diff --git a/config/initializers/rack_attack.rb b/config/initializers/rack_attack.rb index 3dd573b41..f369fdc33 100644 --- a/config/initializers/rack_attack.rb +++ b/config/initializers/rack_attack.rb @@ -17,7 +17,7 @@ else end Rack::Attack.throttle("password reset requests", limit: 5, period: 60.seconds) do |request| - if request.params["user"].present? && request.path == "/account/password" && request.post? + if request.params["user"].present? && request.path == user_password_path && request.post? request.params["user"]["email"].to_s.downcase.gsub(/\s+/, "") end end