Back to Browse

Webhook Tools MCP Server

by Rog0x
Developer ToolsModerate7.0MCP RegistryLocal
Free

Server data from the Official MCP Registry

Send, validate, debug webhooks for AI agents

About

Send, validate, debug webhooks for AI agents

Security Report

7.0
Moderate7.0Low Risk

Valid MCP server (2 strong, 4 medium validity signals). 3 known CVEs in dependencies (0 critical, 3 high severity) Package registry verified. Imported from the Official MCP Registry.

8 files analyzed · 4 issues found

Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.

Permissions Required

This plugin requests these system permissions. Most are normal for its category.

file_system

Check that this permission is expected for this type of plugin.

HTTP Network Access

Connects to external APIs or services over the internet.

How to Install

Add this to your MCP configuration file:

{
  "mcpServers": {
    "io-github-rog0x-webhook": {
      "args": [
        "-y",
        "@rog0x/mcp-webhook-tools"
      ],
      "command": "npx"
    }
  }
}

Documentation

View on GitHub

From the project's GitHub README.

mcp-webhook-tools

Webhook management and testing tools for AI agents, built on the Model Context Protocol.

Tools

webhook_send

Send a webhook payload to any URL with custom headers, body, and content-type. Supports automatic retry with exponential backoff and jitter. Returns detailed attempt records including status codes, timing, and errors.

webhook_validate

Validate webhook signatures using HMAC-SHA256 or HMAC-SHA1. Includes built-in patterns for:

  • Stripet=TIMESTAMP,v1=SIGNATURE format with timestamp tolerance
  • GitHubsha256=SIGNATURE or sha1=SIGNATURE format
  • Slackv0=SIGNATURE with v0:timestamp:body signing scheme

Uses timing-safe comparison to prevent timing attacks.

webhook_generate_payload

Generate realistic webhook payloads for testing. Supported events:

ServiceEvents
Stripepayment_intent.succeeded
GitHubpush, pull_request
Slackmessage

Each payload includes randomized IDs, current timestamps, and suggested headers. Use the overrides parameter to customize specific fields.

webhook_debug

Analyze a webhook request end-to-end:

  • Parse and categorize headers (content-type, signature, timestamp, delivery ID, custom)
  • Validate the request body (size, JSON validity, encoding)
  • Auto-detect the provider (Stripe, GitHub, Slack)
  • Verify the signature if a secret is provided
  • Check timestamp freshness (default 300s threshold)
  • Report all issues found

webhook_retry_schedule

Calculate a retry schedule with exponential backoff. Shows each attempt's delay, cumulative elapsed time, and scheduled ISO timestamp. Configurable base delay, max delay cap, multiplier, and jitter.

Setup

npm install
npm run build

MCP Configuration

Add to your MCP client config:

{
  "mcpServers": {
    "webhook-tools": {
      "command": "node",
      "args": ["path/to/mcp-webhook-tools/dist/index.js"]
    }
  }
}

License

MIT

Reviews

No reviews yet

Be the first to review this server!