Quick Reference
Configuration
Configure System Webhook Events in the OFAuth Dashboard:- Set your webhook endpoint URL
- Choose which events to subscribe to
- Review delivery history and failures
Connections Guide
Learn how to store and manage connection IDs
Error Handling
Handle delivery failures and retries
Event References
Connection Events
connection.created, connection.updated, connection.expired, and connection.disconnectedSystem Events
rules.updated and Dynamic Rules change notificationsDelivery & Retries
- Retry policy: exponential backoff with up to 5 attempts
- Timeout: 10 seconds per request
- Ordering: in-order delivery per connection ID
2xx response within 10 seconds.
Signature Verification
System Webhook Events uses Svix signing. Every delivery includes these headers:- Read the raw request body before parsing JSON.
- Pass the raw body,
svix-id,svix-timestamp, andsvix-signatureheaders to a Svix webhook verifier. - Use the signing secret from the OFAuth Dashboard.
- Use
svix-idas the delivery ID for deduplication.
Implementation Checklist
- Parse the
application/jsonbody - Verify the signature before processing
- Route the event by
type - Return
2xxwithin 10 seconds - Make handlers idempotent by storing processed
svix-idvalues
Troubleshooting
Delivery failed
Delivery failed
Ensure your endpoint is publicly reachable and returns a
2xx response within 10 seconds.Events are not arriving
Events are not arriving
Verify the endpoint URL and selected subscriptions in the Dashboard.
Signature verification is failing
Signature verification is failing
Use the raw request body and a Svix webhook verifier. Confirm that the endpoint uses the signing secret shown in the Dashboard and reads the
svix-id, svix-timestamp, and svix-signature headers.Next Steps
Connection Events
Connection lifecycle payloads and examples
System Events
rules.updated deliveries and Dynamic Rules guidance