Cloudflare Developers

CD

Cloudflare Developers

Welcome to the official Cloudflare Developers server. Here you can ask for help and stay updated with the latest news

Join

Flagged for phishing and no response from Cloudflare on appeal

Hello, our website got flagged, i responded to them, no response for 32 hours, what can i do? I can't do anything about it, yet alot of people lost trust in us due of the pop up thinking its a phishing site, we get over 25million+ requests per year, i have no idea why someone from Cloudflare just decided to accept the report
No description

Using service token for all requests with Cloudflare Zero Trust

I'm using Cloudflare Zero Trust to access an API from the Next.js server-side. For this I'm using the service token headers I've generated with Cloudflare. The docs mention that these are for the initial request in the example. Where the initial response returns an authorization cookie. The example in the docs show that you should use the auth cookie for requests after the initial one. I've tried both the service token headers and the authorization cookie in Postman and both seem to give very similar request latency (30-90ms range). Because the requests are done on the Next.js server-side I would need to store the auth cookie somewhere to use for requests after the first. Let's say Cloudflare KV for this example. Is there a downside to keep using the service token headers for each request instead of the auth cookie? This would save the server-side a trip to KV to get the auth cookie, gains might be small because KV is fast, but might be still worth it. The docs don't feel very clear in why the auth cookie should be used, that's why I'm asking 😃...

Cloudflare proxy tripped away Set-Cookie headers from origin server

Hi all, I'm using cloudflare dns in proxy mode, when the origin server return a response which has Set-Cookie header(s), the cloudflare proxy somehow stripped it away. What is the setting that I need to use to keep the Set-Cookie header(s) in the response that is sent back to my client (browser)? Thanks in advance....

CF Sending Out 100+ Emails

Hello, I am getting spammed with CF emails about a cert. "xx or one of its subdomains has been issued a new SSL/TLS certificate"...
No description

stray $ being injected when using analytics / beacon.js

I attached a photo - I have a weird issue whereby some change I made in my error handling in Remix made a $ start appearing at the end of my page... I know the commit that caused it, and I know it also only happens when beacon is injected which is super weird. Would love some 👀🙏 This is just a toy side project, downtime doesn't matter so feel free to change any settings/flags/ etc....
No description

Fighting malicious abuse reports

I'm a developer on a relatively popular game server. For some time now we've had a series of DDOS attacks on our infrastructure and, with time, developed means of fighting them with a more intelligent firewall on our TCP connections.. and.. with cloudflare on our http endpoints. So far so good, attacks vanished and we had our peace. Now the newest thing are a serious of malicious abuse reports filed with cloudflare, which lead to an immediate flag for suspected phishing. We get the same reports from AWS, only they include the logs which were supplied which are clearly bogus as they provide only http endpoints, two of which are reverse proxied into completely different binary mini-apps running on different servers. while I consider cloudflare one if not the greatest services against ddos, I would just like another opinion on how to proceed here, we are protected against ddos, but a false report takes us out ?...

NEED HELP

i m having this issue it nevers verify me thats why i cant access many sites kindly need help
No description

Cloudflare D1 inserting data outside of workers

Hi, I have a python scraper running on a private server and I'd like it to insert data into D1. I used D1 inside of workers but how can I use it outside workers in a regular script? Is it possible?

web/domain problem

How long does it take for a domain to activate in all places? I'm asking because I have a website and some people can access it from the special link, others can't, and from what I've heard, this could be because it hasn't been uploaded everywhere in the world, is that true?
No description

Insecured notice when visiting site sometimes

I have a website behind the Cloudflare proxy. Both the apex domain and www subdomain are proxied. SSL mode is set to "Full (strict)". "HSTS" (12 months, include subdomains, preload) and "Always Use HTTPS" is enabled under the edge certificates. The domain has a pro subscription. However, sometimes, our client sees the "nortvi.com doesn't support encrypted connections" message in Chrome. They even asked ChatGPT (I know) and it also seems to be able to detect the missing certificate. This resolved itself pretty quickly....
No description

