Sigstore Rate Limits
Sigstore's public-good Fulcio and Rekor instances do not publish formal per-client rate limits in the documentation overview; the project notes the service is operated as a public good and asks heavy consumers to self-host or run a private instance to protect shared capacity. Specific thresholds are not published as a developer-facing SLA.
Sigstore Rate Limits is the machine-readable rate-limit profile for Sigstore on the APIs.io network, conforming to the API Commons Rate Limits specification.
It captures 1 rate-limit definition, measuring varies.
The profile also includes 2 backoff/retry policies defined.
Tagged areas include Code Signing, PKI, Security, Open Source, and Rate Limiting.
Limits
Policies
Sources
Work with this as data
Every rate limit here is available over the APIs.io API and to AI agents over MCP.