Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

There are three different ways to “remove Cloudflare,” and only one permanently deletes the zone. For a short troubleshooting test, pause Cloudflare. To bypass it for one hostname, switch that DNS record to DNS-only. To stop using Cloudflare DNS and zone services, move authoritative DNS to another provider, update nameservers at your registrar (and handle DNSSEC), then remove the zone in Cloudflare. Domain registration is a separate operation.

Choose the outcome before changing anything

Cloudflare sits in several places: authoritative DNS, the reverse proxy in front of your origin, security products, certificates, rules, and sometimes domain registration. Removing one layer does not automatically remove the others.

Choice Scope Result Use it when
Pause Cloudflare Entire zone Traffic goes directly to the origin. Rules, WAF, and Cloudflare SSL/TLS services are unavailable while paused. You are testing performance or origin behavior temporarily.
Turn proxy off (DNS-only) Selected A, AAAA, or CNAME records DNS returns the origin address and HTTP/HTTPS traffic no longer traverses Cloudflare for that hostname. The origin IP is exposed. Only one service, such as api.example.com, must bypass the proxy.
Remove the zone Cloudflare account and DNS zone The domain stops using Cloudflare DNS and zone services after delegation is moved elsewhere. You are leaving Cloudflare for DNS or proxying entirely.
Transfer registration Registrar only Moves the domain registration from Cloudflare Registrar to another registrar. You also want Cloudflare no longer to be your registrar.

Cloudflare’s wording is explicit: removing a domain from Cloudflare does not change its registration. Treat zone removal and registrar transfer as separate projects.

Before you remove the zone: preserve DNS and access

Identify the authoritative DNS destination

Choose the DNS provider that will host the zone after Cloudflare. Obtain its nameserver pair and confirm where your registrar’s delegation is managed. In reseller, delegated-subdomain, or enterprise arrangements, the parent DNS provider—not the usual registrar panel—may control the NS records.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Export and inventory records

Export the Cloudflare DNS records and write down settings that are not ordinary DNS, including redirects, workers, firewall rules, page rules, load-balancing targets, email routing, and origin certificates. Recreate every required record at the destination before changing delegation.

  • Web records: apex and www A/AAAA/CNAME values.
  • Email: MX, SPF, DKIM, and DMARC records.
  • Verification: TXT records for search, mail, billing, and SaaS providers.
  • Subdomains used by APIs, staging, monitoring, and webhooks.
  • CAA records, if your certificate authority depends on them.

Do not copy Cloudflare proxy-specific targets blindly. A DNS-only record must point to a reachable origin or the hostname supplied by your new DNS provider.

Check DNSSEC before touching nameservers

At the registrar, inspect DNSSEC and the domain’s DS record. Remove or disable the DS record before switching to a different DNS provider unless the new provider has already supplied matching DNSSEC information. A DS record tied to the previous provider can make the domain fail validation after delegation changes. Cloudflare describes this signature mismatch mechanism in its transfer documentation: DNSSEC guidance.

Plan for credentials and origin exposure

When proxying is removed, visitors can learn the origin IP. Restrict the origin firewall to trusted networks where possible, rotate secrets that were exposed in headers or logs, and confirm that the origin has a valid certificate for the public hostname. Cloudflare’s edge certificate does not protect an origin that is now contacted directly.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Temporary troubleshooting: pause Cloudflare

  1. Open the Cloudflare dashboard and select the domain.
  2. Use the domain’s pause control (Cloudflare labels this “Pause Cloudflare”).
  3. Confirm the warning and test the site against the origin path.
  4. Resume Cloudflare as soon as the test is complete.

Cloudflare says pausing takes five minutes or less to take effect and is preferable to changing nameservers for a short test, because nameserver changes can take several hours to propagate. While paused, services such as Rules, WAF, and Cloudflare SSL/TLS certificates are unavailable. If HTTPS fails during the test, verify the origin certificate and TLS configuration rather than assuming the DNS change is broken.

Bypass Cloudflare for one hostname with DNS-only

  1. In Cloudflare, open DNS > Records.
  2. Edit the A, AAAA, or CNAME record for the hostname.
  3. Set Proxy status to DNS only (the gray-cloud state) and save.
  4. Check the authoritative answer with a DNS tool, then test the hostname over HTTP and HTTPS.

Only A, AAAA, and CNAME records can be proxied. DNS-only answers contain the server’s actual IP or target and do not pass HTTP/HTTPS traffic through Cloudflare. Rules, WAF, and Cloudflare SSL/TLS services therefore do not apply to that hostname. Keep unrelated hostnames proxied if you still need their protection.

