New metric empowers IT and security teams to assess SaaS and Gen AI applications at scale
In a bold move to address the growing risks of unregulated AI usage in enterprises, Cloudflare has launched the Cloudflare Application Confidence Score, a transparent metric designed to evaluate the safety and reliability of SaaS and Generative AI (Gen AI) applications. This innovation is part of Cloudflare’s new AI Security Posture Management (AI-SPM) suite within its Cloudflare One SASE platform.
As Gen AI tools proliferate across workplaces, employees increasingly rely on them for productivity—often without IT approval. This surge in “Shadow AI” mirrors the long-standing challenge of Shadow IT, where unauthorized applications compromise data security and compliance. Gen AI tools, in particular, pose unique threats: they may train on sensitive user inputs, retain data indefinitely, or generate biased and unsafe outputs.
“AI is transforming productivity—but without visibility, it’s a security blind spot.”
Recognizing that blanket bans on AI tools are counterproductive, Cloudflare’s new scoring system offers a smarter alternative. The Application Confidence Score (5 points) evaluates general SaaS maturity, while the Gen-AI Confidence Score (5 points) focuses on AI-specific risks. Together, they provide a clear, actionable view of an app’s trustworthiness.
Unlike opaque AI-driven assessments, Cloudflare’s scores are based on an objective rubric—publicly maintained and continuously updated. This ensures transparency and accountability, allowing security, legal, and GRC teams to make informed decisions without manually auditing every app.
To refine its methodology, Cloudflare is collaborating with experts across cybersecurity, legal, and AI research domains. The goal: to create a scalable, extensible framework that evolves with the rapidly changing AI landscape.
By introducing this metric, Cloudflare is not only enhancing SASE capabilities but also setting a new industry standard for responsible AI adoption. Organizations can now embrace innovation without compromising security—turning AI from a risk into a strategic asset.