Retry-After when returned. Use bounded backoff with jitter for transient failures; do not retry authentication, invalid inputs, unsupported capabilities, or exhausted quota indefinitely.
Keep one idempotency key for retries of the same REST data request. Use a client timeout long enough for the API’s request window, and record X-Request-Id when contacting support.