Permanently remove a Cloudflare zone

1. Build the replacement zone first

Create the domain at the destination DNS provider, import the exported records, and verify that the provider serves the expected answers. Check the apex, www, mail, API, and verification records from more than one network. Do not delete the Cloudflare zone yet; it remains your working reference during propagation.

2. Change nameservers at the registrar

At the registrar, replace Cloudflare’s nameservers with the nameservers supplied by the new DNS provider. If a parent zone delegates your child domain, update that parent NS delegation instead. Leave no Cloudflare nameserver in the authoritative set if your goal is to stop using Cloudflare DNS. Propagation can take several hours, so keep both DNS configurations correct during the transition.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
Rank #3
Sale
MOSA BEAR Password Keeper Book with Alphabetical Tabs,4.3"x5.7" Small Password Books for Seniors Password Notebook for Internet Website Address Log in Detail(Dark Blue)
  • 【Tired of constantly searching for or resetting your passwords?】 MOSA BEAR password keeper book is the perfect solution for you! This password book provides a dedicated place to securely store all your important website addresses, emails, usernames and passwords, ensuring your information is protected and easy to find. The well-designed log pages help you manage multiple accounts in a systematic way, saying goodbye to password confusion.
  • 【Premium Design & Password Security】 The password book with alphabetical tabs features an anonymous cover design with no title on the cover, effectively avoiding information exposure. The password keeper design is specifically designed with password security in mind, providing space to record password hints instead of writing directly on the password itself, further protecting your important information.
  • 【Simple Layout and Plenty of Space】The 160-page password logbook is designed to provide ample space to record passwords and other important information. It can store up to 414 passwords. In addition, it provides extra pages to record other information, such as email setup, card information, computer operating system information, software licenses, and more. The journal also includes 3 blank pages at the end for you to add additional notes.
  • 【Palm-sized Size & Premium Quality】 This password notebook has an ideal size, 4.3" x 5.7", for carrying around, whether in a purse or pocket. Its sturdy glue binding allows the notebook to unfold smoothly and is more comfortable to use. The inner pages are made of high-quality 100GSM thick paper, which can effectively reduce ink penetration and ensure a cleaner and neater writing effect. The overall design takes into account both portability and durability, making it an ideal choice for recording important passwords.
  • 【A-Z Tabs for Quick Search 】Our password book comes with alphabetical tabs to help you find the password you need quickly and easily. Alphabetically organized tabs ensure that you can quickly flip to the right section, saving you the time and hassle of searching for your password.

3. Remove the zone in Cloudflare

  1. Select the domain in Cloudflare.
  2. Open Overview.
  3. Find Advanced Actions.
  4. Choose Remove from Cloudflare and confirm.

Enterprise zones must first be changed to the Free plan to expose the removal control. Cloudflare says to contact its account team if the control still cannot be used. A newly added domain that remains in Initializing or Pending status may require a plan selection; Cloudflare notes such domains are automatically deleted after 28 days if they do not activate.

4. Account for billing and retained data

Removing a zone cancels active subscriptions on that domain, and Cloudflare states those charges are not refunded. Cancel add-on subscriptions and remove Logpush jobs separately where applicable. If you later add the domain again, subscriptions must be purchased again.

5. Know what happens if you return

Cloudflare says a removed zone is purged seven days after removal by default. After purge, settings are not expected to be restored. Re-adding the domain assigns a new nameserver pair, which must be entered at the registrar unless the domain is on Cloudflare Registrar.

If the domain is registered with Cloudflare

Changing DNS providers does not move registration. To transfer registration, open Manage Domains, unlock the domain, retrieve its authorization code, and give that code to the receiving registrar. Transfer eligibility restrictions apply: Cloudflare cites ICANN 60-day holds after events such as a recent registration, transfer, or registrant-information change. If you do not manually approve the request, Cloudflare says it auto-approves on the fifth day after receiving it.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
Rank #4
AT-A-GLANCE Undated Website Address Book and Password Keeper, Black, 3.63 x 6.13 x .21 Inches (80-500-05)
  • Bookbound planner helps you keep track of passwords and favorite websites
  • Room for over 200 entries; 3.5 x 6 inch page sizes
  • User name and security questions field
  • Tips for what makes a strong password; web resources; notes pages
  • Printed on quality paper containing 30% post-consumer waste; black simulated leather cover; 3.63 x 6.13 x .21 inches

