
Rate limits & errors
Rate limits
300 requests per minute per API key, counted over a sliding window.
3,000 requests per minute per IP address, across all keys.
Over a limit, the API returns 429 Too Many Requests with a
Retry-Afterheader. Wait that many seconds before retrying.
Errors
Errors return a JSON problem-details body with a title explaining what went wrong.
400 Bad Request: the request or its body is invalid; the response says which field.
401 Unauthorized: the
apiKey,vaultSecretorshardIDheader is missing or wrong.403 Forbidden: the key is valid but its permissions don't cover this record type or action.
404 Not Found: the record doesn't exist, or was deleted.
429 Too Many Requests: see rate limits above.
← Previous: Create an API key