Cloudflare status: hosting issues and outage reports
Problems detected
Users are reporting problems related to: cloud services, domains and hosting.
Cloudflare is a company that provides DDoS mitigation, content delivery network (CDN) services, security and distributed DNS services. Cloudflare's services sit between the visitor and the Cloudflare user's hosting provider, acting as a reverse proxy for websites.
Problems in the last 24 hours
The graph below depicts the number of Cloudflare reports received over the last 24 hours by time of day. When the number of reports exceeds the baseline, represented by the red line, an outage is determined.
April 9: Problems at Cloudflare
Cloudflare is having issues since 10:20 AM EST. Are you also affected? Leave a message in the comments section!
Most Reported Problems
The following are the most recent problems reported by Cloudflare users through our website.
- Cloud Services (40%)
- Domains (31%)
- Hosting (23%)
- Web Tools (5%)
- E-mail (2%)
Live Outage Map
The most recent Cloudflare outage reports came from the following cities:
| City | Problem Type | Report Time |
|---|---|---|
|
|
Hosting | 1 day ago |
|
|
Domains | 2 days ago |
|
|
Cloud Services | 8 days ago |
|
|
Hosting | 8 days ago |
|
|
Cloud Services | 9 days ago |
|
|
Hosting | 16 days ago |
Community Discussion
Tips? Frustrations? Share them here. Useful comments include a description of the problem, city and postal code.
Beware of "support numbers" or "recovery" accounts that might be posted below. Make sure to report and downvote those comments. Avoid posting your personal information.
Cloudflare Issues Reports
Latest outage, problems and issue reports in social media:
-
Liran Cohen (CTV + CSFS) (@itsLIRAN) reportedIt's hard for me to trust NIST given their reasoning for not including the secp256k1 curve... So although I do not think it's ALL hype, I take it with a grain of salt. As far as Google and Cloudflare, it's easier for them to update now and if they find a better algorithm continue to update or roll back, etc. That's not the same for Bitcoin, we should be more careful on the decision we make because we have to maintain them forever and we should be certain that they aren't able to be broken by classical computers in some way. The only thing people are disagreeing with Nic on is the timeline and urgency of activating something.
-
Vin (@VinayakNgm) reported@shydev69 @Cloudflare You are Right, and people who Support Cloudfare then don't Forget India is Mega Big Market for Cloudfare then Pakistan
-
Aly (@alishteinn) reported@SahilPanhotra bare metal vps is best for affording and if you have time or someone to manage it. because you need to set up the logs, traces, errors, resources all by yourself. i don't recommend it if you are in mvp or something. cloudflare is giving everything you need and they even serve your product in edge servers
-
Samuel (@Samuel64634686) reported@jamesperkins @Cloudflare Ok don’t. But this has nothing to do with cloudflare. It’s Google auth. Kind of 101 ****
-
Dhananjay Porwal (@dhananjayindia7) reported@shydev69 @Cloudflare @Cloudflare this is some serious ****. Please fix this on prior basis
-
Toni Quiñonero (@tquinoneroweb) reported@Cloudflare are there plans to make plugins working with all hosts which support Next.js?
-
lazywhale🍡 (@0xlazywhale) reported@SachinKankane @shydev69 @Cloudflare What a support from our fellow Indian
-
Shourjo (@ananyoshourjo) reported@jamesperkins @Cloudflare @canva does the same thing. It's the worst UX ever
-
Rhommel Lamas (@rhoml) reported@_ashleypeacock @eastdakota @Cloudflare Oh damn finally
-
cove (@covetrade) reported@MEADGod @Cloudflare wait so the problem is ur users actually showed up? thats a flex even if it breaks
-
The AI Guy (@theaiguyonx) reported@shydev69 @Cloudflare Hey @mapbox ... Fix this
-
Ava Builds (@ava_builds_) reportedFixed a Trippits flight search production outage today — hardened env var handling for FLI_URL and Cloudflare Access credentials. Defensive checks at the boundary save you from 2am pages. #buildinpublic #indiedev
-
Xyner_n (@Xyner_xd) reported@kartikedx @shydev69 @Cloudflare maybe mailing cloudfare will solve this issue than arguing it here . or maybe we need to capture that stolen territory
-
Ozzy (@MEADGod) reported.@Cloudflare you need a new customer?
