Zum Inhalt springen

Cloudflare Release Notes

Einträge
1.629
Quellen
14
Zuletzt aktualisiert

Folge Cloudflare, um die Release Notes in deinen Feed zu holen.

Core Platform von Cloudflare

Neue KI-Crawl-Control-Werkzeuge für das agentenbasierte Internet

AI Crawl Control bietet jetzt ein Content-Format-Diagramm in den Metriken und eine umbenannte Registerkarte 'Directives' mit Link zum Agent-Readiness-Score, um Websites auf das agentenbasierte Internet vorzubereiten.

AI Crawl Control now includes new tools to help you prepare your site for the agentic Internet—a web where AI agents are first-class citizens that discover and interact with content differently than human visitors.

Content Format insights

The Metrics tab now includes a Content Format chart showing what content types AI systems request versus what your origin serves. Understanding these patterns helps you optimize content delivery for both human and agent consumption.

Directives tab (formerly Robots.txt)

The Robots.txt tab has been renamed to Directives and now includes a link to check your site's Agent Readiness ↗︎ score.

Refer to our blog post on preparing for the agentic Internet ↗︎ for more on why these capabilities matter.

Originalquelle(öffnet in neuem Tab)Problem melden

Developer Platform von Cloudflare

AI Search: integrierter Speicher und Namespace-Bindings

Neu erstellte AI-Search-Instanzen bringen eigenen Speicher samt Vektorindex mit, und neue Workers Bindings erlauben das Anlegen von Instanzen zur Laufzeit sowie instanzübergreifende Suchen.

New AI Search instances created after today will work differently. New instances come with built-in storage and a vector index, so you can upload a file, have it indexed immediately, and search it right away.

Additionally new Workers Bindings are now available to use with AI Search. The new namespace binding lets you create and manage instances at runtime, and cross-instance search API lets you query across multiple instances in one call.

Built-in storage and vector index

All new instances now comes with built-in storage which allows you to upload files directly to it using the Items API or the dashboard. No R2 buckets to set up, no external data sources to connect first.

const instance = env.AI_SEARCH.get("my-instance");

// upload and wait for indexing to complete
const item = await instance.items.uploadAndPoll("faq.md", content);

// search immediately after indexing
const results = await instance.search({
	messages: [{ role: "user", content: "onboarding guide" }],
});

Namespace binding

…

Originalquelle(öffnet in neuem Tab)Problem melden

Developer Platform von Cloudflare

AI Search erhält Hybrid-Suche und Relevance Boosting

AI Search kombiniert nun Vektorsuche mit BM25-Keyword-Suche in einer Abfrage, mit konfigurierbarem Tokenizer, Match-Modus und Fusionsmethode, und unterstützt zusätzlich Relevance Boosting.

AI Search now supports hybrid search and relevance boosting, giving you more control over how results are found and ranked.

Hybrid search

Hybrid search combines vector (semantic) search with BM25 keyword search in a single query. Vector search finds chunks with similar meaning, even when the exact words differ. Keyword search matches chunks that contain your query terms exactly. When you enable hybrid search, both run in parallel and the results are fused into a single ranked list.

You can configure the tokenizer (porter for natural language, trigram for code), keyword match mode (and for precision, or for recall), and fusion method (rrf or max) per instance:

const instance = await env.AI_SEARCH.create({
	id: "my-instance",
	index_method: { vector: true, keyword: true },
	fusion_method: "rrf",
	indexing_options: { keyword_tokenizer: "porter" },
	retrieval_options: { keyword_match_mode: "and" },
});

Refer to Search modes for an overview and Hybrid search for configuration details.

Relevance boosting

…

Originalquelle(öffnet in neuem Tab)Problem melden

Developer Platform von Cloudflare

Artifacts in privater Beta: versioniertes Dateisystem mit Git-Zugriff

Artifacts, ein Git-kompatibler Speicher für Dateibäume, ist in privater Beta und bietet Zugriff über Workers Bindings, REST API und das Git-Protokoll.

Artifacts is now in private beta. Artifacts is Git-compatible storage built for scale: create tens of millions of repos, fork from any remote, and hand off a URL to any Git client. It provides a versioned filesystem for storing and exchanging file trees across Workers, the REST API, and any Git client, running locally or within an agent.

You can read the announcement blog ↗︎ to learn more about what Artifacts does, how it works, and how to create repositories for your agents to use.

