create_person_webhook_endpoint
Register a personal outbound webhook endpoint
All MCP toolsWrite
Register an HTTPS endpoint to receive the person's OWN notification events as signed POST deliveries (at-least-once, unordered, thin id/ref payloads — re-fetch detail through the authenticated read tools). The response includes the mw_whsec_* signing secret ONCE — store it now; it can never be read again (rotate_person_webhook_endpoint_secret mints a new one). URLs must be public https (SSRF-guarded) and unique per person.
Input schema
{
"type": "object",
"properties": {
"personId": {
"type": "string",
"format": "uuid",
"pattern": "^([0-9a-fA-F]{8}-[0-9a-fA-F]{4}-[1-8][0-9a-fA-F]{3}-[89abAB][0-9a-fA-F]{3}-[0-9a-fA-F]{12}|00000000-0000-0000-0000-000000000000|ffffffff-ffff-ffff-ffff-ffffffffffff)$",
"description": "The person whose endpoint this is (persons.id — self)."
},
"url": {
"type": "string",
"minLength": 1,
"maxLength": 2048,
"description": "Delivery target — a well-formed public https URL."
},
"kinds": {
"description": "Candidate-receivable notification kinds to deliver (non-empty subset; a staff-only kind is refused). Omit to subscribe to ALL candidate-receivable kinds, including future ones. The delivery fan-out pins events to the person's own notifications regardless.",
"minItems": 1,
"type": "array",
"items": {
"type": "string",
"enum": [
"profile_view",
"recommendation",
"approval_pending",
"message_received",
"proposal_received",
"mutual_interest",
"interview_schedule_updated",
"candidacy_stage_changed",
"approval_decided",
"job_published",
"webhook_endpoint_disabled",
"counter_request_received",
"counter_request_resolved",
"interview_completed",
"interview_result_recorded",
"interview_reminder",
"interview_debrief_reminder",
"interview_slot_response_nudge",
"material_disclosure_opened",
"material_request_received",
"material_request_answered",
"material_request_resolved",
"agreement_recorded",
"interview_cancelled"
]
}
}
},
"required": [
"personId",
"url"
],
"$schema": "http://json-schema.org/draft-07/schema#"
}Output schema
{
"type": "object",
"properties": {
"endpoint": {
"type": "object",
"properties": {
"id": {
"type": "string",
"format": "uuid",
"pattern": "^([0-9a-fA-F]{8}-[0-9a-fA-F]{4}-[1-8][0-9a-fA-F]{3}-[89abAB][0-9a-fA-F]{3}-[0-9a-fA-F]{12}|00000000-0000-0000-0000-000000000000|ffffffff-ffff-ffff-ffff-ffffffffffff)$",
"description": "The endpoint id (person_webhook_endpoints.id)."
},
"personId": {
"type": "string",
"format": "uuid",
"pattern": "^([0-9a-fA-F]{8}-[0-9a-fA-F]{4}-[1-8][0-9a-fA-F]{3}-[89abAB][0-9a-fA-F]{3}-[0-9a-fA-F]{12}|00000000-0000-0000-0000-000000000000|ffffffff-ffff-ffff-ffff-ffffffffffff)$",
"description": "The owning person (persons.id) — always the caller's own."
},
"url": {
"type": "string",
"format": "uri",
"description": "The delivery target (https, public address — SSRF-guarded); unique per person."
},
"kinds": {
"anyOf": [
{
"minItems": 1,
"type": "array",
"items": {
"type": "string",
"enum": [
"profile_view",
"recommendation",
"approval_pending",
"message_received",
"proposal_received",
"mutual_interest",
"interview_schedule_updated",
"candidacy_stage_changed",
"approval_decided",
"job_published",
"webhook_endpoint_disabled",
"counter_request_received",
"counter_request_resolved",
"interview_completed",
"interview_result_recorded",
"interview_reminder",
"interview_debrief_reminder",
"interview_slot_response_nudge",
"material_disclosure_opened",
"material_request_received",
"material_request_answered",
"material_request_resolved",
"agreement_recorded",
"interview_cancelled"
]
},
"description": "Non-empty subset of the candidate-receivable notification kinds to deliver; null/omitted = all candidate-receivable kinds."
},
{
"type": "null"
}
],
"description": "Subscribed candidate-receivable notification kinds; null = all candidate-receivable kinds."
},
"active": {
"type": "boolean",
"description": "Whether deliveries fan out to this endpoint (auto-disable clears it)."
},
"autoDisabledAt": {
"anyOf": [
{
"type": "string",
"format": "date-time",
"pattern": "^(?:(?:\\d\\d[2468][048]|\\d\\d[13579][26]|\\d\\d0[48]|[02468][048]00|[13579][26]00)-02-29|\\d{4}-(?:(?:0[13578]|1[02])-(?:0[1-9]|[12]\\d|3[01])|(?:0[469]|11)-(?:0[1-9]|[12]\\d|30)|(?:02)-(?:0[1-9]|1\\d|2[0-8])))T(?:(?:[01]\\d|2[0-3]):[0-5]\\d(?::[0-5]\\d(?:\\.\\d+)?)?(?:Z))$"
},
{
"type": "null"
}
],
"description": "Set when consecutive permanent failures crossed the auto-disable threshold; re-enable with update_person_webhook_endpoint { active: true }."
},
"consecutiveFailures": {
"type": "integer",
"minimum": 0,
"maximum": 9007199254740991,
"description": "Consecutive permanent delivery failures since the last success."
},
"createdAt": {
"type": "string",
"format": "date-time",
"pattern": "^(?:(?:\\d\\d[2468][048]|\\d\\d[13579][26]|\\d\\d0[48]|[02468][048]00|[13579][26]00)-02-29|\\d{4}-(?:(?:0[13578]|1[02])-(?:0[1-9]|[12]\\d|3[01])|(?:0[469]|11)-(?:0[1-9]|[12]\\d|30)|(?:02)-(?:0[1-9]|1\\d|2[0-8])))T(?:(?:[01]\\d|2[0-3]):[0-5]\\d(?::[0-5]\\d(?:\\.\\d+)?)?(?:Z))$",
"description": "When the endpoint was registered (ISO 8601, UTC)."
}
},
"required": [
"id",
"personId",
"url",
"kinds",
"active",
"autoDisabledAt",
"consecutiveFailures",
"createdAt"
],
"additionalProperties": false,
"description": "One person-axis outbound-webhook endpoint: the person's own egress configuration, secret NEVER included — it is shown once at create/rotate time only."
},
"secret": {
"type": "string",
"pattern": "^mw_whsec_[A-Za-z0-9_-]+$",
"description": "The endpoint's signing secret (mw_whsec_*) — shown ONCE in this response; store it now. Verify deliveries by recomputing HMAC-SHA256 over '<t>.<body>' with it."
}
},
"required": [
"endpoint",
"secret"
],
"$schema": "http://json-schema.org/draft-07/schema#",
"additionalProperties": false
}