Authenticatie
Dit eindpunt is openbaar. Het vereist geen inloggegevens en geen organisatie; het is wat onze eigen marketingwebsite en AI-antwoordmachines uitlezen.
Dit eindpunt vereist geen organisatie-id. Uw sleutel identificeert al de organisatie waartoe deze behoort, en het antwoord is hierop afgestemd.
Probeer het
Vervang alles tussen punthaakjes door uw eigen waarden en de sleutelplaatsvervanger door een sleutel uit uw dashboard.
curl -X POST https://api.zinndigital.com/v1/webhooks/paypalIngelogd? De API-console in je dashboard vult je echte organisatie-id en je eigen sleutel in, en voert het verzoek uit tegen de live API zodat je de daadwerkelijke respons kunt zien. Open dit eindpunt in de API-console
Details
**Unauthenticated by design** — PayPal holds no Zinn® credential, so its asymmetric transmission signature *is* the authentication, verified server-side against the configured webhook id via PayPal's `verify-webhook-signature` API over the raw body + `PAYPAL-*` transmission headers. This is the only path that turns a confirmed vaulted payment token into a chargeable mandate (`VAULT.PAYMENT-TOKEN.CREATED`) and the only path that settles an async capture (`PAYMENT.CAPTURE.COMPLETED`); neither may be asserted by a browser. Replays are expected and converge. An event type Zinn® does not handle is acknowledged with 200 (a non-2xx would make PayPal retry it).
Reactie
| Naam | Type | Verplicht | Wat dit is |
|---|---|---|---|
status | string<handled, ignored, duplicate> | Ja | `handled` — acted on. `ignored` — a valid event of a type Zinn® does not consume. `duplicate` — already processed; Stripe may stop redelivering. |
Fouten die dit eindpunt kan retourneren
400