Developer documentation

Webhooks

Status and security requirements for outbound webhook delivery.

Planned

Current status

Public webhook registration, event selection, payload schemas, signing, retry, and replay documentation are not yet published.

Required contract before use

  • Tenant-authorized destination registration and verification
  • Signed deliveries with documented rotation and replay protection
  • Stable event identifiers and idempotent receivers
  • Bounded retries, backoff, delivery status, and dead-letter handling
  • Minimal payloads with governed access to full resources