1. Home
  2. Companies
  3. Cloudflare
  4. Outage Map
Cloudflare

Cloudflare Outage Map

The map below depicts the most recent cities worldwide where Cloudflare users have reported problems and outages. If you are having an issue with Cloudflare, make sure to submit a report below

Loading map, please wait...

The heatmap above shows where the most recent user-submitted and social media reports are geographically clustered. The density of these reports is depicted by the color scale as shown below.

Cloudflare users affected:

Less
More
Check Current Status

Cloudflare is a company that provides DDoS mitigation, content delivery network (CDN) services, security and distributed DNS services. Cloudflare's services sit between the visitor and the Cloudflare user's hosting provider, acting as a reverse proxy for websites.

Most Affected Locations

Outage reports and issues in the past 15 days originated from:

Location Reports
New York City, NY 2
Los Angeles, CA 1
Paris, Île-de-France 1
Manchester, England 1
Angers, Pays de la Loire 1
Check Current Status

Community Discussion

Tips? Frustrations? Share them here. Useful comments include a description of the problem, city and postal code.

Beware of "support numbers" or "recovery" accounts that might be posted below. Make sure to report and downvote those comments. Avoid posting your personal information.

Cloudflare Issues Reports

Latest outage, problems and issue reports in social media:

  • ymir_ke
    Ymir (@ymir_ke) reported

    @johnrush "AI produces good design out of the box" Not yet. It makes good ish design. "Good enough" for many things. It isn't producing anything like vercel's home page purely based on its own inspiration. It can't create graphics like cloudflare has on their website either. Maybe it is a skill issue on my part, but I'm sure it will get there eventually.

  • linuxuser1996
    𝐿𝑖𝑛𝑢𝑥 𝑢𝑠𝑒𝑟 (@linuxuser1996) reported

    Proton VPN got caught running price sensitivity tests on its own users, then told everyone it was a stale sale. Here's what happened. People on Proton's subreddit noticed they were being quoted different prices for the same plan. Refresh the pricing page and VPN Plus shows $2.77/mo at 72% off. Open a fresh incognito window and it's $3.23/mo at 68% off. Same plan, same country, same second. Nothing about the visitor changed. Proton VPN's General Manager replied that there was no adaptive pricing, that a sale had recently ended, and that the intro prices hadn't "universally refreshed." He called the low numbers an error and suggested people grab them before they got fixed. Then Windscribe pulled the page source. Every visitor is being sorted into a variant, and the test is labeled in plain text inside an HTML meta tag: ab-test:VpnHpAndPricingVpnPlusSensibility300726. One session returns content="A", the other returns content="B". Two separate pricing URLs, one normal and one flagged test-300726-b. A screen recording shows the price flipping between clean incognito sessions, $3.49 at 65% off, then $2.99 at 70% off. Expired sales don't do that. Cached pages don't do that. Cloudflare has never once injected a named A/B test into anyone's markup. Worth being precise about the wording, because Proton was. Adaptive pricing uses your personal data to set a number tailored to you. Price sensitivity testing quotes different people different prices for the identical product to find out how far you can push before sales drop off. The GM denied the first one. Nobody accused them of the first one. A/B testing prices is ordinary commerce. Amazon does it, airlines do it in their sleep, and almost nobody would have cared. But Proton sells privacy, and privacy is a trust product. The experiment was never the scandal. The denial was. Run the tests. Just don't call it a glitch when your own code is holding a sign with the test's name on it. Receipts:

  • paulhshort
    budrscotch (@paulhshort) reported

    @0xReaper0x @joshua_saxe I can poke around our S1 console and gather the threat details and logs but I had Chatgpt pull in details from my M365 mailbox from the threat alerts to put the below analysis together: ### Technical findings from the 2026 alert history - Six separate Codex/ChatGPT detection episodes occurred between March and July. They generated 141 SentinelOne/SOC/ticket emails, including 85 “Kill performed successfully” notifications. These were six incidents with repeated mitigation actions—not 141 unique detections. - SentinelOne’s `Dynamic / Behavioral AI` classified the Microsoft Store `OpenAI.Codex` package as ransomware. Earlier versions ran as `Codex.exe`; later versions used `ChatGPT.exe` inside the same versioned `WindowsApps\OpenAI.Codex` package. - The clearest ConnectWise SOC investigation identified the likely trigger as Codex spawning PowerShell to run `Get-ChildItem Env:`. Windows also created a normal `__PSScriptPolicyTest_*.ps1` file while checking PowerShell execution policy. SOC identified `Crashpad\settings.dat` as a normal Electron/Chromium crash-reporting artifact. - Other observed activity included *** and PowerShell child processes, access to repositories, *** configuration, LevelDB and temporary files, plus outbound connections to GitHub, Cloudflare and other cloud services over ports 443 and 22. - Automated triage interpreted this combination as process hollowing, DLL injection, credential access, infostealing, persistence, privilege escalation, defense evasion, event-log tampering, wiper activity and ransomware behavior. - Manual SOC review found no persistence, privilege escalation, credential theft, lateral movement, malicious PowerShell or suspicious child processes. It concluded the activity was consistent with normal Codex/Electron operation. - Five episodes ultimately received false-positive verdicts. One incident even changed from `Undefined` to `True positive` and then to `False positive`, showing how unstable the behavioral/reputation assessment was. - SentinelOne performed network isolation, repeated process termination, quarantine, remediation and rollback attempts. Some rollback and unquarantine actions failed or required a reboot. - Hash exclusions were not durable: six different Codex Store builds appeared between March and July, each changing the versioned path and executable hash. Excluding the entire `WindowsApps\OpenAI.Codex` directory would have created a much broader security exception.

