$npx skillfedfor your agent

upstash-ratelimit

Serverless ratelimiting package from Upstash

With conditionsPyPI LibrariesReleased May 202483.3K downloads / mopermissive licensePure Python

Decision gist · record as of 2026-08-14

pure-Python wheel — upstash_ratelimit-1.1.0-py3-none-any.whl
v1.1.0 · released 2024-05-16 · Python <4.0,>=3.8 · 1 runtime deps: upstash-redis

Yes, if you are building serverless applications and need rate limiting backed by a managed Redis service. The package is production-stable, has no known vulnerabilities, and low install friction. However, maintenance is dormant—no updates since mid-2024—so you should be comfortable with a package that will not receive active development or rapid bug fixes. It is a good fit for established serverless workloads where the core functionality is stable and you do not expect frequent feature requests.AI-flagged interpretation of the facts on this page — verify before relying

Before you install

  • Requires an Upstash Redis database to be created and UPSTASH_REDIS_REST_URL and UPSTASH_REDIS_REST_TOKEN environment variables to be set.
  • Low friction install with a single runtime dependency (upstash-redis).
  • Maintenance status is dormant—last commit was 2024-06-24 and no releases since 2024-05-16—so expect no active bug fixes or feature development, though the package is marked Production/Stable.

License · maintenance · safety

permissive license (permissive) — Licensed under MIT (permissive), so you can use it freely in commercial and private projects without restriction.

last release 2024-05-16 (820 days) · last repo commit 2024-06-24 · 34 stars

0 known vulnerabilities (OSV.dev, 2026-08-14) · 83,347 downloads/mo, #14,079 on PyPI

Verify before relying

pip install upstash-ratelimit

from upstash_ratelimit import Ratelimit, FixedWindow
from upstash_redis import Redis

ratelimit = Ratelimit(
    redis=Redis.from_env(),
    limiter=FixedWindow(max_requests=10, window=10),
)
response = ratelimit.limit("identifier")
if response.allowed:
    print("Request allowed")
  • Whether the package works with async/await patterns beyond what the description excerpt shows
  • Performance characteristics and latency overhead of each rate-limiting algorithm in production
  • Support status and response time from Upstash for issues or questions
Same gist for agents: .md · .json

What it is and what it does

upstash-ratelimit is a Python SDK for rate limiting designed specifically for serverless environments like AWS Lambda, Vercel, and Google Cloud Functions. It uses HTTP to communicate with Upstash's managed Redis service rather than TCP connections, making it suitable for ephemeral compute contexts where persistent connections are impractical. The package provides three rate-limiting algorithms—Fixed Window, Sliding Window, and Token Bucket—each with different trade-offs between computational cost and burst-handling behavior.

You instantiate a Ratelimit object with a Redis client and your chosen algorithm, then call the limit() method with an identifier (user ID, API key, IP address, etc.) to check whether a request should be allowed. The method returns a Response object containing whether the request passed, the configured limit, remaining requests in the window, and when the limit resets. The package also supports async/await patterns via an asyncio module and allows you to block until a request is ready to proceed.

Use it for

  • Protect Lambda functions or serverless APIs from being overwhelmed by enforcing per-user or per-IP request quotas
  • Implement tiered rate limits (e.g., 10 req/10s for free users, 60 req/10s for paid) using multiple Ratelimit instances with different prefixes
  • Smooth out traffic bursts in serverless workloads using Token Bucket to process requests at a constant rate
  • Prevent request stampedes at window boundaries by using Sliding Window instead of Fixed Window
  • Share a single Redis instance across multiple applications by setting custom key prefixes to avoid collisions

Worth the install?

AI-flagged interpretation of the facts on this page. Verify before relying on it.

With conditions

Yes, if you are building serverless applications and need rate limiting backed by a managed Redis service.

The package is production-stable, has no known vulnerabilities, and low install friction. However, maintenance is dormant—no updates since mid-2024—so you should be comfortable with a package that will not receive active development or rapid bug fixes. It is a good fit for established serverless workloads where the core functionality is stable and you do not expect frequent feature requests.

Install

upstash-ratelimit on PyPI

Before you install

Low friction install with a single runtime dependency (upstash-redis). Maintenance status is dormant—last commit was 2024-06-24 and no releases since 2024-05-16—so expect no active bug fixes or feature development, though the package is marked Production/Stable.

