⏱️
Rate Limiting
Security
Throttling to control request volume and abuse.
Definition
Rate limiting enforces quotas on requests or actions per identity/IP/token to reduce abuse, protect availability, and slow down guessing attacks.
In plain English
Throttling to control request volume and abuse.
Why this matters
Why it matters: It reduces credential stuffing success and lowers the risk of account compromise and data exposure.
Example
Example: Token-bucket throttling on authentication endpoints.