Limits and errors
Limits keep one app from overloading an account or our API. When you hit one, the answer says which, and 429 answers carry a Retry-After header with the seconds to wait.
Limits
A verified app that loses its badge keeps the verified limits while we check it again. If your verified app needs more, write to [email protected].
Answers from the token gate
These come before the endpoint runs. WhatsApp routes (/api/v1/public/*) use the result shape; Email routes (/api/v1/partner/email/*) use {"error": "<code>", "message": "..."} with the same codes and texts.
Answers from the account's plan (WhatsApp)
After the token gate, the account's own plan rule runs, the same as for its API key:
IP allowlist (both platforms)
The account only accepts API calls from its allowed addresses. Ask the customer to add your server addresses.
Token endpoint
The revoke endpoint uses the same client authentication answers and otherwise always answers 200 {}.