Developer hub
Webhooks
Inbound provider events are handled by dedicated routes inside the unified gs-api service. Endpoint addresses and signing requirements are integration-specific.
- 01
Use the event-specific gs-api endpoint supplied for your provider.
- 02
Verify every production signature before parsing or acting on a payload.
- 03
Acknowledge quickly, move slow work to a queue, and make retries idempotent.
- 04
Log request identifiers and outcomes without recording payload secrets or credentials.
- 05
Test failure, duplicate-delivery, and out-of-order event handling before launch.
