
Connects Claude to Cloudflare Radar's internet telemetry APIs for querying global traffic patterns, cyberattack data, BGP routing information, and network quality metrics. Hosted by Pipeworx as a streamable HTTP endpoint, so no local setup needed. The ask_pipeworx interface lets you query in natural language instead of calling specific tools directly. Useful when you need real-time or historical internet infrastructure data during analysis, like tracking DDoS trends, investigating routing anomalies, or comparing regional connectivity quality. Can be added standalone or as part of the full Pipeworx gateway that includes 600+ other data sources.
Public tool metadata for what this MCP can expose to an agent.
accounts_listList all accounts in your Cloudflare accountList all accounts in your Cloudflare account
No parameter schema in public metadata yet.
set_active_accountSet active account to be used for tool calls that require accountId1 paramsSet active account to be used for tool calls that require accountId
activeAccountIdParamstringlist_autonomous_systemsList Autonomous Systems4 paramsList Autonomous Systems
limitnumberlocationstringoffsetnumberorderBystringASN · POPULATIONget_as_detailsGet Autonomous System details by ASN1 paramsGet Autonomous System details by ASN
asnnumberget_ip_detailsGet IP address information including full ASN details (name, country, population estimates from APNIC).1 paramsGet IP address information including full ASN details (name, country, population estimates from APNIC).
ipstringget_traffic_anomaliesGet traffic anomalies and outages7 paramsGet traffic anomalies and outages
asnnumberdateEndstringdateRangestringdateStartstringlimitnumberlocationstringoffsetnumberget_internet_services_rankingGet top Internet services3 paramsGet top Internet services
datearraylimitnumberserviceCategoryarrayget_domains_rankingGet top or trending domains4 paramsGet top or trending domains
datearraylimitnumberlocationarrayrankingTypestringPOPULAR · TRENDING_RISE · TRENDING_STEADYget_domain_rank_detailsGet domain rank details2 paramsGet domain rank details
datearraydomainstringget_http_dataRetrieve HTTP traffic trends.9 paramsRetrieve HTTP traffic trends.
asnarraycontinentarraydateEndarraydateRangearraydateStartarraydimensionstringtimeseries · summary/adm1 · summary/as · summary/bot_class · summary/browser · summary/browser_familygeoIdarraylocationarraynormalizationstringPERCENTAGE_CHANGE · MIN0_MAX · PERCENTAGEget_dns_queries_dataRetrieve trends in DNS queries to the 1.1.1.1 resolver.8 paramsRetrieve trends in DNS queries to the 1.1.1.1 resolver.
asnarraycontinentarraydateEndarraydateRangearraydateStartarraydimensionstringtimeseries · summary/as · summary/cache_hit · summary/dnssec · summary/dnssec_aware · summary/dnssec_e2elocationarraynormalizationstringPERCENTAGE · MIN0_MAXget_l7_attack_dataRetrieve application layer (L7) attack trends.8 paramsRetrieve application layer (L7) attack trends.
asnarraycontinentarraydateEndarraydateRangearraydateStartarraydimensionstringtimeseries · summary/httpMethod · summary/httpVersion · summary/ipVersion · summary/managedRules · summary/mitigationProductlocationarraynormalizationstringPERCENTAGE_CHANGE · MIN0_MAX · PERCENTAGE · MIN_MAXget_l3_attack_dataRetrieve network layer (L3/DDoS) attack trends.8 paramsRetrieve network layer (L3/DDoS) attack trends.
asnarraycontinentarraydateEndarraydateRangearraydateStartarraydimensionstringtimeseries · summary/protocol · summary/ipVersion · summary/vector · summary/bitrate · summary/durationlocationarraynormalizationstringPERCENTAGE_CHANGE · MIN0_MAX · PERCENTAGE · MIN_MAXget_email_routing_dataRetrieve Email Routing trends.4 paramsRetrieve Email Routing trends.
dateEndarraydateRangearraydateStartarraydimensionstringsummary/ipVersion · summary/encrypted · summary/arc · summary/dkim · summary/dmarc · summary/spfget_email_security_dataRetrieve Email Security trends.4 paramsRetrieve Email Security trends.
