Cloudflare breach notifications

How do I get Cloudflare breach notifications? And where can I see a historic list?

e.g. Incident report on memory leak caused by Cloudflare parser bug
and
The Four Critical Security Flaws that Resulted in Last Friday's Hack

I can see that Cloudflare responds promptly to incidents, and wondered if there was a policy on response time or not and when things are made public.

You can keep an eye on Cloudflarestatus.com for recent info on incidents, but if there are any major issues (like the ones mentioned) you will usually find them blogged under the tag “Post Mortem”. Though that will include non security related issues as well.

Thanks that’s great.

Is there any SLA or other policy on how long it takes Cloudflare to respond to an incident?

I believe there are different industry standards for different situations. However the philosophy here is to be as transparent as possible as soon as we can.

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.