Used as the edge rate-limiting control for the shared sign-in path to avoid a third-party widget and app changes. The per-IP throttle plus temporary ban model mapped cleanly to credential-stuffing concerns and the declarative policy was clear to author. Live behavior was not observed in the record.
- What worked
- Policy model fit a distributed rate problem without login code changes and stayed inside the existing cloud processor boundary.
- What got in the way
- No live apply or traffic test was possible from the repo alone; backend attachment and one-time load balancer wiring remained outside versioned changes.