Can't re-add and active domain on account after domain is expired and deleted from Cloudflare

Hi team support Cloudflare, I have an issue about add new domain to my account. First, this domain was set-up successfully on my account cloudflare, but domain is expired so Cloudflare deleted it from my account. Now, I re-newed domain and want to add to my account but I can't. When I choose Free Plan, I got error: "could not run legacy post zone sub request against new zone products: failed to update user subscription: failed to apply object products: You cannot add or modify subscriptions or services until the outstanding balance is paid. You should be able to do so in your Billing page" but I don't have any payment to paid???...

Messed Up Account While Setting Up New Mac

Yesterday I set up my new Mac. As part of the setup, I created a custom domain on cloudflare, Unfortunately for me, the account name on that cloudflare account was a Private Relay email address (random letters and numbers). I would prefer to use a simple email to log in, so I went to change the email in account settings. Here's where I ran into trouble. I put in the wrong iCloud account name. Yes, twice. After not receiving the link to confirm the email, I realized my mistake. So, I tried changing it again, but now I get a "too many requests" error. I didn't see anywhere on the page to withdraw my erroneous request, but I need to do that somehow so I don't have to continue using the private relay email address....

Would love to try out containers! Who do we reach out to?

I DM'd a couple of people on X too. We were early adopters of D1 and we're currently early adopters of queues as well. We would love to try out containers too. Is there someone we can reach out to, to add our account to the beta? Thank you so much!

Custom Hostnames API Access

We are trying to get API access of Custom Hostnames with Cloudflare for SaaS. I have turned on Cloudflare for SaaS with a domain but we are getting issues when trying to provision hostnames, and I am not sure if there is a scope I am supposed to give. No scopes for "Custom Hostnames" are showing up anywhere right now

After clicking the “enable globally” button, nothing happens

I would like to enable Web Analytics logs. After clicking the “enable globally” button, nothing happens. I checked on other browsers and the problem is the same. Errors in console:...
No description

Broken sites error 522, need help

Hi, I am running a WordPress Site and several services on a Proxmox server at my house. I use Cloudflare for my Domains and proxy, sent back to Nginx Proxy Manager on my home server. I have used this setup for almost a year, and it has been working well. Unfortunately, a couple nights ago, the power went out, and all my sites quit working, timing out with error 522. I discovered my ISP changed my public IP Address. I revised my Cloudflare Domain to point to the new address, figuring that would fix it, but I'm still having the sites time out. I am running the WordPress Site on a Cloudpanel VM, which is proxied through Cloudflare to Nginx Proxy Manager. Anyone know what I might be missing to fix my sites?...

Cloudflare doesnt check Azure groups.

I have Azure setup with groups. When I try to create policies in Cloudflare zero trust to check for azure group, i get this error Failed to retrieve SCIM groups due to an unexpected error. I have 3 users setup, and I am the only user in secAdmin group. When I go to my Admin policy, and i use the tester, it says all 3 accounts can access the application...

Cloudflare not sending invitation to add a new member

On my Manage Account > Members settings, I've tried adding new members to my account but the invitation emails isn't being sent to them. The status is Invite Pending, I double checked and the email address is correct, I've tried both on Firefox and Chrome without any extensions that might be blocking a request. I've tried "Resend invite" but it doesn't do anything, the email still doesn't arrive on the target account. I've checked both the inbox and the spam and the email isn't there.
No description

API for Get Bucket Size (Cloudflare R2)

Hi, Cloudflare Team. I would like to ask if there is a Public API to get information like total bucket size in Cloudflare R2? If there is, is there a documentation link for me to read, because I have searched but couldn't find it....

adding another route to cloudflared connector

hi, I created a tunnel through the dashboard and then running sudo cloudflared service install {hash}, and works. but how do I create another route pointing to a different local port using the same cloudflared service? if I do it from command line it's ignoring the existing connector ``` $ cloudflared tunnel --url 172.17.0.1:8080...