IE11 Not Supported

For optimal browsing, we recommend Chrome, Firefox or Safari browsers.

How Secure Are Your Department’s APIs?

November 17, 2025 | 12:00 AMDecember 31, 2025 | 12:00 AM

Cloudflare helps the State of California identify and protect against API security threats

CLOUDFLARE_cf-logo-v-rgb2.png

APIs power today’s applications, but they’re also a favorite target for attackers. Attackers see APIs as a "softer target" compared to core web applications, and are looking for ways to exploit the API attack surface to enable data leakage and security breaches inside Departments and Agencies.
In response to the new wave of threats targeting API endpoints, Cloudflare has developed a free API Risk Assessment.

The API Risk Assessment is designed to help departments and agencies identify previously unknown risks (shadow APIs, BOLA attacks, data leakage risks), and provide a report with recommendations to help you:

  • Protect your mobile apps, LLM endpoints and other API endpoints
  • Secure sensitive data
  • Elevate the importance of API security to leadership within your organization

Interested in knowing more and enabling the assessment in your organization, please reach out to california-state@cloudflare.com to learn more and schedule a free assessment.

Cloudflare, Inc. is on a mission to help build a better Internet for government. Cloudflare’s suite of products protect and accelerate any Internet application online without adding hardware, installing software, or changing a line of code. Internet properties powered by Cloudflare have all web traffic routed through its intelligent global network, which gets smarter with every request. As a result, they see significant improvement in performance and a decrease in spam and other attacks.