dateEndarraydateRangearraydateStartarraydimensionstringsummary/spam · summary/malicious · summary/spoof · summary/threatCategory · summary/arc · summary/dkimget_internet_speed_dataRetrieve summary of bandwidth, latency, jitter, and packet loss, from the previous 90 days of Cloudflare Speed Test.6 paramsRetrieve summary of bandwidth, latency, jitter, and packet loss, from the previous 90 days of Cloudflare Speed Test.
asnarraycontinentarraydateEndarraydimensionstringsummary · top/locations · top/aseslocationarrayorderBystringBANDWIDTH_DOWNLOAD · BANDWIDTH_UPLOAD · LATENCY_IDLE · LATENCY_LOADED · JITTER_IDLE · JITTER_LOADEDget_internet_quality_dataRetrieves a summary or time series of bandwidth, latency, or DNS response time percentiles from the Radar Internet Quality Index (IQI).8 paramsRetrieves a summary or time series of bandwidth, latency, or DNS response time percentiles from the Radar Internet Quality Index (IQI).
asnarraycontinentarraydateEndarraydateRangearraydateStartarrayformatstringsummary · timeseriesGroupslocationarraymetricstringBANDWIDTH · DNS · LATENCYget_ai_dataRetrieves AI-related data, including traffic from AI user agents, as well as popular models and model tasks specifically from Cloudflare Workers AI.8 paramsRetrieves AI-related data, including traffic from AI user agents, as well as popular models and model tasks specifically from Cloudflare Workers AI.
asnarraycontinentarraydateEndarraydateRangearraydateStartarraydimensionstringbots/timeseries · bots/summary/user_agent · bots/summary/crawl_purpose · bots/summary/industry · bots/summary/vertical · bots/timeseries_groups/user_agentlocationarraynormalizationstringPERCENTAGE · MIN0_MAXget_bgp_hijacksRetrieve BGP hijack events. BGP hijacks occur when an AS announces routes it does not own, potentially redirecting traffic.14 paramsRetrieve BGP hijack events. BGP hijacks occur when an AS announces routes it does not own, potentially redirecting traffic.
dateEndstringdateRangestringdateStartstringhijackerAsnintegerinvolvedAsnnumberinvolvedCountrystringlimitnumbermaxConfidenceintegerminConfidenceintegeroffsetnumberprefixstringsortBystringTIME · CONFIDENCE · IDsortOrderstringASC · DESCvictimAsnintegerget_bgp_leaksRetrieve BGP route leak events. Route leaks occur when an AS improperly announces routes learned from one peer to another.10 paramsRetrieve BGP route leak events. Route leaks occur when an AS improperly announces routes learned from one peer to another.
dateEndstringdateRangestringdateStartstringinvolvedAsnnumberinvolvedCountrystringleakAsnnumberlimitnumberoffsetnumbersortBystringTIME · CONFIDENCE · IDsortOrderstringASC · DESCget_bgp_route_statsRetrieve BGP routing table statistics including number of routes, origin ASes, and more.2 paramsRetrieve BGP routing table statistics including number of routes, origin ASes, and more.
asnnumberlocationstringget_bots_dataRetrieve bot traffic data including trends by bot name, operator, category, and kind. Covers AI crawlers, search engines, monitoring bots, and more.13 paramsRetrieve bot traffic data including trends by bot name, operator, category, and kind. Covers AI crawlers, search engines, monitoring bots, and more.
asnarraybotarraybotCategoryarraybotKindarraybotOperatorarraybotVerificationStatusarraycontinentarraydateEndarraydateRangearraydateStartarraydimensionstringtimeseries · summary/bot · summary/bot_kind · summary/bot_operator · summary/bot_category · timeseries_groups/botlimitPerGroupintegerlocationarrayget_certificate_transparency_dataRetrieve Certificate Transparency (CT) log data. CT provides visibility into SSL/TLS certificates issued for domains, useful for security monitoring.13 paramsRetrieve Certificate Transparency (CT) log data. CT provides visibility into SSL/TLS certificates issued for domains, useful for security monitoring.
