---
title: "Update webhook subscription · Webhooks · COUNT Partner API"
description: "Updates callback URL, status, or signing secret for an existing subscription. PATCH /partners/webhooks/{uuid}"
canonical: "https://developers.getcount.com/reference/webhooks/update-webhook"
source: "https://developers.getcount.com/reference/webhooks/update-webhook"
---
[Webhooks](https://developers.getcount.com/reference/webhooks) / Update webhook subscription

# Update webhook subscription

PATCH `/partners/webhooks/{uuid}`

Updates callback URL, status, or signing secret for an existing subscription.

HMAC signature + Bearer access token

[Try this request](https://developers.getcount.com/tools/try-it?method=PATCH&path=%2Fpartners%2Fwebhooks%2F%7Buuid%7D&body=%7B%0A++%22status%22%3A+%22paused%22%0A%7D)

[Verify Webhook Deliveries guide](https://developers.getcount.com/guides/verify-webhooks) [Customers API](https://developers.getcount.com/reference/customers)

#### Path parameters

`uuid` uuid required

Subscription UUID.

#### Request body

`callbackUrl` string

New public HTTPS callback URL.

`status` enum

New subscription status.

One of: `active`, `paused`, `disabled`

`signingSecret` string

New signing secret, or null to clear the existing secret.

#### Responses

`200` Subscription updated. Returned under data.webhook.

`404` Subscription not found for this workspace.

`401` Missing or invalid HMAC signature, expired timestamp, or invalid Bearer token. [Troubleshoot](https://developers.getcount.com/getting-started/errors#error-401)

`403` The credential does not have access to this workspace or resource. [Troubleshoot](https://developers.getcount.com/getting-started/errors#error-403)

`429` Rate limit exceeded (100 requests per minute per clientId). Retry after the Retry-After header. [Troubleshoot](https://developers.getcount.com/getting-started/errors#error-429)

[Previous POST Create webhook subscription](https://developers.getcount.com/reference/webhooks/create-webhook) [Next DELETE Delete webhook subscription](https://developers.getcount.com/reference/webhooks/delete-webhook)

PATCH `https://api.getcount.com/partners/webhooks/{uuid}`

Request

```javascript
import crypto from 'node:crypto';

const BASE_URL = 'https://api.getcount.com';
const CLIENT_ID = process.env.COUNT_CLIENT_ID;
const CLIENT_SECRET = process.env.COUNT_CLIENT_SECRET;
const ACCESS_TOKEN = process.env.COUNT_ACCESS_TOKEN;

const method = 'PATCH';
const signingPath = '/webhooks/e0f1a2b3-c4d5-6789-ef01-234567890abc';
const timestamp = Math.floor(Date.now() / 1000).toString();
const body = {
  "status": "paused"
};
const bodyString = JSON.stringify(body);

const bodyHash = crypto.createHash('sha256').update(bodyString).digest('hex');
const baseString = `${method}:${signingPath}:${timestamp}:${bodyHash}`;
const signature = crypto.createHmac('sha256', CLIENT_SECRET).update(baseString).digest('hex');

const response = await fetch(`${BASE_URL}/partners/webhooks/e0f1a2b3-c4d5-6789-ef01-234567890abc`, {
  method,
  headers: {
    'x-client-id': CLIENT_ID,
    'x-timestamp': timestamp,
    'x-signature': signature,
    'Content-Type': 'application/json',
    Authorization: `Bearer ${ACCESS_TOKEN}`,
  },
  body: bodyString,
});

console.log(await response.json());
```

Response · 200

```json
{
  "status": "success",
  "data": {
    "webhook": {
      "uuid": "e0f1a2b3-c4d5-6789-ef01-234567890abc",
      "event": "customer.created",
      "callbackUrl": "https://webhook.site/your-unique-id",
      "status": "paused",
      "createdAt": "2026-03-01T09:00:00.000Z",
      "updatedAt": "2026-03-01T09:00:00.000Z"
    }
  }
}
```
