implemented a lot of security measures
This commit is contained in:
@@ -178,6 +178,10 @@ class AppServiceProvider extends ServiceProvider
|
||||
];
|
||||
});
|
||||
|
||||
RateLimiter::for('paddle-webhook', function (Request $request) {
|
||||
return Limit::perMinute(30)->by('paddle:'.$request->ip());
|
||||
});
|
||||
|
||||
RateLimiter::for('gift-lookup', function (Request $request) {
|
||||
$code = strtoupper((string) $request->query('code'));
|
||||
$ip = $request->ip() ?? 'unknown';
|
||||
|
||||
Reference in New Issue
Block a user