{"version":25,"categories":[{"id":"helix","name":"Helix Tools","icon":"cloud","description":"Project Helix demo automation suite","sort_order":0},{"id":"zt","name":"Zero Trust","icon":"shield","description":"Cloudflare Zero Trust tools and demos","sort_order":10},{"id":"wan","name":"WAN","icon":"network","description":"Cloudflare WAN tools and demos","sort_order":20},{"id":"email","name":"Email Security","icon":"shield","description":"Cloudflare Email Security (CES) demo tools","sort_order":30},{"id":"gtm","name":"GTM","icon":"globe","description":"Go-to-market tools and resources","sort_order":40},{"id":"ai","name":"AI & MCP","icon":"network","description":"AI assistants and Model Context Protocol services","sort_order":50},{"id":"demo","name":"Demo Tools","icon":"cloud","description":"Demo environments and demo-building tools","sort_order":60},{"id":"other","name":"Other Tools","icon":"grid","description":"Additional tools and utilities","sort_order":70}],"tools":[{"id":"break-the-bot","name":"Break the Bot","description":"A live security demonstration in which an intentionally vulnerable healthcare chatbot on Cloudflare Workers and Workers AI is red-teamed, leaks synthetic sensitive context, and is then protected with AI Gateway Guardrails, AI Gateway DLP, and WAF AI Security for Apps.","category":["other"],"type":"web","icon":"globe","status":"ga","action":{"type":"link","url":"https://gitlab.cfdata.org/zforsyth/cf-break-the-bot"},"repo":"https://gitlab.cfdata.org/zforsyth/cf-break-the-bot","disabled":false,"rating":{"average":0,"count":0}},{"id":"buld-lab-creation","name":"Buld Lab Creation","description":"Easily create many labs at once.","category":["demo","other","zt"],"type":"web","icon":"globe","status":"ga","action":{"type":"link","url":"https://bulk.labs.cloudflare.com/"},"disabled":false,"rating":{"average":0,"count":0}},{"id":"cf1-amer-opp-s-fy26-open","name":"CF1 AMER Opp's FY26 (Open)","description":"Salesforce Dashboard with Open Opportunities by L4","category":["gtm"],"type":"web","icon":"globe","status":"ga","action":{"type":"link","url":"https://cloudflare.lightning.force.com/lightning/r/Dashboard/01ZNv000008tYPSMA2/view"},"disabled":false,"rating":{"average":0,"count":0}},{"id":"cloudflare-rfi-rfp-response-workspace-iceman","name":"Cloudflare RFI/RFP response workspace (Iceman)","description":"A standalone Cloudflare RFI/RFP response workspace. Open it with an officially sanctioned Cloudflare agent surface and it becomes a Principal Solutions Architect, competitive sourcing strategist, and truth-disciplined response architect for Cloudflare questionnaires.","category":["other"],"type":"web","icon":"globe","status":"ga","action":{"type":"link","url":"https://gitlab.cfdata.org/zforsyth/iceman"},"repo":"https://gitlab.cfdata.org/zforsyth/iceman","disabled":false,"rating":{"average":0,"count":0}},{"id":"company-demo-account","name":"Company Demo Account","description":"We maintain a Cloudflare account that is configured to look like a real customer deployment. The goal is to give you a realistic environment to demonstrate Cloudflare to customers. Click the button below to check your access.\n\nOnce you have access, visit cfl.re/tmedemo for account details, usage guides, and pre-configured demonstration scripts.","category":["demo","zt"],"type":"web","icon":"globe","status":"ga","action":{"type":"link","url":"https://tools.cloudflaredemos.com/demoaccount"},"disabled":false,"rating":{"average":0,"count":0}},{"id":"demo-factory","name":"Demo Factory","description":"Portable agent skill (opencode) that builds a brand-consistent Cloudflare demo environment — public site, governed AI chat, employee login, and an Access-protected internal app — from a one-line prompt.","category":["ai","demo","zt"],"type":"cli","icon":"terminal","status":"beta","action":{"type":"link","url":"https://gitlab.cfdata.org/nsackett/demo-factory-skill"},"repo":"https://gitlab.cfdata.org/nsackett/demo-factory-skill","disabled":false,"rating":{"average":5,"count":1}},{"id":"demo-inbox","name":"Demo