Skip to content
cloudflare-deploy logo

cloudflare-deploy

Deploy applications and infrastructure to Cloudflare using Workers, Pages, and related platform services. Use when the user asks to deploy, host, publish, or set up a project on Cloudflare.

openai/skills4Kinstalls27.8KstarsDevOps & CI/CD

SKILL.md

Full skill instructions

Cloudflare Deploy

Consolidated skill for building on the Cloudflare platform. Use decision trees below to find the right product, then load detailed references.

Prerequisites

  • When sandboxing blocks the deployment network calls, rerun with sandbox_permissions=require_escalated.
  • The deployment might take a few minutes. Use appropriate timeout values.

Authentication (Required Before Deploy)

Verify auth before wrangler deploy, wrangler pages deploy, or npm run deploy:

npx wrangler whoami    # Shows account if authenticated

Not authenticated? → references/​wrangler/​auth.md

  • Interactive/​local: wrangler login (one-time OAuth)
  • CI/​CD: Set CLOUDFLARE_API_TOKEN env var

Quick Decision Trees

"I need to run code"

Need to run code?
├─ Serverless functions at the edge → workers/
├─ Full-stack web app with Git deploys → pages/
├─ Stateful coordination/​real-time → durable-objects/
├─ Long-running multi-step jobs → workflows/
├─ Run containers → containers/
├─ Multi-tenant (customers deploy code) → workers-for-platforms/
├─ Scheduled tasks (cron) → cron-triggers/
├─ Lightweight edge logic (modify HTTP) → snippets/
├─ Process Worker execution events (logs/​observability) → tail-workers/
└─ Optimize latency to backend infrastructure → smart-placement/

"I need to store data"

Need storage?
├─ Key-value (config, sessions, cache) → kv/
├─ Relational SQL → d1/ (SQLite) or hyperdrive/ (existing Postgres/​MySQL)
├─ Object/​file storage (S3-compatible) → r2/
├─ Message queue (async processing) → queues/
├─ Vector embeddings (AI/​semantic search) → vectorize/
├─ Strongly-consistent per-entity state → durable-objects/ (DO storage)
├─ Secrets management → secrets-store/
├─ Streaming ETL to R2 → pipelines/
└─ Persistent cache (long-term retention) → cache-reserve/

"I need AI/​ML"

Need AI?
├─ Run inference (LLMs, embeddings, images) → workers-ai/
├─ Vector database for RAG/​search → vectorize/
├─ Build stateful AI agents → agents-sdk/
├─ Gateway for any AI provider (caching, routing) → ai-gateway/
└─ AI-powered search widget → ai-search/

"I need networking/​connectivity"

Need networking?
├─ Expose local service to internet → tunnel/
├─ TCP/​UDP proxy (non-HTTP) → spectrum/
├─ WebRTC TURN server → turn/
├─ Private network connectivity → network-interconnect/
├─ Optimize routing → argo-smart-routing/
├─ Optimize latency to backend (not user) → smart-placement/
└─ Real-time video/​audio → realtimekit/ or realtime-sfu/

"I need security"

Need security?
├─ Web Application Firewall → waf/
├─ DDoS protection → ddos/
├─ Bot detection/​management → bot-management/
├─ API protection → api-shield/
├─ CAPTCHA alternative → turnstile/
└─ Credential leak detection → waf/ (managed ruleset)

"I need media/​content"

Need media?
├─ Image optimization/​transformation → images/
├─ Video streaming/​encoding → stream/
├─ Browser automation/​screenshots → browser-rendering/
└─ Third-party script management → zaraz/

"I need infrastructure-as-code"

Need IaC? → pulumi/ (Pulumi), terraform/ (Terraform), or api/ (REST API)

Product Index

Compute & Runtime

ProductReference
Workersreferences/​workers/
Pagesreferences/​pages/
Pages Functionsreferences/​pages-functions/
Durable Objectsreferences/​durable-objects/
Workflowsreferences/​workflows/
Containersreferences/​containers/
Workers for Platformsreferences/​workers-for-platforms/
Cron Triggersreferences/​cron-triggers/
Tail Workersreferences/​tail-workers/
Snippetsreferences/​snippets/
Smart Placementreferences/​smart-placement/

Storage & Data

ProductReference
KVreferences/​kv/
D1references/​d1/
R2references/​r2/
Queuesreferences/​queues/
Hyperdrivereferences/​hyperdrive/
DO Storagereferences/​do-storage/
Secrets Storereferences/​secrets-store/
Pipelinesreferences/​pipelines/
R2 Data Catalogreferences/​r2-data-catalog/
R2 SQLreferences/​r2-sql/

AI & Machine Learning

ProductReference
Workers AIreferences/​workers-ai/
Vectorizereferences/​vectorize/
Agents SDKreferences/​agents-sdk/
AI Gatewayreferences/​ai-gateway/
AI Searchreferences/​ai-search/

Networking & Connectivity

ProductReference
Tunnelreferences/​tunnel/
Spectrumreferences/​spectrum/
TURNreferences/​turn/
Network Interconnectreferences/​network-interconnect/
Argo Smart Routingreferences/​argo-smart-routing/
Workers VPCreferences/​workers-vpc/

Security

ProductReference
WAFreferences/​waf/
DDoS Protectionreferences/​ddos/
Bot Managementreferences/​bot-management/
API Shieldreferences/​api-shield/
Turnstilereferences/​turnstile/

Media & Content

ProductReference
Imagesreferences/​images/
Streamreferences/​stream/
Browser Renderingreferences/​browser-rendering/
Zarazreferences/​zaraz/

Real-Time Communication

ProductReference
RealtimeKitreferences/​realtimekit/
Realtime SFUreferences/​realtime-sfu/

Developer Tools

ProductReference
Wranglerreferences/​wrangler/
Miniflarereferences/​miniflare/
C3references/​c3/
Observabilityreferences/​observability/
Analytics Enginereferences/​analytics-engine/
Web Analyticsreferences/​web-analytics/
Sandboxreferences/​sandbox/
Workerdreferences/​workerd/
Workers Playgroundreferences/​workers-playground/

Infrastructure as Code

ProductReference
Pulumireferences/​pulumi/
Terraformreferences/​terraform/
APIreferences/​api/

Other Services

ProductReference
Email Routingreferences/​email-routing/
Email Workersreferences/​email-workers/
Static Assetsreferences/​static-assets/
Bindingsreferences/​bindings/
Cache Reservereferences/​cache-reserve/

Troubleshooting

Escalated Network Access

If deployment fails due to network issues (timeouts, DNS errors, connection resets), rerun the deploy with escalated permissions (use sandbox_permissions=require_escalated). The deploy requires escalated network access when sandbox networking blocks outbound requests.

Example guidance to the user:

The deploy needs escalated network access to deploy to Cloudflare. I can rerun the command with escalated permissions—want me to proceed?