Use this plugin when you need a structured workflow rather than a one-off answer. Its capabilities are organized into focused skills so you can start broad, then go deeper where the work requires it.
Cloudflare Security
Account Identity Hardening
Dns Tls Origin Security
Workers Pages Security
Storage And Binding Security
D1 Data Access Security
Use cases
→Ask Cloudflare Security to apply cloudflare security to a real project, document, or decision and explain the assumptions it used.
→Ask Cloudflare Security to apply account identity hardening to a real project, document, or decision and explain the assumptions it used.
→Ask Cloudflare Security to apply dns tls origin security to a real project, document, or decision and explain the assumptions it used.
→Ask Cloudflare Security to apply workers pages security to a real project, document, or decision and explain the assumptions it used.
→Ask Cloudflare Security to apply storage and binding security to a real project, document, or decision and explain the assumptions it used.
Skills included
cloudflare security
Coordinate an evidence-based security review of Cloudflare accounts, applications, data, and deployment infrastructure.
What it helps with
Use Cloudflare Security to turn a focused Cloudflare Security task into a clearer, repeatable workflow.
Example use
Ask Cloudflare Security to apply cloudflare security to a real project, document, or decision and explain the assumptions it used.
Prompt pattern
Use Cloudflare Security for [specific goal]. Context: [relevant files, audience, inputs, or constraints]. Return: [desired format] and flag uncertainties.
account identity hardening
Review Cloudflare account access, API-token scope, Access policies, and service credentials.
What it helps with
Use Account Identity Hardening to turn a focused Cloudflare Security task into a clearer, repeatable workflow.
Example use
Ask Cloudflare Security to apply account identity hardening to a real project, document, or decision and explain the assumptions it used.
Prompt pattern
Use Account Identity Hardening for [specific goal]. Context: [relevant files, audience, inputs, or constraints]. Return: [desired format] and flag uncertainties.
Use Dns Tls Origin Security to turn a focused Cloudflare Security task into a clearer, repeatable workflow.
Example use
Ask Cloudflare Security to apply dns tls origin security to a real project, document, or decision and explain the assumptions it used.
Prompt pattern
Use Dns Tls Origin Security for [specific goal]. Context: [relevant files, audience, inputs, or constraints]. Return: [desired format] and flag uncertainties.
workers pages security
Review Cloudflare Workers and Pages code, bindings, routes, previews, and application security boundaries.
What it helps with
Use Workers Pages Security to turn a focused Cloudflare Security task into a clearer, repeatable workflow.
Example use
Ask Cloudflare Security to apply workers pages security to a real project, document, or decision and explain the assumptions it used.
Prompt pattern
Use Workers Pages Security for [specific goal]. Context: [relevant files, audience, inputs, or constraints]. Return: [desired format] and flag uncertainties.
storage and binding security
Assess R2, KV, Durable Objects, Queues, Vectorize, and other Cloudflare storage or data bindings.
What it helps with
Use Storage And Binding Security to turn a focused Cloudflare Security task into a clearer, repeatable workflow.
Example use
Ask Cloudflare Security to apply storage and binding security to a real project, document, or decision and explain the assumptions it used.
Prompt pattern
Use Storage And Binding Security for [specific goal]. Context: [relevant files, audience, inputs, or constraints]. Return: [desired format] and flag uncertainties.
d1 data access security
Review D1 query safety, API exposure, authentication, tenant isolation, and data lifecycle controls.
What it helps with
Use D1 Data Access Security to turn a focused Cloudflare Security task into a clearer, repeatable workflow.
Example use
Ask Cloudflare Security to apply d1 data access security to a real project, document, or decision and explain the assumptions it used.
Prompt pattern
Use D1 Data Access Security for [specific goal]. Context: [relevant files, audience, inputs, or constraints]. Return: [desired format] and flag uncertainties.
headers cors cache security
Review HTTP security headers, CORS, cookies, redirects, and cache isolation for sensitive responses.
What it helps with
Use Headers Cors Cache Security to turn a focused Cloudflare Security task into a clearer, repeatable workflow.
