Skip to main content
Agents & MCP

Register a signed HTTPS Financial Action or workflow lifecycle webhook

POST /agent-execution/webhooks

Contract

Webhook secrets are returned once and stored encrypted; production endpoints require separate approval and are SSRF screened. Supported events include governed Financial Action lifecycle events plus workflow.invoked, workflow.awaiting_review, workflow.completed, workflow.cancelled and workflow.failed.

Authentication
Bearer credential required
Required scope
agent:execution:webhooks
Status
Published

Code examples

These examples compose a request only. Public reference pages never transmit your credential or execute the operation.

curl

curl -X POST \
  -H "Authorization: Bearer $FINANCEGPT_API_KEY" \
  -H "Accept: application/json"
  "https://financegpt.dev/api/v2/agent-execution/webhooks"

javascript

const response = await fetch("https:\/\/financegpt.dev\/api\/v2\/agent-execution\/webhooks", {
  method: "POST",
  headers: {
    Authorization: `Bearer ${FINANCEGPT_API_KEY}`,
    Accept: 'application/json',
  },
});
const data = await response.json();

python

import json
import os
import requests

response = requests.request(
    'POST',
    'https://financegpt.dev/api/v2/agent-execution/webhooks',
    headers={
        'Authorization': 'Bearer ' + os.environ['FINANCEGPT_API_KEY'],
        'Accept': 'application/json',
    },
)
response.raise_for_status()
print(response.json())

php

<?php
$ch = curl_init('https://financegpt.dev/api/v2/agent-execution/webhooks');
curl_setopt_array($ch, [
    CURLOPT_CUSTOMREQUEST => 'POST',
    CURLOPT_RETURNTRANSFER => true,
    CURLOPT_HTTPHEADER => [
        'Authorization: Bearer '.getenv('FINANCEGPT_API_KEY'),
        'Accept: application/json',
    ],
]);
$response = curl_exec($ch);
curl_close($ch);
echo $response;

Responses

Status Description
201 Webhook registered
422 Invalid or unsafe endpoint

Authority boundary

A developer credential proves application identity and permits only its scopes. It does not grant model promotion, policy override, QLM rebinding, or Financial Actions execution authority unless those separate controls are satisfied.

agent:execution:webhooks

Machine-readable sources