// docs / quotas & limits
Cuota ukat limitinaka
Every quota ukat rate-limit value below wa derived ukat uka entitlements module at build time, so this page spawa never drift ukat what uka server actually enforces.
Sapa plan derecho
| Inakipa | Munaña | Pro | Ilimitado | |
|---|---|---|---|---|
| Scan / phaxsi | 3 | 50 | 200 | Unlimited plan¹ |
| Proyectonaka (verified dominiona) | 1 | 1 | 5 | 20 |
| API tokens | 0 | 1 | 5 | 20 |
| Owner-depth scans | janiwa | jïsa | jïsa | jïsa |
| GitHub repo scannaka | janiwa | janiwa | jïsa | jïsa |
| Scheduled re-scannaka | janiwa | janiwa | ≥3h cadence | ≥1h cadence |
| Live threat detection | janiwa | janiwa | janiwa | jïsa |
| Imawi | 7 days | 30 days | 90 days | 365 days |
| Team seats | 1 | 1 | 1 | 5 |
| Yanapt'awi | estándar | estándar | nayraqata | wakisir yanapt'awi |
¹ Unlimited planax escaneo cuota suma apnaqäwirux ist'asi — Conditionsx uñnaqama. ² Defautla limiteax 20 dominio active monitoring ukans ≥1h cadenciamp. Jiltʼaytaywar jaya planeat cadencia maytat support@fixweb.appamp aruskipt'asita.
API rate limits
Every /api/v1/* ukat /api/mcp mayiwi wa keyed on a hash of uka bearer token ukat runs through two windows:
- Burst: 10 requests per second.
- Steady: 60 requests per minute.
On 429, uka response includes:
HTTP/1.1 429 Too Many Requests
content-type: application/json
retry-after: 47
x-ratelimit-limit: 60
x-ratelimit-remaining: 0
x-ratelimit-reset: 1715116200
{
"error": "rate_limited",
"message": "Token rate limit exceeded — steady (60/min). Retry in 47s.",
"retry_after_seconds": 47
}The window which tripped wa named in uka message (burst (10/s) vs steady (60/min)) so a client backoff spawa adapt.
Free plan escaneo jankak limit (sapa IP/24)
Sapa organización phaxsin 3 escaneo limit ukat sipansa, Free plan apnaqirinakax sapa IP/24 jankak limit yapichäwiwa: hora ukan 3 escaneo, urun 100. Kipka limiterax anonimo jankʼaki escaneonakax mantsi, ukax mä kut apnaqkat cuentanakax Free cuotax tukuyañ jark'aski. Kuna limit ukax pasaski mayinakax Retry-After header ukamp HTTP 429 Too Many Requests kuttʼayi.
Signup throttle (per IP/24)
Free planan automatica cuenta luqachawi jark'añataki sapa IP/24, 24 horan 5 atisirir registracionwa. Jankakanitatax callbacksax /sign-in?error=rate_limitedarux kuttʼayata.
Imawi
Scans + jikxatawinaka auto-purge per uka table above. Anonymous one-shot scannaka expire 24h after creation. Audit logs retain tak 18 months. Monitor snapshots prune ru last 7 days plus uka latest baseline per (dominio, signal). Dismissed alertanaka purge after 90 days. All retention enforced daily by /api/cron/retention-cleanup.
