group.updated

A group is renamed or its permission set replaced.

Ability to subscribegroup:view

When this fires

A group is renamed, or the permissions attached to it are replaced. Who is in the group is a separate event, group.members_synced, because the two changes have different consequences. A rename is cosmetic; changing the permission set silently re-scopes everyone already in the group.

Caveats

  • The permission set is not in the payload, so this event tells you a group changed without telling you into what. Read the group endpoint for the current permissions.
  • Permissions replace, they do not merge. An update that sends permissions sets them to exactly that list, so everyone in the group can gain and lose access in the same event.
  • code is immutable, so a rename never breaks a reference held elsewhere.
  • Membership is untouched here. See group.members_synced.

Related events

  • group.members_synced: who is in the group changed.
  • group.created: predecessor.
  • group.deleted: terminal state.

Header Parameters

SB-Signature*string

t=<unix seconds>,v1=<hex>: the HMAC-SHA256 of "<t>.<raw body>" under the endpoint's secret. Verify it before acting, and refuse a t more than 300 seconds from now. During a secret rotation a v0= signature under the previous secret may precede v1=.

SB-Event-Id*string

The event's ULID, bare. The envelope's id is the same ULID prefixed evt_, so strip the prefix before comparing. Deduplicate on it: a retry carries the same id.

SB-Event-Name*string

The event name, the same as the envelope's type.

Content-Type*string

Always application/json.

User-Agent*string

Always Subscriby-Webhooks/1.0.

Request Body

application/json

The signed JSON envelope posted to your endpoint.

TypeScript Definitions

Use the request body type in TypeScript.

The envelope every event is delivered in.

Response Body

Example Requests

POST/group.updated

How is this guide?