caarraycaOwnerarraydateEndarraydateRangearraydateStartarraydimensionstringtimeseries · summary/ca · summary/ca_owner · summary/duration · summary/entry_type · summary/expiration_statusdurationarrayentryTypearraylimitPerGroupintegernormalizationstringRAW_VALUES · PERCENTAGEpublicKeyAlgorithmarraytldarrayvalidationLevelarrayget_netflows_dataRetrieve NetFlows traffic data showing network traffic patterns. Supports filtering by ADM1 (administrative level 1, e.g., states/provinces) via geoId.11 paramsRetrieve NetFlows traffic data showing network traffic patterns. Supports filtering by ADM1 (administrative level 1, e.g., states/provinces) via geoId.
asnarraycontinentarraydateEndarraydateRangearraydateStartarraydimensionstringsummary/adm1 · summary/as · summary/location · summary/product · timeseries · timeseries_groups/adm1geoIdarraylimitPerGroupintegerlocationarraynormalizationstringPERCENTAGE_CHANGE · MIN0_MAX · PERCENTAGEproductarraylist_originsList cloud provider origins (hyperscalers) available in Cloud Observatory. Returns Amazon (AWS), Google (GCP), Microsoft (Azure), and Oracle (OCI) with their available regions.2 paramsList cloud provider origins (hyperscalers) available in Cloud Observatory. Returns Amazon (AWS), Google (GCP), Microsoft (Azure), and Oracle (OCI) with their available regions.
limitnumberoffsetnumberget_origin_detailsGet details for a specific cloud provider origin, including all available regions.1 paramsGet details for a specific cloud provider origin, including all available regions.
slugstringAMAZON · GOOGLE · MICROSOFT · ORACLEget_origins_dataRetrieve cloud provider (AWS, GCP, Azure, OCI) performance metrics. Supports timeseries, summaries grouped by region/success_rate/percentile, and grouped timeseries.9 paramsRetrieve cloud provider (AWS, GCP, Azure, OCI) performance metrics. Supports timeseries, summaries grouped by region/success_rate/percentile, and grouped timeseries.
dateEndarraydateRangearraydateStartarraydimensionstringtimeseries · summary/REGION · summary/SUCCESS_RATE · summary/PERCENTILE · timeseriesGroups/REGION · timeseriesGroups/SUCCESS_RATElimitPerGroupintegermetricstringCONNECTION_FAILURES · REQUESTS · RESPONSE_HEADER_RECEIVE_DURATION · TCP_HANDSHAKE_DURATION · TCP_RTT · TLS_HANDSHAKE_DURATIONnormalizationstringPERCENTAGE · MIN0_MAXoriginarrayregionarrayget_robots_txt_dataRetrieve robots.txt analysis data. Shows how websites configure crawler access rules, particularly for AI crawlers. Useful for understanding web crawler policies across domains.12 paramsRetrieve robots.txt analysis data. Shows how websites configure crawler access rules, particularly for AI crawlers. Useful for understanding web crawler policies across domains.
datearraydateEndarraydateRangearraydateStartarraydimensionstringsummary/user_agent · timeseries_groups/user_agent · top/domain_categories · top/user_agents/directivedirectivestringALLOW · DISALLOWdomainCategoryarraylimitnumberlimitPerGroupintegernormalizationstringPERCENTAGEpatternstringFULLY · PARTIALLYuserAgentCategorystringAIget_bots_crawlers_dataRetrieve web crawler HTTP request data. Shows crawler traffic patterns by client type, user agent, referrer, and industry. Useful for analyzing crawler behavior and traffic distribution.10 paramsRetrieve web crawler HTTP request data. Shows crawler traffic patterns by client type, user agent, referrer, and industry. Useful for analyzing crawler behavior and traffic distribution.
botOperatorarrayclientTypearraydateEndarraydateRangearraydateStartarraydimensionstringCLIENT_TYPE · USER_AGENT · REFERER · CRAWL_REFER_RATIO · VERTICAL · INDUSTRYformatstringsummary · timeseries_groupsindustryarraylimitPerGroupintegerverticalarraylist_botsList known bots with their details. Includes AI crawlers, search engines, monitoring bots, and more. Filter by category, operator, kind, or verification status.6 paramsList known bots with their details. Includes AI crawlers, search engines, monitoring bots, and more. Filter by category, operator, kind, or verification status.
