Endpoint referenceWebhooks
Outbound event delivered to your webhook URL
Sent for the subscribed events with severity ≥ min_severity. Verify X-Proteside-Signature before trusting the body.
X-Proteside-Event?stringEvent type
X-Proteside-Delivery?stringDelivery id (retries reuse it)
Format
uuidX-Proteside-Signature?stringt=,v1=<hex hmac_sha256(secret, t + "." + rawBody)>
application/json- body
id*stringevt_<32 hex>
type*NotificationEventTypeValue in
"alert.created""alert.resolved""script.detected""script.authorized""script.blocked""integrity.changed""header.changed""report.ready""sdk.silent""policy.applied""test"created_at*stringFormat
date-timeorg_id*stringFormat
uuidstore_id?|Format
uuidseverity?stringValue in
"critical""high""medium""low""info"data*Event-specific: alert.* → { alert, store }; report.ready → { snapshot_id, pdf_url, summary_643, summary_1161, … }; script.* → { script, … }; test → { message }
Acknowledged. Any other status (or a timeout of 8 s) schedules a retry.
Example Requests
POST
/event