Skip to content

Security & risk, read from an operations desk

Everything we have published under Security & risk, read from an operations desk: what it changes for a B2B company of 10-200 people.

  1. Latest

    Cloudflare lets you cage AI agents to a single Worker

    Cloudflare now lets account owners restrict a teammate, CI token, or AI agent to a single Worker instead of the whole account, choosing from four roles: Metadata Read-Only, Content Read-Only, Editor, and Admin. This limits what an autonomous agent or leaked token can see or change in production.

    What changes for operators — If your team runs agents or CI pipelines that deploy, debug, or monitor code on Cloudflare Workers, you can now give an agent a scoped API token that only reaches one application — say, your support-ticket webhook — rather than every Worker in the account. A misconfigured deployment script or a compromised agent token can no longer wander into your billing service or customer database Worker. For a 10-200 person company running several automated workflows on shared infrastructure, this turns

  1. Cloudflare Adds AI-Driven Vulnerability Remediation to Managed Defense

    For a 10-200 person B2B company running its site, API, or customer portal behind Cloudflare, this means vulnerability triage — usually a slow, manual task bounced between IT and a part-time security contractor — can now be partly automated. If your team already pays for Cloudflare's security tier, evaluate whether Managed Defense's new AI remediation reduces the need for a separate vulnerability-scanning vendor or manual patch review, since that's real budget and headcount time freed up for other ops work. Companies without dedicated security staff stand to gain the most, since the tool effectively acts as a junior security engineer that flags and proposes fixes automatically.

  1. Cloudflare Narrows OAuth Consent to Specific Tasks, Cutting Agent Access Risk

    If your sales or support team has wired an AI agent into a CRM, inbox or ticketing system through OAuth, that agent has probably been granted broad, standing permissions just to complete one narrow job, like drafting a reply or updating a deal stage. Task-based consent means you can start scoping agent access to the specific action being performed, so a compromised or misbehaving agent can't silently read or edit everything the connected account touches. For a 10-200 person company running several AI-driven integrations at once, this is the difference between a leaked token exposing one workflow versus exposing an entire mailbox or customer database, and it's worth auditing your existing OAuth grants once providers you use adopt this model.

  1. Cloudflare Adds One-Click Login Gate for Internally Built Apps

    If your ops, RevOps or support team has been using AI coding assistants to knock out quick internal dashboards, ticket triage tools, or data lookup apps on Cloudflare Workers, this closes a real exposure: those apps were often reachable by anyone with the URL, with no login screen, because nobody on a lean 10-200 person team owns "add auth" as a step. The one-click Access wrapper means a founder, ops lead or the person who vibe-coded the tool over a weekend can require company SSO login before the app loads, without writing any authentication code or asking a security engineer to intervene. Practically, this is worth an afternoon: audit every internally hosted Workers app your team has shipped in the last year, especially ones built with Claude, Cursor, or similar AI coding tools where speed took priority over security review, and put each one behind Access. It costs nothing extra in most Cloudflare plans and takes a few minutes per app. The broader lesson for lean teams is that AI coding tools lower the barrier to building internal software but do not lower the barrier to securing it — that gap has to be closed by infrastructure vendors or by a deliberate internal checklist, and this feature is one vendor closing it by default rather than leaving it to the builder to remember.

  1. Cloudflare Adds Visibility and Controls for MCP Traffic Amid Rising Agent-to-Tool Connections

    If your team has connected any AI agent — a support bot, a sales assistant, an internal ops tool — to external data sources or software using MCP, that traffic has likely been invisible to your IT or security stack until now. For a 10-200 person B2B company, this is rarely a dedicated security team's job to catch; it's usually whoever wired up the integration last quarter. The practical takeaway is not "adopt Cloudflare" — it's a prompt to ask your ops or engineering lead a direct question: which tools in our stack are making MCP connections, who authorized them, and can we see what data is flowing through them? If the answer is a shrug, that's the gap this announcement is surfacing.

Next step

Free AI Diagnostic

Fifteen minutes, no email required. It maps where your work actually goes and ranks what is worth automating first.

Start the free diagnostic

Starts immediately in the browser.

Fee
Free
Length
15 minutes

You keep the ranked list of candidates either way.