Documentation hub

CF Guard Desk docs, quickstart, and troubleshooting.

Use these guides when you need install help, Cloudflare connection setup, scan-profile guidance, findings interpretation, export behavior, or release and troubleshooting detail.

Launch baseline

Start with the desktop trial. Keep the evidence local.

Every public build starts with 7 days of full access. Pricing, rollout state, and public docs are meant to stay honest even when every commerce or CDN path is not yet fully wired.

12core docs
3desktop variants
7trial days
  • App version from the About panel
  • Operating system and whether this is a release build or source build
  • Exact repro steps and the expected result
  • Actual result with screenshot or recording where relevant
Start here

The shortest reliable path to a working CF Guard Desk workflow.

Follow this sequence instead of hopping between pages. It gets a new evaluator from product context to first audit with the least confusion.

01
Overview

Understand the current product surface first

Start with the product overview for positioning, capability surface, buyer fit, and the local-first evidence model.

7 minProduct overview
Open step
02
Install

Move from install to first working audit

Quickstart covers vault setup, connection validation, zone discovery, first scan, and first findings review.

6 minQuickstart
Open step
03
Platform

Use the right Windows, macOS, or Linux path

Platform notes cover staged rollout, packaging status, and local build prerequisites across desktop targets.

7 minPlatform setup and environment notes
Open step
04
Security

Know the vault and license rules before rollout

Security, vault, and licensing explains local storage, safe probes, offline grace, and visible license-state handling.

8 minSecurity, vault, and licensing
Open step
Platform coverage

Desktop platform guidance is explicit about rollout state and support posture.

The docs separate public release state from runtime behavior so the site can talk about Windows, macOS, and Linux honestly without implying more than the artifacts support.

Launch safety

The site does not need to pretend every platform is equally live. It needs to explain current state clearly enough that buyers and testers know what is ready now.

Windows

  • First verified public release target
  • Owner builds already exist
  • Early-access installer warnings may still apply

macOS

  • Public rollout is staged behind a proper macOS build host
  • Signing and notarization still matter before broad release
  • Documented visibility is not the same as public artifact readiness

Linux

  • Public packaging remains staged
  • Desktop runtime dependencies must be validated before release
  • The site keeps platform status honest rather than implying unsupported readiness
By workflow

Find the guide by the job you are actually doing.

The product is not one screen. The docs are organized around real operator tasks: connection setup, scan execution, dashboard review, findings, history, and release work.

Task-based entry

Open the guide for the task in front of you instead of skimming every page and hoping the right answer is somewhere in the middle.

Workflow

Set up workspaces and Cloudflare connections cleanly

Workspace boundaries, token validation, capability checks, and zone discovery.

Open guide
Workflow

Run the scan profile that fits the question

Quick Scan, Full Audit, Focused Rescan, and coverage-aware interpretation of results.

Open guide
Workflow

Use the dashboard and analytics correctly

How posture score, pressure indicators, and zone prioritization are meant to guide action.

Open guide
Workflow

Understand findings, scoring, and suppressions

Severity, confidence, cross-signal risk, notes, policies, and suppressions.

Open guide
Workflow

Export history and evidence

Markdown, JSON, drift, history, and diagnostics boundaries.

Open guide
Workflow

Build and release safely

Desktop packaging, verification, and Cloudflare Pages deployment expectations.

Open guide
By problem

Common rollout and coverage issues have dedicated entry points.

The docs are meant to cut through the first-line confusion quickly: token scope, coverage gaps, staged platform rollout, or incorrect expectations about the output.

Support reduction

A useful docs hub routes users to the right diagnostic path first. It does not ask support to sort setup drift from real defects by hand.

Expected zones are missing

Check token scope, account alignment, and workspace context before assuming the issue is rendering-related.

Open path

The scan looks too thin

Interpret visibility gaps and scan depth before treating partial coverage as a product defect.

Open path

Dashboard and findings feel disconnected

Use the dashboard for prioritization and the findings explorer for remediation detail, notes, and status.

Open path

The rollout state is confusing

Read platform and release docs to separate staged public delivery from actual runtime behavior.

