> ## Documentation Index
> Fetch the complete documentation index at: https://docs.hifi.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Update a webhook endpoint

> Update a webhook endpoint. Any provided fields replace the existing values.
When `subscriptions` is provided it fully replaces the current set of
subscribed event types. The signing secret is never returned or rotated by
this endpoint.




## OpenAPI

````yaml https://production.hifi.com/api/v3/openapi.json patch /v3/webhook-endpoints/{webhookEndpointId}
openapi: 3.0.0
info:
  title: Hifi API
  version: 3.0.0
  description: API documentation for HIFI
servers:
  - url: https://production.hifi.com
    description: Production server
  - url: https://sandbox.hifi.com
    description: Sandbox server
security:
  - bearerAuth: []
tags:
  - name: Common
    description: Common endpoints
  - name: User
    description: User endpoints
  - name: Counter Party
    description: Counter party endpoints
  - name: Crypto Transfer
    description: Crypto transfer and batch transfer endpoints
  - name: Wallet
    description: Wallet and wallet offer endpoints
  - name: External Account
    description: External bank account endpoints (under a counter party)
  - name: External Wallet
    description: External wallet endpoints (under a counter party)
  - name: External Card
    description: External card endpoints (under a counter party)
  - name: Token Swap
    description: Token swap endpoints
  - name: Bridge
    description: Bridge endpoints
  - name: Virtual Account
    description: Virtual account endpoints
  - name: Compliance
    description: Compliance and compliance link endpoints
  - name: Webhook Endpoint
    description: Webhook endpoint endpoints
  - name: File
    description: File upload endpoints
  - name: Onramp
    description: Onramp (fiat to crypto) endpoints
  - name: Offramp
    description: Offramp (crypto to fiat) endpoints
  - name: Orchestration Address
    description: Orchestration (liquidation) address endpoints
  - name: KYC Link
    description: Hosted and custom KYC/KYB link endpoints
  - name: Transfer Approval
    description: Transfer approval endpoints
  - name: Corridor
    description: Supported fiat/crypto transfer corridor endpoints
  - name: Migration
    description: v2-to-v3 ID mapping endpoints
paths:
  /v3/webhook-endpoints/{webhookEndpointId}:
    patch:
      tags:
        - Webhook Endpoint
      summary: Update a webhook endpoint
      description: >
        Update a webhook endpoint. Any provided fields replace the existing
        values.

        When `subscriptions` is provided it fully replaces the current set of

        subscribed event types. The signing secret is never returned or rotated
        by

        this endpoint.
      operationId: v3UpdateWebhookEndpoint
      parameters:
        - $ref: '#/components/parameters/WebhookEndpointIdPathParameter'
      requestBody:
        $ref: '#/components/requestBodies/UpdateWebhookEndpointBody'
      responses:
        '200':
          $ref: '#/components/responses/UpdateWebhookEndpointResponse'
        '400':
          $ref: '#/components/responses/BadRequestResponse'
        '401':
          $ref: '#/components/responses/UnauthorizedResponse'
        '404':
          $ref: '#/components/responses/NotFoundResponse'
        '500':
          $ref: '#/components/responses/InternalServerErrorResponse'
components:
  parameters:
    WebhookEndpointIdPathParameter:
      name: webhookEndpointId
      in: path
      required: true
      schema:
        type: string
      description: Public ID of the webhook endpoint (prefixed with `we_`)
      example: we_4mNpXwZ7bV1aLcs3Kf9dQ
  requestBodies:
    UpdateWebhookEndpointBody:
      required: true
      description: Fields to update on the webhook endpoint. All fields are optional.
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/WebhookEndpointUpdate'
          example:
            name: Production events (paused)
            status: PAUSED
            subscriptions:
              - USER_CREATED
              - OFFRAMP_UPDATED
  responses:
    UpdateWebhookEndpointResponse:
      description: Webhook endpoint updated successfully.
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/WebhookEndpointObject'
          example:
            id: we_4mNpXwZ7bV1aLcs3Kf9dQ
            name: Production events (paused)
            url: https://api.example.com/webhooks/hifi
            description: Receives all production event notifications
            subscriptions:
              - USER_CREATED
              - OFFRAMP_UPDATED
            status: PAUSED
            createdAt: '2026-07-01T10:30:00.000Z'
            updatedAt: '2026-07-01T12:00:00.000Z'
    BadRequestResponse:
      description: Bad Request — the request was malformed or failed validation.
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/ApiError'
          example:
            type: VALIDATION_ERROR
            message: One or more fields are invalid or missing.
            fields:
              - code: invalid_value
                message: Must be a valid email address
                field: email
    UnauthorizedResponse:
      description: Unauthorized
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/Unauthorized'
    NotFoundResponse:
      description: Not Found
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/NotFound'
    InternalServerErrorResponse:
