Skip to main content
Fires once, right after a payment intent is created with POST /payments/payment-intent. The intent is pending at this point.

Body

The body carries metadata about the event, not the entity itself. Use entityId to fetch the current state with GET /payments/payment-intent/{paymentIntentId}, and dedupe on eventId since deliveries are at-least-once and unordered.

Authentication

Every delivery is signed with a slash-webhook-signature header. Verify it against Slash’s public key before trusting the payload; see Webhook Signing for the verification steps and a code sample. Respond with any 2xx within 10 seconds to acknowledge; anything else is retried.