Skip to main content
POST
/
webhook_endpoints
/
{id}
/
rotate_secret
Rotate the signing secret for a webhook endpoint
curl --request POST \
  --url https://api.arcuserp.com/v1/webhook_endpoints/{id}/rotate_secret \
  --header 'Authorization: Bearer <token>'
{
  "webhook_id": "3c90c3cc-0d44-4b50-8888-8dd25736052a",
  "secret": "<string>",
  "last4": "<string>",
  "rotated_at": "2023-11-07T05:31:56Z"
}

Documentation Index

Fetch the complete documentation index at: https://docs.arcuserp.com/llms.txt

Use this file to discover all available pages before exploring further.

Authorizations

Authorization
string
header
required

API key issued per entity via Settings > Developers > API Keys. Each key carries scopes (e.g. orders:read, products:write). Bearer token format: Authorization: Bearer ark_live_ent_Test keys use ark_test_ent_. Both are issued per entity
via Settings > Developers > API Keys.

Path Parameters

id
string<uuid>
required

Response

Rotated secret (returned ONCE -- store immediately)

webhook_id
string<uuid>
secret
string

New plaintext secret (whsec_). Store immediately.

last4
string

Last 4 hex chars of the new secret.

rotated_at
string<date-time>