FixWeb

// docs / quotas & limits

Quotas kei limits

Na quota kei na rate-limit value kece e ra e yavutaki mai na entitlements module ena build time, o koya e sega ni rawa ni duidui kina na page oqo mai na ka e enforce dina na server.

Entitlements ena tier yadua

Sega ni saumiHobiProUnlimited
Scans / vula350200Palani UnlimitedΒΉ
Projects (domains sa verified)11520
API tokens ni account01520
Owner-depth scanssegaioioio
GitHub repo scans ni sourcesegasegaioio
Scheduled re-scans tuvanakisegasegaβ‰₯3h cadence ni gaunaβ‰₯1h cadence ni gauna
Live threat detection bulasegasegasegaio
Maroroi7 siga30 siga90 siga365 siga
Team seats ni timi1115
Veivukekena ivakatagedegedekena ivakatagedegedebibi taumadavakatabakidua

ΒΉ Na quota ni vakaraici ni palani Unlimited e ruku ni veiyaloni ni dodonu β€” raica na iTuvatuva. Β² Na ivakaiyaragi e veivakaraitaki e 20 na domain ena vakadidike active ena cadence β‰₯1h. Veitaratara kei support@fixweb.app me vakauasivi ena veisau ni cadence e tuvanaki balavu.

API rate limits ni kerekere

Every /api/v1/* and /api/mcp request is keyed on a hash of the bearer token and runs through two windows:

  • Burst: 10 requests ena sekodi.
  • Steady: 60 requests ena miniti.

On 429, the response includes:

http
HTTP/1.1 429 Too Many Requests
content-type: application/json
retry-after: 47
x-ratelimit-limit: 60
x-ratelimit-remaining: 0
x-ratelimit-reset: 1715116200

{
  "error": "rate_limited",
  "message": "Token rate limit exceeded β€” steady (60/min). Retry in 47s.",
  "retry_after_seconds": 47
}

The window which tripped is named in the message (burst (10/s) vs steady (60/min)) so a client backoff can adapt.

Na ivakaiyaragi ni totolo ni vakaraici palani Free (ena IP/24)

Vakatauvatani kei na ivakaiyaragi vakavula me 3 na vakaraici ena dua na isoqo, na dauvakayagataka na palani Free e tu vei ira tale e dua na ivakaiyaragi totolo ena IP/24: 3 na vakaraici ena aua, 100 ena dua na siga. Na limiter vata e taqomaka talega na vakaraici sa qai bera ga ena gauna ni sega ni kilai, e taroga na vakayagataki ni quota Free ena loma ni ivolatusi vakaduadua. Na kerekere e laki sivia e dua na ivakaiyaragi e vakasuka mai na HTTP 429 Too Many Requests ena Retry-After header.

Signup throttle (ena IP/24 yadua)

5 na rejiseta vinaka ena IP/24 ena 24 na aua, me kua kina ni vakatubuyaco vakatabakidua na ivolatusi palani Free. Na callbacks e vakaiyaragi e vakaca lesu ki na /sign-in?error=rate_limited.

Maroroi

Scans + findings auto-purge per the table above. Anonymous one-shot scans expire 24h after creation. Audit logs retain for 18 months. Monitor snapshots prune to last 7 days plus the latest baseline per (domain, signal). Dismissed alerts purge after 90 days. All retention enforced daily by /api/cron/retention-cleanup.

Quotas kei limits β€” Docs Β· FixWeb