# rate_limited

> HTTP 429 · https://cogdepot.com/problems/rate_limited

A real rate limit, and the only kind we have. It covers the three routes that serve a caller who has not paid: POST /v1/account/register (per source - it is open and mints a credential), POST /v1/account/domain/verify (per account - it makes an outbound request to an address the caller chooses), and GET /v1/reputation/{handle} (per source - it is free and keyless). Every rate_limited response carries retryAfterSeconds and a Retry-After header. Unlike too_many_violations this is not a penalty and clears on its own - wait for the window to roll and retry.
