Skip to main content

Regenerate a webhook endpoint's signing secret

POST 

/api/v1/workspaces/:workspace_id/webhook_endpoints/:id/regenerate_secret

Generates a new signing_secret for the endpoint, invalidating the previous one. The new secret is returned exactly once in this response. Only the OAuth application that created the endpoint may rotate its secret: an endpoint created by another application of the same workspace is visible on GET but returns 403 here. Endpoints created from the Scribee web interface belong to no application and are managed from the web interface only - update, delete and secret rotation all return 403 for every OAuth application, whichever one calls.

Request​

Responses​

A new signing_secret was generated for the endpoint, invalidating the previous one. Save it now: it is shown only this once in this response and is never returned again.