> ## Documentation Index
> Fetch the complete documentation index at: https://docs.trackplay.io/llms.txt
> Use this file to discover all available pages before exploring further.

# List webhook subscriptions

> Lists every webhook subscription in this workspace, along with the full list of event names you can subscribe to. `secret` is never included: see the note on the webhook object.

Requires a token with the `webhooks:write` scope. There is no read-only webhooks scope: listing subscriptions requires the same scope that manages them.



## OpenAPI

````yaml /api-reference/openapi.json get /webhooks
openapi: 3.1.0
info:
  title: TrackPlay API
  description: >-
    Send conversions and events to TrackPlay, and read them back. Authenticated
    with scoped tokens you mint in the dashboard.
  version: 1.0.0
servers:
  - url: https://app.trackplay.io/api/v1
    description: App API. Conversions, videos, webhooks.
  - url: https://e.trackplay.io
    description: Events API. High-volume event ingest.
security:
  - bearerAuth: []
tags:
  - name: Videos
    description: Create, read, update, and delete videos, and read workspace metadata.
  - name: Video settings
    description: Save a settings draft, publish it live, and read or restore past deploys.
  - name: Uploads
    description: >-
      Upload a source video file in one request or in resumable chunks, and poll
      its processing status.
  - name: Captions and chapters
    description: >-
      Manage caption tracks, chapter markers, AI-generated segments, and CTA
      cards on a video.
  - name: Playlists
    description: Group videos into a playlist or course, and manage the videos inside it.
  - name: Webhooks
    description: Subscribe a URL to TrackPlay lifecycle events and test deliveries.
  - name: Zapier
    description: >-
      The REST-hook endpoints Zapier calls to connect a workspace and manage
      triggers.
  - name: Analytics
    description: Read play, retention, event, and conversion analytics for a video.
  - name: Exports
    description: Queue and download bulk analytics exports.
  - name: Conversions
    description: Report a sale or a lead, from your own server or from a browser fallback.
  - name: Events
    description: Send a custom event tied to a viewer's session.
  - name: Identity
    description: Resolve a viewer's identity from the page, with no token required.
paths:
  /webhooks:
    get:
      tags:
        - Webhooks
      summary: List webhook subscriptions
      description: >-
        Lists every webhook subscription in this workspace, along with the full
        list of event names you can subscribe to. `secret` is never included:
        see the note on the webhook object.


        Requires a token with the `webhooks:write` scope. There is no read-only
        webhooks scope: listing subscriptions requires the same scope that
        manages them.
      operationId: listWebhooks
      responses:
        '200':
          description: The subscriptions and the supported event catalogue.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/WebhookListResponse'
        '401':
          description: >-
            `AUTH_REQUIRED`: no token sent. `INVALID_TOKEN`: the token is
            invalid, expired, or revoked.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ApiError'
        '403':
          description: '`INSUFFICIENT_SCOPE`: the token does not carry `webhooks:write`.'
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ApiError'
        '429':
          description: Rate limited. 60 requests per minute per token.
components:
  schemas:
    WebhookListResponse:
      type: object
      properties:
        webhooks:
          type: array
          items:
            $ref: '#/components/schemas/Webhook'
        supported_events:
          type: array
          items:
            type: string
          description: Every event name you can subscribe to.
          examples:
            - - video.created
              - video.uploaded
              - video.settings.deployed
              - video.deleted
              - video.viewed
              - conversion
              - conversion.created
              - play
              - play.milestone
              - cta.clicked
              - ended
              - lead.captured
              - lesson.completed
              - playlist.ended
              - lead_form.submitted
              - quiz.answered
              - split_test.winner_declared
    ApiError:
      type: object
      description: The error shape the app API returns on a failed read or export.
      properties:
        error:
          type: object
          properties:
            code:
              type: string
              description: >-
                A stable error code, e.g. `INSUFFICIENT_SCOPE`,
                `VIDEO_NOT_FOUND`, `EXPORT_NOT_FOUND`.
            message:
              type: string
              description: What went wrong, in plain English.
    Webhook:
      type: object
      description: >-
        A webhook subscription. `secret` is never included in any response,
        including the response to the call that created it: the value is
        write-only. If you did not set your own `secret` on creation, save the
        one you sent, because a server-generated secret cannot be read back
        later.
      properties:
        id:
          type: integer
        workspace_id:
          type: integer
        name:
          type: string
        url:
          type: string
          format: uri
        events:
          type: array
          items:
            type: string
        is_active:
          type: boolean
        last_success_at:
          type:
            - string
            - 'null'
          format: date-time
        last_failure_at:
          type:
            - string
            - 'null'
          format: date-time
        failure_count:
          type: integer
        created_at:
          type: string
          format: date-time
        updated_at:
          type: string
          format: date-time
  securitySchemes:
    bearerAuth:
      type: http
      scheme: bearer
      description: >-
        A scoped token minted in **Settings → API tokens**. Send it as
        `Authorization: Bearer tplt_…` or `X-API-Key: tplt_…`.

````

This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.