
Cloudflare Query
CertifiedRun a SQL statement against a Cloudflare D1 database
Cloudflare Query
Run a SQL statement against a Cloudflare D1 database
Executes a parameterized SQL statement against a D1 database. Supports four fetch modes: FETCH_ONE returns the first row as a map, FETCH returns all rows as a list of maps, STORE writes all rows to Kestra internal storage as a newline-delimited ION file, and NONE returns only the query metadata (rows written, duration).
type: io.kestra.plugin.cloudflare.d1.QueryExamples
Run a SELECT and store results in Kestra storage
id: d1_query_store
namespace: company.team
tasks:
- id: query
type: io.kestra.plugin.cloudflare.d1.Query
apiToken: "{{ secret('CLOUDFLARE_API_TOKEN') }}"
accountId: "your_account_id"
databaseId: "xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx"
sql: "SELECT id, name FROM users WHERE active = ?"
params:
- true
fetchType: STORE
Insert a row and capture metadata
id: d1_query_insert
namespace: company.team
tasks:
- id: insert
type: io.kestra.plugin.cloudflare.d1.Query
apiToken: "{{ secret('CLOUDFLARE_API_TOKEN') }}"
accountId: "your_account_id"
databaseId: "xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx"
sql: "INSERT INTO events (name, ts) VALUES (?, ?)"
params:
- "deploy"
- "2024-01-01T00:00:00Z"
fetchType: NONE
Properties
accountId *Requiredstring
Account ID
Cloudflare account identifier
apiToken *Requiredstring
Cloudflare API token
Your Cloudflare API token. Create one in the Cloudflare dashboard with the permissions required by the resources you manage (e.g. DNS, Workers, D1, cache, WAF, zones).
databaseId *Requiredstring
Database ID
UUID of the D1 database to query
sql *Requiredstring
SQL statement
Parameterized SQL statement to execute; use ? as positional placeholders
baseUrl string
https://api.cloudflare.com/client/v4Cloudflare API base URL
Base URL for Cloudflare API. Usually you don't need to change this.
fetchType string
STOREFETCH_ONEFETCHSTORENONEFetch type
Controls how result rows are returned: FETCH_ONE returns the first row as a map, FETCH returns all rows as a list of maps, STORE writes all rows to Kestra internal storage and returns a URI, NONE returns only query execution metadata.
options Non-dynamic
HTTP client options
Optional advanced HTTP settings like timeouts or proxy.
io.kestra.core.http.client.configurations.HttpConfiguration
falseIf true, allow a failed response code (response code >= 400)
List of response code allowed for this request
The authentication to use.
io.kestra.core.http.client.configurations.BasicAuthConfiguration
The password for HTTP basic authentication.
The username for HTTP basic authentication.
io.kestra.core.http.client.configurations.BearerAuthConfiguration
The token for bearer token authentication.
io.kestra.core.http.client.configurations.DigestAuthConfiguration
The password for HTTP Digest authentication.
The username for HTTP Digest authentication.
The password for HTTP basic authentication. Deprecated, use auth property with a BasicAuthConfiguration instance instead.
The username for HTTP basic authentication. Deprecated, use auth property with a BasicAuthConfiguration instance instead.
durationThe time allowed to establish a connection to the server before failing.
durationThe time an idle connection can remain in the client's connection pool before being closed.
UTF-8The default charset for the request.
java.nio.charset.Charset
trueWhether to enable TCP Keep-Alive extended socket options (TCP_KEEPIDLE, TCP_KEEPINTERVAL, TCP_KEEPCOUNT).
Set to false when running on Windows workers, as these extended socket options are not supported by the Windows JDK and will cause connection failures.
trueWhether redirects should be followed automatically.
ALLTRACEDEBUGINFOWARNERROROFFNOT_SPECIFIEDThe log level for the HTTP client.
REQUEST_HEADERSREQUEST_BODYRESPONSE_HEADERSRESPONSE_BODYThe enabled log.
The maximum content length of the response.
The proxy configuration.
io.kestra.core.http.client.configurations.ProxyConfiguration
The address of the proxy server.
The password for proxy authentication.
The port of the proxy server.
DIRECTDIRECTHTTPSOCKSThe type of proxy to use.
The username for proxy authentication.
The address of the proxy server.
The password for proxy authentication.
The port of the proxy server.
DIRECTHTTPSOCKSThe type of proxy to use.
The username for proxy authentication.
durationThe time allowed for a read connection to remain idle before closing it.
durationThe maximum time allowed for reading data from the server before failing.
The SSL request options
io.kestra.core.http.client.configurations.SslOptions
Whether to disable checking of the remote SSL certificate.
Only applies if no trust store is configured. Note: This makes the SSL connection insecure and should only be used for testing. If you are using a self-signed certificate, set up a trust store instead.
The timeout configuration.
io.kestra.core.http.client.configurations.TimeoutConfiguration
The time allowed to establish a connection to the server before failing.
PT5MThe time allowed for a read connection to remain idle before closing it.
params array
Query parameters
Ordered list of positional parameter values for the ? placeholders in the SQL statement
pluginDefaultsRef Non-dynamicstring
Reference (ref) of the pluginDefaults to apply to this task.
Outputs
meta
Query metadata
Execution metadata returned by D1 (duration, rows read/written, etc.)
io.kestra.plugin.cloudflare.d1.Query-QueryMeta
row object
Single row
First result row as a map (FETCH_ONE mode only)
rows array
All rows
All result rows as a list of maps (FETCH mode only)
size integer
0Row count
Number of rows in the result set
uri string
uriStorage URI
Internal storage URI of the newline-delimited ION file (STORE mode only)