Shopify
Cloudflare partners with Shopify to provide Shopify customers’ websites with Cloudflare’s performance and security benefits.
If you use Shopify and also have a Cloudflare plan, you can use your own Cloudflare zone to proxy web traffic to your zone first, then Shopify's (the SaaS Provider) zone second. This configuration option is called Orange-to-Orange (O2O).
O2O routing also enables you to take advantage of Cloudflare zones specifically customized for Shopify traffic.
For more details about how O2O is different than other Cloudflare setups, refer to How O2O works.
When you set up O2O routing for your Shopify website, Cloudflare enables specific configurations for this SaaS provider. Currently, this includes the following:
- Workers and Snippets are disabled on the /checkoutURI path.
You can enable O2O on any Cloudflare zone plan.
To enable O2O on your account, create a CNAME DNS record.
| Type | Name | Target | Proxy status | 
|---|---|---|---|
| CNAME | <YOUR_SHOP_DOMAIN> | shops.myshopify.com | Proxied | 
Once you save the new DNS record, the Cloudflare dashboard will show a Shopify icon next to the CNAME record value. For example:

When a hostname within your Cloudflare zone has O2O enabled, you assume additional responsibility for the traffic on that hostname because you can now configure various Cloudflare products to affect that traffic. Some of the Cloudflare products compatible with O2O are:
For a full list of compatible products and potential limitations, refer to Product compatibility.
If you are a Shopify customer and have set up your own Cloudflare zone with O2O enabled on specific hostnames, contact your Cloudflare Account Team or Cloudflare Support for help resolving issues in your own zone.
Cloudflare will consult Shopify if there are technical issues that Cloudflare cannot resolve.
Shopify issues SSL/TLS certificates for merchant domains using Let’s Encrypt. If you add any DNS CAA records, you must select Let’s Encrypt as the Certificate Authority (CA) or HTTPS connections may fail.
For more details, refer to CAA records.
Was this helpful?
- Resources
- API
- New to Cloudflare?
- Directory
- Sponsorships
- Open Source
- Support
- Help Center
- System Status
- Compliance
- GDPR
- Company
- cloudflare.com
- Our team
- Careers
- © 2025 Cloudflare, Inc.
- Privacy Policy
- Terms of Use
- Report Security Issues
- Trademark