botCategorystringSEARCH_ENGINE_CRAWLER · SEARCH_ENGINE_OPTIMIZATION · MONITORING_AND_ANALYTICS · ADVERTISING_AND_MARKETING · SOCIAL_MEDIA_MARKETING · PAGE_PREVIEWbotOperatorstringbotVerificationStatusstringVERIFIEDkindstringAGENT · BOTlimitnumberoffsetnumberget_bot_detailsGet detailed information about a specific bot by its slug identifier.1 paramsGet detailed information about a specific bot by its slug identifier.
botSlugstringget_leaked_credentials_dataRetrieve trends in HTTP authentication requests and compromised credential detection. Shows distribution by compromised status and bot class.9 paramsRetrieve trends in HTTP authentication requests and compromised credential detection. Shows distribution by compromised status and bot class.
asnarraybotClassarraycompromisedarraycontinentarraydateEndarraydateRangearraydateStartarraydimensionstringtimeseries · summary/compromised · summary/bot_class · timeseries_groups/compromised · timeseries_groups/bot_classlocationarrayget_as112_dataRetrieve AS112 DNS sink hole data. AS112 handles reverse DNS lookups for private IP addresses (RFC 1918). Useful for analyzing DNS misconfiguration patterns.9 paramsRetrieve AS112 DNS sink hole data. AS112 handles reverse DNS lookups for private IP addresses (RFC 1918). Useful for analyzing DNS misconfiguration patterns.
continentarraydateEndarraydateRangearraydateStartarraydimensionstringtimeseries · summary/dnssec · summary/edns · summary/ip_version · summary/protocol · summary/query_typelocationarrayprotocolarrayqueryTypearrayresponseCodearraylist_geolocationsList available geolocations (ADM1 - administrative divisions like states/provinces). Use this to find GeoNames IDs for filtering HTTP and NetFlows data by region.4 paramsList available geolocations (ADM1 - administrative divisions like states/provinces). Use this to find GeoNames IDs for filtering HTTP and NetFlows data by region.
geoIdstringlimitnumberlocationstringoffsetnumberget_geolocation_detailsGet details for a specific geolocation by its GeoNames ID.1 paramsGet details for a specific geolocation by its GeoNames ID.
geoIdstringget_tcp_resets_timeouts_dataRetrieve TCP connection quality metrics including resets and timeouts. Useful for understanding connection reliability across networks and locations.7 paramsRetrieve TCP connection quality metrics including resets and timeouts. Useful for understanding connection reliability across networks and locations.
asnarraycontinentarraydateEndarraydateRangearraydateStartarraydimensionstringsummary · timeseries_groupslocationarrayget_annotationsRetrieve annotations including Internet events, outages, and anomalies from various Cloudflare data sources.9 paramsRetrieve annotations including Internet events, outages, and anomalies from various Cloudflare data sources.
asnnumberdataSourcestringALL · AI_BOTS · AI_GATEWAY · BGP · BOTS · CONNECTION_ANOMALYdateEndstringdateRangestringdateStartstringeventTypestringEVENT · GENERAL · OUTAGE · PARTIAL_PROJECTION · PIPELINE · TRAFFIC_ANOMALYlimitnumberlocationstringoffsetnumberget_outagesRetrieve Internet outages and anomalies. Provides information about detected connectivity issues across ASes and locations.7 paramsRetrieve Internet outages and anomalies. Provides information about detected connectivity issues across ASes and locations.
asnnumberdateEndstringdateRangestringdateStartstringlimitnumberlocationstringoffsetnumberlist_ct_authoritiesList Certificate Authorities (CAs) tracked in Certificate Transparency logs.2 paramsList Certificate Authorities (CAs) tracked in Certificate Transparency logs.
