Skip to content

Implement Middleware to Validate Authenticity of All Webhooks #2

Description

@clefayomide

Is your feature request related to a problem? Please describe.
Currently, there is no middleware to validate the authenticity of incoming webhooks. This could lead to security risks as unauthorized requests may be processed.

Describe the solution you'd like
Implement a middleware to validate the signature of all incoming webhook requests. The middleware should:

  • Extract and validate the signature.

  • Allow or block processing based on the result.

  • Log validation results for audit purposes.

  • Follow the strategy pattern for future extensibility.

Describe alternatives you've considered
None, Without this feature, webhooks are processed without signature validation, posing security risks.

Additional context
This middleware will improve security by ensuring that only authenticated webhooks are processed.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

Labels

enhancementNew feature or request

Projects

No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions