Craft CMS · Rate Limits

Craft Cms Rate Limits

Craft CMS does not impose built-in rate limiting on its GraphQL API or Element API endpoints by default. Rate limiting is implemented at the infrastructure or plugin level. The official Rate Limit plugin for Craft CMS provides IP-based request throttling with a default threshold of 4000 requests per minute per IP address, returning HTTP 429 when exceeded. Self-hosted deployments can configure limits via server-level controls (nginx, Apache) or through the Rate Limit plugin.

Craft Cms Rate Limits is the machine-readable rate-limit profile for Craft CMS on the APIs.io network, conforming to the API Commons Rate Limits specification.

It captures 2 rate-limit definitions, measuring requests_per_minute and complexity_score.

The profile also includes response codes documented for throttled.

Tagged areas include Rate Limiting, GraphQL, and CMS.

2 Limits Throttle: 429
Rate LimitingGraphQLCMS

Limits

IP-Based Request Throttle (Rate Limit Plugin Default) ip
requests_per_minute · minute
4000
GraphQL Query Complexity key
complexity_score · usage
-1

Sources

Work with this as data

Every rate limit here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for rate limits

4 MCP tools reach this
  • find_rate_limitsBrowse and filter every rate limit in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This rate limit
curl "https://apis.io/api/v1/rate-limits/craft-cms-rate-limits"
All rate limits
curl "https://apis.io/api/v1/rate-limits?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.