Skip to main content
PUT
Create or update the Demo Launches webhook

Authorizations

Authorization
string
header
required

Personal API token, sent as Authorization: Bearer <SANDYWP_API_KEY>. Obtain one from the dashboard account menu (API keys), sandywp auth login, or POST /api/account/tokens. A missing or invalid token returns 401 auth_required. Scoped OAuth tokens are limited to the Imports family and GET /api/account/me; see the top-level conventions.

Headers

X-SandyWP-Workspace
string

Selects which of the caller's workspaces to act in, for accounts belonging to more than one (legacy alias: X-SandyWP-Organization). Defaults to the caller's own personal workspace when omitted. Every id in this API (sandboxes, Templates, repositories) is scoped to a single workspace, so this header changes which set of resources is visible.

Body

application/json
url
string<uri>
required

Callback URL. May be empty only when disabling an existing endpoint.

Maximum string length: 2048
Example:

"https://hooks.example.com/sandywp/demo-ready"

enabled
boolean
required

Whether new demo.ready deliveries should be queued.

rotateSecret
boolean
default:false

Replace the signing secret and return the new value once.

Response

The saved webhook and optional one-time plaintext secret.

webhook
object
required

Workspace-scoped Demo Launches webhook configuration. Secret material is never included.

secret
string | null
required

Plaintext HMAC secret. Present only on create or rotation.