other attempts at “AI does your shopping” have struggled, OpenAI’s own in chat checkout feature reportedly got shut down earlier this year after barely a dozen merchants adopted it. PayBox is trying a different approach: instead of building a closed system, it rides on x402, an open payment standard for machine to machine payments that’s now backed by companies like Anthropic, Stripe, AWS, and Cloudflare. The idea is it can reach any service built to accept that standard, rather than needing merchants to build something custom just for it. The honest caveat: Solving who’s allowed to authorize a payment is different from solving whether the AI made a smart decision. An agent operating autonomously within its limits can still execute a transaction that’s technically valid but a bad call, so the permission settings you choose actually matter.
-
ScamHeist (@ScamHeist) reported🚨 This is not a real Cloudflare verification. Fake CAPTCHA pages are being used to trick visitors into installing malware themselves. The page tells the victim to press Win + R, paste a command from the clipboard and press Enter. Instead of verifying anything, those steps execute attacker-controlled code directly on the computer. Depending on the campaign, the downloaded malware may steal browser passwords, authentication cookies, crypto wallets, Discord sessions and other sensitive files. Real Cloudflare checks will never ask you to open the Windows Run box, paste a command or execute something through PowerShell. If a CAPTCHA asks you to use keyboard shortcuts outside the browser, close the page immediately.
-
Kimera2345 (@Kimera2345_) reportedI love getting randomly dinged as supposedly being a bot for no given reason. I assume it's because I was setting up a second account on another device and it freaked whatever AI **** they have out. (I was jailed in Cloudflare hell)
-
IRONSCALES (@IRONSCALES) reportedAn email claiming to be Interactive Brokers told recipients their W-8BEN tax form had expired. Clean branding, right down to the NYSE, FINRA, SIPC footer. The Renew Certification button ran through the recipient organization's own link-protection wrapper, which reported it clean because the proxy loaded. The real destination was a domain registered the same morning the email went out, and it answered automated scanners with a Cloudflare challenge instead of a page. No history to score, nothing to render, verdict unknown. Themis weighed the convergence instead: a sending domain unrelated to the brand, a DKIM body-hash failure, a same-day destination hiding behind a bot check, and zero personalization sprayed across multiple mailboxes. Any one signal is deniable. All of them together are not. (Link to full teardown in comments)
-
Jacky Chou (buying online businesses up to $1m) (@indexsy) reportedRIP local SEO agencies. claude just one-shot your entire job and it took one prompt. here's the full breakdown: the workflow is stupidly simple. jacky didn't even look at the client's site. he transcribed the previous episode, exported the local SEO ebook, gave both to claude and said fix this. out came a massive document: hero section changes, schema gaps, missing pages, internal linking fixes, and a full build order of what to ship first. next step is feeding this call's transcript back in, getting the final mockup, and handing it to the team to one-shot. claude suggested pages that didn't exist and they're genuinely smart. practitioner pages so the clinic ranks when someone googles their physio by name. neighborhood pages like "physiotherapy in killarney, 7 minutes from our victoria drive clinic" to capture every surrounding area search. pricing FAQs. the neighborhood play works because people search their specific scenario now, and AI search made long tail queries explode. the one warning: don't blast 60 boilerplate pages at once. tristan audited a member's site this week that got deindexed for exactly that. the guy one-shotted the whole site with templated content and google sandboxed it, and it's way harder to come back out of the sandbox now. rewrite every page, phase them in, be surgical. the interlinking structure is the actual sauce. service pages stay location neutral (no city terms in the H1 or you cannibalize), then link down to their east vancouver and mount pleasant versions. each location page links back to its respective service area pages. one to one targeting in every area. tristan's words: once your authority and reviews build up on top of that structure, it's game over. RIP wordpress too while we're at it. the only clients still on it are the ones whose teams can't leave. everything new runs out of github and cloudflare, changes ship in one sentence to claude ("put these six service pages in the menu nav and deploy"), and the sites look infinitely better. one advise member keeps a stack of HTML templates and just runs one up every time he finds a rank and rent. that's the stack now. the meta lesson: tristan's buddy in singapore watched the last episode, took the transcript, and had his codex agent running all day shipping every change to his new jersey site. citations in, indexed, tier 2s queued. he's probably gonna make it. the era of watching a youtube video and having AI implement it before the next episode drops is fully here. next up: a live rank and rent case study, national level, built in public. niche suggestions wanted. full claude local SEO takeover with @tristanzheng watch/listen ↓
-
Rosed (@RosedInqually) reportedCan X and Cloudflare stfu already I genuinely can't stand "Verify your age" just to click the same button over and over again and NEVER be able to actually verify, this **** sickens me.
