List Endpoints
const url = 'https://app.lionrapid.com/api/webhooks/projects/example/endpoints';const options = {method: 'GET'};
try { const response = await fetch(url, options); const data = await response.json(); console.log(data);} catch (error) { console.error(error);}curl --request GET \ --url https://app.lionrapid.com/api/webhooks/projects/example/endpointsParameters
Section titled “Parameters”Path Parameters
Section titled “Path Parameters”Responses
Section titled “Responses”Successful Response
object
An endpoint WITHOUT its HMAC secret. What listing returns.
THE SECRET IS SHOW-ONCE (#190 follow-up). It used to ride on every list call, which meant a
single leaked list response disclosed the signing key for every endpoint in the project. It is
now returned by CREATE and by ROTATE only, which is the convention this product already uses for
sk_ integration keys.
THE ORDER MATTERED: rotation landed FIRST, in the same change. Dropping it from list without a
way to mint a new one would have left an operator who lost the secret with delete-and-recreate
as their only recovery — discarding endpoint_uuid and, with it, the delivery observations
keyed on that uuid. Show-once without rotation trades a disclosure problem for a data-loss one.
WebhookEndpointResponse extends this with secret rather than repeating the fields, so the
list shape cannot silently regrow one: adding a field here adds it to both, and adding a secret
means editing the subclass on purpose.
object
Examplegenerated
{ "endpoints": [ { "endpoint_uuid": "example", "url": "example", "format": "example", "events": [ "example" ], "namespaces": [ "example" ], "active": true, "created_at": 1, "last_delivery_channel": "example", "last_delivery_outcome": "example", "last_delivery_at": 1, "last_delivery_ok_at": 1, "consecutive_delivery_failures": 1 } ]}Validation Error
object
object
Examplegenerated
{ "detail": [ { "loc": [ "example" ], "msg": "example", "type": "example" } ]}