Cloudflare announced per-domain visibility for post-quantum TLS connections on September 29, 2026. TLS is the protocol that protects data sent between a browser and a website. A key exchange establishes the secrets used for that protection. Cloudflare now surfaces the negotiated method for incoming requests, so a site owner can examine actual traffic instead of relying only on Internet-wide averages. Source
Where the data appears
The new fields are available in HTTP Traffic Analytics, Log Explorer, and Logpush. Logpush exports request records for analysis elsewhere. Cloudflare Radar already offers broad adoption figures, but a domain-specific view answers a different question: what portion of this particular site’s traffic negotiated the post-quantum method under TLS 1.3? Source
Two separate connections
A visitor connects to Cloudflare, and Cloudflare may then connect to the website’s origin server. These two legs can negotiate different cryptographic methods. The announcement says site operators can inspect both through the available telemetry. A high percentage on the browser side therefore should not be read as a measurement of the origin connection. Source