WebhookEndpointCreated

  • When PayrollKit registered the endpoint.

  • Notification types sent to this endpoint.

  • PayrollKit webhook endpoint ID.

  • Opaque signing secret returned in the original registration response and an exact idempotent replay. Store the full value unchanged and use its UTF-8 bytes as the HMAC-SHA256 key. It is absent from list responses and URL-conflict errors.

  • The endpoint is registered and receives new deliveries.

  • Public HTTPS URL receiving notifications.