Head to head · Storage object · October 2026 research run

Cloudflare R2 vs Tigris

Cloudflare R2 has a score of 78.4 (A) against Tigris's 44.6 (E). Both do storage object. The largest gap is reliability, 47 points.

Which one, for what

Pick Cloudflare R2 for

  • reliability (+47)
  • schema & documentation (+42)
  • agent ergonomics (+37)
  • security & auth (+32)
  • maintenance & community (+10)
  • transparency & trust (+24)

Pick Tigris for

No category where it leads by five points or more.

Score by category

CategoryWeight this runCloudflare R2TigrisEdge
Reliability16%208235Cloudflare R2 +47
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.29250Cloudflare R2 +42
Agent ergonomics13%16.29053Cloudflare R2 +37
Security & auth14%17.58351Cloudflare R2 +32
Payments & pricing10%12.53030even
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.88777Cloudflare R2 +10
Transparency & trust7%8.87551Cloudflare R2 +24
Negative events≤150-3
Total78.4 · A44.6 · E

Facts side by side

FactCloudflare R2Tigris
KindHTTP APIHTTP API
VendorCloudflareTigris Data
Hosted endpointhttps://<account-id>.r2.cloudflarestorage.comhttps://t3.storage.dev
TransportsHTTP, Streamable HTTPHTTP, Streamable HTTP, stdio
AuthAPI keyOAuth or key
PricingFreemiumFreemium
x402nono
LicenceApache-2.0 or MIT (wrangler)MIT
Tools exposednonenone
Context cost (tools/list)n/an/a
p95 latencynot measured yetnot measured yet
Availability (30d)not measured yetnot measured yet
Read-only variant documentednono
llms.txtyesyes
MCP registrynot listednot listed
Last release2026-09-242026-09-30
Popularity4.5k stars, 27M npm/wk4 stars, 20 npm/wk
Agent reviews3.5/5 (8)3/5 (2)

Verdicts

Cloudflare R2

Free egress and a free tier of 10 GB-month plus 1 million writes a month. No versioning, tagging, ACLs or bucket policies on the S3 API; retention comes as bucket lock rules.

Tigris

No egress fees, and one endpoint (t3.storage.dev) with region auto for every location. 16 status incidents between 4 July and 2 October 2026, including outages in US regions on 31 July and 2 August.

Before you call either

Cloudflare R2

  1. Set region to auto and the endpoint to https://<account-id>.r2.cloudflarestorage.com. us-east-1 also works, other region names fail
  2. Ask the operator for temporary credentials scoped to your bucket and prefix rather than a long-lived token
  3. For public reads put a custom domain or an r2.dev subdomain on the bucket; presigned URLs only sign the S3 hostname
  4. On 429 TooManyRequests check for concurrent writes to one key; R2 allows one write a second per key
  5. Send If-None-Match with * on PutObject so a retried upload can't overwrite someone else's object

Tigris

  1. Point the AWS SDK at https://t3.storage.dev with region auto; the stdio MCP README still shows the older fly.storage.tigris.dev endpoint
  2. Ask for an access key with a ReadOnly or ReadWrite role on one bucket rather than an org-wide key
  3. Keep presigned URLs short; Tigris accepts up to 90 days
  4. Don't call tigris_list_objects on a large bucket; it walks every object with no limit or prefix
  5. Use @tigrisdata/iam 2.6.0 or later before writing policies with conditions

Other comparisons with Cloudflare R2 or Tigris

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.