Architecture & security audits
Full zone and account analysis with a security rules review: what is deployed, what is misconfigured, and what the plan makes available that you are not using.
A multi-tenant intelligence platform for Cloudflare estates — architecture and security audits, security rules review, WAF intelligence, performance and full analytics reports, with every finding tracked as an action item.
A multi-tenant Cloudflare intelligence platform: architecture audits, security audits, security rules review, WAF intelligence, performance and full analytics reports — with unified action tracking, DNS architecture maps and network flow analysis, fully hosted on Cloudflare. Live with early-access customers across the audit, reporting, actions, DNS-map and network-flow modules; multi-cloud inventory is the current roadmap item. Walkthroughs run against your own estate, read-only.
Machine-readable context: /ai-index.json
Enterprise Cloudflare estates accumulate zones, rules, exceptions and half-remembered decisions. The Research Platform turns that into something reviewable: architecture and security audits, security rules review, WAF intelligence, performance and full analytics reports — over your zones and accounts, with dashboards on top and artifacts underneath.
Findings don’t stop at being findings. Every report kind feeds one unified Actions queue — each item carrying severity, a working state and, where it applies, a deep link straight into the Cloudflare dashboard — so the estate’s to-do list is a tracked list, not a PDF nobody reopens.
It is built the way we build for customers — multi-tenant from the first table, every query scoped to its tenant, API tokens encrypted at rest, and the whole platform running on Cloudflare Workers, D1, KV and R2 rather than a server somewhere.
Built on
Availability
Live with early-access customers across the audit, reporting, actions, DNS-map and network-flow modules; multi-cloud inventory is the current roadmap item. Walkthroughs run against your own estate, read-only.
How it works
The same architecture we recommend to customers, applied to our own product: no servers, no agents, and a report layer designed so every claim traces back to the module, window and field it came from.
Full zone and account analysis with a security rules review: what is deployed, what is misconfigured, and what the plan makes available that you are not using.
Attack campaigns, bot activity and firewall behavior over time — interpreted reports rather than raw log exports.
Cache behavior, latency percentiles, error rates and traffic scale — the delivery half of the estate, reported alongside the security half.
Action items from every report kind land in a single tracked queue — filterable by source, severity and state, with direct links into the Cloudflare dashboard where the fix happens.
Reports are durable artifacts in R2, and every headline claim traces to its source module, window and field — anything unmeasured says “not measured” instead of guessing.
Tenant-scoped queries, AES-256-GCM-encrypted tokens at rest, role-gated admin — running on Workers, D1, KV and R2 end to end.
Explicit about what is shipped versus planned — the roadmap is a roadmap, not a feature list.
Walkthroughs run on real data — yours. Tell us what you’re running and we’ll show you what Cloudflare Research Platform finds.
Whether you're migrating, hardening, or operating Cloudflare — Nanosek brings authorized MSP & ASDP delivery, rollback-ready cutovers, and managed operations after launch.