Codex + Cloudflare
OpenAI coding agent available as a terminal CLI and desktop app. It reads and writes files, runs commands, and browses the web in a sandbox.
-
Install Codex
Install the Codex CLI. macOS and Linux are fully supported; use WSL2 on Windows. For Homebrew or other install methods, see the Codex CLI setup guide ↗.
npm install -g @openai/codex -
Launch Codex in your project
Start Codex from the root of your project, where
wrangler.jsonclives (if it already exists).codex -
Install the Cloudflare plugin
Inside Codex, run
/plugins, then search for and install Cloudflare. This installs Cloudflare Skills and registers the Cloudflare MCP servers./plugins -
Try a prompt
For example:
Build an image upload and transformation service using R2 and Cloudflare Images.
-
Download Codex
Follow the download instructions for your operating system at developers.openai.com/codex/app ↗.
-
Install the Cloudflare plugin
In the Codex app, go to Plugins and install Cloudflare.
Expand any section to learn more.
Cloudflare Skills
Persistent platform context that teaches the agent how Cloudflare works.
Skills are instructions the agent loads on demand. The cloudflare/skills bundle covers every layer of the platform — so the agent knows your conventions without you re-explaining them.
- agents-sdkBuild, debug, or review Cloudflare Agents SDK applications using the agents package.
- cloudflareDiscover and choose Cloudflare products for apps, APIs, AI agents, storage, networking, and security. Use for architecture and product selection, including when the user describes a need without naming a Cloudflare product; then find the relevant skill or documentation.
- cloudflare-email-serviceImplement or troubleshoot Cloudflare Email Sending and Email Routing integrations and their delivery configuration.
- cloudflare-oneDesign, configure, troubleshoot, or review Cloudflare One Zero Trust and SASE deployments. Use cloudflare-one-migrations for migration planning from other vendors.
- cloudflare-one-migrationsAssess and plan migrations from existing VPN, SWG, or SASE platforms to Cloudflare One, including policy mapping, parity gaps, and rollout.
- durable-objectsBuild, debug, or review Cloudflare Durable Objects code for persistent state and coordination.
- nextjs-on-cloudflareBuild, migrate, and deploy Next.js apps on Cloudflare Workers with vinext. Use when starting a Next.js project on Cloudflare, moving an existing app to Workers, choosing between vinext and OpenNext, or setting up vinext for Workers. For setup, migration, or deployment, install vinext's upstream skills with `npx skills add cloudflare/vinext` if missing, then read and follow the applicable skill and docs.
- sandbox-migrate-to-nextMigrate Cloudflare Sandbox apps from stable @cloudflare/sandbox to @cloudflare/sandbox@next (SDK 1.0 preview). Use sandbox-next for apps already on the preview.
- sandbox-nextBuild or maintain Cloudflare Sandbox apps on @cloudflare/sandbox@next (SDK 1.0 preview). Use sandbox-migrate-to-next when porting a stable app.
- sandbox-stableBuild or maintain Cloudflare Sandbox apps on the stable @cloudflare/sandbox package. Use sandbox-next for preview apps and sandbox-migrate-to-next for stable-to-preview migrations.
- turnstile-spinSet up, repair, or migrate to Cloudflare Turnstile bot verification in an existing frontend and backend, including server-side Siteverify.
- web-perfAudit, diagnose, or optimize website loading and interaction performance, Core Web Vitals, and Lighthouse performance scores.
- workers-best-practicesCloudflare Workers best practices for production applications. Use when writing, reviewing, or configuring Workers.
- wranglerRun or troubleshoot Wrangler CLI commands and configure Worker projects for local development, deployment, and Cloudflare resource management.
MCP servers
Live access to the Cloudflare API, docs, and observability.
MCP servers provide typed tools to call into Cloudflare at runtime. There are two options: Code Mode — a single server that covers the entire Cloudflare API (2,500+ endpoints in ~1,000 tokens) — or a set of focused, domain-specific servers hosted in the cloudflare/mcp-server-cloudflare repo. The full catalog is also in the MCP servers for Cloudflare docs.
- Code mode APIcode modeBroad access to the full Cloudflare API via code execution, with minimal token overheadhttps://mcp.cloudflare.com/mcp
- Code Mode servercode modeBest when you want broad access across Cloudflare's APIs through code executionhttps://mcp.cloudflare.com/mcp
- AI Gateway serverSearch your logs, get details about the prompts and responseshttps://ai-gateway.mcp.cloudflare.com/mcp
- Audit Logs serverQuery audit logs and generate reports for reviewhttps://auditlogs.mcp.cloudflare.com/mcp
- AutoRAG serverSearch and query account AutoRAG instanceshttps://autorag.mcp.cloudflare.com/mcp
- Browser Run serverFetch web pages, convert them to markdown and take screenshotshttps://browser.mcp.cloudflare.com/mcp
- Cloudflare Blog serverSearch and read posts from the Cloudflare Bloghttps://blog.mcp.cloudflare.com/mcp
- Cloudflare One CASB serverQuickly identify any security misconfigurations for SaaS applications to safeguard users & datahttps://casb.mcp.cloudflare.com/mcp
- Container serverSpin up a sandbox development environmenthttps://containers.mcp.cloudflare.com/mcp
- Demo Day serverDemonstrate a minimal Cloudflare MCP serverhttps://demo-day.mcp.cloudflare.com/mcp
- Digital Experience Monitoring serverGet quick insight on critical applications for your organizationhttps://dex.mcp.cloudflare.com/mcp
- DNS Analytics serverOptimize DNS performance and debug issues based on current setuphttps://dns-analytics.mcp.cloudflare.com/mcp
- Documentation serverGet up-to-date reference information on Cloudflarehttps://docs.mcp.cloudflare.com/mcp
- Logpush serverGet quick summaries for Logpush job healthhttps://logs.mcp.cloudflare.com/mcp
- Observability serverDebug and get insight into your application's logs and analyticshttps://observability.mcp.cloudflare.com/mcp
- Radar serverExplore Cloudflare Radar internet insightshttps://radar.mcp.cloudflare.com/mcp
- Workers Bindings serverBuild Workers applications with storage, AI, and compute primitiveshttps://bindings.mcp.cloudflare.com/mcp
- Workers Builds serverGet insights and manage your Cloudflare Workers Buildshttps://builds.mcp.cloudflare.com/mcp
Wrangler CLI
Local dev, deploys, and Workers-specific commands.
