◆ CloudPulse · Powered by InCloud ITES

CloudPulse AppSec Maturity
Impact Report for Cloudflare

API-driven before & after Health Check assessment · Cloudflare Worker powered

1
ConnectWorker + zone
2
Snapshot ABaseline
3
HC DeliveredImplement recs
4
Snapshot B14–30d later
5
ReportGenerate
Connect your Cloudflare zone
Enter a read-only API token to pull live AppSec data from your zone
Cloudflare API Token (read-only · never stored on server)
Scopes needed: Zone:Read, Analytics:Read, Firewall Services:Read, Account Settings:Read
◈ CF Access Service Token (required if Worker is behind CF Access)
Your Worker is protected by Cloudflare Access. The tool needs a Service Token to authenticate its API calls. Create one in Zero Trust → Access → Service Auth →
CF-Access-Client-Id
CF-Access-Client-Secret
Stored in browser localStorage only. Never sent anywhere except as headers to your own Worker.
Snapshot Manager
Snapshot A · Baseline (Before HC)
No baseline captured
Capture before HC delivery & recommendations are implemented
Snapshot B · Post-Implementation (After HC)
No post-snapshot captured
Capture 14–30 days after HC recommendations delivered & implemented
Connect zone and capture Snapshot A to begin
Cyntra AI · Executive Summary

AppSec Maturity Score
Before HC Assessment
/100
point improvement
After HC Implementation
/100
Key Security Metrics
WAF Effectiveness
Rules, block rate & event analytics
Bot Management
Fight mode, ML scoring & IP lists
API Shield
Discovery, schema validation & JWT auth
DDoS Protection
L4/L7 rules & override sensitivity
SSL / TLS
Protocol version & certificate posture
Page Shield & CSP
Script monitoring & content security policy
Rate Limiting & Extras
Rate limits, Turnstile, Waiting Room
Threat Detection Comparison
Blocked events — Snapshot A (Before HC) vs Snapshot B (After HC)
Blocked Events by Week
Security Posture Breakdown
Recommendations Progress
Auto-generated from gap analysis
Plan Entitlement & Utilisation
Active plan limits vs current usage
Cloudflare AppSec Product Adoption & Subscription Status
Adoption Gap Analysis
Snapshot A: Snapshot B: Powered by InCloud ITES · CloudPulse