-
Lazar Stojković ⚡️ (@LazarStojkovic) reported@jumperz Meh, it’s the same general idea as Cloudflare Durable Objects + Agents SDK. The only real news here is Anthropic making the durable session log a turnkey managed service.
-
Markatier (@Markatier) reportedCloudflare and GoDaddy just gave 20 million small businesses a kill switch for AI agents accessing their sites. The web is getting regulated from the bottom up. And most brand accounts are still posting about Monday motivation. Here's the real story: AI isn't just reshaping web traffic - it's reshaping the content race. Every major partnership, every industry shift, every breaking deal is a content opportunity that expires within hours. The brands that win aren't the ones with the biggest budgets. They're the ones who can turn a live news signal into a published, on-brand post before the algorithm moves on. That's not hustle. That's infrastructure. Most social teams are still copy-pasting headlines into a doc, briefing a writer, waiting for approvals, and posting 48 hours late. By then, the engagement window is closed and some other account already owns the conversation. CONTENT THAT MISSES THE MOMENT DOESN'T JUST UNDERPERFORM - IT SIGNALS TO YOUR AUDIENCE THAT YOU'RE ALWAYS ONE STEP BEHIND. Markatier flips this. We take trending news - exactly the kind of story Adweek is covering right now with the Cloudflare-GoDaddy partnership - and transform it into high-fidelity, on-brand posts across every platform using curated AI models built for different tones and strategies. No brief. No bottleneck. No delay. Elite Strategist for the polished LinkedIn take. Viral/Rant King for the X post that actually gets quoted. Precision Pro when you need the argument watertight. The Cloudflare-GoDaddy deal is about controlling which AI can access your world. Markatier is about making sure your brand is the AI that shows up in your audience's feed first. If you're still treating content as a creative task instead of a distribution race, what's your actual plan when a competitor posts faster and smarter than your whole team combined?
-
Jainil Prajapati (@shravonix_com) reported@shydev69 @Cloudflare I think it's not their fault whichever library they are using has this problem.
-
Sjors (@sjorsfestt) reported@imsantigamo No still wanna check coolify out. Right now I just have a bunch of services running on my pi in a range of ports, and a cloudflare tunnel connected to them. Then, in CF, my DNS records point to every service based on what's needed.
-
Felipe (@ffalconu) reported@codewithopebiyi @paramitanoia 😭 (Cloudflare outage flashbacks)
-
@truebound (@truebound) reported@jamesperkins @Cloudflare looks like thier vibe coder don't know **** about Oauth protocol!! and the login screen has been changed like 100 times in the last year !
-
Rajesh Rathod | WCAsia (@RajeshRathodcom) reported@Cloudflare I've a experience to tell. A person was standing for more than 1 hour and co-passagner next to him, felt bad about it. He offered his sit and told him to relax for while. Now one of them sits for half an hour, while other stands and they do this alternatively. 7/n
-
Kai (@ZerosByKai) reported@Cloudflare the underlying problem here is real regardless of the date. 40% of the web runs on WordPress and every plugin is a potential attack surface most site owners have zero visibility into. whoever cracks automated plugin security auditing at scale is sitting on a massive business. Cloudflare would not be a bad home for it.
-
Jonny Paylor (@jpaylor) reported@jamesperkins @Cloudflare This happens to me on Anthropic’s Claude website too, has caused a lot of problems
-
Xyner_n (@Xyner_xd) reported@shydev69 @Cloudflare and those regulations are focused on service quality and security not on a map
-
Aditya Shekhar Choudhary (@AdityaShekharC1) reported@shydev69 @SachinKankane @Cloudflare ask modi to fix it
-
Wills (@Wills_42) reported@donmcgowan Whenever I gain a few after only a couple of days I lose a small batch. I assume it's down to a Cloudflare intervention and the deletion of a few bots. But I do not know for sure.
