Cloudflare is rolling out three security improvements targeting non-human identities like API tokens, agents, and third-party integrations. First, new scannable API token formats with a 'cf' prefix and checksum enable credential scanners (including GitHub's Secret Scanning program) to automatically detect and revoke leaked
Table of contents
Understanding identity: Principals, Credentials, and PoliciesLeaked token detectionImproving the OAuth consent experienceFine-grained resource-level permissioningNew permission rolesSecure your accountsSort: