Skip to navigation

Rotate an app destination's signing secret

Replaces the secret that signs transfer.offer webhooks and returns the new one once, in signingSecret. For 24 hours, until previousSecretExpiresAt, webhooks carry a second signature made with the previous secret (Talkif-Signature: t=…,v1=<new>,v1=<previous>), so your server can switch secrets without missing an offer.

Authentication

AuthorizationBearer

Pass a JWT access token or an API key (prefixed with tif_live_) as a Bearer token.

Path parameters

idstringRequiredformat: "uuid"
Destination ID

Response

Secret rotated; signingSecret holds the new secret and previousSecretExpiresAt says when the old one stops signing

configobject
createdAtdatetime
enabledboolean
idstringformat: "uuid"
kindstring

Destination kind: phone, available_humans (the people who are available for calls in the dashboard), or app (your own server)

namestring
updatedAtdatetime
previousSecretExpiresAtdatetime or nullOptional

App destinations, after a rotation: until this time webhooks are also signed with the previous secret (a second v1= in Talkif-Signature)

signingSecretstring or nullOptional

App destinations: the secret that signs the webhooks. Returned only when the destination is created or its secret rotated; store it, it is not shown again

signingSecretHintstring or nullOptional

App destinations: the last characters of the signing secret, to tell secrets apart

Errors

400
Bad Request Error
401
Unauthorized Error
403
Forbidden Error
404
Not Found Error
429
Too Many Requests Error
500
Internal Server Error