Test Okta webhooks
Okta sends webhooks for eligible System Log events through Event Hooks, such as user lifecycle changes, user sign-ins, and changes to Okta objects. Capture them on a free webhooks.cc endpoint to see exactly what Okta sends, then replay deliveries or forward them to your local handler.
No credit card · 50 requests/day free · or get a guest URL without an account
Prefer a walkthrough? Read the local webhook testing guide.
How to test Okta webhooks
- 1
Create a webhook endpoint
Sign in free with GitHub, Google, or email to create a persistent endpoint — or grab an instant guest URL at webhooks.cc without an account.
- 2
Point Okta at your URL
Paste the endpoint URL into Okta: Admin Console → Workflow → Event Hooks → Create Event Hook, or the Event Hooks API (POST /api/v1/eventHooks).
- 3
Inspect what arrives
Each delivery appears live in the dashboard with method, headers, body, query parameters, and source IP.
- 4
Forward to localhost or assert in CI
Run whk tunnel <port> to forward webhooks to a local server, or use the TypeScript SDK to wait for and assert on deliveries in tests.
Okta webhook authentication
| Auth header | authorization |
|---|---|
| Algorithm | Shared token |
| Verification in webhooks.cc | Capture deliveries to inspect raw signature material |
Okta does not sign payloads. It sends a static secret in a header you name (usually Authorization, for example a Basic auth value). A one-time verification GET carries x-okta-verification-challenge; return its value in a JSON verification field.
New to signature verification? Read the webhook signature verification guide.
Everything in one place
- Live dashboard — see deliveries the moment they arrive
- Forward to localhost with whk tunnel
- Replay any captured request to any URL
- Mock responses with custom status, headers, and body
- TypeScript SDK assertions for CI
- MCP server for AI coding agents
Okta webhook questions
More providers
Your Okta webhook URL is seconds away
Sign up free, create an endpoint, and point Okta at it.
No credit card · or try without an account