diff --git a/services/web/app/src/Features/Subscription/SubscriptionRouter.mjs b/services/web/app/src/Features/Subscription/SubscriptionRouter.mjs index 67b5538bf8..073ed68eae 100644 --- a/services/web/app/src/Features/Subscription/SubscriptionRouter.mjs +++ b/services/web/app/src/Features/Subscription/SubscriptionRouter.mjs @@ -168,7 +168,12 @@ export default { // recurly callback publicApiRouter.post( '/user/subscription/callback', - RateLimiterMiddleware.rateLimit(subscriptionRateLimiter), + RateLimiterMiddleware.rateLimit( + new RateLimiter('recurly-callback', { + points: 200, + duration: 60, + }) + ), AuthenticationController.requireBasicAuth({ [Settings.apis.recurly.webhookUser]: Settings.apis.recurly.webhookPass, }),