Open path

Getting Started

3 article(s)

7 minStart here

Product overview

Understand what CF Guard Desk is, who it is for, which posture surfaces it covers, and how the local-first workflow differs from a SaaS security console.

WindowsmacOSLinux
SetupScansFindingsSecurity
  • Product positioning and buyer fit
  • Current capability surface
  • Plan summary and staged launch notes
Read documentation
6 minStart here

Quickstart

Go from installer to first Cloudflare audit with the shortest safe path: vault setup, token validation, zone discovery, scan execution, and findings review.

WindowsmacOSLinux
SetupWorkspacesConnectionsScans
  • Installer path and first launch
  • Vault setup
  • Cloudflare connection validation
Read documentation
7 minCore workflow

Platform setup and environment notes

Release artifacts, platform support boundaries, local build requirements, and the OS-specific behavior that affects install, packaging, or runtime.

WindowsmacOSLinux
PlatformsSetupBuildTroubleshooting
  • Windows-first rollout notes
  • macOS and Linux staging expectations
  • Local build prerequisites
Read documentation

Operations

6 article(s)

7 minCore workflow

Workspaces and Cloudflare connections

How workspace boundaries, token validation, capability inspection, and zone discovery are supposed to work in the current product.

WindowsmacOSLinux
WorkspacesConnectionsZonesSecurity
  • Workspace boundaries
  • Connection validation and capability checks
  • Zone discovery expectations
Read documentation
8 minCore workflow

Scan profiles and zone coverage

How Quick Scan, Full Audit, and Focused Rescan differ, and how zone-level visibility and safe probes affect the scan result.

WindowsmacOSLinux
ScansZonesAnalyticsTroubleshooting
  • Quick Scan, Full Audit, and Focused Rescan intent
  • Zone selection and scope
  • Safe probes and public-edge verification
Read documentation
6 minCore workflow

Dashboard and analytics surfaces

What the dashboard is intended to show, how analytics fits into the product, and how to interpret posture, pressure, and trend indicators.

WindowsmacOSLinux
DashboardAnalyticsZonesHistory
  • Posture score interpretation
  • Zone risk and pressure indicators
  • Analytics role in the current product
Read documentation
7 minCore workflow

Findings and posture scoring

How the current finding taxonomy works, how severity and confidence differ, and why reproducibility matters for later review.

WindowsmacOSLinux
FindingsScoringExportsHistory
  • Current finding families
  • Severity and confidence model
  • Cross-signal risk rationale
Read documentation
6 minReference

Policies and suppressions

How policy packs, premium rules, suppression workflow, and operator intent should work together in the current product.

WindowsmacOSLinux
PoliciesSuppressionsFindingsSecurity
  • Suppression workflow intent
  • Why notes matter
  • Plan-linked policy surface
Read documentation
6 minReference

Exports and history

How markdown and JSON exports, local history, and evidence preservation work in the current desktop product.

WindowsmacOSLinux
ExportsHistoryAnalyticsFindings
  • Markdown and JSON export intent
  • Local history and drift tracking
  • Diagnostics boundaries
Read documentation

Security

1 article(s)

8 minCore workflow

Security, vault, and licensing

Review the current local security model, safe probes, secret storage, desktop telemetry posture, and the v1 licensing behavior.

WindowsmacOSLinux
SecurityLicensingSetup
  • Vault model and secret storage
  • Safe probe boundaries
  • Desktop telemetry posture
Read documentation

Release Engineering

1 article(s)

8 minReference

Build, packaging, and release workflow

Local desktop build commands, verification steps, website build expectations, and the release hygiene required for staged public distribution.

WindowsmacOSLinux
BuildReleasePlatforms
  • Desktop commands
  • Minimum verification gates
  • Website build and Cloudflare Pages expectations
Read documentation

Support

1 article(s)

9 minCore workflow

Troubleshooting

First-line fixes for missing zones, token scope gaps, partial visibility, build issues, and public-download or install problems.

WindowsmacOSLinux
TroubleshootingConnectionsScansBuild
  • Token and capability diagnosis
  • Zone and scan coverage issues
  • Build and packaging issues
Read documentation