Cloudflare AI Security for Apps Is Now Generally Available

CloudflareCloudflare

· Updated

Cloudflare AI Security for Apps is now generally available, providing a security layer that discovers LLM-powered endpoints, detects prompt injection and PII leakage, and mitigates threats through WAF rules. AI endpoint discovery is now free for all Cloudflare plans.

Cloudflare launched AI Security for Apps into general availability, a security layer for AI-powered applications that covers discovery, detection, and mitigation. It sits in Cloudflare's reverse proxy in front of any app — regardless of model or provider — identifying LLM endpoints by behavior rather than URL patterns, scanning prompts always-on for injection attempts, PII extraction, and toxic topics, then letting teams act through the same WAF rules engine they already use.

New in GA: a custom topics feature lets you define your own off-limits categories and receive a relevance score to log, block, or route as you decide. Mitigation combines AI-specific signals with Cloudflare's full request context — IP reputation, browser fingerprints, botnet data — connections point solutions can't make.

Enterprise customers get full detection and mitigation now. Free, Pro, and Business plan users can start with AI endpoint discovery today through Security → Web Assets in the dashboard.

Cloudflare
Cloudflare
@Cloudflare
X

Cloudflare’s AI Security for Apps detects and mitigates threats to AI-powered applications. Starting today, it is generally available. https://t.co/7zqsJxUPBd

9retweets
View on X

Every HeadsUpAI update is written based on its original source and reviewed before it's published. Read our editorial standards →

Share this update