POST request to your HTTPS endpoint with the complaint details, so you can react immediately - pause a campaign, scrub a number, or open an internal ticket - instead of waiting to discover it in the console.
This is a webhook you receive, not a REST endpoint you call. It is activated manually by the Vobiz team - there is no self-serve API to register it yet. See UCC Management for the regulatory background on complaints and NDNC.
Activate the webhook
To turn on notifications, email your webhook URL and shared secret to ndnc@vobiz.ai, keeping piyush@vobiz.ai and goutham@vobiz.ai in CC.1
Prepare what you'll send
2
Email the Vobiz team
Send both values to ndnc@vobiz.ai, with piyush@vobiz.ai and goutham@vobiz.ai in CC.
Email ndnc@vobiz.ai (CC piyush, goutham)
Opens a pre-addressed email - just fill in your webhook URL and shared secret.
3
Wait for confirmation
The Vobiz team registers your endpoint and confirms once notifications are live.
How it works
When a complaint is processed against your account, Vobiz sends aPOST request to your webhook URL with the complaint details in JSON. All requests originate from a single, dedicated IP address.
Vobiz outbound IP:
15.207.141.89 - whitelist this on your firewall if your infrastructure requires it.Payload structure
Every webhookPOST contains a JSON body in this format:
Example payload
Field reference
Verifying the signature
Every request includes anX-VoBiz-Signature header - an HMAC-SHA256 signature computed over the request body using your shared secret. Always verify it before processing any payload.
How the signature is computed
Responding to a webhook
Your endpoint must return an HTTP2xx status (e.g. 200 OK) within 5 seconds to acknowledge receipt. If your processing takes longer, acknowledge immediately and handle the data asynchronously in the background.
Choosing a strong shared secret
Your shared secret is the key used to sign every notification. Keep it confidential - treat it like a password.- Use a randomly generated string of at least 32 characters.
- Generate one with
openssl rand -hex 32. - Do not reuse passwords or other credentials as the secret.
- Never expose it in client-side code or public repositories.
Setup checklist
1
Stand up an HTTPS endpoint
Accept
POST requests with a JSON body.2
Generate a strong shared secret
Run
openssl rand -hex 32.3
Send your details to Vobiz
Email your webhook URL and shared secret to ndnc@vobiz.ai, CC piyush@vobiz.ai and goutham@vobiz.ai.
4
Whitelist the origin IP
Allow
15.207.141.89 on your firewall if required.5
Verify signatures
Implement
X-VoBiz-Signature verification using your shared secret.6
Acknowledge quickly
Return HTTP
200 within 5 seconds of receiving a webhook.