inbox","description":"Emails captured via Cloudflare Email Routing for the configured address. Messages are automatically deleted after the retention window set in the admin page","category":["demo"],"type":"web","icon":"globe","status":"ga","action":{"type":"link","url":"https://tools.cloudflaredemos.com/inbox"},"disabled":false,"rating":{"average":0,"count":0}},{"id":"dlp-regex-builder","name":"DLP Regex Builder","description":"Author and test a regex for a Cloudflare DLP custom entry, then copy the Rust regex pattern for the dashboard or a ready-made Terraform block. Ships with a loose credit-card preset that catches numbers like 1 344-4343 12345 the default PCI detector misses.","category":["demo","other","zt"],"type":"web","icon":"globe","status":"ga","action":{"type":"link","url":"https://dlp-regex.itlinux.cc/"},"repo":"https://github.com/remocloudflare/dlp-cc-regex","disabled":false,"rating":{"average":0,"count":0}},{"id":"gateway-redirect-notice-page","name":"Gateway redirect notice page","description":"This page is designed to be the redirect target of a Cloudflare Gateway HTTP policy rule. When Gateway redirects a user, the policy can be configured to append cf_* query parameters describing what was blocked. This page parses those parameters and displays a clear explanation to the user.","category":["demo","other","zt"],"type":"web","icon":"globe","status":"ga","action":{"type":"link","url":"https://tools.cloudflaredemos.com/redirect"},"disabled":false,"rating":{"average":0,"count":0}},{"id":"gateway-sandbox","name":"Gateway Sandbox","description":"Simple file download to trigger quarantine of files. Read how to deploy this in our","category":["demo","other"],"type":"web","icon":"globe","status":"ga","action":{"type":"link","url":"https://sandbox.cloudflaredemos.com/"},"repo":"https://sandbox.cloudflaredemos.com/","disabled":false,"rating":{"average":0,"count":0}},{"id":"ghost-rider","name":"Ghost Rider","description":"Deploy Docker containers that simulate real users accessing the Internet via your Cloudflare One account.","category":["demo"],"type":"web","icon":"globe","status":"ga","action":{"type":"link","url":"https://gitlab.cfdata.org/zforsyth/ghost-rider"},"repo":"https://gitlab.cfdata.org/zforsyth/ghost-rider","disabled":false,"rating":{"average":0,"count":0}},{"id":"helix-firewall-ai","name":"Helix Firewall AI","description":"AI-assisted firewall tooling (Project Helix).","category":["ai","helix"],"type":"web","icon":"cube","status":"ga","action":{"type":"link","url":"https://helix-firewall-ai.cf1demos.com"},"disabled":false,"rating":{"average":0,"count":0}},{"id":"helix-for-apps","name":"Helix for Apps","description":"Project Helix for Applications.","category":["demo","helix"],"type":"web","icon":"cube","status":"ga","action":{"type":"link","url":"https://helix-for-apps.cf1demos.com"},"repo":"https://gitlab.cfdata.org/cloudflare/sal/helix-for-apps","disabled":false,"rating":{"average":0,"count":0}},{"id":"helix-iq","name":"Helix IQ","description":"Project Helix IQ assistant.","category":["ai","helix"],"type":"web","icon":"cube","status":"ga","action":{"type":"link","url":"https://helix-iq.cf1demos.com"},"disabled":false,"rating":{"average":0,"count":0}},{"id":"helix-mcp-shield","name":"Helix MCP Shield","description":"SASE MCP security auditor (Project Helix).","category":["ai","helix","zt"],"type":"web","icon":"cube","status":"ga","action":{"type":"link","url":"https://helix-mcp-shield.cf1demos.com"},"repo":"https://gitlab.cfdata.org/janguiano/helix-mcp-shield","disabled":false,"rating":{"average":0,"count":0}},{"id":"helixquote","name":"Helix Quote","description":"Quoting tool (Project Helix).","category":["gtm","helix"],"type":"web","icon":"cube","status":"ga","action":{"type":"link","url":"https://helixquote.cf1demos.com"},"disabled":false,"rating":{"average":0,"count":0}},{"id":"helix-rfp-assistant","name":"Helix