Artifacts has three API surfaces:

  • Workers bindings (for creating and managing repositories)
  • REST API (for creating and managing repos from any other compute platform)
  • Git protocol (for interacting with repos)

As an example: you can use the Workers binding to create a repo and read back its remote URL:

# Create a thousand, a million or ten million repos: one for every agent, for every upstream branch, or every user.
const created = await env.PROD_ARTIFACTS.create("agent-007");
const remote = (await created.repo.info())?.remote;

Or, use the REST API to create a repo inside a namespace from your agent(s) running on any platform:

curl --request POST "https://artifacts.cloudflare.net/v1/api/namespaces/some-namespace/repos" --header "Authorization: Bearer $CLOUDFLARE_API_TOKEN" --header "Content-Type: application/json" --data '{"name":"agent-007"}'
``` …

Originalquelle(öffnet in neuem Tab)Problem melden

Developer Platform von Cloudflare

Email Sending in öffentlicher Beta

Transaktions-E-Mails lassen sich nun aus Workers (env.EMAIL.send()) oder per REST API versenden, und Email Sending bildet zusammen mit Email Routing den neuen Cloudflare Email Service.

Email Sending is now in public beta. Send transactional emails directly from Workers (env.EMAIL.send()) or the REST API, with support for HTML, plain text, attachments, inline images, and custom headers. Email Sending joins Email Routing ↗︎ under the new Cloudflare Email Service — a single service for sending and receiving email on the Cloudflare developer platform.

Send an email from a Worker in a few lines of code:

src/index.jsjs

export default {
	async fetch(request, env) {
		const response = await env.EMAIL.send({
			from: "notifications@yourdomain.com",
			to: "user@example.com",
			subject: "Order confirmed",
			html: "<h1>Your order has been confirmed</h1>",
			text: "Your order has been confirmed.",
		});

		return Response.json({ messageId: response.messageId });
	},
};

src/index.tsts

export default {
	async fetch(request, env): Promise<Response> {
		const response = await env.EMAIL.send({
			from: "notifications@yourdomain.com",
			to: "user@example.com",
			subject: "Order confirmed",
			html: "<h1>Your order has been confirmed</h1>",
			text: "Your order has been confirmed.",
		});

		return Response.json({ messageId: response.messageId });
	},
} satisfies ExportedHandler<Env>;
``` …

Originalquelle(öffnet in neuem Tab)Problem melden

Cloudflare One von Cloudflare

Access: Unabhängige MFA für Access-Anwendungen

Cloudflare Access unterstützt nun unabhängige Multi-Faktor-Authentifizierung per Authenticator-App, Sicherheitsschlüssel oder Biometrie, die sich auf Organisations-, Anwendungs- und Policy-Ebene festlegen lässt, während Infrastructure-Anwendungen noch nicht unterstützt werden.

Cloudflare Access now supports independent multi-factor authentication (MFA), allowing you to enforce MFA requirements without relying on your identity provider (IdP). With per-application and per-policy configuration, you can enforce stricter authentication methods like hardware security keys on sensitive applications without requiring them across your entire organization. This reduces the risk of MFA fatigue for your broader user population while adding additional security where it matters most.

This feature also addresses common gaps in IdP-based MFA, such as inconsistent MFA policies across different identity providers or the need for additional security layers beyond what the IdP provides.

Independent MFA supports the following authenticator types:

  • Authenticator application — Time-based one-time passwords (TOTP) using apps like Google Authenticator, Microsoft Authenticator, or Authy.
  • Security key — Hardware security keys such as YubiKeys.
  • Biometrics — Built-in device authenticators including Apple Touch ID, Apple Face ID, and Windows Hello.

Note

Infrastructure applications do not yet support independent MFA.

Configuration levels

You can configure MFA requirements at three levels:

Level

Description

Organization

Enforce MFA by default for all applications in your account.

Application

Require or turn off MFA for a specific application.

Policy …

Originalquelle(öffnet in neuem Tab)Problem melden

Cloudflare One von Cloudflare

Neue Erstellungsoberfläche für Access-Anwendungen und Gateway-Policies

Der Gateway-Rule-Builder und der Builder für selbst gehostete Access-Anwendungen im Cloudflare-One-Dashboard wurden mit klarerer Bedienung, Wirefilter-Bearbeitung, Vorschau, weniger Schritten und Inline-Policy-Erstellung neu gestaltet.

