← Cloudflare SecurityCONTENT HISTORYWHAT CHANGED · RULE-BASED ANALYSIS
changed
Update to Cloudflare Security
Snapshot Oct 9, 2026 · 00:00 UTC · version 0.1.0
Package or technical metadata updated
Discoverability changed from “UNLISTED” to “LISTED”.
Observed in package metadata. These changes alone do not establish a new customer-facing feature.
Discoverability
Before
UNLISTED
After
LISTED
Compare saved observations
Download comparison JSONFull technical diff · 1 changed fields
changed /discoverability
BEFORE
"UNLISTED"
AFTER
"LISTED"
Full snapshot data
{
"canonical_app_id": null,
"connector_id": null,
"created_at": "2026-09-23T05:52:42.405905Z",
"discoverability": "LISTED",
"id": "plugins_6ab3634387ec81919729f26fb2a8e67b",
"is_template": false,
"name": "cloudflare-security",
"release": {
"app_ids": [],
"app_manifest": null,
"app_templates": [],
"description": "Audit and harden Cloudflare-hosted applications, data, accounts, and infrastructure with evidence-based security guidance.",
"display_name": "Cloudflare Security",
"id": "pluginrel_f953d1840d20819186d83c241aa212c1",
"interface": {
"brand_color": null,
"capabilities": [
"Analyze",
"Write"
],
"category": "Security",
"composer_icon_dark_url": null,
"composer_icon_url": "https://files.openai.com/content?id=file_00000000c41482439b0f675594aabfe5",
"default_prompt": "Audit my Cloudflare setup using authorized read-only account data.",
"default_prompts": [
"Audit my Cloudflare setup using authorized read-only account data.",
"Review this Worker and Wrangler configuration for security risks.",
"Help me prioritize fixes for my Cloudflare-hosted app."
],
"developer_name": "The Doers Firm",
"logo_url": "https://files.openai.com/content?id=file_00000000e66482109aacc8a91558fbc9",
"logo_url_dark": null,
"long_description": "Cloudflare Security reviews Cloudflare account configuration, Workers, Pages, D1, storage, APIs, DNS, TLS, origins, WAF, and deployment workflows. It uses authorized read-only account data and supplied code to produce evidence-backed findings, prioritized fixes, side-effect warnings, and verification steps. Customer support: https://thedoersfirm.com/support. It cannot guarantee complete security.",
"plugin_category_id": "security",
"privacy_policy_url": "https://thedoersfirm.com/privacy",
"screenshot_urls": [],
"short_description": "Harden Cloudflare projects",
"terms_of_service_url": "https://thedoersfirm.com/terms",
"website_url": "https://thedoersfirm.com/"
},
"keywords": [],
"onboarding_skill_name": null,
"requires_local_executor": false,
"skills": [
{
"description": "Review Cloudflare account access, API-token scope, Access policies, and service credentials.",
"interface": {
"brand_color": null,
"default_prompt": null,
"display_name": "account-identity-hardening",
"icon_large_url": null,
"icon_small_url": null,
"iconography": "hierarchy",
"short_description": "Review Cloudflare account access, API-token scope, Access policies, and service credentials."
},
"name": "account-identity-hardening",
"plugin_release_skill_id": "pluginrsk_6ab363472eb881918f97e3f32acf7f71"
},
{
"description": "Coordinate an evidence-based security review of Cloudflare accounts, applications, data, and deployment infrastructure.",
"interface": {
"brand_color": null,
"default_prompt": null,
"display_name": "cloudflare-security",
"icon_large_url": null,
"icon_small_url": null,
"iconography": "radar",
"short_description": "Coordinate an evidence-based security review of Cloudflare accounts, applications, data, and deployment infrastructure."
},
"name": "cloudflare-security",
"plugin_release_skill_id": "pluginrsk_6ab36345eab081918ae3ba4b2e5caa2b"
},
{
"description": "Review D1 query safety, API exposure, authentication, tenant isolation, and data lifecycle controls.",
"interface": {
"brand_color": null,
"default_prompt": null,
"display_name": "d1-data-access-security",
"icon_large_url": null,
"icon_small_url": null,
"iconography": "code",
"short_description": "Review D1 query safety, API exposure, authentication, tenant isolation, and data lifecycle controls."
},
"name": "d1-data-access-security",
"plugin_release_skill_id": "pluginrsk_6ab36346cef88191802291594aaccf45"
},
{
"description": "Review Cloudflare CI/CD, Git integrations, build credentials, environment separation, dependencies, and release controls.",
"interface": {
"brand_color": null,
"default_prompt": null,
"display_name": "deployment-supply-chain",
"icon_large_url": null,
"icon_small_url": null,
"iconography": "code",
"short_description": "Review Cloudflare CI/CD, Git integrations, build credentials, environment separation, dependencies, and release controls."
