Cloudflare MITM Concerns

The cluster focuses on debates about Cloudflare acting as a man-in-the-middle proxy that terminates and decrypts HTTPS traffic for its clients, raising significant privacy, trust, and security issues compared to ISPs or direct connections.

➡️ Stable 0.6x Security
3,561
Comments
17
Years Active
5
Top Authors
#921
Topic ID

Activity Over Time

2010
3
2011
10
2012
27
2013
33
2014
173
2015
121
2016
244
2017
220
2018
305
2019
408
2020
269
2021
266
2022
399
2023
350
2024
290
2025
412
2026
31

Keywords

FF MITM WHO www.agwa SIEM DNS HTTPS cloudflare.com TLS rocketspark.com cloudflare mitm ip block proxy privacy ip addresses tls ip address reverse

Sample Comments

L29Ah Oct 20, 2023 View on HN

Cloudflare is a MITM you voluntarily setup yourself, innit?

client4 Apr 26, 2019 View on HN

Cloudflare is a MiTM on the internet at large.

mistrial9 Feb 20, 2023 View on HN

CloudFlare is a MITM against its clients, by design. Everyone is good when things are good, but when trouble comes ..

api Sep 27, 2024 View on HN

Doesn't Cloudflare decrypt and MITM all traffic? In that case they can snoop on everything.

hulitu Apr 8, 2022 View on HN

This is valid also on Cloudfare. I really do not see why i shall have more trust on Cloudfare than on my ISP ? They both operate in the "free" market.

mhuffman Apr 1, 2018 View on HN

Is this an April Fool's joke since Cloudflare overtly hates privacy (see stance on TOR)?

fretn Dec 9, 2020 View on HN

can you explain this a bit more ? I'm not up to date on what cloudflare has been doing lately or in the past privacy wise

pjc50 Mar 3, 2025 View on HN

Cloudflare is the network. You have no control over whether other sites use it.

paxys Jun 26, 2024 View on HN

Cloudflare can't just do this at will. This only applies to websites that have explicitly trusted Cloudflare with their TLS cert in order to protect themselves from cases exactly like this one.

whitepaint Jun 19, 2022 View on HN

"You are connecting to Cloudflare and all your information is being decrypted and handed over on the fly" - wait, really?