WAF Security Lab

Analyze file uploads using Cloudflare's Malicious Upload Detection.

Drop your test file here or Browse
HOW IT WORKS
1. Client
Sends Request
2. WAF
Scans Stream
3. Header
Injects Result
4. Worker
Final Decision

Pass-through Detection: Cloudflare scans the stream and injects the Malicious-Uploads-Detection header. This allows Workers to perform custom logic before saving to R2.

Direct Enforcement: Beyond header injection, you can also create WAF Custom Rules to block malicious requests at the edge automatically based on the scan result.

View Official Developer Documentation ↗