The Cloudflare One dashboard now features redesigned builders for two core workflows: creating Gateway policies and configuring self-hosted Access applications.

Gateway rule builder

The Gateway rule builder now features a redesigned user experience, bringing it in line with the Access policy builder experience. Improvements include:

  • Streamlined UX with clearer states and improved user interactions
  • Wirefilter editing for viewing and editing Gateway rules directly from wirefilter expressions
  • Preview state to review the impact of your policy in a simple graphic

New Gateway rule builder

For more information, refer to Traffic policies.

Access application builder for self-hosted apps

The self-hosted Access application builder now offers a simplified creation workflow with fewer steps from setup to save. Improvements include:

  • New application selection experience that makes choosing the right application type before you begin easier.
  • Streamlined creation flow with fewer clicks to build and save an application
  • Inline policy creation for building Access policies directly within the application creation flow …

Originalquelle(öffnet in neuem Tab)Problem melden

Cloudflare One von Cloudflare

DEM: Konsistenterer „Last seen“-Zeitstempel für Cloudflare One Client

Der „Last seen“-Zeitstempel von Cloudflare One Client-Geräten wird im Dashboard nun konsistenter angezeigt.

The last seen timestamp for Cloudflare One Client devices is now more consistent across the dashboard. IT teams will see more consistent information about the most recent client event between a device and Cloudflare's network.

Originalquelle(öffnet in neuem Tab)Problem melden

Developer Platform von Cloudflare

Höhere Limits für Workflows-Instanzen

Für Workers-Paid-Nutzer steigen die Workflows-Limits auf 50.000 gleichzeitige Instanzen, 300 Erstellungen pro Sekunde je Account (100 pro Workflow) und 2 Millionen Instanzen in der Warteschlange.

Workflows limits have been raised to the following:

Limit

Previous

New

Concurrent instances (running in parallel)

10,000

50,000

Instance creation rate (per account)

100/second per account

300/second per account, 100/second per workflow

Queued instances per Workflow 1

1 million

2 million

These increases apply to all users on the Workers Paid plan. Refer to the Workflows limits documentation for more details.

Footnotes

  1. Queued instances are instances that have been created or awoken and are waiting for a concurrency slot. ↩

Originalquelle(öffnet in neuem Tab)Problem melden

Developer Platform von Cloudflare

Browser Rendering heißt jetzt Browser Run, mit höheren Limits

Browser Rendering wurde in Browser Run umbenannt, die Limits für Workers Paid wurden auf 120 gleichzeitige Browser und 1 neue Instanz pro Sekunde erhöht, und das Dashboard wurde mit einem Runs-Tab neu gestaltet.

We are renaming Browser Rendering to Browser Run. The name Browser Rendering never fully captured what the product does. Browser Run lets you run full browser sessions on Cloudflare's global network, drive them with code or AI, record and replay sessions, crawl pages for content, debug in real time, and let humans intervene when your agent needs help.

Along with the rename, we have increased limits for Workers Paid plans and redesigned the Browser Run dashboard.

We have 4x-ed concurrency limits for Workers Paid plan users:

  • Concurrent browsers per account: 30 → 120 per account
  • New browser instances: 30 per minute → 1 per second
  • REST API rate limits: recently increased from 3 to 10 requests per second

Rate limits across the limits page are now expressed in per-second terms, matching how they are enforced. No action is needed to benefit from the higher limits.

The redesigned dashboard ↗︎ now shows every request in a single Runs tab, not just browser sessions but also quick actions like screenshots, PDFs, markdown, and crawls. Filter by endpoint, view target URLs, status, and duration, and expand any row for more detail. …

Originalquelle(öffnet in neuem Tab)Problem melden

Developer Platform von Cloudflare

Browser Run: Live View, Human in the Loop und Session Recordings

Browser Run bietet nun Live View zur Echtzeit-Beobachtung, Human in the Loop zum manuellen Eingreifen in laufende Sitzungen sowie Session Recordings zum Wiedergeben beendeter Sitzungen.

When browser automation fails or behaves unexpectedly, it can be hard to understand what happened. We are shipping three new features in Browser Run (formerly Browser Rendering) to help:

Live View

Live View lets you see what your agent is doing in real time. The page, DOM, console, and network requests are all visible for any active browser session. Access Live View from the Cloudflare dashboard, via the hosted UI at live.browser.run, or using native Chrome DevTools.

