Cloudflare has introduced agent tracing as the first component of its new Cloudflare Agents platform, giving developers deeper visibility into AI agents running on Workers. The feature extends beyond infrastructure-level telemetry by adding spans for agent invocations, model calls, tool execution, approvals, and subagent activity, and it also supports session replay of recorded conversations, tool calls, and results.
Cloudflare said the capability is intended to help teams observe and debug agent behavior, but early coverage highlighted several operational caveats. Reported limitations include inconsistent default payload-recording behavior between Think and Flue, truncation that can make replay non-lossless, and pricing tied to total observability events rather than only the events surfaced in the Agents dashboard. The company said tracing is free during beta and will transition to Workers Observability pricing on October 1, 2026.

Track how attackers are adapting to this technology.
2 events from the most recent confirmed update back to the earliest known activity.
Cloudflare announced Cloudflare Agents, a platform for building and running AI agents on Workers. The later agent tracing release is described as the first component of this broader offering.
Cloudflare launched agent tracing as the first component of Cloudflare Agents to provide visibility into AI agent behavior beyond infrastructure-level tracing. The feature adds spans for agent invocations, model calls, tool execution, approvals, subagent activity, and session replay of recorded conversations and tool activity.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Follow how adversaries are adapting to this technology, and where it touches your stack today.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.