-
Swaraj⚡ (@botsboss) reportedCurrent infra behind ytcrawl (Youtube Crawler) ✅ VPSs ✅ Docker Containers ✅ Docker Swarm + Portainer ✅ Proxy network / Terabytes of proxy bandwidth ✅ PostgreSQL ✅ ClickHouse ✅ Cloudflare R2 (planned) ✅ RabbitMQ ✅ Redis ✅ GitHub Packages (for container images/packages) ✅ Grafana
-
MAULIK MANDALI (@AnalogPvt) reported@michellechen @OpenRouter @kevin_flansburg {"errors":[{"message":"AiError: Ai: This account is not allowed to access this model. (c4747cae-bcf3-4c29-b867-48f3eab4d97f)","code":5018}],"{}","messages":[]} (Tested with: Cloudflare | deepseek/deepseek-v4-flash-20260731)
-
Pete Stewart (@pj_stew) reportedI want to share an article I wrote with other @CloudflareDev about how I used the Cloudflare infrastructure to solve a real issue we faced with video transcription at Achene. Link below 👇
-
Caroline Vrauwdeunt ✌️☮️ (@andrsnu) reported🥲 shipped a beautiful unified header tab with action buttons and matching floating tab bar for Money Magician, drilled down data to build Cloudflare-Uptime open source software as lean as possible and shipped new status page designs for it. But non of it mattered, really - as it was also the week I had to put my buddy to sleep.
-
MoroJS (@Moro_Js) reported@TheHackersNews routing webRTC through twilio via cloudflare is clever. it’s basically tunneling the signal inside a proxy chain to hide the source ip. no chrome patch needed because it’s not exploiting a browser bug, just leveraging existing infrastructure as camouflage. smart move for evasion.
-
i miss the sun (@1_missthesun) reported@palashshah only reason software is alive is cause agents are slow and even though u can one shot apps, no normie wants to wait 20 minutes to make an app or 5 minutes to iterate (add features etc). If instant, personal software/generative ui takes over. For software companies, i'd look at what's happening at the agent product layer. Almost every single one has the same features. Adding a feature or copying is just an hour of work. Therefore every product can add all and any feature. However, right now, you still want to prevent bloat/feature creep even though you can do anything. This stops being as relevant if inference is near instant. Since software is no longer a differentiating factor, all that remains is most likely price/reliability. Websites die and are just apis that agents connect to on a singular super app product. ie imagine cloudflare and vercel had the same products/features. What you use would depend on price. It's too easy and also not possible to add features specific to every single user, therefore it's better to let the user's interface by dynamic to them. Every app can be a super app, but people do not wants hundreds of super apps. So we'll probably see 1 or few dominant platforms, similar to how chrome dominates the browser space.
-
The intern (@intern_11) reportedHonestly, if it were not for the Model Context Protocol going stateless, we would probably still be dealing with clunky session handshakes and sticky sessions for every AI integration. MCP 2.0 dropped July 28. No more initialize handshake. No more protocol sessions. Every request is now independent. GitHub removed Redis session storage, eliminated a database write on every call and a read on every request. Cloudflare runs each MCP request on a fresh stateless server. Manufact cut its SDK package size by 83% and made it 25% faster. MCP servers now behave like any other HTTP service. Simon Willison built three MCP tools this week alone. The protocol just became the default for AI-to-system integration. Are you building on MCP yet?
-
Syed Balkhi (@syedbalkhi) reported@carlhancock Yup. I have multiple WooCommerce stores in many millions in annual revenue, and I know several customers who're much bigger using Woo. If a Woo store can't scale, it's likely a hosting infrastructure problem. We just switched our WooCommerce to @LevamoHosting and the speed is incredible with Cloudflare Enterprise, Auto-scaling, Redis Object cache, etc. Other hosts like Rocket, Pressable, etc all offer solid Woo hosting options that will scale.