We share Cloudflare's internal strategy for governing MCP using Access, AI Gateway, and MCP server portals. We also launch Code Mode to slash token costs and recommend new rules for detecting Shadow M
AI Summary
Cloudflare developed a unified security architecture to govern AI usage with Model Context Protocol (MCP) across its enterprise, addressing security risks such as authorization sprawl and supply chain risks. To achieve this, they built a centralized team to manage MCP server deployment, using a shared MCP platform with governed infrastructure, CI/CD pipelines, secrets management, and audit logging. This centralized approach enabled rapid adoption and provided visibility into MCP server usage while maintaining control over software sources.
Get the top 10 engineering articles delivered every Monday.