An alternative approach to rate limiting
Nikrad Mahdi

Hi, thanks for the post! Are you rate limiting based on IP address or userId only? What if the user spamming is behind a corporate firewall? Or what if they’re abusing public services (aka available w/o authentication)?

