Skip to article
AlertsPremium · early access

Signed webhook notifications

Receive alert events at your HTTPS endpoint and verify their sender.

1 min read

This guide covers Premium features. Premium is in early access and cannot be bought yet.

Add the destination

  1. Open Alert channels and choose Webhook.
  2. Enter a public HTTPS endpoint that accepts JSON POST requests and returns a 2xx status.
  3. Select Add channel and store the signing secret shown once after creation.
  4. Use Send test and inspect delivery history to verify your endpoint.

Verify and deduplicate events

Cheapmonit signs the request body using the channel secret and HMAC-SHA256. The signature is sent in X-Cheapmonit-Signature. Verify the signature against the received body before accepting an event.

Retries carry the same event ID. Make processing idempotent so a retry does not trigger duplicate work. The saved destination is masked, and the secret is not shown again.

What webhooks do not include

An acknowledgement token is not sent through a webhook. Premium acknowledgement links are delivered through eligible email and Slack outage alerts. An alert webhook is not a public API for changing monitors.