Use Wrangler for local development, deploys, and product-specific commands like wrangler d1 migrations apply or wrangler tail. The bundled wrangler Skill teaches the agent when to reach for it.
Agent-friendly docs
Token-efficient references optimized for agents.
Append /index.md to any Cloudflare docs URL for a clean markdown version. Every top-level product section also has its own llms.txt — a page index sized for a single context window. A few useful ones:
- developers.cloudflare.com/llms.txt — directory of every Cloudflare product.
- developers.cloudflare.com/workers/llms.txt
- developers.cloudflare.com/agents/llms.txt
- developers.cloudflare.com/r2/llms.txt
- developers.cloudflare.com/d1/llms.txt
For a full overview of how these docs are structured for agents, refer to the Docs for Agents guide.
Set up rate limiting and WAF rules to block abuse on my public API.Add real-time collaboration to my app using Durable Objects with WebSocket hibernation.Add a D1 database to my Worker and create a users table with full CRUD endpoints.Deploy a full-stack React app to Cloudflare Pages with a Workers API backend and D1 database.Set up a Waiting Room to handle flash sale traffic spikes without dropping requests.- The Cloudflare API MCP server uses Code Mode — Codex writes JavaScript against a typed API to reach any of 2,500+ endpoints in ~1,000 tokens.
- Try the
/cloudflare:build-agentslash command to scaffold a complete Agents SDK project, or/cloudflare:build-mcpfor a remote MCP server.
Cloudflare MCP server repository
Should I use Skills, the MCP server, Wrangler CLI, or all of them?
All three. Skills load Cloudflare knowledge into every Codex session (when
to use Durable Objects, how to structure a Workers project, etc.). The
Cloudflare API MCP server handles platform operations (DNS, WAF, Zero
Trust). Wrangler handles local dev, deploys, and migrations. The bundled
wrangler Skill teaches Codex when to run CLI commands vs. call the MCP
API.
How do I connect Codex to my Cloudflare account?
The first time Codex calls a Cloudflare tool, you will be redirected to authorize via OAuth and choose permissions.
Is Codex open source?
Yes. Codex is open source and available on GitHub at github.com/openai/codex.
MCP server not connecting
Verify the server was added with codex mcp add cloudflare --url https://mcp.cloudflare.com/mcp.
Run codex mcp list to confirm it appears, then use /mcp inside the Codex TUI to check its status.
Getting outdated information about Cloudflare products
Enable the Cloudflare docs MCP server so the agent can fetch
current documentation at runtime. If you prefer not to use the MCP server, point
the agent directly at developers.cloudflare.com/llms.txt for
a directory of every product, or developers.cloudflare.com/<product>/llms.txt
for a product-specific index.
MCP server authentication fails
Remove and re-add the MCP server. Complete the OAuth flow in your browser when prompted.
Cloudflare is not just a deploy target for agents, it is a full stack for building your own.
Stateful AI agents with state, scheduling, RPC, email, streaming chat — and the Code Mode SDK for token-efficient tool use.
Learn moreShip a remote MCP server on Workers with OAuth, durable state, and streamable HTTP transport.
Learn moreRun open-source LLMs, embedding models, and image models at the edge. Use it as your agent's model provider.
Learn moreLoad user-generated code into isolated Workers on demand. The secure sandbox behind Code Mode.
Learn moreClaude Code
Terminal-based coding agent that understands your codebase, runs commands, edits files, and manages git. Made by Anthropic.
View guideCursor
AI-first IDE built on VS Code with multi-file Composer edits and background agents. Made by Cursor.
View guideGitHub Copilot
Editor extension and CLI with agent mode, workspace context, and native PR integration. Made by GitHub.
View guideOpenCode
Open-source terminal agent with a rich TUI that works with 75+ LLMs. Made by Anomaly.
View guideWindsurf
Agentic IDE with Cascade context and Flows for multi-step tasks. Made by Cognition.
View guideVisual Studio Code
Free, open-source code editor with native Model Context Protocol (MCP) client support and Copilot Chat integration. Made by Microsoft.
View guideBionic
Powerful agent for coding and work. Natively local, with open models in the cloud. By LM Studio.
View guide