Choose how the data reaches us
CostGraph pulls it
You supply read-only credentials and we call Cloudflare once a day. Nothing to run.
You push it
You send us FOCUS records over the API. Credentials never leave your infrastructure.
Before you begin
- In the Cloudflare dashboard, go to Manage Account > API Tokens and create a token with the Billing Read permission at account scope.
- Copy the account id, the
{account_id}in/accounts/{account_id}.
Let CostGraph pull
- Open Settings > Integrations and pick Cloudflare.
- Name the connection and pick the tenant these charges belong to.
- Enter the values you copied. The form lists what Cloudflare needs and marks the optional ones.
- Select Connect.
Credentials are encrypted at rest and used only to read billing data. Revoke them in
Cloudflare at any time and the connection stops; nothing else is affected.
Push it yourself
Send the charges to CostGraph as FOCUS records instead. Push FOCUS data covers the connection id, thefocus:write key, and the request shape.
Run the exporter
Rather than build that request yourself, run our exporter. It reads Cloudflare on a schedule and pushes the records for you, wherever you want to run it: a container, a KubernetesCronJob, or a binary on a machine you already have.