Human in the Loop

When your agent hits a snag like a login page or unexpected edge case, it can hand off to a human instead of failing. With Human in the Loop, a human steps into the live browser session through Live View, resolves the issue, and hands control back to the script. …

Originalquelle(öffnet in neuem Tab)Problem melden

Developer Platform von Cloudflare

Browser Run unterstützt WebMCP

Browser Run unterstützt jetzt WebMCP, womit KI-Agenten von Websites bereitgestellte Tools entdecken und direkt aufrufen können, wobei ein experimenteller Pool mit Chrome beta per lab=true genutzt wird.

Browser Run (formerly Browser Rendering) now supports WebMCP ↗︎ (Web Model Context Protocol), a new browser API from the Google Chrome team.

The Internet was built for humans, so navigating as an AI agent today is unreliable. WebMCP lets websites expose structured tools for AI agents to discover and call directly. Instead of slow screenshot-analyze-click loops, agents can call website functions like searchFlights() or bookTicket() with typed parameters, making browser automation faster, more reliable, and less fragile.

Browser Run lab session showing WebMCP tools being discovered and executed in the Chrome DevTools console to book a hotel

With WebMCP, you can:

  • Discover website tools - Use navigator.modelContextTesting.listTools() to see available actions on any WebMCP-enabled site
  • Execute tools directly - Call navigator.modelContextTesting.executeTool() with typed parameters
  • Handle human-in-the-loop interactions - Some tools pause for user confirmation before completing sensitive actions

WebMCP requires Chrome beta features. We have an experimental pool with browser instances running Chrome beta so you can test emerging browser features before they reach stable Chrome. To start a WebMCP session, add lab=true to your /devtools/browser request:

Originalquelle(öffnet in neuem Tab)Problem melden

Developer Platform von Cloudflare

Agent Lee mit Schreiboperationen und Generative UI

Agent Lee kann im Cloudflare-Dashboard nun nach ausdrücklicher Bestätigung Änderungen am Account vornehmen, etwa an DNS- oder SSL/TLS-Einstellungen, und Daten per Generative UI visualisieren.

Agent Lee adds Write Operations and Generative UI

We are excited to announce two major capability upgrades for Agent Lee, the AI co-pilot built directly into the Cloudflare dashboard. Agent Lee is designed to understand your specific account configuration, and with this release, it moves from a passive advisor to an active assistant that can help you manage your infrastructure and visualize your data through natural language.

Take action with Write Operations

Agent Lee can now perform changes on your behalf across your Cloudflare account. Whether you need to update DNS records, modify SSL/TLS settings, or configure Workers routes, you can simply ask.

To ensure security and accuracy, every write operation requires explicit user approval. Before any change is committed, Agent Lee will present a summary of the proposed action in plain language. No action is taken until you select Confirm, and this approval requirement is enforced at the infrastructure level to prevent unauthorized changes.

Example requests:

  • "Add an A record for blog.example.com pointing to 192.0.2.10."
  • "Enable Always Use HTTPS on my zone."
  • "Set the SSL mode for example.com to Full (strict)."

Visualize data with Generative UI

…

Originalquelle(öffnet in neuem Tab)Problem melden

Developer Platform von Cloudflare

Privacy-Proxy-Metriken per GraphQL Analytics API abrufbar

Privacy-Proxy-Metriken lassen sich nun über die GraphQL Analytics API abfragen, die zur neuen Standardmethode wird, und vier neue Nodes liefern Daten zu Requests, Ingress-, Egress-Verbindungen und Authentifizierung.

Privacy Proxy metrics are now queryable through Cloudflare's GraphQL Analytics API, the new default method for accessing Privacy Proxy observability data. All metrics are available through a single endpoint:

curl https://api.cloudflare.com/client/v4/graphql \
  --header "Authorization: Bearer <API_TOKEN>" \
  --header "Content-Type: application/json" \
  --data '{
    "query": "{ viewer { accounts(filter: { accountTag: $accountTag }) { privacyProxyRequestMetricsAdaptiveGroups(filter: { date_geq: $startDate, date_leq: $endDate }, limit: 10000, orderBy: [date_ASC]) { count dimensions { date } } } } }",
    "variables": {
      "accountTag": "<YOUR_ACCOUNT_TAG>",
      "startDate": "2026-04-04",
      "endDate": "2026-04-06"
    }
  }'