Verification checklist after the switch

  • Query the authoritative nameservers and confirm the new provider answers for the apex and critical subdomains.
  • Load HTTP and HTTPS from a network that did not cache the old result.
  • Send a test message to an address at your domain and inspect SPF, DKIM, DMARC, and MX behavior.
  • Check redirects, cookies, security headers, WebSockets, uploads, and API callbacks.
  • Review origin logs for unexpected traffic and restore firewall restrictions.
  • Keep the old Cloudflare configuration exported until the propagation window and application tests are complete.
Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.Support on Ko-Fi

Troubleshooting common failures

“The site is still going through Cloudflare”

Nameserver changes may still be propagating, or another hostname remains proxied. Query the domain’s authoritative NS set, then inspect the specific A, AAAA, and CNAME record. Clear local DNS caches only after confirming the authoritative answer.

“DNSSEC error” or SERVFAIL

An old DS record is the usual cause during a provider change. Remove or disable DNSSEC at the registrar, wait for the DS removal to publish, then enable DNSSEC again using the new provider’s DS value.

“Cloudflare cannot be removed”

Check whether the zone is Enterprise and change it to Free first. For an Initializing or Pending domain, select a plan as Cloudflare requires. If the control remains unavailable, contact Cloudflare’s account team.

“The site works on the origin but HTTPS fails”

Direct traffic no longer uses Cloudflare’s edge certificate. Install a certificate valid for the public hostname on the origin, include the full intermediate chain, and verify that port 443 and the required TLS versions are open.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

“Email stopped after the change”

Recheck MX, SPF, DKIM, DMARC, and any provider verification TXT records at the new DNS host. Email records are independent of web proxy status and are easy to omit during a migration.

“Visitors see the wrong server”

Look for stale A or AAAA records, an overlooked CNAME, or split-horizon DNS. Test IPv4 and IPv6 separately; an incorrect AAAA record can break only some users.

Or skip the browser setup

If your reason for leaving Cloudflare is simply obtaining a clean, repeatable website image, you may not need to change DNS at all. ScreenshotNeo is a website screenshot API and MCP server. It accepts consent banners before capture and removes more than 60 known consent platforms, newsletter popups, and chat widgets; each step can be disabled. Bot checks, CAPTCHAs, blank pages, timeouts, failed loads, and cache hits are not billed, and the response identifies the page verdict and billing status in X-Page-Verdict and X-Billed headers.

One GET request returns PNG, JPEG, WebP, or PDF. See the ScreenshotNeo API documentation for all options, including full-page lazy-image loading, CSS-selector element capture, device presets, retina scale, PDF paper and page controls, custom CSS/JavaScript, clicks, waits, request blocking, headers, cookies, user agents, authorization, timezone, geolocation, transparent backgrounds, resizing, TTL caching, signed links, asynchronous webhooks, bulk capture of up to 100 URLs per call, usage data, and OpenAPI compatibility.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

cURL

curl -G "https://api.screenshotneo.com/v1/shot" -d access_key=YOUR_API_KEY --data-urlencode url=https://stripe.com -o shot.webp

Python

import requests
r = requests.get("https://api.screenshotneo.com/v1/shot", params={"access_key": "YOUR_API_KEY", "url": "https://stripe.com"}, timeout=90)
open("shot.webp", "wb").write(r.content)

Node.js

const q = new URLSearchParams({ access_key: 'YOUR_API_KEY', url: 'https://stripe.com' });
const res = await fetch(`https://api.screenshotneo.com/v1/shot?${q}`);

ScreenshotNeo also provides an MCP server with take_screenshot, get_page_info, and capture_pdf tools for Claude, Cursor, and other MCP clients. The Free plan includes 1,000 shots per month without a card; paid plans start at $5 for 3,000 shots. Create a free ScreenshotNeo account.

Frequently Asked Questions

Will removing Cloudflare delete my website files?

No. Zone removal changes DNS and Cloudflare services; it does not delete files at your hosting origin. Confirm your host and DNS records separately.

Can I remove Cloudflare without changing nameservers?

Not if you want another provider to become authoritative DNS. You can pause Cloudflare or set individual records to DNS-only without changing delegation.

How long should I keep the old DNS configuration?

Keep your exported records and the old configuration until nameserver propagation and application, email, and HTTPS checks are complete. Cloudflare describes nameserver propagation as potentially taking several hours.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.