Ntfyx

Service limits.

The same reply capabilities and safety boundaries on every plan. Only the active Topic allowance changes with Ntfyx Plus.

Topics and devices

#

These limits apply per Inbox unless stated otherwise. A temporary browser also uses a browser slot. Deleting a Topic releases its record; pausing it does not.

ResourceLimit
Active TopicsFree 1 · Ntfyx Plus 20
Total Topic records50
Sources20 per Topic · 100 per Inbox
Receivers1 primary iPhone + 2 browsers

Daily budgets and rate limits

#

Daily budgets reset at UTC midnight. This does not reset pending requests, storage or Topic state. Idempotent retries do not create duplicate logical events. Accepted replies, cancellations and receipts do not consume the new-message budget, but API rate limits still apply.

OperationLimit
Ordinary new events1000 per UTC day, including progress updates
New requests200 per UTC day, an independent budget
Pending requestsAt most 50; storage reservation can reject earlier
New-event rate30 / minute per Source, burst 10; 120 / minute per Inbox
Control writes60 / minute per principal; 300 / minute per Inbox. Includes answers, claim, cancellation and receipts.
Read and sync120 / minute per principal; at most 100 events per page
Pairing creation10 / 10 minutes per IP, plus device protections. An IP address does not prove identity.

Message sizes

#

Limits apply to the complete encoded payload. Oversized content is rejected, never silently truncated and approved. The payload and encrypted-envelope limits must both pass.

ContentLimit
Plaintext payload16 KiB including title, body, options and context
Encrypted envelope96 KiB including encoding, recipient ciphertexts and signature
Reply text / Deny note4 KiB / 2 KiB
Choice options2–8 options; ID 1–32 ASCII characters; label at most 120 Unicode characters

Deadlines and temporary access

#

The service checks expiry during reads and submissions. Cleanup jobs reclaim space; they do not determine whether an expired answer is valid.

ItemLifetime
Pairing QR5 minutes · single use
CLI question15 minutes by default · at most 24 hours
Claude permission question90 seconds for the request and remote wait; 100-second hook timeout
Temporary demo15 minutes · at most 10 events · source expires automatically

Storage and retention

#

Ordinary messages cannot use the capacity reserved for accepted requests and answers. A new request reserves room for its maximum answer and necessary terminal records before acceptance. Insufficient capacity refuses the request early; the service must not accept a question and later drop its Deny because ordinary storage is full.

StorageLimit / retention
Inbox ciphertext25 MiB total · 21 MiB ordinary + 4 MiB reserved
Ordinary relay ciphertextAt most 7 days, within the storage limit
Requests and answersPending until the deadline; retained 7 days after reaching a terminal state
iPhone local historyUp to 90 days / 10,000 records; active requests and pending answers are protected
Web local historyUp to 30 days / 5,000 records delivered to that browser; can be cleared locally
CLI consumption ledger30 days after terminal state; active requests are protected
Service idempotency / consumption tombstones30 days of minimal IDs, hashes and terminal state; no extension of content retention

Muting and notification grouping

#

Muting a Topic changes phone alerts, not delivery, encrypted storage or the ability to reply. Muting ends at the selected time. Rapid ordinary progress may share a system notification per opaque task ID; requests retain distinct notification identifiers. Notification routing does not require a plaintext project or Topic name.

In iPhone builds that offer daily quiet hours, you can set a repeating range, including overnight; the default is 22:00–09:00. This feature depends on the installed build and does not stop messages or replies.