I wonder if when accessing a Cloudflare website if they'll be presenting the website owner with the original origin IP, or passing along the 1.1.1.1 endpoint IP addressed when staying within their network.
If you wish to block or otherwise take action on, e.g., malicious traffic from the IP being used to connect to Warp, you'll be able to do so.
See https://support.cloudflare.com/hc/en-us/articles/200170986-H... for details.
1- https://blog.cloudflare.com/mmproxy-creative-way-of-preservi...
Are Cloudflare going to be able to decrypt the TLS sessions running over their VPN between me and end-sites, so they can insert this additional HTTP header?
Doesn’t sound feasible.