Available nodes

Four GraphQL nodes are now live, providing aggregate metrics across all key dimensions of your Privacy Proxy deployment:

  • privacyProxyRequestMetricsAdaptiveGroups — Request volume, error rates, status codes, and proxy status breakdowns.
  • privacyProxyIngressConnMetricsAdaptiveGroups — Client-to-proxy connection counts, bytes transferred, and latency percentiles.
  • privacyProxyEgressConnMetricsAdaptiveGroups — Proxy-to-origin connection counts, bytes transferred, and latency percentiles.
  • privacyProxyAuthMetricsAdaptiveGroups — Authentication attempt counts by method and result. …

Originalquelle(öffnet in neuem Tab)Problem melden

Application Security von Cloudflare

WAF-Release 2026-04-15: Neue Erkennungen für kritische Schwachstellen

Das WAF-Release vom 15. April 2026 fügt Schutz für eine kritische RCE-Schwachstelle in Mesop sowie für Schwachstellen in Cisco Secure FMC und FortiClient EMS hinzu und erweitert die React-Server-DoS-Abdeckung.

This week's release introduces a new detection for a critical Remote Code Execution (RCE) vulnerability in Mesop (CVE-2026-33057), alongside protections for high-impact vulnerabilities in Cisco Secure Firewall Management Center (CVE-2026-20079) and FortiClient EMS (CVE-2026-21643). Additionally, this release includes an update to our existing React Server DoS coverage to address recently identified resource exhaustion vectors (CVE-2026-23869).

Key Findings

  • Cisco Secure FMC (CVE-2026-20079): A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) that allows an unauthenticated, remote attacker to execute arbitrary commands or bypass security filters.

  • FortiClient EMS (CVE-2026-21643): A critical vulnerability in the FortiClient EMS permitting unauthorized access or administrative configuration manipulation via crafted HTTP requests.

  • Mesop (CVE-2026-33057): A vulnerability in the Mesop Python-based UI framework where unauthenticated attackers can execute arbitrary code by sending specially crafted, Base64-encoded payloads in the request body.

Impact

Successful exploitation of these vulnerabilities could allow unauthenticated attackers to execute arbitrary code, gain administrative control over network management infrastructure, or trigger server-side resource exhaustion. Administrators are strongly encouraged to apply official vendor updates.

Ruleset

Rule ID

Legacy Rule ID

Description …

Originalquelle(öffnet in neuem Tab)Problem melden

Core Platform von Cloudflare

Neue Logpush-Felder für TenantID und Firewall für KI

Logpush-Datensätze für Gateway und Zero Trust enthalten jetzt ein TenantID-Feld, und Firewall-Ereignisse bieten neue Felder für Firewall for AI wie den Injection-Score.

Cloudflare has added new fields to multiple Logpush datasets:

TenantID field

The following Gateway and Zero Trust datasets now include a TenantID field:

Firewall for AI fields

The following datasets now include Firewall for AI fields:

  • Firewall Events:

    • FirewallForAIInjectionScore: The score indicating the likelihood of a prompt injection attack in the request. …

Originalquelle(öffnet in neuem Tab)Problem melden

Cloudflare One von Cloudflare

DLP: Einstellungen auf Account-Ebene

Erweiterte DLP-Einstellungen wie OCR, KI-Kontextanalyse und Payload-Masking lassen sich nun auf Account-Ebene für alle DLP-Profile konfigurieren, wobei auf Profilebene aktivierte Einstellungen automatisch übernommen werden und die profilbezogenen Einstellungen künftig entfallen.

Account-level DLP settings are now available in Cloudflare One. You can now configure advanced DLP settings at the account level, including OCR, AI context analysis, and payload masking. This provides consistent enforcement across all DLP profiles and simplifies configuration management.

Key changes:

  • Consistent enforcement: Settings configured at the account level apply to all DLP profiles
  • Simplified migration: Settings enabled on any profile are automatically migrated to account level
  • Deprecation notice: Profile-level advanced settings will be deprecated in a future release

Migration details:

During the migration period, if a setting is enabled on any profile, it will automatically be enabled at the account level. This means profiles that previously had a setting disabled may now have it enabled if another profile in the account had it enabled.

Settings are evaluated using OR logic - a setting is enabled if it is turned on at either the account level or the profile level. However, profile-level settings cannot be enabled when the account-level setting is off.

