Cloudflare has made AI Security for Apps generally available, offering a security layer for AI-powered applications regardless of model or hosting provider. Key features include automatic LLM endpoint discovery (now free for all plans including Free, Pro, and Business), detection modules for prompt injection, PII extraction, and toxic/sensitive topics, plus a new custom topics feature for business-specific policies. Threats can be mitigated using Cloudflare's existing WAF rules engine, which can combine AI signals with broader request context. The product also supports standard LLM provider API formats (OpenAI, Anthropic, Gemini, etc.) and is expanding through partnerships with IBM Cloud and Wiz. Full AI Security for Apps capabilities are currently limited to Enterprise customers, with broader plan availability planned.

7m read timeFrom blog.cloudflare.com
Post cover image
Table of contents
A new kind of attack surfaceWhat AI Security for Apps doesGrowing ecosystemHow to get started

Sort: