VOOZH about

URL: https://thenewstack.io/cloudflares-balancing-act-protect-content-while-pushing-ai/

⇱ Cloudflare’s Balancing Act: Protect Content While Pushing AI - The New Stack


TNS
SUBSCRIBE
Join our community of software engineering leaders and aspirational developers. Always stay in-the-know by getting the most important news and exclusive content delivered fresh to your inbox to learn more about at-scale software development.
REQUIRED
It seems that you've previously unsubscribed from our newsletter in the past. Click the button below to open the re-subscribe form in a new tab. When you're done, simply close that tab and continue with this form to complete your subscription.
The New Stack does not sell your information or share it with unaffiliated third parties. By continuing, you agree to our Terms of Use and Privacy Policy.
Welcome and thank you for joining The New Stack community!
Please answer a few simple questions to help us deliver the news and resources you are interested in.
REQUIRED
REQUIRED
REQUIRED
REQUIRED
REQUIRED
Great to meet you!
Tell us a bit about your job so we can cover the topics you find most relevant.
REQUIRED
REQUIRED
REQUIRED
REQUIRED
REQUIRED
Welcome!

We’re so glad you’re here. You can expect all the best TNS content to arrive Monday through Friday to keep you on top of the news and at the top of your game.

What’s next?

Check your inbox for a confirmation email where you can adjust your preferences and even join additional groups.

Follow TNS on your favorite social media networks.

Become a TNS follower on LinkedIn.

Check out the latest featured and trending stories while you wait for your first TNS newsletter.

PREV
1 of 2
NEXT
VOXPOP
As a JavaScript developer, what non-React tools do you use most often?
Angular
0%
Astro
0%
Svelte
0%
Vue.js
0%
Other
0%
I only use React
0%
I don't use JavaScript
0%
Thanks for your opinion! Subscribe below to get the final results, published exclusively in our TNS Update newsletter:
NEW! Try Stackie AI
From clobbered drafts to real-time sync
Apr 14th 2026 10:00am, by David Moore
TypeScript 6.0 RC arrives as a bridge to a faster future
Mar 14th 2026 9:00am, by Darryl K. Taft
Mastra empowers web devs to build AI agents in TypeScript
Jan 28th 2026 11:00am, by Loraine Lawson
2025-09-02 08:00:51
Cloudflare’s Balancing Act: Protect Content While Pushing AI
AI / AI Agents / Emerging technologies

Cloudflare’s Balancing Act: Protect Content While Pushing AI

Cloudflare announces an implementation of NLWeb, an open protocol for AI chat on websites. Also, an update on its creator compensation drive.
Sep 2nd, 2025 8:00am by Richard MacManus
👁 Featued image for: Cloudflare’s Balancing Act: Protect Content While Pushing AI
Image by Fellipe Ditadi via Unsplash+. 

This year Cloudflare has been outspoken in its support of the web’s content creators in the AI era, who have had to endure wholesale ransacking of their content by LLM providers and AI search engines — not to mention ever-diminishing visits from web users. A couple of months ago, CEO Matthew Prince declared 1 July to be “Content Independence Day” and demanded that companies like Google, OpenAI and Anthropic compensate creators for AI crawls.

At the same time, Cloudflare is also working to integrate AI into its content delivery platform in a way that (hopefully) benefits publishers. Late last week it announced an implementation of NLWeb, a nascent protocol that enables publishers to integrate AI chat into their websites.

We spoke to William Allen, a VP of product at Cloudflare, about the company’s goal to “make your website conversational for people and agents.”

There are two aspects to Cloudflare’s initiative. Firstly, NLWeb, an open source project announced by Microsoft in May — it was promoted as a way to “effectively turn your website into an AI app.” The second key technology is AutoRAG, Cloudflare’s “managed retrieval engine, [that] can automatically crawl your website, store the content in R2, and embed it into a managed vector database.”

“So the second we saw [NLWeb] announced, we went out and started looking into it, and said: okay, how do we make this simple for Cloudflare customers.”
William Allen, VP of product at Cloudflare

Think of AutoRAG as a way to scan your website and put it into a vector database, which you can then search and interact with using AI models, Allen told me.

AutoRAG is fairly new — it was announced back in April as “a fully managed Retrieval-Augmented Generation (RAG) pipeline.” Combining it with NLWeb makes a lot of sense, as it allows web publishers to effectively add a custom AI search bot to their sites.

“Together, NLWeb and AutoRAG let publishers go beyond search boxes, making conversational interfaces for websites simple to create and deploy,” said R.V. Guha, creator of NLWeb and a Technical Fellow at Microsoft, in a prepared statement for Cloudflare’s post.

“So the second we saw it announced,” Allen said about NLWeb, “we went out and started looking into it, and said: okay, how do we make this simple for Cloudflare customers to be able to implement themselves on their own properties.”