For more details, refer to the DLP settings documentation.

Originalquelle(öffnet in neuem Tab)Problem melden

Cloudflare One von Cloudflare

Einführung von Cloudflare Mesh

Cloudflare Mesh ist verfügbar und verbindet Server, Laptops und Telefone über post-quantum-verschlüsselte private Netzwerke mit Mesh-IPs, CIDR-Routen und Hochverfügbarkeit, wobei Gateway-Netzwerkrichtlinien und Posture Checks auf alle Verbindungen angewendet werden.

Cloudflare Mesh is now available (blog post ↗︎). Mesh connects your services and devices with post-quantum encrypted networking, allowing you to route traffic privately between servers, laptops, and phones over TCP, UDP, and ICMP.

Cloudflare Mesh network map showing nodes and devices connected through Cloudflare

What Cloudflare Mesh does

  • Assigns a private Mesh IP to every enrolled device and node.
  • Enables any participant to reach any other participant by IP — including client-to-client, without deploying any infrastructure.
  • Supports CIDR routes for subnet routing through Mesh nodes.
  • Supports high availability with active-passive replicas for nodes with routes.
  • All traffic flows through Cloudflare, so Gateway network policies, device posture checks, and access rules apply to every connection.

What changed

…

Originalquelle(öffnet in neuem Tab)Problem melden

Cloudflare One von Cloudflare

DLP erkennt Cloudflare-API-Tokens

Das DLP-Profil „Credentials and Secrets“ enthält drei neue Einträge zur Erkennung von Cloudflare-API-Schlüsseln und -Tokens mit den Präfixen cfk_, cfut_ und cfat_, wobei vor der Formatumstellung erzeugte Zugangsdaten nicht erkannt werden.

The Credentials and Secrets DLP profile now includes three new predefined entries for detecting Cloudflare API credentials:

Entry name

Token prefix

Detects

Cloudflare User API Key

cfk_

User-scoped API keys

Cloudflare User API Token

cfut_

User-scoped API tokens

Cloudflare Account Owned API Token

cfat_

Account-scoped API tokens

These detections target the new Cloudflare API credential format, which uses a structured prefix and a CRC32 checksum suffix. The identifiable prefix makes it possible to detect leaked credentials with high confidence and low false positive rates — no surrounding context such as Authorization: Bearer headers is required.

Credentials generated before this format change will not be matched by these entries.

How to enable Cloudflare API token detections

  1. In the Cloudflare dashboard ↗︎, go to Zero Trust > DLP > DLP Profiles.
  2. Select the Credentials and Secrets profile.
  3. Turn on one or more of the new Cloudflare API token entries.
  4. Use the profile in a Gateway HTTP policy to log or block traffic containing these credentials.

Example policy:

Selector

Operator

Value

Action

DLP Profile

in

Credentials and Secrets

Block …

Originalquelle(öffnet in neuem Tab)Problem melden

Cloudflare One von Cloudflare

DLP: Darstellung sensibler Daten in Payload-Logs konfigurierbar

In den DLP-Einstellungen lässt sich über „Payload log masking“ nun zwischen Full Mask (Standard, mit erhaltener Zeichenanzahl), Partial Mask und Clear Text wählen, wobei die Auswahl vor der Verschlüsselung angewendet wird.

You can now configure how sensitive data matches are displayed in your DLP payload match logs — giving your incident response team the context they need to validate alerts without compromising your security posture.

To get started, go to the Cloudflare dashboard ↗︎, select Zero Trust > Data loss prevention > DLP settings and find the Payload log masking card.

Previously, all DLP payload logs used a single masking mode that obscured matched data entirely and hid the original character count, making it difficult to distinguish true positives from false positives. This update introduces three options:

  • Full Mask (default): Masks the match while preserving character count and visual formatting (for example, ***-**-**** for a Social Security Number). This is an improvement over the previous default, which did not preserve character count.
  • Partial Mask: Reveals 25% of the matched content while masking the remainder (for example, ***-**-6789).
  • Clear Text: Stores the full, unmasked violation for deep investigation (for example, 123-45-6789).

Important: The masking level you select is applied at detection time, before the payload is encrypted. This means the chosen format is what your team will see after decrypting the log with your private key — the existing encryption workflow is unchanged. …

Originalquelle(öffnet in neuem Tab)Problem melden