Skip to main content
Makes a new signing secret for an endpoint. Deliveries are signed with it from now on, and the old one stops working at once — update your receiver as you rotate. The answer is the only time the new secret is shown.
Needs the webhooks:write scope.

Path parameters

Request

Response

200 OK

Errors

Every refusal is {"error": {"code", "message", "field"}}; field is there when one input is at fault. Any request can also be refused for its key, its account or its rate (key_required, invalid_key, account_suspended, plan_excludes_api, address_not_allowed, rate_limited); see the overview.