Powered by Cloudflare Edge Network

Identity Verified
at the Edge

A working demo of Cloudflare's platform โ€” Zero Trust, Workers, R2, D1, WAF, and Tunnels working together.

Access Secure Area
Platform features in use
๐Ÿ”’

Cloudflare Tunnel

Origin server connected via encrypted outbound-only tunnel. No open inbound firewall ports required.

๐Ÿ›ก๏ธ

Zero Trust Access

The /secure path is locked behind Cloudflare Access with Google SSO โ€” only approved identities get in.

โšก

Edge Workers

Identity data, flag serving, and routing logic runs at the Cloudflare edge โ€” not on the origin server.

๐Ÿ—„๏ธ

R2 Object Storage

Country flag images stored in a private R2 bucket and served via Worker bindings. Try /flags/SG.

๐Ÿ—ƒ๏ธ

D1 Database

Flag metadata indexed in a D1 SQLite database, bound to the Worker. Try /flags-d1/SG.

๐Ÿงฑ

WAF Managed Rules

SQL injection and other OWASP attacks are blocked at the edge. Try injecting a payload in the search below.

Southeast Asia flag explorer

Search Countries

Search by country name or code. Flags are served from R2 and D1 via Cloudflare Workers. Try a SQL injection payload to see the WAF in action.

Type a country name or code and click Search.