Skip to content
Français

GitlabSigningOptions

import type { GitlabSigningOptions } from "@elie-laloum/outpost";
  • signingTokenRequired
    TriggerSecret
    whsec_ signing token of the GitLab webhook (GitLab 19.0+) verifying webhook-signature, or a callback returning every currently accepted token (old and new during a rotation). An empty string throws at creation; a callback that fails or returns nothing, or a token without the whsec_ prefix, denies requests.
  • toleranceMsOptional
    number | undefined
    Accepted clock difference for the request timestamp, in milliseconds; defaults to 300000 (5 minutes). A value that is not a positive integer throws at creation.
export interface GitlabSigningOptions {
  /** `whsec_` signing token verifying `webhook-signature` (GitLab 19.0+). */
  readonly signingToken: TriggerSecret;
  readonly toleranceMs?: number;
}