Example use
Ask Cloudflare Security to apply headers cors cache security to a real project, document, or decision and explain the assumptions it used.
Prompt pattern
Use Headers Cors Cache Security for [specific goal]. Context: [relevant files, audience, inputs, or constraints]. Return: [desired format] and flag uncertainties.
secrets and api leak prevention
Detect unsafe secret storage, credential leakage, overprivileged API use, and sensitive-data logging.
What it helps with
Use Secrets And Api Leak Prevention to turn a focused Cloudflare Security task into a clearer, repeatable workflow.
Example use
Ask Cloudflare Security to apply secrets and api leak prevention to a real project, document, or decision and explain the assumptions it used.
Prompt pattern
Use Secrets And Api Leak Prevention for [specific goal]. Context: [relevant files, audience, inputs, or constraints]. Return: [desired format] and flag uncertainties.
Use Deployment Supply Chain to turn a focused Cloudflare Security task into a clearer, repeatable workflow.
Example use
Ask Cloudflare Security to apply deployment supply chain to a real project, document, or decision and explain the assumptions it used.
Prompt pattern
Use Deployment Supply Chain for [specific goal]. Context: [relevant files, audience, inputs, or constraints]. Return: [desired format] and flag uncertainties.
waf api abuse protection
Review Cloudflare WAF, API Shield, bot controls, endpoint exposure, and abuse/rate-limit defenses.
What it helps with
Use Waf Api Abuse Protection to turn a focused Cloudflare Security task into a clearer, repeatable workflow.
Example use
Ask Cloudflare Security to apply waf api abuse protection to a real project, document, or decision and explain the assumptions it used.
Prompt pattern
Use Waf Api Abuse Protection for [specific goal]. Context: [relevant files, audience, inputs, or constraints]. Return: [desired format] and flag uncertainties.
monitoring incident response
Assess security observability and guide response to Cloudflare account, token, application, or data incidents.
What it helps with
Use Monitoring Incident Response to turn a focused Cloudflare Security task into a clearer, repeatable workflow.
Example use
Ask Cloudflare Security to apply monitoring incident response to a real project, document, or decision and explain the assumptions it used.
Prompt pattern
Use Monitoring Incident Response for [specific goal]. Context: [relevant files, audience, inputs, or constraints]. Return: [desired format] and flag uncertainties.
findings remediation
Produce prioritized, evidence-backed security findings, remediation plans, and verification checks.
What it helps with
Use Findings Remediation to turn a focused Cloudflare Security task into a clearer, repeatable workflow.
Example use
Ask Cloudflare Security to apply findings remediation to a real project, document, or decision and explain the assumptions it used.
Prompt pattern
Use Findings Remediation for [specific goal]. Context: [relevant files, audience, inputs, or constraints]. Return: [desired format] and flag uncertainties.
How to use Cloudflare Security
1Start with a specific outcome and provide the relevant context.
2Ask the plugin to show its assumptions and structure the result.
3Review the first result, add missing constraints, and request a focused revision.
4Save the final output in the format your workflow needs.
Example prompts
Help me use Cloudflare Security to achieve [goal]. Context: [details]. Return [format] and list assumptions.
Apply the Cloudflare Security workflow to this input: [paste input]. First explain your approach, then produce the result.
Review this result from Cloudflare Security against these criteria: [criteria]. Recommend the smallest improvements.
How to get maximum benefit
Name the audience, goal, inputs, constraints, and output format.
Give the plugin one clear job per request before expanding scope.
Ask it to identify uncertainty rather than filling gaps with guesses.
Review important outputs before publishing or acting on them.
Limitations and safe use
Results depend on the quality and completeness of the context provided.
Review important factual, technical, financial, legal, medical, or public-facing outputs before use.
The plugin should support decisions and workflows, not replace qualified human judgment.
Frequently asked questions
What is Cloudflare Security?
Cloudflare Security is a security plugin created by The Doers Firm. It includes 12 focused skills for developers and teams shipping applications.
How do I get the best results from Cloudflare Security?
Give it a specific goal, relevant context, constraints, and a desired output format. Ask it to surface assumptions and revise the result against clear criteria.