Page execution: Cloudflare network location
Risky web content executes in Cloudflare — never in the user's browser.
Remote Browser Isolation moves active web execution into a disposable browser in a Cloudflare network location. The endpoint receives safe rendering instructions, which reduces exposure to risky code and enables controls over data in use.
Gateway makes the isolate decision, a disposable remote browser executes active content, and Network Vector Rendering delivers the visual result without sending the original page code to the endpoint.
The speed reading reflects the isolated browser's Cloudflare-side connectivity. It is a memorable visual cue, not a test of the UTM Demo Mac and not an RBI performance promise.
Page execution: Cloudflare network location
fast.com and confirm the isolated session.Once execution is remote, policy can limit how information moves between the isolated session and the local device.
Prevent sensitive content from crossing the isolation boundary through the clipboard.
Allow browsing while stopping risky or sensitive files from reaching the endpoint.
Restrict local files from being submitted into untrusted web sessions.
Control printing when an unmanaged device opens a sensitive application.
Let users investigate unfamiliar destinations while active content remains off the endpoint.
Protect data in use when contractors or partners cannot install an endpoint agent.
Pair Access with isolation to expose a browser application without exposing its code or data directly.
Gateway can isolate only the destinations, categories, or users that require stronger handling.