-
TechInnovation (@TechInnovationz) reported$IonQ Cloudflare just moved their post-quantum security deadline to 2029. This matters more than most people realize. Cloudflare protects ~20% of the web. They’ve been ahead of the PQ curve since 2019. They activated post-quantum encryption by default in 2022. Today, 65%+ of human traffic to Cloudflare is already PQ-encrypted. And they just told the world the timeline is no longer 2035. It’s 2029. What triggered the acceleration, in their own words: → Google’s ECDLP paper from last week (the one we covered 500K qubits, 9-minute Bitcoin attack window) → Oratomic’s neutral-atom resource estimate published the same day: only ~10,000 qubits to break P-256 on neutral atom architecture, with 3-4 physical qubits per logical qubit instead of 1,000 → IBM Quantum Safe’s CTO publicly stating he’s “not ruling out large-scale quantum attacks against high-value targets as early as 2029” But the most chilling line in the Cloudflare post is from Scott Aaronson, quoted directly: “At some point, the people doing detailed estimates of how many physical qubits and gates it’ll take to break actually deployed cryptosystems using Shor’s algorithm are going to stop publishing those estimates… for all we know, that point may have been passed already.” Cloudflare’s response: “That point has now passed indeed.” The strategic shift in their post is the part nobody is talking about. Until now, the PQ industry focused on encryption defending against harvest-now-decrypt-later. Cloudflare is now prioritizing authentication. Their reasoning is brutal: “An imminent Q-Day flips the script: data leaks are severe, but broken authentication is catastrophic… An active quantum attacker only needs to find one trusted quantum-vulnerable key to get in.” Translation: when Q-Day arrives, the threat is no longer “they’ll read your old emails.” It’s “they’ll forge a code-signing certificate and push malware through your auto-update mechanism.” Long-lived keys, root certificates, API auth keys all attack vectors. Now read Cloudflare’s public recommendation to businesses, also in the post: “For businesses, we recommend making post-quantum support a requirement for any procurement.” A procurement requirement. Not a research curiosity. Not a future option. A line item on every RFP starting now. Look at IonQ QNSS stack through that filter: → ID Quantique commercial QKD, QRNG, post-quantum cryptography products. Already selling to telcos, banks, governments today. ~300 patents. Geneva-based, 24-year track record. → Qubitekk entanglement-based QKD on US critical infrastructure. 118 patents. Already deployed on the Chattanooga electrical grid via DOE-funded program. → Year of Quantum Security 2026 backed by FBI, NIST, CISA. IonQ is part of it. Every acquisition in the QNSS division was made before this Cloudflare announcement. Before the Google paper. Before the Oratomic paper. Before IBM’s CTO went public with 2029. The thesis isn’t “IonQ will benefit from PQ panic.” The thesis is that the only quantum company that already owns commercial PQ products at scale is the one that spent the past 18 months acquiring them. When the world’s largest CDN moves its deadline forward by six years and tells every business to make PQ a procurement requirement, the market for ID Quantique’s products doesn’t grow gradually. It compresses. Source: Cloudflare $IONQ #IonQ #PostQuantumCrypto #QuantumSecurity
-
Martijn Smit (@smitmartijn) reported@cloudflare is awesome, but god help you if you need (administrative) support 2,5 week without response for a 90x increase on an invoice 🫠
-
CryptoSangeet (@CryptoSangeet) reportedCloudflare doubling down on post-quantum shift… future-proofing or overkill? 🤔
-
Top G (@hypocritiqe) reported@shydev69 @Cloudflare not to be that guy but the problem is that most countries recognise this as the region of control of India. until we change it on ground, they’ll keep drawing maps like this.