Limits and errors

Rate limits, the error format, and which errors are worth retrying.

Switched on per organisationThis is built and working, and is switched on for each organisation on request. Ask your account manager, or reply to any email from us naming it.

Limits

LimitAllowance
Requests60 a minute per set of credentials
Daily5,000 a day per organisation
Token requests10 a minute per set of credentials

Every response carries RateLimit-Limit, RateLimit-Remaining and RateLimit-Reset. A 429 carries Retry-After: wait that many seconds, and back off further if it repeats.

Errors

{ "error": { "code": "invalid_token", "message": "The access token is missing, invalid, expired or revoked.", "request_id": "7f3c2a90-..." } }
StatusCodeRetry?
400invalid_requestNo. Fix the parameter, range or header
401unauthorised, invalid_tokenGet a new token once, then stop and check the credentials
403insufficient_scopeNo. The credentials do not include that scope
404not_foundNo
405method_not_allowedNo. See the Allow header
429rate_limitedYes, after Retry-After
500internal_errorYes, with backoff. If it persists, contact us
503service_unavailableYes, after Retry-After. The API is paused

Every response carries X-Request-Id. Quote it when you contact support@alltoogether.com.

On this page