Increased error rate on API loads
Timeline · 1 update
- resolved May 05, 2026, 02:37 PM UTC
Between 14:15 UTC and 14:22 UTC, some loads of API assets returned 403s in some regions. This incident has now been resolved.
hCaptcha had 6 outages in the last 2 years totaling 16m of downtime — averaging 0.2 incidents per month.
There were 6 hCaptcha outages since August 21, 2025 totaling 16m of downtime. Each is summarised below — incident details, duration, and resolution information.
Between 14:15 UTC and 14:22 UTC, some loads of API assets returned 403s in some regions. This incident has now been resolved.
We are monitoring sporadic latency impact related to network-level issues at an upstream WAF provider: https://www.cloudflarestatus.com/incidents/dz87vqwvl8wr This appeared to primarily affect some LATAM and EUR region POPs.
This notice is purely informational. There was zero impact to hCaptcha from the AWS us-east-1 outage that took down many other online services this week.
Passkey support is being updated; error rates for logins or 2FA verification on accounts using passkeys may increase for approximately 10 minutes.
Maintenance is now complete.
Due to an issue at an upstream edge CDN, P99 times in several regions, primarily GIG and GRU, were elevated between 14:15 UTC and 14:45 UTC.
An upstream WAF provider is experiencing increased latency in the IAD region, which appears to be primarily affecting connections from AWS us-east to our API endpoints. Most traffic has been rerouted to nearby regions, so siteverify endpoints from servers connecting from AWS us-east regions that do not use our PrivateLink or Direct Routing options may see 20-50ms of increased latency until IAD is restored. Impact appears to be less than 0.005% of total requests, but may be concentrated on some network links.
We are no longer seeing elevated latency in IAD.