Skip to main content

Queue API

  • Default shared credential limit: 60 requests per one-minute bucket.
  • A rejected over-limit request returns HTTP 429 with RATE_LIMITED.
  • Use exponential backoff with jitter and wait at least until the next minute bucket.
  • Do not retry a ticket mutation with a new Idempotency Key after an unknown network result; retry the same logical operation with the same key.

Replay records

Mutation nonces are retained for ten minutes. Request timestamps must be within five minutes.

Structured Widget Push API

  • Default limit: 120 Push attempts per Widget in a rolling one-minute window.
  • A rejected over-limit request returns HTTP 429 RATE_LIMITED with retryAfterSeconds: 60.
  • The request body is limited to 1 MiB.
  • Use exponential backoff with jitter.
  • Retry the same logical snapshot with the same Idempotency Key and byte-identical body.

Prayer schedule Push API

  • Source-specific Push limits apply.
  • The request body is limited to 512 KB.
  • Preserve the Idempotency Key when retrying one logical month.

Device PINs

Screen unlock, Screen release, and Kiosk unlock use five attempts per five minutes per device token. Successful verification clears the counter.