1
0
mirror of synced 2026-02-01 21:01:46 -05:00
Files
docs/data/reusables/webhooks/secret.md
2021-06-24 10:21:07 -04:00

2 lines
557 B
Markdown

Setting a webhook secret allows you to ensure that `POST` requests sent to the payload URL are from {% data variables.product.product_name %}. When you set a secret, you'll receive the {% ifversion fpt or ghes > 2.22 %}`X-Hub-Signature` and `X-Hub-Signature-256` headers{% elsif ghes < 3.0 %}`X-Hub-Signature` header{% elsif ghae %}`X-Hub-Signature-256` header{% endif %} in the webhook `POST` request. For more information on how to use a secret with a signature header to secure your webhook payloads, see "[Securing your webhooks](/webhooks/securing/)."