Question about data handling

One of our customers is concerned about the data cloudflare is able to read, store and manipulate. In this case it is about personal healthcare data.
The customer sees that emailadresses in a SaaS application called “Superset” are being obfuscated by cloudflare. The customer then concludes that cloudflare is able to read and manipulate data in this SaaS, and is worried about the safety of all their data. In what way is cloudflare able to do all of this, and how can they be sure of their data-safety?
Can you please provide and explanation for this?

Cloudflare is a reverse proxy so sits between the client and the origin server, terminating and making SSL connections either side if required. This is so Cloudflare can apply your requested configuration as traffic passes through.
See… How Cloudflare works · Cloudflare Fundamentals docs

One such feature is email obfuscation that is enabled by default. You can disable it in your dashboard if you wish…


If a website or other service is proxied by Cloudflare, then Cloudflare will be able to read and manipulate any and all data unless it is encrypted by the target application.


