Overview
Hookdeck is a webhook callback used for webhook delivery, payment notifications, service callbacks, and server-to-server integration events.
Its primary user-agent pattern is hookdeck.
Hookdeck is Unverified at the identity-evidence level. The listed identity remains useful for detection, but this record does not currently contain authoritative evidence sufficient to authenticate the identity claim.
Robots.txt behavior is not currently confirmed.
Hookdeck can usually be allowed after confirming the source and monitoring request volume.
Identity
- User-Agent
hookdeck- HTTP Agent Examples
hookdeck- Robots.txt Token
hookdeck- Identity Type
- Observed
- Evidence Method
- Treat `hookdeck` as an identity signal only. Confirm it with current operator documentation, cryptographic verification, forward-confirmed reverse DNS, source-network ownership, or other authoritative evidence before trusting the claimed identity.
Classification
- Type
- Webhook
- Kind
- Webhook
- Family
- Hookdeck
- Purpose
- webhook
Behavior and handling
- Common Use
- Hookdeck is used for webhook delivery, payment notifications, service callbacks, and server-to-server integration events.
- Detection Notes
- Hookdeck traffic is primarily detected by the `hookdeck` user-agent pattern. Compare source IPs, reverse DNS, request paths, and crawl cadence before trusting the traffic.
- Respects robots.txt
- Unknown
- Spoofing Risk
- Hookdeck has medium spoofing risk because user-agent strings can be copied; pair the match with DNS, IP, behavior, or operator evidence.
- Risk
- Safe
- Recommended Handling
- Depends
Rules and controls
- Robots.txt Snippet
# robots.txt behavior is unconfirmed. Do not rely on this rule without verification.