Skip to content

webhooks.deliveries.list

One endpoint's delivery log

GET/webhooks/{id}/deliveries

Operation
webhooks.deliveries.list
MCP tool
webhooks_deliveries_list

Every delivery attempted to this endpoint, newest first: which event, how many attempts, what the receiver answered and how long it took. There is no retry operation — delivery is at-least-once with six automatic attempts, and a seventh on demand would be a different promise from the one the signature headers make.

curl 'https://api.gogoscreen.com/api/v1/webhooks/3f2b0c1a-9d4e-4a61-b8c2-000000000014/deliveries?limit=2' \
  -H "Authorization: Bearer $GOGOSCREEN_API_KEY"
A request to this operation.
json
{
  "data": [
    {
      "id": "3f2b0c1a-9d4e-4a61-b8c2-000000000015",
      "endpointId": "3f2b0c1a-9d4e-4a61-b8c2-000000000014",
      "eventId": "3f2b0c1a-9d4e-4a61-b8c2-000000000016",
      "eventType": "webhook.test",
      "attempt": 1,
      "status": "succeeded",
      "responseStatus": 200,
      "responseMs": 123,
      "lastError": null,
      "nextAttemptAt": null,
      "deliveredAt": "2026-09-21T11:17:00.000Z",
      "createdAt": "2026-09-21T11:17:00.000Z",
      "updatedAt": "2026-09-21T11:17:00.000Z"
    }
  ],
  "nextCursor": null
}
200 response, captured from a real call. Ids, timestamps and signed URLs are replaced; the shape is untouched.

At a glance

FactDetail
Scopeswebhooks:manage
Credentialsa signed in dashboard session or an API key.
Rate limit120 requests a minute per credential, in the write class.
IdempotencyNot applicable. This operation changes nothing.
MCP toolwebhooks_deliveries_list
Always setsCache-Control: private, no-store
AuditEvery call is written to the audit log as webhook_management.

Path parameters

NameTypeRequiredDescription
idstringRequiredThe resource id, from a create answer or the matching list.format: uuid

Query parameters

NameTypeRequiredDescription
limitintegerOptionalHow many rows to return (1–100).Default 201–100
cursorstringOptionalThe nextCursor of the previous page. Opaque: do not build one.max 512 characters

Response

Answers 200. Every answer also carries RateLimit-Limit, RateLimit-Remaining and RateLimit-Reset, and every error body carries a requestId.

200 OK

One endpoint's delivery log

200 OK body
NameTypeDescription
dataobject[]
13 fields inside data
NameTypeDescription
attemptnumberHow many times this delivery has been tried. Six at most.
createdAtstringformat: date-time
deliveredAtstring | nullformat: date-time
endpointIdstring
eventIdstringAlso sent as the Gogoscreen-Event-Id header. Dedupe on it: delivery is at-least-once.
eventTypestringone of: storyboard.succeeded, storyboard.failed, storyboard.cancelled, render.succeeded, render.failed, render.cancelled, marketing.source.succeeded, marketing.source.failed, marketing.source.cancelled, marketing.generation.succeeded, marketing.generation.failed, marketing.generation.cancelled, and 4 more
idstring
lastErrorstring | nullA status line or an error code. Never a response body beyond 256 characters.
nextAttemptAtstring | nullformat: date-time
responseMsnumber | null
responseStatusnumber | null
statusstringexhausted means all six attempts failed; failed means we stopped trying because the endpoint was switched off under it.one of: pending, succeeded, failed, exhausted
updatedAtstringformat: date-time
nextCursorstring | nullPass as cursor for the next page; null on the last page.
200 OK headers
HeaderMeaning
Cache-ControlAlways private, no-store.

Errors

Every refusal is { error: { code, message, details?, requestId } }. Branch on code, never on the sentence. The full catalogue is at Errors.

CodeStatusWhen it happensWhat to do
invalid_cursor400The cursor query parameter was not one this API minted, or it was edited, or it is older than a hundred years either way.Drop the cursor and start the walk from the first page. Pass back exactly the nextCursor string you were given and never build one by hand.
validation_failed400The merged path, query and body did not match the operation's schema. The schemas are strict, so an unknown field is a failure rather than something ignored, and a string carrying half of a character is refused before it can be stored.Read details.issues. Each entry carries a path, a message and a machine readable code. Fix every named field and send the request again; the same body always fails the same way.
unauthorized401No credential was presented, or the key is unknown, revoked or expired, or an X-API-Key header carried something that is not an API key. details.reason says which.Send Authorization: Bearer gsk_live_…. A revoked or expired key never starts working again, so issue a new one in the developer console. Put a dashboard session token in Authorization, never in X-API-Key.
forbidden_scope403The credential does not carry every scope the operation declares, or it is the wrong kind of credential for it. keys.* and assistant.* are user only and can never be called by a key.details.requiredScopes and details.missingScopes name what is missing. A key's scopes cannot be changed after it is issued, so create a new key with them. When details.allowedActors is present, no key can call this operation at all.
not_found404No resource of that id belongs to this account. A resource that belongs to somebody else answers 404 as well, never 403.Check the id. Do not treat this as a permissions problem.
rate_limited429The credential's per minute budget, the account's per minute ceiling, or a daily cap was exceeded. details.scope is minute, day or account, or global when the product's own daily cap on voice previews is spent.Wait the Retry-After seconds and retry. details.limit and details.resetAt say what was hit and when it reopens. The RateLimit-* headers on every answer let a client pace itself before it gets here.
internal_error500An unhandled failure inside this API. The original message is logged and never answered.Retry once, then quote requestId to support. A 5xx deletes the idempotency claim rather than storing it, so retrying under the same key is safe.