How do I connect Hushdesk to Zapier?+
Start a Zap with the Webhooks by Zapier trigger and choose Catch Hook, then copy its URL. In Hushdesk, open Settings, Apps, Webhooks, paste the URL with a signing secret and click Connect. Create or close a test ticket so Zapier sees a real event, then add your actions.
Does Hushdesk have its own Zapier app?+
Not yet. Hushdesk connects to Zapier through Webhooks by Zapier, which receives the same ticket events a dedicated app would: ticket created, customer replied and ticket closed. The same webhook works with Make, n8n and your own server, so you are not tied to one automation tool.
Which events can Hushdesk send to Zapier, Make or n8n?+
Hushdesk sends three ticket events: ticket.created when a new ticket arrives on any channel, customer.replied when the customer writes again, and ticket.closed when an agent closes it. A ping event is sent once when you connect. Every event goes to the same URL, so branch on the event field.
How do I verify a Hushdesk webhook signature?+
Compute an HMAC-SHA256 of the raw request body using your signing secret, write it as lowercase hex, put sha256= in front, and compare it with the X-Hushdesk-Signature header using a constant-time comparison. Use the raw bytes before any JSON parsing, because re-serialising the JSON changes the signature.
Which header carries the Hushdesk webhook signature?+
The signature is in the X-Hushdesk-Signature header, in the form sha256= followed by a hex HMAC-SHA256 of the body. The X-Hushdesk-Event header repeats the event name, and the User-Agent is Hushdesk-Webhooks/1, which helps when you filter logs or firewall rules on your side.
What happens if my webhook endpoint is down?+
Hushdesk makes one delivery attempt per event and does not retry it today. The result, delivered or failed with the status code, is shown on the Webhooks card in Settings, Apps. Keep your endpoint fast and reliable, or point it at Zapier, Make or n8n, which receive the event for you.
How quickly must my webhook endpoint respond?+
Within 5 seconds. Hushdesk waits up to five seconds for an answer, and any 2xx status counts as delivered. Redirects are not followed, so a 301 or 302 counts as a failure. Return 200 or 204 straight away and do slow work, such as calling other APIs, afterwards in a queue.
Can Hushdesk send webhooks to an http or localhost address?+
No. The endpoint must use https and resolve to a public address. Hushdesk refuses private and internal network addresses, and checks again at every delivery in case the host’s DNS changed after you saved it. For local testing, expose your server through an https tunnel or use an automation tool’s webhook URL.
Can webhooks create or update tickets in Hushdesk?+
No. Hushdesk webhooks are outgoing only: they tell other tools what happened to a ticket. To change tickets automatically inside Hushdesk, such as tagging, assigning or setting priority, use automation rules, which run on the same events and act on the ticket directly.
Is the Hushdesk webhooks integration secure?+
Yes. Every request is signed with your secret so you can reject anything that did not come from Hushdesk. The secret must be at least 16 characters, is encrypted at rest and is never shown again. Only owners and admins can connect webhooks, and every change is written to the audit log.