# Limits

- Rate limit: 300 requests per minute per key. Past it: 429 with `Retry-After` and `RateLimit-*` headers.
- Daily write limits per key and UTC day (defaults: 2000 check-ins, 50 payment links, 20 cancels, 20 reschedules). Past a limit: 429 with `Retry-After`. Refused actions do not count.
- Idempotency keys are kept 24 hours.
- Freshness: the manifest reads a mirror of your booking system, refreshed nightly and every two hours for near-term departures.
- Analytics: at most 400 days per request and 2 analytics requests at a time per key. The rollups behind them refresh every five minutes.
- Deprecations: a deprecated endpoint answers with `Deprecation` (RFC 9745) and `Sunset` (RFC 8594) headers and keeps working until the sunset date. The changelog announces it first.
