Cloudflare MCP for AI Agents

Securely connect your AI agents and chatbots (Claude, ChatGPT, Cursor, etc) with Cloudflare MCP or direct API to manage DNS records, automate firewall rules, monitor analytics, and control access settings through natural language.
Trusted by
AWS
Glean
Zoom
Airtable

30 min · no commitment · see it on your stack

Cloudflare Logo
Gradient Top
Gradient Middle
Gradient Bottom
divider

Try Cloudflare now

Enter a prompt below to test the integration in our Tool Router playground. You'll be redirected to sign in and try it live.

Supported Tools

Tools
Create DNS recordTool to create a new DNS record within a specific zone.
Create WAF ListCreate a new empty custom list for use in WAF rules and filters.
Create ZoneCreates a new DNS zone (domain) in Cloudflare.
Delete DNS RecordTool to delete a DNS record within a specific zone.
Delete WAF ListTool to delete a WAF list.
Delete ZoneTool to delete a zone.
Get Bot Management SettingsTool to retrieve a zone's Bot Management configuration (Bot Fight Mode / Super Bot Fight Mode / Enterprise Bot Management).
List WAF ListsTool to fetch all WAF lists (no items) for an account.
List Account MembersLists all members of a Cloudflare account with their roles, permissions, and status.
List AccountsList all Cloudflare accounts you have ownership or verified access to.
List DNS recordsTool to list and search DNS records in a Cloudflare zone.
List Firewall RulesTool to list firewall rules for a specific DNS zone.
List MonitorsTool to list all load-balancer monitors in a Cloudflare account.
List PoolsTool to list all load balancer pools in a Cloudflare account.
List TunnelsList Cloudflare Tunnel (cloudflared) tunnels in an account to discover tunnel IDs, names, and statuses.
List ZonesLists, searches, sorts, and filters zones in the authenticated account.
Update DNS recordTool to update an existing DNS record within a specific zone.
Update WAF ListTool to update the description of a WAF list (cannot update items).
Update Tunnel ConfigurationTool to update a remotely-managed Cloudflare Tunnel's configuration (ingress rules and routing).
Update ZoneTool to update properties of an existing zone; changes apply immediately to the live zone.
Python
TypeScript

Install Composio

python
pip install composio claude-agent-sdk
Install the Composio SDK and Claude Agent SDK

Create Tool Router Session

python
from composio import Composio
from claude_agent_sdk import ClaudeSDKClient, ClaudeAgentOptions

composio = Composio(api_key='your-composio-api-key')
session = composio.create(user_id='your-user-id')
url = session.mcp.url
Initialize the Composio client and create a Tool Router session

Connect to AI Agent

python
import asyncio

options = ClaudeAgentOptions(
    permission_mode='bypassPermissions',
    mcp_servers={
        'tool_router': {
            'type': 'http',
            'url': url,
            'headers': {
                'x-api-key': 'your-composio-api-key'
            }
        }
    },
    system_prompt='You are a helpful assistant with access to Cloudflare tools.',
    max_turns=10
)

async def main():
    async with ClaudeSDKClient(options=options) as client:
        await client.query('List firewall rules for zone abc123')
        async for message in client.receive_response():
            if hasattr(message, 'content'):
                for block in message.content:
                    if hasattr(block, 'text'):
                        print(block.text)

asyncio.run(main())
Use the MCP server with your AI agent

Why Use Composio?

AI Native Cloudflare Integration

  • Supports both Cloudflare MCP and direct API based integrations
  • Structured, LLM-friendly schemas for reliable tool execution
  • Rich coverage for reading, writing, and querying your Cloudflare zones, DNS, and security settings

Managed Auth

  • Built-in API key handling and secure credential storage
  • Central place to manage, scope, and revoke Cloudflare access
  • Per user and per environment credentials instead of hard-coded keys

Agent Optimized Design

  • Tools are tuned using real error and success rates to improve reliability over time
  • Comprehensive execution logs so you always know what ran, when, and on whose behalf

Enterprise Grade Security

  • Fine-grained RBAC so you control which agents and users can access Cloudflare
  • Scoped, least privilege access to Cloudflare resources
  • Full audit trail of agent actions to support review and compliance

Frequently Asked Questions

Do I need my own developer credentials to use Cloudflare with Composio?

Yes, Cloudflare requires you to configure your own API key credentials. Once set up, Composio handles secure credential storage and API request handling for you.

Can I use multiple toolkits together?

Yes! Composio's Tool Router enables agents to use multiple toolkits. Learn more.

Is Composio secure?

Composio is SOC 2 and ISO 27001 compliant with all data encrypted in transit and at rest. Learn more.

What if the API changes?

Composio maintains and updates all toolkit integrations automatically, so your agents always work with the latest API versions.

Used by agents from

Context
Letta
glean
HubSpot
Agent.ai
Altera
DataStax
Entelligence
Rolai
Context
Letta
glean
HubSpot
Agent.ai
Altera
DataStax
Entelligence
Rolai
Context
Letta
glean
HubSpot
Agent.ai
Altera
DataStax
Entelligence
Rolai

Never worry about agent reliability

We handle tool reliability, observability, and security so you never have to second-guess an agent action.