RFP Assistant","description":"RFP response assistant (Project Helix).","category":["ai","gtm","helix"],"type":"web","icon":"cube","status":"ga","action":{"type":"link","url":"https://helix-rfp-assistant.cf1demos.com"},"disabled":false,"rating":{"average":0,"count":0}},{"id":"joomlademo","name":"Joomla Demo","description":"Joomla demo environment for application security demos.","category":["demo"],"type":"web","icon":"globe","status":"ga","action":{"type":"link","url":"https://joomlademo.cf1demos.com"},"disabled":false,"rating":{"average":0,"count":0}},{"id":"mcp","name":"MCP Server","description":"Model Context Protocol endpoint for cf1demos.","category":["ai"],"type":"web","icon":"terminal","status":"ga","action":{"type":"link","url":"https://mcp.cf1demos.com"},"disabled":false,"rating":{"average":0,"count":0}},{"id":"mtascanner","name":"MTA Scanner","description":"Probe a mail server and run Cloudflare Email Security deliverability tests.","category":["email"],"type":"web","icon":"zap","status":"ga","action":{"type":"link","url":"https://mtascanner.cf1demos.com"},"repo":"https://gitlab.cfdata.org/cloudflare/cf1-speedboat/mtascanner-ng","disabled":false,"rating":{"average":5,"count":1}},{"id":"notification-pages","name":"Notification Pages","description":"Pre-built block / notification pages for use as deep-link targets from Cloudflare products (Gateway, WARP, DLP, Browser Isolation, …). Copy the URL into the product's notification configuration to land the user on the matching page. Enable Send policy context on the block page settings in Gateway to automatically include user, device, and request details on the page.","category":["demo","other","zt"],"type":"web","icon":"globe","status":"ga","action":{"type":"link","url":"https://tools.cloudflaredemos.com/notify"},"disabled":false,"rating":{"average":0,"count":0}},{"id":"helix","name":"Project Helix","description":"GUI frontend to deploy and destroy Cloudflare One demo environments via Terraform (runs on Workers Containers).","category":["demo","helix","zt"],"type":"web","icon":"cube","status":"ga","action":{"type":"link","url":"https://helix.cf1demos.com"},"repo":"https://gitlab.cfdata.org/cloudflare/sal/project-helix-fe","disabled":false,"rating":{"average":5,"count":1}},{"id":"proxmox-vm-builder","name":"Proxmox VM Builder","description":"Click a button to have terraform provision a hardened Proxmox VE 8 server on GCP on your behalf. A single set of Cloudflare-managed GCP credentials does the work — you only need to provide an SSH public key and a Cloudflare Tunnel token.","category":["demo","other"],"type":"web","icon":"network","status":"ga","action":{"type":"link","url":"https://tools.cloudflaredemos.com/proxmox"},"disabled":false,"rating":{"average":0,"count":0}},{"id":"quota-crusher","name":"Quota Crusher","description":"We’re excited to announce that Quota Crusher — your new quoting and pricing tool built on our own Workers developer platform — is live for quoting all new deals, including pool of funds (renewals and IOs coming soon).","category":["gtm"],"type":"web","icon":"globe","status":"ga","action":{"type":"link","url":"https://cf1-deal-crusher.diads-sandbox.workers.dev/"},"disabled":false,"rating":{"average":0,"count":0}},{"id":"sample-data","name":"Sample Data","description":"Synthetic datasets you can copy/paste into Cloudflare apps to demo SDD, DLP, WAF, Logpush masking and Zero Trust policies. Nothing here corresponds to a real person, card or account.","category":["demo","other","zt"],"type":"web","icon":"globe","status":"ga","action":{"type":"link","url":"https://tools.cloudflaredemos.com/sampledata"},"disabled":false,"rating":{"average":0,"count":0}},{"id":"site-safety-scanner","name":"Site Safety Scanner","description":"Site Safety Scanner\nA self-contained Cloudflare Worker demonstration that combines a public educational scanner UI with optional authenticated URL Scanner, Workers AI through AI Gateway, DLP validation, and email-report actions.