Skip to content

Apply rate limiting on specific URLs #86

@ThrawnCA

Description

@ThrawnCA

It would be beneficial to be able to throttle specific types of requests. For example, rate-limiting requests to the am_following_user API (which can reveal whether or not a name is in use), to prevent username enumeration.

Our site has Amazon CloudFront, but that only allows global rate-limiting, not specific URLs.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions