Webhooks
Receive signed completion events and inspect delivery attempts.
Webhooks notify your backend when background work finishes. Endpoints receive signed JSON with a stable event id, type, v1 API version, timestamp, and event data.
Completion and its outbox event commit together. Public HTTPS destinations are validated, private networks and redirects are rejected, and each attempt has a ten-second timeout. Deliveries retry over a bounded 24-hour window. Deduplicate by event ID and verify the raw body using the SDK webhook helper. Inspect deliveries at/api/developer/webhooks/deliveries and request manual redelivery with POST /api/developer/webhooks/deliveries/{id}/retry.
X-DeepSearch-Event: job.succeeded
X-DeepSearch-Delivery: evt_...
X-DeepSearch-Signature: t=1760000000,v1=<hmac_sha256>Verify X-DeepSearch-Signature by computing HMAC SHA-256 over {timestamp}.{raw_body} with the webhook secret shown once at creation time.