},
"name": "deployment-supply-chain",
"plugin_release_skill_id": "pluginrsk_6ab36347b71c8191a33b412b1d0b15cc"
},
{
"description": "Review Cloudflare DNS, DNSSEC, TLS, certificates, origin exposure, and tunnel configuration.",
"interface": {
"brand_color": null,
"default_prompt": null,
"display_name": "dns-tls-origin-security",
"icon_large_url": null,
"icon_small_url": null,
"iconography": "radar",
"short_description": "Review Cloudflare DNS, DNSSEC, TLS, certificates, origin exposure, and tunnel configuration."
},
"name": "dns-tls-origin-security",
"plugin_release_skill_id": "pluginrsk_6ab36345d12081918c1071a4b01f2e50"
},
{
"description": "Review HTTP security headers, CORS, cookies, redirects, and cache isolation for sensitive responses.",
"interface": {
"brand_color": null,
"default_prompt": null,
"display_name": "headers-cors-cache-security",
"icon_large_url": null,
"icon_small_url": null,
"iconography": "radar",
"short_description": "Review HTTP security headers, CORS, cookies, redirects, and cache isolation for sensitive responses."
},
"name": "headers-cors-cache-security",
"plugin_release_skill_id": "pluginrsk_6ab3634894e88191a676bb51c8e973aa"
},
{
"description": "Assess security observability and guide response to Cloudflare account, token, application, or data incidents.",
"interface": {
"brand_color": null,
"default_prompt": null,
"display_name": "monitoring-incident-response",
"icon_large_url": null,
"icon_small_url": null,
"iconography": "radar",
"short_description": "Assess security observability and guide response to Cloudflare account, token, application, or data incidents."
},
"name": "monitoring-incident-response",
"plugin_release_skill_id": "pluginrsk_6ab3634766d08191bcb9adf553293fe7"
},
{
"description": "Detect unsafe secret storage, credential leakage, overprivileged API use, and sensitive-data logging.",
"interface": {
"brand_color": null,
"default_prompt": null,
"display_name": "secrets-and-api-leak-prevention",
"icon_large_url": null,
"icon_small_url": null,
"iconography": "radar",
"short_description": "Detect unsafe secret storage, credential leakage, overprivileged API use, and sensitive-data logging."
},
"name": "secrets-and-api-leak-prevention",
"plugin_release_skill_id": "pluginrsk_6ab36349197481919d4241ef62eef417"
},
{
"description": "Produce prioritized, evidence-backed security findings, remediation plans, and verification checks.",
"interface": {
"brand_color": null,
"default_prompt": null,
"display_name": "findings-remediation",
"icon_large_url": null,
"icon_small_url": null,
"iconography": "radar",
"short_description": "Produce prioritized, evidence-backed security findings, remediation plans, and verification checks."
},
"name": "findings-remediation",
"plugin_release_skill_id": "pluginrsk_6ab363474fa4819195725febdffb09c7"
},
{
"description": "Assess R2, KV, Durable Objects, Queues, Vectorize, and other Cloudflare storage or data bindings.",
"interface": {
"brand_color": null,
"default_prompt": null,
"display_name": "storage-and-binding-security",
"icon_large_url": null,
"icon_small_url": null,
"iconography": "radar",
"short_description": "Assess R2, KV, Durable Objects, Queues, Vectorize, and other Cloudflare storage or data bindings."
},
"name": "storage-and-binding-security",
"plugin_release_skill_id": "pluginrsk_6ab363488a8481919df692fdc07a9d09"
},
{
"description": "Review Cloudflare WAF, API Shield, bot controls, endpoint exposure, and abuse/rate-limit defenses.",
"interface": {
"brand_color": null,
"default_prompt": null,
"display_name": "waf-api-abuse-protection",
"icon_large_url": null,
"icon_small_url": null,
"iconography": "radar",
"short_description": "Review Cloudflare WAF, API Shield, bot controls, endpoint exposure, and abuse/rate-limit defenses."
},
"name": "waf-api-abuse-protection",
"plugin_release_skill_id": "pluginrsk_6ab36345f4a08191be8f82fc20cb4701"
},
{
"description": "Review Cloudflare Workers and Pages code, bindings, routes, previews, and application security boundaries.",
"interface": {
"brand_color": null,
"default_prompt": null,
"display_name": "workers-pages-security",
"icon_large_url": null,
"icon_small_url": null,
"iconography": "code",
"short_description": "Review Cloudflare Workers and Pages code, bindings, routes, previews, and application security boundaries."
},
"name": "workers-pages-security",
"plugin_release_skill_id": "pluginrsk_6ab363461be08191a884ae7e409ab602"
}
],
"version": "0.1.0"
},
"scope": "GLOBAL",
"status": "ENABLED"
}SHA-256 of public snapshot: fd22a0ddcd087350bc717c81368d930db4fec0316647200796cb67d778892d2c