Privacy Proxy Demo

Cloudflare's Privacy Proxy is a MASQUE-based forward proxy designed to hide a client's IP while retaining coarse location context. Send the same request directly and through the proxy, then compare what this destination observes.

More info

Demo capabilities: This demo uses pvcli (our demo client), which tunnels HTTPS via HTTP CONNECT over HTTP/2. It represents a single-hop deployment (client → Cloudflare Privacy Proxy → destination). MASQUE protocols are also supported by production deployments, but are not demonstrated here. See the developer docs for the full protocol and deployment details.

Who is the client? For this demo, your machine acts as the client. In production, the client represents an end user or application accessing a destination.

Full product documentation: Privacy Proxy developer docs.

Try the demo in CLI mode instead

Prefer a guided terminal walkthrough? Download the standalone script, then run it with pvcli. You will also need curl and jq.

  1. Install pvcli.
    cargo install --git https://github.com/cloudflareresearch/pvcli --locked
  2. Download the terminal demo.

    Download privacy-proxy-demo.sh ↓

  3. Open your Downloads folder and allow the script to run.
    cd ~/Downloads
    chmod +x privacy-proxy-demo.sh
  4. Start the walkthrough.
    ./privacy-proxy-demo.sh

pvcli mints a fresh Privacy Pass token for the proxy request. The script does not print the token or signed session value.

connecting…

Before you start

Set up the pvcli demo client

pvcli is the open-source command-line client used to send both requests in this demo. View the source on GitHub, and install it with Cargo below.

Before running this: Make sure Rust and Cargo, Git, CMake, and Apple's command line tools are installed.

  1. Install pvcli

    Cargo downloads the public source, builds it, and installs the pvcli command.

    cargo install --git https://github.com/cloudflareresearch/pvcli --locked
  2. Check the installation

    A list of pvcli options means the client is ready for the demo.

    pvcli --help

First source build: pvcli compiles its networking and security dependencies on your machine, so installation may take several minutes.

Already have pvcli? You can skip these steps.