Skip to content

HMAC signing for outbound approval webhooks #23

@olivrg

Description

@olivrg

Sign outbound approval webhook payloads with an HMAC (shared secret from helio.yaml) and
send it in a header so receivers can verify authenticity. Document the verification recipe.
Good first issue: contained to the webhook notifier; clear acceptance criteria.

Metadata

Metadata

Assignees

No one assigned

    Labels

    area:approvalsApproval workflows and channels - Slack, webhook relay, and the dashboard queue.enhancementNew feature or requestgood first issueGood for newcomers

    Type

    No type
    No fields configured for issues without a type.

    Projects

    Status
    In Progress

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions