Cloudflare Access (static sites)

Member-only static hosts (status boards, internal handbooks, staging marketing) usually sit behind Cloudflare Access rather than a custom auth stack.

The step-by-step procedure is maintained in General Knowledge so product and org docs share one runbook:

Wire hostnames and Access apps from the org Org infra Pulumi stack once the Access path is decided.