---
title: "Rotate webhook signing secret"
method: POST
path: "/webhooks/{webhookId}/rotate-secret"
tags: ["Webhooks"]
---

# Rotate webhook signing secret

`POST /webhooks/{webhookId}/rotate-secret`

Generate a new signing secret.

## Path parameters

- `webhookId` string, required — Webhook ID (whk_*).

## Headers

- `Idempotency-Key` string, required
- `X-Agent-ID` string, nullable
- `X-Instance-ID` string, nullable

## Request body

- object
  - `data` object, required
    - `attributes` object, required
      - `expiresInSeconds` integer, required — Grace period in seconds for the previous secret (0 = immediate cutover, max 86400).

## Response `200`

Successful Response

- object
  - `data` object, required
    - `type` 'webhook', required
    - `id` string, required — Webhook ID (whk_*).
    - `attributes` object, required
      - `signingSecret` string, required — New webhook signing secret. Returned only once.
      - `previousSecretExpiresAt` string, date-time, nullable, required — When the previous secret expires, or null for immediate cutover.
    - `relationships` object, required
      - `party` object, required — Party that owns the webhook.
        - `data` object, required — Related resource identifier.
          - `type` 'party', required
          - `id` string, required

## Other responses

- `400` — Validation Error
- `401` — Unauthorized
- `403` — Forbidden
- `404` — Not Found. Returned when the resource does not exist, or when it exists but is not accessible to your account. The two cases are intentionally indistinguishable, so that resource IDs cannot be enumerated by probing.
- `409` — Conflict
- `422` — Validation Error
- `428` — Precondition Required
- `429` — Too Many Requests
- `500` — Internal Server Error
- `501` — Not Implemented
- `502` — Bad Gateway
- `503` — Service Unavailable

---

[API](https://skmtc.net/natural/apis/natural-api.md) · [All operations](https://skmtc.net/natural/apis/natural-api/llms.txt) · [OpenAPI document](https://skmtc-service-staging.skmtc.workers.dev/v1/apis/natural/natural-api/revisions/0bb9c54b1f61/schema)
