Webhooks
Event types
Available webhook events, when they fire, and example payloads
Subscribe only to the events you need. See the list webhook event types endpoint for the full API reference.
Available events
Payload structure
Every webhook shares the same envelope:
{"event_type": "application_status_changed","timestamp": "2026-01-15T10:30:00Z","data": {"customer_id": "894ff74b-b8fb-46ab-97d6-f9ff3428b779",...}}
Event headers
Each webhook includes these headers:
| Header | Purpose |
|---|---|
X-IW-Event-ID | Unique identifier for the webhook |
X-IW-Event-Type | The event type that triggered the webhook |
X-IW-Signature | Hash-based Message Authentication Code (HMAC) signature for verification – see Security |
X-IW-Timestamp | Unix timestamp when the webhook was sent |