  • BreezeOg1
    BreezeOg🐉 (@BreezeOg1) reported

    For startup founders. If you're vibe coding your startup, let me show you exactly how I'd ruin your life in one night. It's not even hard. Step 1: I log into your website and hammer your backend 10,000 times a minute until your login page just... dies. Step 2: While you're scrambling to figure out what's happening, I spam your sign up form until your database is full of garbage accounts. Step 3: I find your most expensive endpoint (you already know the one that costs you the most) and I hit it over and over and over — until your API bill hits $950,000. Yes, almost a million dollars. From one endpoint. Step 4: While you're panicking about the bill, I quietly scrape all your data. You don't even notice. That's it. That's the whole attack. No genius hacking, no zero-day exploit. Just brute force against a backend nobody bothered to rate limit. Most people building fast with AI tools ship the features and skip this part entirely. Your app can look production-ready and still be a wide-open door. The fix is not complicated: 1. Rate limit EVERY endpoint, not just the "important" ones 2. Login and signup need the tightest limits because those are the first doors people try 3. Put Cloudflare in front of everything And this just takes an afternoon. Saves you from waking up to a $950k bill or an empty database.

  • _peterk
    Peterk (@_peterk) reported

    An hour that quietly tells you who the internet is being built for now. Google's AI brain drain is the headline everyone's reading wrong. Jeff Dean shuffling roles while Gemini keeps getting outpaced by Anthropic and OpenAI isn't just a talent story — it's a sign that even the company that invented the transformer is struggling to ship faster than smaller, hungrier labs. Size and legacy don't guarantee speed anymore. If anything, they slow you down. Then there's Cloudflare building a browser that isn't for humans at all. Kitesurf is a small launch but a big tell: the web is quietly forking into two versions, one for people scrolling and one for agents clicking, and the second one is being optimized for cost and speed, not experience. We're not far from a world where most "browsing" has no human on the other end. And somewhere in China, a genuinely good little EV gets revealed to a market that will never include the US, because trade policy is now doing the job engineering used to do: deciding what you're allowed to want. Three different stories, same lesson — the future is being built and shipped around you, not for you. #AI #Tech #EVs

  • EvanKirstel
    Evan Kirstel #B2B #TechFluencer (@EvanKirstel) reported

    @Cloudflare A one time score never survives a bot that changes behavior halfway through. @techimpactTV

  • NewsOfLinux
    LinuxGeek 🐧 (@NewsOfLinux) reported

    Someone replaced their Hetzner VPS with an old phone from a drawer. Phone battery is a built-in UPS. Ingress is a Cloudflare Tunnel (outbound only), so they can unplug it, walk off, and the server follows onto the next network. Stock Android, no distro flash.

  • morganlinton
    Morgan (@morganlinton) reported

    @jpschroeder Doh, really sorry to hear, and weird there’s no way to set spending limits in CloudFlare, feels like that should be standard for hosting service right?

  • kiruwaaaaaa
    kiruwaaaa (@kiruwaaaaaa) reported

    Base just admitted by quietly killing its own social app... @base spent 2025 building a consumer social network on top of the chain. In July 2026, that got walked back entirely - the app handed off, and the entire chain repointed at three things: trading, payments, and AI agents. > 92.8% of all AI agent payments on the internet right now settle on Base > 99.8% of those payments run in USDC through x402, the protocol Coinbase built with Cloudflare > Base alone has processed over $19 trillion in stablecoin volume this year - more than most G20 economies move annually This isn't a pivot. It's an admission that agents, not people, are about to be the largest customer base ever handed to Coinbase in one product cycle. Stripe is chasing this with MPP. UnionPay has APOP. OKX shipped APP. Four protocols launched in twelve months because everyone can see where the money is going - software paying software, instantly, without a human clicking approve. Base didnt lose the social experiment. It just noticed the actual customer walking through the door wasn't a person at all.

  • davidrobertson
    David Robertson (@davidrobertson) reported

    @0xBOYD I’ve had my issues with @Cloudflare I had a domain arbitrarily black listed, it messed up a clients web store. I’ve had them lock an account and I couldn’t pay for a domain renewal, after the six weeks that it took to get it unlocked, I had to pay $200 to get the domain renewed. I do not trust them with anything important. It’s like amateur hour dealing with them.

  • Emmy_SA1
    Emmy (@Emmy_SA1) reported

    @hntrdnls @Cloudflare That's a bad first approach towards a project, let's hope to get a response on this.

  • scruffyy90
    Scruffyy90 (@scruffyy90) reported

    @Tim_axss I already contacted support. They refused to escalate a ticket. I did some digging and realized that you guys have your Cloudflare settings way too aggressive. The support site is useless as nothing was applicable to my situation

  • adqorvr
    qorvr (@adqorvr) reported

    @superkaicode @Cloudflare How to do that? I never ran a heavy task using cloudflare workers.

  • _duyet
    Duyet (@_duyet) reported

    My @Cloudflare subscription automatically downgraded to Free after this month's billing successful, and I am not able to Upgrade it back. All pages on dashboard are blank, and I never got a response from support (Case: 02271079). Could not deploy as R2 Storage been disabled and all workers and DO reached its daily requests limit and outage. Can anyone help me to tag the right people for this? 🙏

  • hostroy
    Hostroy (@hostroy) reported

    @abhijeet_dipke Petition link is damn slow there is bot attack on it pls ask developers to stop bot attacks and remove cloudflare proxy

Check Current Status