# Rate limits transcribed from the provider's own documentation — see provenance. Quoted, not derived. generated: '2026-09-20' method: searched source: https://docs.cloud.google.com/armor/docs/rate-limiting-overview sources: - https://docs.cloud.google.com/armor/docs/rate-limiting-overview provenance: tool: planning/api-economics/harvest_ratelimits.py run: 20260920T133210 grounding: every limit_text was found verbatim in the fetched page text published: true note: Page describes configurable Cloud Armor rate-limiting rules (throttle and rate-based ban), not a provider API quota. Numeric values are configuration defaults/bounds; exceed_action status codes offered are 403, 404, 429, 502 with 429 recommended. limit_count: 3 limits: - name: Default rate limiting security policy threshold limit_text: the default threshold is 500 requests during each one-minute interval limit: 500 window: minute scope: ip - name: Throttle rate_limit_threshold_count maximum limit_text: The minimum value is 1 and the maximum value is 1,000,000. scope: unclear - name: Rate-based ban rate_limit_threshold_count maximum limit_text: The minimum value is 1 request and the maximum value is 10,000 requests. scope: unclear exceeded_status: 429