- Purpose
- React to assessment lifecycle changes in near real time.
- Prerequisites
- HTTPS endpoint
- Signing secret storage
- Architecture
- Subscription → signed POST → 2xx acknowledgement → retry on failure.
Configuration
| Timeout | 5s to acknowledge (illustrative) |
| Signature | HMAC-SHA256 over timestamp.body |
Implementation steps
- 01Register the subscription
- 02Verify the signature
- 03Acknowledge fast, process asynchronously
- 04Deduplicate on event id
Testing procedure
- Use the Webhook Simulator to deliver each event and inspect retries
Troubleshooting
Events stop arriving
Subscription auto-disabled after repeated failures; check delivery history.