Before you act
- Confirm that the scope matches your case.
- Keep recommendations, enforced limits, exceptions, and unstated details distinct.
- Open the official source before relying on the rule for a consequential decision.
Source-backed platform rule
npm states a maximum of 1,000 granular access tokens per account and does not state an over-limit response or exception in this source.
RuleRoster is independent and is not affiliated with or endorsed by npm.
Direct answer
An npm account can have up to 1,000 granular access tokens. The reviewed source does not state an over-limit response or exception.
Published evidence
One npm account can have up to 1,000 granular access tokens. An over-limit response and exception are not stated in the reviewed source, so RuleRoster does not infer either one.
Service: npm. Rule group: access-token quotas. Scope: granular access tokens in one npm account. Policy version and effective dates: not stated.
Evidence trail
npm · verified August 14, 2026
npm product documentation by GitHub, Copyright 2020 GitHub. Source: https://github.com/npm/documentation/tree/26eacbbb613ca0a6c68798b8754595f8e6019164. Licensed under Creative Commons Attribution 4.0 International: https://github.com/npm/documentation/blob/26eacbbb613ca0a6c68798b8754595f8e6019164/LICENSE. Modified by RuleRoster: RuleRoster extracted and restructured facts into typed rule fields and concise answers. Verified 2026-08-14. No endorsement by npm or GitHub is implied. The Creative Commons license does not license trademark or patent rights.
Interpretation and accountability
If the source or summary appears wrong, submit precise evidence for human review.