Skip to main content
Cresora Commerce
Webhooks

Set Up a Webhook Endpoint

Register an HTTPS endpoint to receive Cresora webhook events.

Requirements

  • A publicly reachable HTTPS endpoint
  • Valid TLS certificate (self-signed not accepted)
  • Responds with 2xx within 10 seconds

Register in the Partner Portal

  1. Go to Developers → Webhooks and add an endpoint
  2. Enter your endpoint URL (e.g. https://app.example.com/webhooks/cresora)
  3. Select the events you want to receive (or choose "all events")
  4. Copy the signing secret — displayed once

Your endpoint is immediately active. Use Send test event on the endpoint to fire a webhook.test delivery and verify reachability — the test is a button you press, not something sent automatically on registration.

Local development

For local testing during development, use a tunnel service to expose your local server:

# ngrok (example — any tunnel service works)
ngrok http 3000
# Copy the https://<your-subdomain>.ngrok.io URL → use as your webhook endpoint in the Portal
💡Tip

See Testing webhooks locally for a full local development workflow including Cresora's replay tools.

Next: verify the signature

Every delivery includes an X-Cresora-Signature header. Always verify it before processing the event body.

Signature verification →