Home / Glossary / Rate Limiting

What is Rate Limiting?

Rate limiting caps how many requests a client can make in a time window, throttling clients that exceed the allowance.

How it works

Limits can apply per IP, per account, per session, or per fingerprint. Sophisticated attackers spread load across thousands of identities to stay under each cap.

Why it matters for e-commerce

It slows bulk abuse but is blind on its own; distributed botnets treat simple rate limits as a speed bump, not a wall. For your store, that means inventory and ad spend stay protected and shoppers get a fair experience.

How BotBulwark detects it

BotBulwark scores every request against behavioral, network, and device signals, so automated patterns surface even when they imitate real shoppers. Suspicious sessions get challenged or blocked before they reach your store.

Related terms