Cloudflare OS is an open-source enterprise AI agent platform released by Cloudflare under the Apache 2.0 licence. We support deployment in your own Cloudflare account, from architecture and implementation through training.
Cloudflare OS is an open-source enterprise AI agent platform released by Cloudflare, Inc. in August 2026 under the Apache 2.0 licence.
You deploy it in your own Cloudflare account. Employees then work with AI agents in a browser-based workspace to create documents, presentations and business applications. Despite the name, it is not an operating system like Windows or Linux. It is a platform for running AI agents safely across business workflows.
Pronunciation
Cloudflare O-S
Publisher
Cloudflare, Inc.
Licence
Apache 2.0 ($0 software licence fee)
Delivery model
Deployed in your own Cloudflare account
ARCHITECTURE / 05 COMPONENTS
Five components. One connected workspace.
Create in the workspace, manage access, and connect to your systems and AI models.
01
Work
The employee workspace
Workspace
The browser-based environment where employees work with AI agents. Agents generate and run code inside an isolated execution environment.
Blueprint / Gadget
Reusable blueprints and components for applications and workflows. Teams can share proven ways of working as organisational assets.
02
Control
Access, models and integrations
Gatekeeper
The checkpoint between AI and internal systems. It allows, denies or requests human approval for each operation and logs every access.
AI Gateway
The control point for every AI inference request. It centralises model management and makes usage costs visible and controllable.
MCP Server Portal
Publishes internal MCP servers as an organisation-wide catalogue and manages the integrations available to agents.
The companies shown use Cloudflare services; they are not presented as Cloudflare OS adopters.
They are not our customers or partners. Company names and logos are trademarks of their respective owners.
PRODUCT
The workspace in action
Employees give an agent instructions in the browser. The agent writes code in an isolated execution environment and produces documents, presentations and business applications. The screen shown takes a quarterly planning review through to a generated slide deck (.pptx) in one conversation.
Create documents, applications and workflows through conversation
Keep and share outputs across sessions
Route all internal-system access through Gatekeeper
The challenge is not simply technical capability. Many organisations encounter the same barriers. Cloudflare OS and a staged implementation programme are designed to address them.
01
The tool becomes the objective
Teams focus on “introducing AI” without defining which workflow should improve or how. Without a clear business case, leadership cannot assess the return and funding stalls.
02
The pilot never reaches production
The technical test succeeds, but security review, operating design or organisational alignment brings progress to a halt. A pilot can fall into the “valley of death” before reaching production.
03
Permissions and audit come too late
If agents receive API keys directly, it becomes difficult to trace who accessed what. Building controls in from the start is faster and safer than adding them after deployment.
A free workflow assessment, with a working sample AI to review
It is fine if you are still asking, “Could AI work for us?” We will map your workflows,
identify where AI can make an impact, and build a working sample AI as part of the assessment.
See it in action before you decide whether to proceed.
Workflow inventorySee where AI could save time, by task
Working sample AIA prototype tailored to your workflows
Cloudflare’s own usage charges for services such as Workers and Access apply separately. See our pricing and costs guide for details.
Our support fees are separate from Cloudflare’s own charges.
Funding and subsidies can reduce the cost
Up to 75% of training costs covered
Human Resources Development Support Subsidy (Business Development and Reskilling Support Course)
Eligible SMEs can receive up to 75% of training costs plus a wage subsidy of ¥1,000 per training hour. A training plan notification must be filed at least one month before training begins. As this is a temporary measure through 31 March 2027, we recommend discussing it early.
Up to ¥4.5 million in subsidies
Digitalisation and AI Adoption Subsidy 2026 (Standard Category)
This subsidy helps SMEs and small businesses adopt AI tools, with up to ¥4.5 million available for implementations that improve four or more processes. You must work with a registered IT implementation support provider, and orders or contracts made before grant approval are ineligible.
Always confirm eligibility and current details on the relevant official websites. We can also help you plan an application timeline.
Training by role
Practical programmes for each role help adoption continue after launch. We tailor the curriculum to your workflows.
Executives and directors
Half day to one day
Criteria for AI investment and interpreting ROI
Governance and risk essentials
Implementation case studies and common failure patterns
Managers and department heads
One day
Workflow inventory and KPI design
How to delegate work to agents
Impact measurement and reporting
Employees
Half day to one day (hands-on)
Workspace fundamentals
Hands-on work by department, including sales, HR and administration
Internal rules and safe use
IT teams
One to two days (technical)
Gatekeeper and MCP design and operations
Access policies and AI Gateway management
Log auditing and upgrade procedures
Why organisations choose our support
A phased start at small scale
Start with a focused, read-heavy PoC instead of a company-wide launch, then expand after confirming value and usability.
Zero-permission governance by design
Agents start with no permissions, while Gatekeeper mediates each operation. Audit-ready controls are built in from day one.
Support from implementation through adoption
From workflow selection and Access and Gatekeeper implementation to employee training and adoption, we support sustained use end to end.
How we differ from a typical AI consultancy or PoC
Comparison between a typical AI consultancy or PoC and our service
Area
Typical consultancy or PoC
Our service
Deliverables
Typical consultancy or PoCOften ends with a report
Our serviceIncludes a working sample AI, design documents and an impact report
Governance
Typical consultancy or PoCHandled separately after validation
Our serviceZero-permission design from day one
Path to production
Typical consultancy or PoCThe next step requires a new quote
Our servicePoC deliverables feed directly into full implementation
Technology selection
Typical consultancy or PoCA single vendor-selected tool
Our serviceNeutral design based on your requirements and an open-source platform
Start with a focused pilot. Verify access and outcomes before expanding to more teams.
01
Discovery and problem definition
Assess the current challenges and environment, then agree on one or two target workflows and their KPIs.
CHECKPOINTScope and KPIs
02
Focused PoC
Run a short, read-heavy pilot with 5–10 people to make benefits and issues visible.
CHECKPOINTResults and open questions
03
Identity and AI controls
Configure Access, your IdP and AI Gateway to bring users and inference costs under control.
CHECKPOINTIdentity and cost controls
04
Gatekeeper and MCP connections
Connect internal systems one at a time and verify that Gatekeeper allows, denies and records operations exactly as designed.
CHECKPOINTConnections and permissions
05
Adoption and department rollout
Open up write access gradually with approval controls, then expand alongside training and an operating model.
CHECKPOINTTraining and operations
FAQ
Common questions
How much does Cloudflare OS cost?
The software itself is open source under Apache 2.0, with $0 licence fees. Operating it may incur usage charges for Workers Paid (from $5/month), Access and AI inference. See the pricing guide for details.
How long does implementation take?
A free workflow assessment typically takes 1–2 weeks, a focused PoC 1–2 months, and full implementation 2–4 months. We expand gradually from workflows most likely to deliver value.
Is it safe to let agents access internal data?
Agents start with no permissions. Gatekeeper mediates approval, denial, human sign-off and logging for every operation. Begin with a limited, read-heavy deployment and open access gradually.