Proteside Docs
Endpoint referenceWebhooks

Outbound event delivered to your webhook URL

Sent for the subscribed events with severity ≥ min_severity. Verify X-Proteside-Signature before trusting the body.

Header Parameters

X-Proteside-Event?string

Event type

X-Proteside-Delivery?string

Delivery id (retries reuse it)

Formatuuid
X-Proteside-Signature?string

t=,v1=<hex hmac_sha256(secret, t + "." + rawBody)>

Request Body

application/json
  1. body
id*string

evt_<32 hex>

type*NotificationEventType
Value in"alert.created""alert.resolved""script.detected""script.authorized""script.blocked""integrity.changed""header.changed""report.ready""sdk.silent""policy.applied""test"
created_at*string
Formatdate-time
org_id*string
Formatuuid
store_id?|
Formatuuid
severity?string
Value in"critical""high""medium""low""info"
data*

Event-specific: alert.* → { alert, store }; report.ready → { snapshot_id, pdf_url, summary_643, summary_1161, … }; script.* → { script, … }; test → { message }

Response Body

Acknowledged. Any other status (or a timeout of 8 s) schedules a retry.

Example Requests

POST/event