\n\nWhat it demonstrates\nA Factory-style local background and responsive scanner interface.\nA clearly labeled simulated scan that performs no external security action.\nOptional live URL Scanner requests using the server-side URLSCAN_TOKEN secret.\nOptional Workers AI requests routed through your AI Gateway, including a fixed synthetic DLP test.\nOptional report delivery through a Cloudflare Email Sending binding.\nThe checked-in configuration has no account identifier, route, custom domain, sender, gateway identifier, or Email Sending binding. The base Worker deploys to your account's workers.dev hostname and serves the public UI and simulation.","category":["demo","other","zt"],"type":"web","icon":"globe","status":"ga","action":{"type":"link","url":"https://max.itlinux.cc/"},"repo":"https://github.com/remocloudflare/site-safety-scanner","disabled":false,"rating":{"average":0,"count":0}},{"id":"tase-dashboard","name":"TASE Dashboard","description":"Real-time TASE demo dashboard.","category":["demo"],"type":"web","icon":"globe","status":"ga","action":{"type":"link","url":"https://tase-dashboard.cf1demos.com"},"disabled":false,"rating":{"average":0,"count":0}},{"id":"tptp-codes","name":"TPTP codes","description":"Time-based one-time passwords for shared demo accounts. Codes rotate every 30 seconds.","category":["demo","other"],"type":"web","icon":"globe","status":"ga","action":{"type":"link","url":"https://tools.cloudflaredemos.com/totp"},"disabled":false,"rating":{"average":0,"count":0}},{"id":"value-map-coach","name":"Value Map Coach","description":"Sales value-map coaching tool.","category":["gtm"],"type":"web","icon":"globe","status":"ga","action":{"type":"link","url":"https://value-map-coach.cf1demos.com"},"disabled":false,"rating":{"average":0,"count":0}},{"id":"wan-configuration-generator","name":"WAN Configuration Generator","description":"Generates configurations for Cloudflare WAN based on device and tunnel details.","category":["wan"],"type":"web","icon":"network","status":"ga","action":{"type":"link","url":"https://cfwan.cf-client-demo.com/"},"disabled":false,"rating":{"average":0,"count":0}},{"id":"wan-ipsec-configuration-guides","name":"WAN IPsec Configuration Guides","description":"Contains vetted guides to configure vendors for use in Cloudflare WAN","category":["wan"],"type":"web","icon":"globe","status":"ga","action":{"type":"link","url":"https://cflare.co/ipsec-guides"},"disabled":false,"rating":{"average":0,"count":0}},{"id":"whoami-identity-demo","name":"Whoami Identity Demo","description":"A fully standalone Cloudflare Worker that explains edge-authenticated identity and shows a bounded, sanitized request-inspector view. It owns its UI, API routes, assets, tests, and deployment configuration without any shared-Worker runtime dependency.\n\nSecurity model\nThe inspector uses explicit allowlists. Identity values are control-character stripped and capped at 256 characters. JWT assertions, authorization cookies, generic authorization headers, arbitrary request headers, tokens, and secrets are not projected into HTML or JSON. Request-derived text is HTML-escaped, raw JSON is rendered with textContent, and responses include CSP, frame, MIME-sniffing, referrer, permissions, and cross-origin isolation headers.\n\nThe allowlisted groups are:\n\nIdentity: authenticated user identity plus selected X-User-* claims.\nEdge: selected Cloudflare connection and forwarding metadata.\nRequest metadata: host, user agent, accepted content/encoding/language, and referrer.","category":["demo","zt"],"type":"web","icon":"globe","status":"ga","action":{"type":"link","url":"https://whoami.itlinux.cc/"},"repo":"https://github.com/remocloudflare/whoami-identity-demo","disabled":false,"rating":{"average":0,"count":0}}]}