Yes, There’s MCP

As with nearly everything to do with AI and application development these days, there is an MCP component to this. “Each NLWeb instance also operates as a Model Context Protocol (MCP) server,” states the Cloudflare blog post. I asked Allen if this means each publisher gets their own MCP server?

He replied that NLWeb gives you a conversational interface to your website, “but it also comes with these endpoints that can be used via MCP servers.” He clarified that, yes, “it’s an MCP endpoint that is particular for your NLWeb instance.”

In other words, external applications can access your website’s content via that MCP connection.

Cloudflare Wants to Extend NLWeb

The blog post announcement also stated that Cloudflare is “actively working with Microsoft to extend the [NLWeb] standard with the goal to let every site function like an AI app, so users and agents alike can query its contents naturally.” I asked Allen in what ways does Cloudflare want to extend the spec?

“Adoption is probably the biggest and most important thing,” he replied. “Making sure it works for all of our customers, being able to make it easy for customers to drop in their own branding, their own look and feel — so a level of customization.”

Also, Cloudflare would like their users to have the ability to bring in “whatever your favorite AI provider is, seamlessly,” said Allen.

Cloudflare wants to extend NLWeb by making it “easy for customers to drop in their own branding, their own look and feel.”

While NLWeb does hold a lot of promise (I have spoken to Guha about it, but unfortunately, it was off-the-record), there have been recent concerns raised about its security. Last month, The Verge reported on a security flaw in NLWeb that allowed any remote users to read sensitive files. While that flaw was immediately patched, I asked Allen if Cloudflare is closely monitoring the security aspects of NLWeb.

“Absolutely, and look, [like] a lot of these things, it’s very early in the standard,” he replied, pointing to MCP being another example of a brand new standard that’s getting rapid adoption. “You need to be very careful as you think about bringing these things truly into production, […] in particular with your content. And so we’re launching this, it’s a beta, [and] the beauty of an open standard is that it’s transparent, it’s open. Other people can help kick the tires and find these vulnerabilities, and then anyone out there can submit a PR to make sure that if there is a vulnerability, it’s patched pretty quickly.”

Cloudflare’s Compensation for Creators Drive

Broadening the conversation, I asked Allen if there has been any progress in the content creator compensation project that Cloudflare CEO Matthew Prince blogged about in July? Prince has continued to do interviews about this, including one last week with Fred Vogelstein, in which he references a kind of marketplace for content that Cloudflare would be the middleman for.

“We’re still in the very early days,” said Allen. “I mean, we have this very radical but simple philosophy, which is that when you, as a content creator, put your content online, when you connect your website to the internet, you should get to decide how that content is used for commercial purposes by others, right? So you should be in the driver’s seat.”

He noted that a number of their customers are leveraging Cloudflare’s tools “for the enforcement side” (i.e., blocking content from AI crawlers) and then striking their own deals with various AI companies.

“…with our early experimentation with pay-per-crawl, we’re still in an early private beta, working very closely with agent developers and other AI companies, as well as the publishers, to find the right balance there.”
– Allen

“Then in terms of the direct monetization, with our early experimentation with pay-per-crawl, we’re still in an early private beta, working very closely with agent developers and other AI companies, as well as the publishers, to find the right balance there.”

What’s interesting is that Cloudflare appears to be focusing just as much on giving AI agent developers ways to use the content of publishers — with their permission, of course. So it’s not just about protecting websites and adding AI to them. It’s also about throwing a bone to AI developers (as long as they pay for the meat on those bones).

“If you’re building an agent […] and [you] want to bring great content to [your] users, how do we [Cloudflare] make it simple for them? How do we let [you] know that, hey, there’s some new, updated information on this particular website that you should get access to, and make it easy to pay.”

So Cloudflare is treading a fine line here, trying to support content creators but also keeping an open mind about the potential benefits of AI technology for the future of the web. The NLWeb initiative is a good example of that balance — it gives the website publisher a new type of conversational search for their site, while also leaving open opportunities (via the MCP connection) to let external parties access their content too.

TRENDING STORIES
Richard MacManus is a Senior Editor at The New Stack and writes about web and application development trends. Previously he founded ReadWriteWeb in 2003 and built it into one of the world’s most influential technology news sites. From the early...
Read more from Richard MacManus
SHARE THIS STORY
TRENDING STORIES
TNS owner Insight Partners is an investor in: Anthropic, OpenAI.
SHARE THIS STORY
TRENDING STORIES
TNS DAILY NEWSLETTER Receive a free roundup of the most recent TNS articles in your inbox each day.
The New Stack does not sell your information or share it with unaffiliated third parties. By continuing, you agree to our Terms of Use and Privacy Policy.