      description: Internal Server Error
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/InternalServerError'
  schemas:
    WebhookEndpointUpdate:
      type: object
      description: |
        Fields for updating a webhook endpoint. All fields are optional. When
        `subscriptions` is provided it fully replaces the existing set.
      properties:
        name:
          type: string
          example: Production events
        url:
          type: string
          format: uri
          example: https://api.example.com/webhooks/hifi
        description:
          type: string
          example: Receives all production event notifications
        status:
          type: string
          description: Update the endpoint status.
          enum:
            - ACTIVE
            - PAUSED
          example: PAUSED
        subscriptions:
          type: array
          items:
            $ref: '#/components/schemas/WebhookEndpointEventType'
          example:
            - USER_CREATED
            - OFFRAMP_UPDATED
    WebhookEndpointObject:
      type: object
      description: A webhook endpoint.
      properties:
        id:
          type: string
          description: Public ID of the webhook endpoint (prefixed with `we_`).
          example: we_4mNpXwZ7bV1aLcs3Kf9dQ
        name:
          type: string
          example: Production events
        url:
          type: string
          format: uri
          example: https://api.example.com/webhooks/hifi
        description:
          type: string
          example: Receives all production event notifications
        subscriptions:
          type: array
          description: Event types this endpoint is subscribed to.
          items:
            $ref: '#/components/schemas/WebhookEndpointEventType'
          example:
            - USER_CREATED
            - OFFRAMP_UPDATED
        status:
          type: string
          enum:
            - ACTIVE
            - PAUSED
            - DISABLED
          example: ACTIVE
        createdAt:
          type: string
          format: date-time
          example: '2026-07-01T10:30:00.000Z'
        updatedAt:
          type: string
          format: date-time
          example: '2026-07-01T10:30:00.000Z'
    ApiError:
      type: object
      description: >-
        Standard v3 error shape, returned by validation failures and
        business-logic errors alike.
      properties:
        type:
          type: string
          description: >-
            Machine-readable error type, e.g. VALIDATION_ERROR,
            ACTION_NOT_ALLOWED, RESOURCE_CONFLICT.
          example: VALIDATION_ERROR
        message:
          type: string
          description: Human-readable error message.
          example: One or more fields are invalid or missing.
        fields:
          type: array
          description: >-
            Present on field-level validation errors. One entry per problem
            field.
          items:
            type: object
            properties:
              code:
                type: string
                description: Error code related to the field issue.
              message:
                type: string
                description: Error message for the specific issue.
              field:
                type: string
                description: The name of the field that has an issue.
    Unauthorized:
      type: object
      properties:
        type:
          type: string
          description: Unauthorized enum
          example: UNAUTHORIZED
        message:
          type: string
          description: Unauthorized message
          example: Authentication required
    NotFound:
      type: object
      properties:
        type:
          type: string
          example: RESOURCE_NOT_FOUND
          description: The error type, e.g., RESOURCE_NOT_FOUND
        message:
          type: string
          description: A descriptive error message
        fields:
          type: array
          description: List of specific field errors
          items:
            type: object
            properties:
              code:
                type: string
                description: Error code related to the field issue
              message:
                type: string
                description: Error message for the specific issue
              field:
                type: string
                description: The name of the field that has an issue
    InternalServerError:
      type: object
      properties:
        type:
          type: string
          example: INTERNAL_SERVER_ERROR
          description: Internal server error enum
        message:
          type: string
          example: An internal server error occurred
          description: Internal server error message
    WebhookEndpointEventType:
      type: string
      description: A webhook event type that an endpoint can subscribe to.
      enum:
        - USER_CREATED
        - KYC_SUBMITTED
        - KYC_UNDER_REVIEW
        - KYC_RFI
        - KYC_APPROVED
        - KYC_REJECTED
        - ACCOUNT_ACTIVE
        - ACCOUNT_INACTIVE
        - VIRTUAL_ACCOUNT_CREATED
        - VIRTUAL_ACCOUNT_UPDATED
        - ONRAMP_CREATED
        - ONRAMP_UPDATE
        - OFFRAMP_CREATED
        - OFFRAMP_UPDATED
      example: USER_CREATED
  securitySchemes:
    bearerAuth:
      type: http
      scheme: bearer
      bearerFormat: JWT

````