← All breaking-change reports

Cloudflare API breaking change: path-removed on /zones/{zone_id}/firewall-for-ai/settings

cloudflare · breaking · 2026-07-27 · source: OpenAPI spec diff

What changed

According to the OpenAPI spec diff (cloudflare/cloudflare-oas-7abe88500e55-to-c92b9b0fde23-removals), the following surface changed:

path-removed: /zones/{zone_id}/firewall-for-ai/settings

cloudflare OAS corridor pair 7abe88500e55 -> c92b9b0fde23 (client-breaking removals subset ingested 2026-08-01)

Who is affected

Mechanical URL rewrite at every call site: requests hitting '/zones/{zone_id}/firewall-for-ai/settings' (get, put) move to '/zones/{zone_id}/ai-security/settings'.

To find out whether your repo is hit — file and line number, no code leaving your machine:

npx mendapi scan --repo .

How to fix it

Migration path:

Mechanical URL rewrite at every call site: requests hitting '/zones/{zone_id}/firewall-for-ai/settings' (get, put) move to '/zones/{zone_id}/ai-security/settings'. Update raw URL builders, route constants and API client wrappers accordingly. The successor carries the identical method set in NEW; the firewall-for-ai product segment is renamed to ai-security.

Before:

await cf.request('/zones/{zone_id}/firewall-for-ai/settings');

After:

await cf.request('/zones/{zone_id}/ai-security/settings');

Replacement data source: the successor route /zones/{zone_id}/ai-security/settings in the NEW spec

With your own LLM key configured (BYO compute — mendapi never proxies your credentials), npx mendapi llmfix turns this guide into a reviewable draft patch for your repo.

Detected and tracked by mendapi — Dependabot for every API you depend on. Scans run locally; your code never leaves your machine.

Related

Change data is recorded from upstream provider releases, changelogs and OpenAPI spec diffs; every article names its source.