By: Michael Lynch <git@mtlynch.io>
Hide rate limit details from login handler Return a shared-secret authentication error for rate-limited attempts so HTTP handlers do not depend on the concrete rate limiter package.