Ask a Question
Back to All

Webhook security


What is the recommended way to secure the webhook integration?
The only way I can think of is the ACL based on IP filter. Is there anything else I can use?
If it's IP filtering only, then what are the possible IPs that webhook messages are being sent from (both sandbox and production)?

Oleg K