diff --git a/CHANGES.md b/CHANGES.md index 5ab7f0d4e4..d3d5c2fc54 100644 --- a/CHANGES.md +++ b/CHANGES.md @@ -3,10 +3,16 @@ ## Features - Anonymous login + ## Bugs - Fixed default value for HTTPS force option +## Breaking Changes (Read before upgrading!) + +- Introdcues rate limits for: + - Team invite (10 requests in every 60 minutes per IP address) + # Version 0.7.2 ## Features diff --git a/app/controllers/api/teams.php b/app/controllers/api/teams.php index 847b37484d..145b78411a 100644 --- a/app/controllers/api/teams.php +++ b/app/controllers/api/teams.php @@ -261,6 +261,7 @@ App::post('/v1/teams/:teamId/memberships') ->label('sdk.response.code', Response::STATUS_CODE_CREATED) ->label('sdk.response.type', Response::CONTENT_TYPE_JSON) ->label('sdk.response.model', Response::MODEL_MEMBERSHIP) + ->label('abuse-limit', 10) ->param('teamId', '', new UID(), 'Team unique ID.') ->param('email', '', new Email(), 'New team member email.') ->param('name', '', new Text(128), 'New team member name. Max length: 128 chars.', true)