v9

OpenAPI 3.1.02026-08-043703845.2 MB
Webhooks

Retrieve Webhook

Retrieves the details of an existing webhook.

get/webhooks/{id}

Response

legacy webhook testable events use dot-form names

api_version'v1' | 'v2' | 'v5' required

The API version used to format payloads sent to this webhook endpoint.

api_version_datestring nullable required

The dated API version (Api-Version-Date) that v1 payloads for this endpoint are pinned to: events serialize exactly like a REST read at this version (the native serializer where the resource has one). Null when unpinned — legacy (v2/v5) webhooks, and v1 webhooks on the legacy payload shape.

child_resource_eventsboolean required

Whether events are sent for child resources. For example, if the webhook is on an account, enabling this sends events only from its connected accounts.

created_atstring required

When the webhook was created, as an ISO 8601 timestamp.

disabled_atstring nullable required

When Whop automatically disabled this webhook, as an ISO 8601 timestamp. null unless the webhook was disabled by Whop; a webhook you disabled yourself has enabled: false and a null disabled_at.

disabled_reason'delivery_failures' | 'null' nullable required

Why Whop disabled this webhook. delivery_failures means every delivery failed for 3 days straight. null when disabled_at is null.

enabledboolean required

Whether this webhook endpoint is currently active and receiving events.

eventsstring[] required
idstring required

Webhook ID, prefixed hook_.

last_failure_atstring nullable required

When a delivery to this endpoint most recently failed after exhausting retries, as an ISO 8601 timestamp. null if no delivery has ever failed.

resource_idstring required

ID of the resource (account or app) this webhook is attached to.

testable_eventsstring[] required
urlstring required

Destination URL where webhook payloads are delivered via HTTP POST.

webhook_secretstring nullable required

Secret key used to sign webhook payloads for verification. Include this in your HMAC validation logic. Returned on the create response and to interactive dashboard sessions; null for API-key and OAuth callers on later reads.

Example response

{
  "api_version": "v1",
  "disabled_reason": "delivery_failures",
  "events": [
    "invoice.created"
  ],
  "testable_events": [
    "invoice.created"
  ]
}