Cloudflare MCP integration
Finds, creates, and updates DNS records, reports a zone's firewall and bot settings, and maps tunnels, pools, and account roles.
20actions available
Three actions you can hand over today
Every action runs live through MCP. Nothing to build, nothing to maintain.
Create dns record
Lyro creates a new DNS record within a customer's zone, pointing domains to the right servers or services. Your team no longer has to manually set up records through the Cloudflare dashboard.
Update dns record
Lyro modifies an existing DNS record to fix misconfigurations or redirect traffic. Support agents can now resolve DNS issues without leaving the help desk.
List zones
Lyro retrieves all DNS zones in a Cloudflare account so your team can identify which domains are managed there. This saves time searching through the account manually.
How businesses use Cloudflare + Lyro
Each card is one request a support team gets, and the Cloudflare actions Lyro runs to close it.
Make a DNS change without opening the dashboard
Lyro searches the zone for an existing record first, adds the new one if nothing matches, and amends only the fields that need to change on a record that already exists.
List DNS RecordsCreate DNS RecordUpdate DNS RecordReport what is actually protecting a zone
Lyro reads the zone's Bot Fight Mode or Bot Management configuration, lists the firewall rules currently in force, and shows which custom WAF lists the account maintains.
Get Bot Management SettingsList Firewall RulesList WAF ListsMap what stands between traffic and the origin
Lyro lists the cloudflared tunnels with their IDs and statuses, the load balancer pools behind them, and the monitors watching those pools.
List TunnelsList PoolsList MonitorsBring a new domain under management
Lyro identifies which account the domain belongs to, creates the zone for it, and reports the members who can change it along with their roles and two-factor status.
List AccountsCreate ZoneList Account Members
How it works
Get started in 3 steps
Connect once, then just ask. There is no workflow builder to learn and nothing to maintain — Lyro reads the Cloudflare actions it has and picks the ones a request needs.
- 01
Connect Cloudflare
Authorize the Cloudflare account your team already uses — one consent screen, no API keys, no mapping tables. Lyro can only do what you granted that account, and you can disconnect it at any time.
- 02
Tell your agent what you need
Describe the job the way you would hand it to a teammate. Lyro maps it to the Cloudflare actions that close it and chains as many as the request needs.
- 03
Watch it work
The agent runs the actions inside the conversation the customer is already in, so nobody copies data between tabs and your team can take over at any point.
Get started free
Everything else about Cloudflare
Setup, permissions, and the limits of what Lyro can do inside Cloudflare.
Yes. Create DNS record and Update DNS record both require write privileges and make live changes to the zone, and Delete DNS Record is immediate and irreversible. Update Zone's own guidance is to confirm the zone ID and the intended change with a person first, which is worth applying to record changes too.
Every action available in Cloudflare
All 20 actions your agent can call on Cloudflare, straight from the live MCP connection.
Create dns record
Create a new DNS record within a specific zone.
Create waf list
Create a new empty custom list for use in WAF rules and filters.
Create zone
Creates a new DNS zone (domain) in Cloudflare.
Delete dns record
Delete a DNS record within a specific zone.
Delete waf list
Delete a WAF list.
Delete zone
Delete a zone.
Get bot management settings
Retrieve a zone's Bot Management configuration (Bot Fight Mode / Super Bot Fight Mode / Enterprise Bot Management).
List waf lists
Fetch all WAF lists (no items) for an account.
List account members
Lists all members of a Cloudflare account with their roles, permissions, and status.
List accounts
List all Cloudflare accounts you have ownership or verified access to.
List dns records
List and search DNS records in a Cloudflare zone.
List firewall rules
List firewall rules for a specific DNS zone.
List monitors
List all load-balancer monitors in a Cloudflare account.
List pools
List all load balancer pools in a Cloudflare account.
List tunnels
List Cloudflare Tunnel (cloudflared) tunnels in an account to discover tunnel IDs, names, and statuses.
List zones
Lists, searches, sorts, and filters zones in the authenticated account.
Update dns record
Update an existing DNS record within a specific zone.
Update waf list
Update the description of a WAF list (cannot update items).
Update tunnel configuration
Update a remotely-managed Cloudflare Tunnel's configuration (ingress rules and routing).
Update zone
Update properties of an existing zone; changes apply immediately to the live zone.
The tools Cloudflare sits next to
Same connection, same setup. Pick the next one your team already uses.
Algolia
Answers from your own search index, keeps records current, adds the synonyms and rules that fix bad matches, and surfaces zero-result queries.
Bugsnag
Reports which errors are firing and how volume is trending, triages them in bulk, manages project access, and drives GDPR data requests to completion.
Digital ocean
Provisions Droplets, databases, and clusters on request, reports what is running, edits DNS records, and keeps resource tags and firewalls in order.
Honeybadger
Reports check-ins, deployments, exceptions, and custom events into Honeybadger, and uploads the source maps behind readable stack traces.
Postman
Finds the collection or spec behind a question, stands up mock servers, runs monitors and reports the result, and routes changes through forks and pull requests.
Sourcegraph
Fetches raw file contents and commit diffs without cloning, enumerates repositories and their languages, and confirms the connected identity.

Ready to connect Cloudflare?
Authorize the account and your agent has all 20 actions from the first conversation.


