Add rate limiting and cache for m2m token authentication endpoints

,

Summary of this issue:

  • Auth0 sells a solution which offers no protection against (possibly external) developers from generating unlimited (?) costs on your account.
  • Only possible solution is to implement custom code around Auth0, negating the key value of SAAS.
  • Auth0 expected a solution in Q4 2023, then in Q2 2024, now… ?
  • Best practice solution is to move away from Auth0.

@konrad.sopala I would like to point out that this is not just nice-to-have, it’s a make-or-break issue, the lack of which - as you can read in various threads - is pushing customers away from your platform.