Dev.to
7/19/2026

The original title is: "Hookbox: a self-hosted webhook inbox with HMAC verification and replay"
Original: Hookbox: a self-hosted webhook inbox with HMAC verification and replay
Short summary
Hookbox is a self-hosted webhook inbox that captures HTTP requests with optional HMAC verification and replay capabilities. It supports any HTTP method, redacts sensitive headers, includes SSRF guards on replay targets, and deploys via Docker Compose. The author also mentions other projects (Seal, Pulseboard, Dropkit) and is seeking remote work.
- •Self-hosted webhook inbox with HMAC verification and event replay
- •Docker Compose one-command deploy, SSRF guards, cookie/auth header redaction
- •Useful for debugging Stripe, GitHub, or custom webhook integrations
Generated with AI, which can make mistakes.
Is this a good recommendation for you?



