> ## Documentation Index
> Fetch the complete documentation index at: https://cashfreepayments-d00050e9-theme-update.mintlify.site/llms.txt
> Use this file to discover all available pages before exploring further.

# Webhooks

> Webhooks are server callbacks to your server from Cashfree payments.

Webhooks are event-based notifications that are received when a specific event related to the e-sign verification occurs.

<Warning>
  Note: In rare cases, such as network retries, read timeouts, processing delays, or delivery failures, the same webhook might be sent more than once for the same event. To prevent unintended side effects, implement idempotency in your webhook handler to handle duplicate deliveries.
</Warning>

## Add webhooks

Add your webhook URL in our system for us to deliver webhook events.

Follow the instructions below to configure the webhook URL. Ensure to provide the publicly accessible HTTPS URL to your webhook endpoint.

1. Log in to the **[Merchant Dashboard](https://merchant.cashfree.com/merchants/)** and click **Developers**.
2. Click **Webhooks** listed under the **Secure ID** card.
3. Click **Add Webhook URL** in the **Webhook** screen.
4. In the **Add Webhook** popup, fill in the following information:
   * **Webhook URL** - Enter the URL in this field.
5. Click **Test & Add Webhook**.

<Frame caption="Add Webhook">
  <img src="https://mintlify.s3.us-west-1.amazonaws.com/cashfreepayments-d00050e9-theme-update/static/secure-id/webhook.png" />
</Frame>

***

## Webhook events

| Event                          | Description                                                            |
| :----------------------------- | :--------------------------------------------------------------------- |
| E\_SIGN\_VERIFICATION\_SUCCESS | You will receive this event when the e-sign verification is a success. |
| E\_SIGN\_VERIFICATION\_FAILURE | You will receive this event when the e-sign verification is a failure. |
| E\_SIGN\_VERIFICATION\_EXPIRED | You will receive this event when the e-sign verification is expired.   |

<CodeGroup>
  ```Text E_SIGN_VERIFICATION_SUCCESS
  {
    "signature":"signature", 
     "event_type":"ESIGN_VERIFICATION_SUCCESS", 
     "event_time":"2023-07-19 10:46:16",
     "version":"v1",
     "data": {
          "status": "SUCCESS",
          "reference_id": 32,
          "verification_id": "ABC00123",
          "document_id": 36,
          "signers": [
            {
              "name": "John Doe",
              "status": "SUCCESS",
              "is_notified": true
            },
            {
              "name": "Frank Kelvin",
              "status": "SUCCESS",
              "is_notified": true
            }
          ],
          "signed_doc_url": "SIGNED_DOC_URL"
      }
  }
  ```

  ```Text E_SIGN_VERIFICATION_FAILURE
  {
    "signature":"signature", 
     "event_type":"ESIGN_VERIFICATION_FAILURE", 
     "event_time":"2023-07-19 10:46:16",
     "version":"v1",
     "data": {
          "status": "FAILURE",
          "reference_id": 32,
          "verification_id": "ABC00123",
          "document_id": 36,
          "signers": [
            {
              "name": "John Doe",
              "status": "SUCCESS",
              "is_notified": true
            },
            {
              "name": "Frank Kelvin",
              "status": "FAILURE",
              "is_notified": false
            }
          ],
          "signed_doc_url": "SIGNED_DOC_URL"
      }
  }
  ```

  ```Text E_SIGN_VERIFICATION_EXPIRED
  {
    "signature":"signature", 
     "event_type":"ESIGN_VERIFICATION_EXPIRED", 
     "event_time":"2023-07-19 10:46:16",
     "version":"v1",
     "data": {
          "status": "EXPIRED",
          "reference_id": 32,
          "verification_id": "ABC00123",
          "document_id": 36,
          "signers": [
            {
              "name": "John Doe",
              "status": "EXPIRED",
              "is_notified": true
            },
            {
              "name": "Frank Kelvin",
              "status": "RECEVIED",
              "is_notified": false
            }
          ],
          "signed_doc_url": ""
      }
  }
  ```
</CodeGroup>

## Webhook payload fields

The webhook payload contains important metadata in its top-level fields.

| Field        | Type     | Description                                                                                    |
| ------------ | -------- | ---------------------------------------------------------------------------------------------- |
| `signature`  | `string` | A Base64-encoded HMAC-SHA256 signature of the payload, generated using a shared client secret. |
| `event_type` | `string` | Indicates the type of event that triggered the webhook.                                        |
| `event_time` | `string` | The UTC timestamp of when the event occurred, formatted in ISO 8601 (`YYYY-MM-DDTHH:MM:SSZ`).  |
| `version`    | `string` | Indicates the webhook format being used. Default version is "v1".                              |
| `data`       | `object` | Contains event-specific details related to this feature.                                       |

<Note>
  Verifying the signature is mandatory before processing any response. Refer to [Signature Verification](/api-reference/vrs/webhook-signature-verification#webhook-signature-verification) for more details.
</Note>
