Zero Trust visibility Early access

Zero Trust adoption, reported on schedule.

Scheduled, multi-tenant reports over Cloudflare Zero Trust — Gateway usage, AI usage, blocked activity and top users — generated at the edge and delivered through an Access-protected portal.

Scheduled reports Gateway & AI usage Access-protected portal Multi-tenant

Worker-native, Access-protected, multi-tenant reporting for Cloudflare Zero Trust: scheduled Gateway, AI-usage and security reports on rolling windows, generated asynchronously and stored as artifacts with a full audit log. Early access. The platform grew out of the Gateway top-users reporting we run for managed Zero Trust customers, rebuilt Worker-native with parity checks against the original reference implementation.

Machine-readable context: /ai-index.json

What it is

Zero Trust rollouts generate the questions executives actually ask: who uses what, what gets blocked, where is AI usage going, is the deployment paying for itself? Those answers live in Gateway logs — this platform turns them into scheduled reports instead of ad-hoc queries.

Reports run at the edge on Cloudflare Workers: schedules resolve rolling windows, a queue drives asynchronous generation, artifacts land in R2, and customers read them through an Access-protected portal scoped to exactly their accounts.

Built on

WorkersD1QueuesR2 artifactsCloudflare AccessGateway analytics

Availability

Early access. The platform grew out of the Gateway top-users reporting we run for managed Zero Trust customers, rebuilt Worker-native with parity checks against the original reference implementation.

How it works

From schedule to artifact, asynchronously

Schedules 7d · 30d · prev wk · prev mo Queue due runs Report engine ai · security · everything R2 artifact durable · rerunnable Portal Access-protected EVERY RUN, ASSIGNMENT AND TOKEN ACCESS LANDS IN THE AUDIT LOG WORKER-NATIVE · MULTI-TENANT · CLOUDFLARE ACCESS IN FRONT

Time windows resolve consistently — rolling seven and thirty days, previous week, previous month — so the numbers your stakeholders compare are actually comparable.

What it does

Scheduled windows

Rolling 7-day and 30-day, previous-week and previous-month report schedules — resolved consistently so period-over-period comparisons mean something.

AI, security and everything reports

Report types focused on what Zero Trust owners get asked: AI-application usage, blocked and risky activity, and the full estate picture — including top users per category.

Queue-driven generation

Due schedules enqueue runs; reports render asynchronously and tolerate retries — no timeouts, no half-written artifacts.

Access-protected portal

Staff and customers authenticate through Cloudflare Access with JWT audience enforcement; customers see exactly the accounts assigned to them.

Encrypted datasources

Per-customer API tokens are stored encrypted, selected per report run, and every action lands in an audit log.

Artifacts, not screenshots

Every run produces a durable artifact in R2 — rerunnable, comparable across periods, and servable straight from the portal.

See it against your own estate

Walkthroughs run on real data — yours. Tell us what you’re running and we’ll show you what Cloudflare Zero Trust Reports finds.

Ready to talk?

Deliver Cloudflare without surprises.

Whether you're migrating, hardening, or operating Cloudflare — Nanosek brings authorized MSP & ASDP delivery, rollback-ready cutovers, and managed operations after launch.