AI News selected for Professionals and Decision Makers
AI Security And Privacy Updates

Your site, your rules: new AI traffic options for all customers

15:00 · July 1, 2026 · Cloudflare AI Blog

Your site, your rules: new AI traffic options for all customers

For our second Content Independence Day, we’re giving website owners finer options to manage AI traffic. Instead of a one-size-fits-all block, all customers can now easily distinguish and manage Search, Agent, and Training bots, alongside the new ability to protect ad-monetized pages.

Summary

Cloudflare has expanded its bot-management tools to give site operators finer control over automated traffic from AI systems. Rather than treating all “AI bots” as a single category, the company now classifies crawlers according to three primary behaviors: Search, which builds an index to answer later queries and is expected to drive referral traffic; Agent, which performs real-time actions on a user’s behalf, such as fetching content for chat interfaces or browser agents; and Training, which permanently incorporates scraped material into model parameters.

These distinctions are accompanied by updated default settings that take effect on 15 September 2026. On pages that display advertising, Training and Agent crawlers will be blocked by default while Search crawlers remain permitted. Multi-purpose bots that combine Search with Training will be governed by the most restrictive applicable rule, so operators that have chosen to block Training will also block the combined crawlers unless they explicitly opt out beforehand.

Enterprise customers receive an additional visibility layer called BotBase, a searchable directory that lists every known bot together with its assigned behaviors and content-use classification. The same taxonomy underpins a new robots.txt signal, “use,” which lets owners express preferences for how their content may be retained: immediate (no storage or reuse), reference (indexing and excerpting with links), or full (summarization and reproduction). Cloudflare-managed robots.txt files now include this parameter by default, and bots that disregard the declared preference risk losing Verified status.

Together, the classification scheme, default policies, BotBase directory, and content-use signal replace the earlier binary “Block AI bots” toggle with a set of granular levers that apply to all customers, including those on the free tier.

Why it matters

This article is highly relevant for Security and Privacy Professionals in the Netherlands as it provides actionable, technical controls to enforce data privacy and protect corporate content from unauthorized AI scraping. Implementing these Cloudflare features aligns perfectly with EU data protection standards and helps organizations mitigate risks associated with shadow AI data collection.

More in this beat
ai-privacy-complianceBotBasebot-detectioncloudflarepolicy-and-societal-impact
Content Independence Day, one year on: building the business model for the agentic Internet

15:00 · July 1, 2026

Content Independence Day, one year on: building the business model for the agentic Internet

This article is highly relevant for security and privacy professionals as it addresses the growing challenge of unauthorized AI data scraping and provides actionable network-level strategies for bot management. It aligns with EU regulatory priorities regarding data sovereignty, transparency, and the protection of proprietary information from indiscriminate AI training.

Relevance 85 · Audience 90

Announcing Cloudflare Wallets: The programmable wallet for the agentic Internet

15:00 · August 4, 2026

Announcing Cloudflare Wallets: The programmable wallet for the agentic Internet

This article is relevant for security and privacy professionals as it introduces new paradigms for AI agent identity verification and financial guardrails. Understanding these mechanisms is crucial for securing enterprise APIs against unauthorized agent access and ensuring compliance with automated spending policies.

Relevance 75 · Audience 80

Introducing Precursor: detecting agentic behavior with continuous client-side signals

15:00 · July 13, 2026

Introducing Precursor: detecting agentic behavior with continuous client-side signals

This article is highly relevant for security and privacy professionals in the Netherlands as it addresses the growing threat of AI agents bypassing traditional security measures. Its 'privacy by design' approach aligns well with strict EU/GDPR requirements, offering a compliant way to secure applications against advanced automation.

Relevance 85 · Audience 95

Idiobionics: The Unification of Privacy and Intelligent Robotic Prostheses

06:00 · July 11, 2026

Idiobionics: The Unification of Privacy and Intelligent Robotic Prostheses

The article aligns strongly with the Dutch AI market's focus on ethical, transparent AI and healthcare innovation. It provides primary research on privacy vulnerabilities in AI-driven medical devices, which is highly pertinent for Dutch researchers navigating EU data protection standards (GDPR) and the AI Act.

Relevance 85 · Audience 95

Instagram’s AI image generator alarms privacy experts

00:15 · July 10, 2026

Instagram’s AI image generator alarms privacy experts

This article is highly relevant for privacy professionals as it highlights a major shift in how social media platforms utilize user data for AI generation. In the context of the Dutch and EU market, this default opt-in approach raises severe GDPR compliance questions and necessitates immediate policy reviews for enterprise social media usage.

Relevance 85 · Audience 95

Meta's New AI Image Tool Lets Others Use Your Public Instagram Photos in AI Images

09:21 · July 9, 2026

Meta's New AI Image Tool Lets Others Use Your Public Instagram Photos in AI Images

This article is highly relevant for privacy professionals in the Netherlands as it highlights a major data privacy concern regarding default opt-in AI generation using public social media data. It directly intersects with GDPR compliance, user consent, and the potential for identity misuse, requiring immediate attention from EU privacy advocates and corporate policy makers.

Relevance 85 · Audience 90

Meta tightens AI glasses security as questions over bystander privacy persist

14:20 · July 8, 2026

Meta tightens AI glasses security as questions over bystander privacy persist

This article is relevant for Dutch privacy professionals as it highlights critical gaps in bystander consent and hardware-level privacy controls for AI wearables. It also references EU regulatory concerns which align with GDPR and the AI Act's strict requirements on biometric data and public surveillance.

Relevance 75 · Audience 85

Meta's AI training with keystrokes: Progress or privacy issue

13:00 · July 2, 2026

Meta's AI training with keystrokes: Progress or privacy issue

Directly addresses AI-related workplace surveillance risks, GDPR non-compliance in the EU, and actionable data-protection controls that Dutch security and privacy professionals must evaluate for their own organizations.

Relevance 85 · Audience 90

Unmasking the crawls with Attribution Business Insights

08:00 · July 1, 2026

Unmasking the crawls with Attribution Business Insights

This article is highly relevant for Dutch security and privacy professionals as it provides actionable tools to manage AI data scraping, a critical issue under EU copyright and data protection frameworks. It empowers organizations to protect proprietary content, manage infrastructure costs, and enforce data privacy against aggressive AI crawlers.

Relevance 85 · Audience 90

Position: The Term "Machine Unlearning" Is Overused in LLMs

06:00 · June 29, 2026

Position: The Term "Machine Unlearning" Is Overused in LLMs

This paper is highly relevant for Dutch AI researchers and compliance officers dealing with GDPR's 'right to be forgotten' and the EU AI Act. By clarifying the distinction between true machine unlearning and mere suppression, it provides a crucial framework for developing legally compliant and transparent LLMs.

Relevance 85 · Audience 95

Meta to Use Off-Site Business Data for Feed and AI Personalization

19:03 · June 9, 2026

Meta to Use Off-Site Business Data for Feed and AI Personalization

This update is highly relevant for privacy professionals in the Netherlands as it directly impacts GDPR compliance and data sharing agreements. Dutch organizations sharing data with Meta must evaluate how their users' data is being repurposed for AI personalization and update their privacy notices accordingly.

Relevance 85 · Audience 90