Cloudflare opened self-managed OAuth for every developer - you spin up and manage the clients yourself for scoped access. Behind the scenes, a zero-downtime migration of 132 million rows holds it up.
- Cloudflare opened self-managed OAuth for all developers: you create and manage your own clients (June 24).
- Aimed at SaaS integrations, internal platforms and AI-agent workflows with scoped access.
- Behind the scenes: a zero-downtime migration of 132.5 million rows over about 3 hours; 45% faster responses, 37% less CPU.
You spin up the OAuth client yourself. You decide who gets in and how far. Cloudflare opened self-managed OAuth for every developer - for SaaS integrations, internal platforms and AI-agent workflows, without waiting for anyone to approve it for you.
For builders like us, this removes friction. Less waiting on support, more control over access - right when more and more workflows run through agents, and you want to give them narrow, precisely measured rights, not the full key to the house.
Scoped client is the way to give an agent exactly as much as it needs - and to be able to take it back tomorrow. Access control stopped being a luxury for the big players. It became hygiene for anyone running agents against their own API. Late normality, but normality.