limitnumberoffsetnumberget_ct_authority_detailsGet details for a specific Certificate Authority by its SHA256 fingerprint.1 paramsGet details for a specific Certificate Authority by its SHA256 fingerprint.
caSlugstringlist_ct_logsList Certificate Transparency logs.2 paramsList Certificate Transparency logs.
limitnumberoffsetnumberget_ct_log_detailsGet details for a specific Certificate Transparency log by its slug.1 paramsGet details for a specific Certificate Transparency log by its slug.
logSlugstringget_bgp_timeseriesRetrieve BGP updates time series data. Shows BGP announcement and withdrawal patterns over time.6 paramsRetrieve BGP updates time series data. Shows BGP announcement and withdrawal patterns over time.
asnarraydateEndarraydateRangearraydateStartarrayprefixarrayupdateTypearrayget_bgp_top_asesGet top Autonomous Systems by BGP update count.7 paramsGet top Autonomous Systems by BGP update count.
asnarraydateEndarraydateRangearraydateStartarraylimitnumberprefixarrayupdateTypearrayget_bgp_top_prefixesGet top IP prefixes by BGP update count.6 paramsGet top IP prefixes by BGP update count.
asnarraydateEndarraydateRangearraydateStartarraylimitnumberupdateTypearrayget_bgp_moasGet Multi-Origin AS (MOAS) prefixes. MOAS occurs when a prefix is announced by multiple ASes, which can indicate hijacking or legitimate anycast.3 paramsGet Multi-Origin AS (MOAS) prefixes. MOAS occurs when a prefix is announced by multiple ASes, which can indicate hijacking or legitimate anycast.
invalidOnlybooleanoriginintegerprefixstringget_bgp_pfx2asGet prefix-to-ASN mapping. Useful for looking up which AS announces a given IP prefix.4 paramsGet prefix-to-ASN mapping. Useful for looking up which AS announces a given IP prefix.
longestPrefixMatchbooleanoriginintegerprefixstringrpkiStatusstringVALID · INVALID · UNKNOWNget_bgp_ip_space_timeseriesRetrieve announced IP address space time series data. Shows the count of announced IPv4 /24s and IPv6 /48s over time. Essential for monitoring BGP route withdrawals, IPv6 address space changes, and detecting significant routing events by ASN or country.6 paramsRetrieve announced IP address space time series data. Shows the count of announced IPv4 /24s and IPv6 /48s over time. Essential for monitoring BGP route withdrawals, IPv6 address space changes, and detecting significant routing events by ASN or country.
asnarraydateEndarraydateRangearraydateStartarrayipVersionarraylocationarrayget_bgp_routes_realtimeGet real-time BGP routes for a specific IP prefix using public route collectors (RouteViews and RIPE RIS). Shows current routing state including AS paths, RPKI validation status, and visibility across peers. Useful for troubleshooting routing issues and verifying route announc...1 paramsGet real-time BGP routes for a specific IP prefix using public route collectors (RouteViews and RIPE RIS). Shows current routing state including AS paths, RPKI validation status, and visibility across peers. Useful for troubleshooting routing issues and verifying route announc...
prefixstringget_as_setGet IRR AS-SETs that an Autonomous System is a member of. AS-SETs are used in routing policies.1 paramsGet IRR AS-SETs that an Autonomous System is a member of. AS-SETs are used in routing policies.
asnnumberget_as_relationshipsGet AS-level relationships for an Autonomous System. Shows peer, upstream, and downstream relationships with other ASes.2 paramsGet AS-level relationships for an Autonomous System. Shows peer, upstream, and downstream relationships with other ASes.
asnnumberasn2integerlist_tldsList top-level domains (TLDs) including generic, country-code, and sponsored TLDs. Filter by type or manager.5 paramsList top-level domains (TLDs) including generic, country-code, and sponsored TLDs. Filter by type or manager.
limitnumbermanagerstringoffsetnumbertldstringtldTypestringGENERIC · COUNTRY_CODE · GENERIC_RESTRICTED · INFRASTRUCTURE · SPONSOREDget_tld_detailsGet detailed information about a specific top-level domain (TLD).1 paramsGet detailed information about a specific top-level domain (TLD).
