AI Security for Apps

Safeguard Your AI Applications from Emerging Threats

AI Security for Apps provides advanced detection and mitigation of threats such as prompt injections, PII exposure, and toxic topics. This gives you confidence in the security of your LLM-powered applications and protects your users from potential harm. With AI Security for Apps, you can automatically discover LLM-powered endpoints and block threats with a comprehensive security solution.
Automatic LLM Endpoint Discovery

AI Security for Apps automatically identifies LLM-powered endpoints across your web properties, regardless of where they’re hosted or what the model is. This capability is free for every Cloudflare customer, including Free, Pro, and Business plans, providing you with visibility into where AI is deployed across your Internet-facing apps.

Customizable Threat Detection

The custom topics feature lets you define categories and specify the topic, allowing AI Security for Apps to inspect the prompt and output a relevance score that you can use to log, block, or handle threats according to your specific needs.

Broad Model Support 

Out of the box, we support the standard formats used by OpenAI, Anthropic, Google Gemini, Mistral, Cohere, xAI, DeepSeek, and others. When we can't match a known pattern, we apply a default-secure posture and run detection on the entire request body.

Background Pattern

You can use AI Security for Apps to:

See real-world examples of Cloudflare ai-security-for-apps.

Get started

Protection Against Emerging Threats

AI Security for Apps detects and mitigates threats such as prompt injections, sensitive information disclosure, and unbounded consumption, giving you confidence in the security of your LLM-powered applications. It sits in front of your LLM-powered applications, whether you're using a third-party model or hosting your own, as part of Cloudflare's reverse proxy.

AI Endpoint Discovery and Visibility

AI Security for Apps automatically identifies LLM-powered endpoints across your web properties, providing you with visibility into where AI is deployed across your Internet-facing apps. This capability is free for every Cloudflare customer, including Free, Pro, and Business plans.

Streamlined Threat Mitigation with WAF Rule Builder

AI Security for Apps helps you mitigate threats via the familiar WAF rule builder, detecting malicious or off-policy behavior to LLM-powered endpoints and allowing you to take action against unauthorized actions or leaked sensitive data.

Unified Security Posture Visibility

With AI Security for Apps, you can review discovered LLM-powered endpoints immediately and ensure a unified view of your AI security posture. Cloudflare's partnership with Wiz provides mutual customers with a comprehensive view of their security landscape.
Character.AI

"

R2 has been the glue behind our multi-cloud architecture for training and processing requests. We are now able to store our training and production data in R2 for access by any cloud, without egress fees, and get the best prices and performance across multiple cloud providers. "

Myle Ott
Myle Ott Founding Researcher

Build without boundaries

Join thousands of developers who've eliminated infrastructure complexity and deployed globally with Cloudflare. Start building for free — no credit card required.