Cloudflare Integration
Connect Cloudflare with Sprinto to automate access reviews and monitor infrastructure security configurations for compliance.
Sprinto integrates with Cloudflare to automate compliance monitoring and access governance. This integration allows Sprinto to retrieve user access data and infrastructure configuration details from your Cloudflare account.
Once connected, Sprinto can:
Monitor Cloudflare user access for access review controls
Retrieve zone and firewall configuration information
Automate compliance checks related to infrastructure security
You can connect Cloudflare for the following purposes:
Access Review – Monitor user access and permissions in Cloudflare
Infrastructure Monitoring – Track Cloudflare zone and firewall configurations
Sprinto Checks for Cloudflare Integration
Following are the Sprinto checks available for Cloudflare integration:
User should be identified
Cloudflare access should be removed for offboarded user
Critical system access control should be configured
User access to Critical System should be valid
Note: The user access to the critical system becomes valid if the respective Org role is added to the system.
Before You Begin
Log in to Sprinto as an administrator.
Ensure you have "Admin" access to the Cloudflare account intended for integration.
Note that Sprito utilizes Truto.one as its integration partner.
Connect Cloudflare for Access Review
Use this integration to monitor Cloudflare user access and automate access review checks.
Data accessed by Sprinto
Sprinto retrieves the following user metadata from Cloudflare:
Roles
Username
Status
Primary email
Two-factor authentication status
This information is used to automate compliance checks and access review workflows.
Connect the Access Review integration
Log in to the Sprinto dashboard.
Navigate to Settings → Integrations.
In the All tab, search for Cloudflare.
Click Connect next to Cloudflare.

Sprinto displays two integration options:
Cloudflare – Access Review
Cloudflare Infra – Infrastructure Monitoring
Click Connect next to Cloudflare (Access Review).

Review the permissions required and data accessed by Sprinto.
Click Next.

In the setup window:
Select I have admin access to my Cloudflare account.
Click Connect to Cloudflare.

Enter your Cloudflare API Key. Know more how to retrieve your API key.
Click Connect to complete the integration.

Connect Cloudflare for Infrastructure Monitoring
You can also integrate Cloudflare with Sprinto to monitor infrastructure configurations such as zones and firewall settings.
This integration enables Sprinto to automatically evaluate infrastructure-related compliance checks.
Permissions required
The API token used for this integration must allow Sprinto to read the following resources:
Accounts
Users
Zones
Data accessed by Sprinto
Sprinto retrieves the following information from Cloudflare:
Zone information
Firewall configuration status
This data is used to automate infrastructure monitoring checks.
Connect the Infrastructure Monitoring integration
Log in to the Sprinto dashboard.
Navigate to Settings → Integrations.
In the All tab, search for Cloudflare.
Click Connect next to Cloudflare.
Click Connect next to Cloudflare Infra (Infrastructure Monitoring).

Review the permissions required and data accessed by Sprinto.
Click Next.

Generate a Cloudflare API Token with Read all resources scope. To generate an API Token.
Sign in to your Cloudflare dashboard.
Click the user profile icon (top right) and select My Profile.
Open the API Tokens tab.
Click Create Token.
Select the Read all resources template.
Click Continue to summary, then select Create Token.
Copy the generated token. You can only view this value once.
Click Connect to complete the integration.

Post-connection steps
After successfully connecting Cloudflare, ensure the system is added to Sprinto’s Access monitoring if it was not previously configured.
Navigate to Access → Overview in the Sprinto dashboard.
Click Add Critical System.
Search for Cloudflare.
Select Cloudflare from the list.
Click Add 1 System.

Sprinto will begin monitoring Cloudflare user access as part of the access review workflow.
If Cloudflare was already configured as a monitored system, no additional action is required.
Troubleshooting
Integration fails to connect
Ensure that:
The API key or API token is valid.
The account used to generate the credentials has administrator access.
The API token includes read access to required resources.
Data does not appear in Sprinto
Allow a few minutes for the initial data synchronisation to complete. If the issue persists, disconnect and reconnect the integration.
Final Step
After completing Step 3, allow 15 to 20 minutes for Sprinto to finish the data syncing process. Sprinto may take few hours to evaluate the synced data and activate relevant Sprinto checks. If needed, you can visit Data Library > Access > Critical System to check for pending tasks next to Cloudflare.
If you need any assistance with the integration, kindly get in touch with Sprinto support.
Last updated

