> ## Documentation Index
> Fetch the complete documentation index at: https://docs.moderationapi.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Get the webhook signing secret

> Get the signing secret used to sign webhook deliveries for this project, creating one if none exists yet. Verify deliveries by comparing the `modapi-signature` header to HMAC-SHA256(raw request body, secret) hex-encoded.



## OpenAPI

````yaml get /webhook-secret
openapi: 3.1.0
info:
  title: Moderation API
  description: API for automated content moderation
  version: 1.1.0
servers:
  - url: https://api.moderationapi.com/v1
security: []
tags:
  - name: Actions
  - name: Queues
  - name: Webhooks
  - name: Wordlist
  - name: UserReports
  - name: Projects
  - name: Channels
  - name: Voice
    description: Real-time voice moderation over WebSocket.
externalDocs:
  url: https://docs.moderationapi.com
paths:
  /webhook-secret:
    get:
      tags:
        - Webhooks
      summary: Get the webhook signing secret
      description: >-
        Get the signing secret used to sign webhook deliveries for this project,
        creating one if none exists yet. Verify deliveries by comparing the
        `modapi-signature` header to HMAC-SHA256(raw request body, secret)
        hex-encoded.
      operationId: webhooks-publicGetSecret
      parameters: []
      responses:
        '200':
          description: Signing secret retrieved successfully
          content:
            application/json:
              schema:
                type: object
                properties:
                  secret:
                    type: string
                    description: >-
                      The signing secret for this project. Every webhook
                      delivery is signed with HMAC-SHA256 over the raw JSON
                      body, hex-encoded in the `modapi-signature` header.
                required:
                  - secret
                additionalProperties: false
        '401':
          description: Authorization not provided
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/error.UNAUTHORIZED'
      security:
        - Authorization: []
components:
  schemas:
    error.UNAUTHORIZED:
      type: object
      properties:
        message:
          type: string
          description: The error message
          example: Authorization not provided
        code:
          type: string
          description: The error code
          example: UNAUTHORIZED
        issues:
          description: An array of issues that were responsible for the error
          example: []
          type: array
          items:
            type: object
            properties:
              message:
                type: string
            required:
              - message
            additionalProperties: false
      required:
        - message
        - code
      additionalProperties: false
      title: Authorization not provided error (401)
      description: The error information
      example:
        code: UNAUTHORIZED
        message: Authorization not provided
        issues: []
  securitySchemes:
    Authorization:
      type: http
      scheme: bearer

````