Docs

Cash · API reference

Get Active Webhook

GET /api/v1/cash/webhooks/active
Try it ▸

Base URL https://dev-api.finco.lat · operationId getActiveWebhook

Retrieves the currently active webhook configuration for the authenticated client. Returns 404 if no active webhook is configured.

Authorization

ClientAuth API key in header X-Client-Id

Client API key (32-character hex) obtained from client creation process. Must be used with X-Signature and X-Timestamp headers for HMAC authentication.

HMACSignature API key in header X-Signature

HMAC-SHA256 signature generated using your api_secret. Format: HMAC-SHA256(timestamp + "." + requestBody, api_secret)

Timestamp API key in header X-Timestamp

Unix timestamp (seconds since epoch) when the request was created. Used in HMAC signature generation to prevent replay attacks.

Responses

200 Active webhook configuration found application/json
id integer

Webhook configuration ID

endpoint_url string (uri)

Active webhook endpoint URL

is_active boolean

Webhook active status

created_at string (date-time)

ISO 8601 timestamp of creation

updated_at string (date-time)

ISO 8601 timestamp of last update

401 Unauthorized - Invalid or missing authentication application/json
error string

Error message

404 No active webhook configuration found for this client application/json
code string
error_type string
message string
This request is in the Monato · Cash Postman collection.Download collection

Request

# SIGNATURE = HMAC-SHA256(TIMESTAMP + "." + request body, api_secret)
curl -X GET "https://dev-api.finco.lat/api/v1/cash/webhooks/active" \
  -H "X-Client-Id: $CLIENT_ID" \
  -H "X-Signature: $SIGNATURE" \
  -H "X-Timestamp: $TIMESTAMP"

Response

{
  "id": 456,
  "endpoint_url": "https://your-webhook-endpoint.com/webhooks",
  "is_active": true,
  "created_at": "2025-01-15T10:30:00Z",
  "updated_at": "2025-01-15T10:30:00Z"
}