WatchDog Security Help Center
    Admin Guide
    • Docs Home
    • Admin Guide
    • User Guide
    • MSP Guide
    • Back to home
    • Integrations
    • Connecting Cloudflare to WatchDog Security
    • Connecting Google Workspace to WatchDog Security
    • Connecting WatchDog & Docker Hub (Personal)
    • Connecting WatchDog & Tailscale
    • Connecting Twingate to WatchDog Security
    • Connecting WatchDog & Intercom
    • Connecting Microsoft 365 to WatchDog Security
    • Connecting Google Cloud to WatchDog Security
    • Connecting Microsoft Azure to WatchDog Security
    • Connecting WatchDog & Amazon Web Services (AWS)

    Connecting Cloudflare to WatchDog Security

    This guide explains how to connect Cloudflare to WatchDog Security using an API token.
    Once connected, WatchDog will begin monitoring your Cloudflare environment for security posture risks, configuration issues, and asset inventory data across domains and DNS infrastructure.

    What WatchDog Monitors#

    WatchDog operates in read-only mode and does not modify configuration settings within your Cloudflare environment.
    After the integration is connected, WatchDog may monitor the following configuration areas:
    Scopes
    Identity & Access Management
    Cloudflare users
    Account groups and memberships
    API tokens and token permissions
    Domain Registration
    Registered domains within the Cloudflare account
    Domain ownership metadata
    DNS Configuration
    DNS records
    DNS configuration settings
    Public exposure of services
    Zone Management
    Zone configuration
    Zone security settings
    Domain protection configuration
    The exact information collected depends on the permissions granted to the API token.

    Requirements#

    Before connecting the integration, ensure the following:
    You have administrator access to the Cloudflare account
    You're an Account Owner or Security Admin in the WatchDog Security portal

    Step 1 — Generate a Cloudflare API Token#

    You can generate an API token directly from the Cloudflare dashboard.
    1.
    Log into the Cloudflare dashboard
    2.
    Navigate to: My Profile → API Tokens
    3.
    Click Create Token
    4.
    Under API token templates, select:
    5.
    Under Zone Resources, ensure the token includes All Zones for the account you want WatchDog to monitor.
    6.
    Click Continue to Summary
    7.
    Click Create Token
    8.
    Copy the generated API Token
    Cloudflare API tokens are shown only once after creation. Store the token securely before continuing.
    For additional guidance, see Cloudflare's official documentation

    Step 2 — Connect the Integration in WatchDog#

    1.
    Log into the WatchDog Security Portal
    2.
    Navigate to Management → Integrations
    3.
    Locate Cloudflare
    4.
    Click Connect
    5.
    Paste the generated Cloudflare API Token
    6.
    Click Connect Integration
    Once the connection is successful, WatchDog will begin synchronizing data from Cloudflare.

    Initial Sync#

    After the integration is connected
    WatchDog will begin collecting data from Cloudflare
    The first synchronization typically completes within 5–10 minutes
    Data will appear within the following modules
    Posture Management
    Inventory
    Compliance Center

    Troubleshooting#

    Integration Fails to Connect
    Verify the following:
    The API token was copied correctly
    The token was created with Read all resources
    The token includes access to all zones
    The token has not been revoked or expired
    No Data Appears

    Related Documentation#

    Cloudflare API Tokens
    Modified at 2026-03-14 19:35:34
    Next
    Connecting Google Workspace to WatchDog Security
    Built with