ImportantSecurity & Privacy
Tell HN: Cloudflare silently injects its analytics when you switch nameservers
Cloudflare is automatically injecting analytics JavaScript code into websites when customers switch to their nameservers without explicit opt-in consent, raising significant privacy and security concerns. This practice represents a shift from ethical data collection practices and creates potential risks for organizations seeking to maintain strict control over their infrastructure and user data. IT leaders must reassess their Cloudflare configurations and evaluate alternative DNS/CDN providers if data sovereignty and transparent consent practices are critical requirements.
Hacker News3 min read