tldstringget_domains_ranking_timeseriesGet domain ranking timeseries data. Track how specific domains rank over time.7 paramsGet domain ranking timeseries data. Track how specific domains rank over time.
dateEndarraydateRangearraydateStartarraydomainCategoryarraydomainsarraylimitnumberlocationarrayget_speed_histogramGet speed test histogram data. Shows distribution of speed test results for bandwidth, latency, or jitter.6 paramsGet speed test histogram data. Shows distribution of speed test results for bandwidth, latency, or jitter.
asnarraybucketSizeintegercontinentarraydateEndarraylocationarraymetricstringBANDWIDTH · LATENCY · JITTERget_internet_services_timeseriesTrack internet service ranking changes over time. Useful for monitoring how services like ChatGPT, Google, etc. rank over time.5 paramsTrack internet service ranking changes over time. Useful for monitoring how services like ChatGPT, Google, etc. rank over time.
dateEndarraydateRangearraydateStartarraylimitnumberserviceCategoryarrayget_outages_by_locationGet outage counts aggregated by location. Useful for identifying which countries have the most Internet outages.4 paramsGet outage counts aggregated by location. Useful for identifying which countries have the most Internet outages.
dateEndstringdateRangestringdateStartstringlimitnumberget_traffic_anomalies_by_locationGet traffic anomalies aggregated by location. Shows which countries have the most detected outage signals, automatically detected by Radar.5 paramsGet traffic anomalies aggregated by location. Shows which countries have the most detected outage signals, automatically detected by Radar.
dateEndstringdateRangestringdateStartstringlimitnumberstatusstringVERIFIED · UNVERIFIEDget_bgp_routing_table_asesList all ASes in global routing tables with routing statistics (prefix counts, IPv4/IPv6 address count, RPKI validation status). Data comes from public BGP MRT archives.4 paramsList all ASes in global routing tables with routing statistics (prefix counts, IPv4/IPv6 address count, RPKI validation status). Data comes from public BGP MRT archives.
limitnumberlocationstringsortBystringcone · pfxs · ipv4 · ipv6 · rpki_valid · rpki_invalidsortOrderstringASC · DESCget_bgp_top_ases_by_prefixesGet top ASes ordered by announced prefix count. Useful for understanding which networks have the largest routing footprint. Data comes from public BGP MRT archives and updates every 2 hours.2 paramsGet top ASes ordered by announced prefix count. Useful for understanding which networks have the largest routing footprint. Data comes from public BGP MRT archives and updates every 2 hours.
countrystringlimitnumberget_bgp_rpki_aspa_snapshotRetrieve a snapshot of current or historical RPKI ASPA (Autonomous System Provider Authorization) objects. ASPA objects define which ASNs are authorized upstream providers for a customer ASN, helping prevent route leaks and hijacks.9 paramsRetrieve a snapshot of current or historical RPKI ASPA (Autonomous System Provider Authorization) objects. ASPA objects define which ASNs are authorized upstream providers for a customer ASN, helping prevent route leaks and hijacks.
customerAsnintegerdatestringlocationstringpageintegerper_pageintegerproviderAsnintegerrirstringAFRINIC · APNIC · ARIN · LACNIC · RIPE_NCCsortBystringcustomerAsn · providerAsnsortOrderstringASC · DESCget_bgp_rpki_aspa_changesRetrieve RPKI ASPA changes over time, including additions, removals, and modifications of ASPA objects.12 paramsRetrieve RPKI ASPA changes over time, including additions, removals, and modifications of ASPA objects.
changeTypestringaddition · removal · modificationcustomerAsnintegerdateEndstringdateRangestringdateStartstringlocationstringpageintegerper_pageintegerproviderAsnintegerrirstringAFRINIC · APNIC · ARIN · LACNIC · RIPE_NCCsortBystringcustomerAsn · providerAsnsortOrderstringASC · DESCget_bgp_rpki_aspa_timeseriesRetrieve a timeseries of RPKI ASPA object counts over time.5 paramsRetrieve a timeseries of RPKI ASPA object counts over time.
