Webhook Toolkit is answering right now. Last checked 15 min ago. 293 installs a week from npm. It exposes 10 tools. Last commit 18 Sep 2026.
Webhook URLs for AI agents: receive, wait for, replay, sign and verify webhooks (Stripe, GitHub…).
Today is the operative word: we check Webhook Toolkit every 15 minutes and re-read its code on every release. Watch it and you find out the day that stops being true.
Endpoint below is the one we actually reach during checks — not the one copied from a README. Last verified 15 min ago.
claude mcp add webhook-toolkit --transport http https://webhook-toolkit.com/mcp
{
"mcpServers": {
"webhook-toolkit": {
"url": "https://webhook-toolkit.com/mcp"
}
}
}
[mcp_servers.webhook-toolkit]
url = "https://webhook-toolkit.com/mcp"
{
"mcpServers": {
"webhook-toolkit": {
"url": "https://webhook-toolkit.com/mcp"
}
}
}
{
"mcpServers": {
"webhook-toolkit": {
"url": "https://webhook-toolkit.com/mcp"
}
}
}
This one needs environment variables set before it will start:
WEBHOOK_TOOLKIT_KEY (Optional webhook-toolkit.com API key (whk_…): permanent URLs, listing URLs, AI explanations.).
The author declared them in the registry entry; get the values from the project itself.
Read directly from the server with tools/list, grouped by what they act on.
If a tool disappears, we record the date.
create_webhook_url
get_webhook_request
list_webhook_requests
list_webhook_urls
set_webhook_response
explain_webhook_request
replay_webhook_request
sign_webhook_payload
verify_webhook_signature
wait_for_webhook
| URL | Transport | State | Latency | Checked |
|---|---|---|---|---|
| https://webhook-toolkit.com/mcp | streamable-http | answering | 329 ms | 15 min ago |
Signed receipts and Cedar policies for AI agent tool calls. Claude Code hooks, MCP gateway.
Real email and SMS for AI agents — send mail, receive verification codes, drive a real inbox.
Email for AI agents. Create mailboxes, send/receive emails, and auto-extract verification codes.
Webhook signature-verification audit. Stripe, GitHub, Shopify, Twilio +17. Local. Deterministic.
Scans code for hardcoded secrets (AWS, Stripe, GitHub, JWTs) before an AI agent commits it.
MCP server bridging GitHub webhooks via Cloudflare Worker for real-time event streaming
Scan GitHub repos and profiles for malware before cloning — commit-pinned risk verdicts for agents
Live coding-bounty deal-flow from verified-escrow GitHub bounties for AI agents.
Answers built from our own checks of this server.