Requires an Upstash Redis database to be created and UPSTASH_REDIS_REST_URL and UPSTASH_REDIS_REST_TOKEN environment variables to be set.

License in practice

Licensed under MIT (permissive), so you can use it freely in commercial and private projects without restriction.

Quickstart

pip install upstash-ratelimit

from upstash_ratelimit import Ratelimit, FixedWindow
from upstash_redis import Redis

ratelimit = Ratelimit(
    redis=Redis.from_env(),
    limiter=FixedWindow(max_requests=10, window=10),
)
response = ratelimit.limit("identifier")
if response.allowed:
    print("Request allowed")

Verify before relying

  • Whether the package works with async/await patterns beyond what the description excerpt shows
  • Performance characteristics and latency overhead of each rate-limiting algorithm in production
  • Support status and response time from Upstash for issues or questions

Package facts

Licensepermissive license permissive
Python supportSupports the current Python release <4.0,>=3.8
Install frictionLow. Pure-Python wheel
Runtime dependencies
1 package
upstash-redis
MaintenanceDormant 820 days since the last release
Last repo commit
First released
Downloads83,347 / month, #14,079 on PyPI 30-day window, as of 2026-08-14
Known vulnerabilitiesNone known OSV.dev, checked 2026-08-14
Classifiers
Development Status :: 5 - Production/StableIntended Audience :: DevelopersLicense :: OSI Approved :: MIT LicenseOperating System :: OS IndependentProgramming Language :: PythonProgramming Language :: Python :: 3Programming Language :: Python :: 3 :: OnlyProgramming Language :: Python :: 3.10Programming Language :: Python :: 3.11Programming Language :: Python :: 3.12Programming Language :: Python :: 3.8Programming Language :: Python :: 3.9Programming Language :: Python :: Implementation :: CPythonTopic :: Software Development :: Libraries

Evidence: upstash_ratelimit-1.1.0-py3-none-any.whl

Tags

Capabilities
serverless rate limitingredis rate limit pythonapi rate limitingrequest throttlingtoken bucket rate limitsliding window rate limitlambda rate limiting
Topics
serverlessrate-limitingredis
PyPI keywords
ratelimitrate limitUpstash rate limitRedis rate limit

Let your AI agent find packages like this

Example. Real query, live index.

You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.

wish › “serverless rate limiting”

Give your agent the search over MCP, or paste the wish link into any chat.

More Libraries packages

urllib3 Worth it
PyPI · Libraries · released May 2026

urllib3 is an HTTP client library that provides thread-safe connection pooling, SSL/TLS verification, multipart file uploads, request retries, compression support, and proxy handling for Python applications.

MITpure Python · 3.10+
1.8Bdownloads / mo
requests Worth it
PyPI · Libraries · released May 2026

Requests is a Python HTTP library that simplifies sending HTTP/1.1 requests with automatic handling of headers, authentication, cookies, and response parsing.

Apache-2.0pure Python · 3.10+
1.8Bdownloads / mo
pluggy Worth it
PyPI · Libraries · released May 2025

Pluggy provides a plugin system that lets you define hook specifications and register implementations to be called in sequence, enabling extensible Python applications without tight coupling.

Install it if you're building an extensible application or framework.

MITpure Python · 3.9+aging
1.3Bdownloads / mo
python-dateutil Worth it
PyPI · Libraries · released Mar 2024

Provides parsing, arithmetic, and recurrence rule computation for dates and times, with timezone support and iCalendar RFC compliance.

Install it if you need to parse flexible date strings, compute relative dates, handle timezones, or work with recurrence rules—it's the de facto choice for these tasks.

Apache-2.0pure Python
1.2Bdownloads / mo
six With conditions
PyPI · Libraries · released Dec 2024

Six provides utility functions to write Python code that runs on both Python 2.7 and Python 3.3+, smoothing over language differences between the two versions.

MITpure Python
1.2Bdownloads / mo
pytest Worth it
PyPI · Libraries · released Jun 2026

pytest is a testing framework that lets you write test functions using plain assert statements and automatically discovers and runs them, with detailed failure reporting.

MITpure Python · 3.10+
1.1Bdownloads / mo

See also python-redis-rate-limit · upstash-redis · limits · rush · qstash · throttled-py · ratelimit · fastapi-limiter · asynciolimiter · ratelim