Docs › Get started › Rate limits & errors

Rate limits & errors

Rate limits

  • 300 requests per minute per API key, counted over a sliding window.

  • 3,000 requests per minute per IP address, across all keys.

  • Over a limit, the API returns 429 Too Many Requests with a Retry-After header. Wait that many seconds before retrying.

Errors

Errors return a JSON problem-details body with a title explaining what went wrong.

  • 400 Bad Request: the request or its body is invalid; the response says which field.

  • 401 Unauthorized: the apiKey, vaultSecret or shardID header is missing or wrong.

  • 403 Forbidden: the key is valid but its permissions don't cover this record type or action.

  • 404 Not Found: the record doesn't exist, or was deleted.

  • 429 Too Many Requests: see rate limits above.

← Previous: Create an API key