Each endpoint’s reference page shows its tier.
Headers
- Authenticated responses carry
X-RateLimit-Limit, the request limit for that endpoint’s tier. - A
429response carriesRetry-After, the number of seconds to wait before retrying.
GET /health and GET /docs without a key have no per-key limit, so they don’t send X-RateLimit-Limit.
Handling 429
A request over the limit returns429 with error type rate_limit_error:
Retry-After, then retry. Spread bulk work out instead of bursting. For example, a single submit-bulk call carries up to 100 candidates.
A separate per-IP throttle runs at the network edge, and Paraform may apply additional per-endpoint limits. Any
429 can come from either, so always honor Retry-After rather than counting requests yourself.