Account Management
How to disconnect your Cloudflare account from CostSave
Delete the API token from Cloudflare, remove the account from CostSave, and verify no access remains. Takes under 2 minutes.
Do Step 1 first. Deleting the API token from Cloudflare immediately blocks all API calls — regardless of what CostSave does. Step 2 (removing from CostSave) cleans up stored data.
How CostSave connects to Cloudflare
CostSave uses a read-only API token that you created in your Cloudflare dashboard. It has Account Analytics and Account Settings read permissions only — no write access. Deleting the token immediately and permanently revokes all access.
Step 1
Delete the API token from Cloudflare
1Go to Cloudflare Dashboard → click your profile icon (top right) → My Profile
2Click API Tokens in the left sidebar
3Find the token you created for CostSave → click the ⋯ menu → Delete
4Confirm deletion — the token is immediately invalidated
Cloudflare → My Profile → API Tokens
API Tokens
CostSave Read TokenActive⋯ Delete
→ Click ⋯ → Delete → Confirm
Token deleted. All CostSave API calls to Cloudflare will immediately return 401 Unauthorized.
Step 2
Remove the account from CostSave
This permanently deletes all scan history, resource data, and the encrypted API token from our database.
1Log in to CostSave → go to your accounts list → click the Cloudflare tab
2Find the Cloudflare account → click ⚙ Manage → Remove Account
3Confirm — all scan results and the encrypted API token are permanently deleted
All data deleted. The encrypted token and all Cloudflare scan results are permanently removed from our database.
Want to pause instead of fully disconnect? In Cloudflare → My Profile → API Tokens, click Disable on the token instead of deleting it. CostSave scans will fail with an auth error but no data is lost. Re-enable anytime — no need to reconnect in CostSave.
Verify access is revoked
Check Cloudflare API Tokens list
Go to My Profile → API Tokens. The CostSave token should no longer appear (or show as Disabled if you chose to pause).
Try a scan in CostSave
If the account still appears in CostSave and you trigger a scan, it should immediately fail with an authentication error — confirming access is revoked.
FAQ
Does removing from CostSave also revoke Cloudflare access?
No. Removing from CostSave only deletes our stored copy of the token. You must also delete the token from Cloudflare (Step 1) to fully revoke access.
What permissions did the CostSave token have?
Read-only only — Account Analytics:Read and Account Settings:Read. No write, create, or delete permissions were ever requested.
I want to delete my entire CostSave account
Log in to CostSave → Settings → Danger Zone → Delete My Account. Verify with OTP. All data is permanently erased. Complete Step 1 first to also revoke Cloudflare access.