feat.press
feat.press webhooks docs: HMAC signatures, idempotency, and entitlement lifecycle events for app products.
Header feat-signature: t=<unix_seconds>,v1=<hex>.
Header feat-event-id is the idempotency key.
Verify HMAC-SHA256 of ${t}.${rawBody}. Reject timestamps older than 300 seconds.
webhook.test, entitlement.activated, entitlement.renewed, entitlement.updated, entitlement.cancellation_scheduled, entitlement.past_due, entitlement.expired, entitlement.revoked.
Canonical URL: /developers/webhooks. Markdown: Accept: text/markdown or /developers/webhooks.md