Ingest HTTPS endpoint: accept report POST, size limit, rate limiting #7

Closed
opened 2026-07-02 17:44:25 +00:00 by JMR-dev · 0 comments
JMR-dev commented 2026-07-02 17:44:25 +00:00 (Migrated from github.com)

Context

Implements the ingest side of JMR-dev/LibreMail#34. Receives submissions from the app's opt-in review/submit screen (LibreMail#33).

Scope

  • HTTPS POST endpoint accepting a report payload.
  • Request size limit (reject oversized payloads).
  • Rate limiting and basic abuse protection per the policy from #6.
  • Reasonable HTTP status codes/responses for success, validation failure, and rate-limit rejection.

Acceptance criteria

  • A well-formed POST is accepted; oversized or rate-limited requests are rejected with the correct status code.

Dependencies

Depends on #1 (Worker scaffold) and #6 (abuse/rate-limit policy).

## Context Implements the ingest side of [JMR-dev/LibreMail#34](https://github.com/JMR-dev/LibreMail/issues/34). Receives submissions from the app's opt-in review/submit screen ([LibreMail#33](https://github.com/JMR-dev/LibreMail/issues/33)). ## Scope - [ ] HTTPS POST endpoint accepting a report payload. - [ ] Request size limit (reject oversized payloads). - [ ] Rate limiting and basic abuse protection per the policy from #6. - [ ] Reasonable HTTP status codes/responses for success, validation failure, and rate-limit rejection. ## Acceptance criteria - A well-formed POST is accepted; oversized or rate-limited requests are rejected with the correct status code. ## Dependencies Depends on #1 (Worker scaffold) and #6 (abuse/rate-limit policy).
Sign in to join this conversation.