Secure all your internal vibe-coded applications — in one click
- Source
- blog.cloudflare.com
- Date

Anyone shipping internal apps built with coding agents can now make every preview and production deployment private by default with an account-level policy instead of trusting each builder to wire up auth.
“When you enable Access on a Worker, Cloudflare enforces authentication before any request reaches your application code.”
Cloudflare
“Now the policy is attached to the Worker itself, so any domain or URL associated with that Worker is automatically protected.”
Cloudflare
“You can set an Access policy once at the account level, and every Worker in your account, current and future, is private from the moment it's created.”
Cloudflare
“Set an Access policy on your dispatch Worker, and every Worker deployed through it is private by default.”
Cloudflare
“This feature was made possible by FL2, the new Rust-based modular proxy that powers Cloudflare's edge.”
Cloudflare
Checking sign-in…
Loading comments…