dateEndstringdateRangestringdateStartstringlocationstringrirstringAFRINIC · APNIC · ARIN · LACNIC · RIPE_NCCsearch_url_scansSearch URL scans using ElasticSearch-like query syntax. Examples: 'page.domain:example.com', 'verdicts.malicious:true', 'page.asn:AS24940 AND hash:xxx', 'apikey:me AND date:[2025-01 TO 2025-02]'2 paramsSearch URL scans using ElasticSearch-like query syntax. Examples: 'page.domain:example.com', 'verdicts.malicious:true', 'page.asn:AS24940 AND hash:xxx', 'apikey:me AND date:[2025-01 TO 2025-02]'
querystringsizeintegercreate_url_scanSubmit a URL to scan. Returns the scan UUID which can be used to retrieve results.3 paramsSubmit a URL to scan. Returns the scan UUID which can be used to retrieve results.
screenshotResolutionstringdesktop · mobile · tabletdefault: desktopurlstringvisibilitystringPublic · Unlisteddefault: Publicget_url_scanGet the results of a URL scan by its UUID. Returns detailed information including verdicts, page info, requests, cookies, and more.1 paramsGet the results of a URL scan by its UUID. Returns detailed information including verdicts, page info, requests, cookies, and more.
scanIdstringget_url_scan_screenshotGet the screenshot URL for a completed scan.2 paramsGet the screenshot URL for a completed scan.
resolutionstringdesktop · mobile · tabletdefault: desktopscanIdstringget_url_scan_harGet the HAR (HTTP Archive) data for a completed scan. Contains detailed network request/response information.1 paramsGet the HAR (HTTP Archive) data for a completed scan. Contains detailed network request/response information.
scanIdstringCloudflare Radar MCP — internet observatory (traffic, attacks, BGP, quality).
Part of Pipeworx — an MCP gateway connecting AI agents to 1476+ live data sources.
internet_quality(location?, date_range?) — IQI summary.attack_summary(dimension?, location?, date_range?) — L7 DDoS attack mix.top_locations(metric?, date_range?, limit?) — top countries by HTTP / DNS / attack share.bgp_leaks(date_range?, limit?) — recent BGP route-leak events.PLATFORM_CLOUDFLARE_RADAR_KEY (or reuse CLOUDFLARE_API_TOKEN).?_apiKey=<token> after creating one at https://dash.cloudflare.com/profile/api-tokens (no special scope required for Radar).https://api.cloudflare.com/client/v4/radar/ — Bearer token.
Add to your MCP client (Claude Desktop, Cursor, Windsurf, etc.):
{
"mcpServers": {
"cloudflare-radar": {
"url": "https://gateway.pipeworx.io/cloudflare-radar/mcp"
}
}
}
tools/list at https://gateway.pipeworx.io/cloudflare-radar/mcp returns the tools in the table
above plus the shared Pipeworx meta-tools — ask_pipeworx,
discover_tools, search_within, remember/recall and the rest of the
gateway-wide set. So the tool count you see is larger than this table: a
single-pack endpoint currently lists roughly 30 shared tools alongside the
pack's own. The connection's initialize response states its exact scope, and
is the authoritative answer for a given day.
This is deliberate, not multiplexing by accident. The meta-tools are what let a
scoped connection answer a question this pack does not cover — via
ask_pipeworx, which routes across the whole catalog — without you adding a
second MCP server. There is currently no way to mount a pack endpoint without
them; if the extra schemas cost you more context than the routing is worth,
connect to the full gateway once rather than to several pack endpoints.
Or connect to the full Pipeworx gateway to get every pack's tools listed directly, instead of just this one's:
{
"mcpServers": {
"pipeworx": {
"url": "https://gateway.pipeworx.io/mcp"
}
}
}
Both URLs reach the same gateway and the same 1476+ data sources. The
only difference is which pack's tools are listed directly; ask_pipeworx
reaches all of them from either one.
Instead of calling tools directly, you can ask questions in plain English — this works on the pack endpoint above as well as on the full gateway:
ask_pipeworx({ question: "your question about Cloudflare Radar data" })
The gateway picks the right tool and fills the arguments automatically.
MIT