Skip to content
Proud to collaborate with Microsoft for Startups

lovable.project.wire-payments ​

Create the payment webhook that grants a Lovable app's end-users access

Create the webhook endpoint that turns a payment into app access.

Returns a public URL to paste into the payment provider's webhook settings. From then on a completed payment reaches the engine, is signature-verified, and moves the paying end-user into an access group — with no endpoint, no server, and no provider secret in the Lovable-generated code.

The provider's API key stays in the Orkestia connection vault; the app only ever holds the public PKCE client key.

Today only stripe is wired. AbacatePay reaches the same outcome through abacatepay.webhook.receive, but its grant composition is not written yet, so it is deliberately not offered here rather than silently creating a redirect that grants nothing.

Overview ​

PropertyValue
Workflow typeDag
LibraryApp-lovable
Version1.0

Input Schema ​

FieldTypeRequiredDefaultDescription
actorstringNo—Member or agent wiring payments.
organization_uuiduuidYes—Organization that owns the app and the connection.
identity_app_uuiduuidYes—Identity app whose end-users are entitled by payment.
providerstringNo—Payment provider; 'stripe' (default) is the only one wired.
define_group_slugstringNo—Access group to create for paying users, e.g. pro.
define_group_namestringNo—Display name for that group.
redirect_namestringNo—Name for the webhook redirect.
redirect_descriptionstringNo—Description for the webhook redirect.
extra_configurationjsonNo—Extra hook redirect configuration keys.

Output Schema ​

FieldTypeRequiredDefaultDescription
organization_uuiduuidYes——
webhook_urlstringNo——
redirect_uuidstringNo——
signed_uuidstringNo——
grant_workflow_typestringNo——
group_createdbooleanNo——
next_stepstringNo——
define_groupjsonNo——
create_redirectjsonNo——
actorstringNo——
identity_app_uuiduuidNo——
providerstringNo——
define_group_slugstringNo——
define_group_namestringNo——
redirect_namestringNo——
redirect_descriptionstringNo——
extra_configurationjsonNo——
failure_reasonstringNo——
failure_typestringNo——
failed_actionstringNo——
failed_at_statestringNo——
failed_stepjsonNo——
failed_layerintegerNo——
errorstringNo——
error_typestringNo——

DAG Layers ​

#LayerStepsCompensation
1groupidentity.end-user.group.define—
2webhookhook.create-redirect—

Execution Flow ​

Sub-workflows ​

Sub-workflowStep name
identity.end-user.group.definedefine_group
hook.create-redirectcreate_redirect

API Usage ​

bash
POST /api/workflows/start
Content-Type: application/json

{
  "workflow_type": "lovable.project.wire-payments",
  "initial_data": {
    "organization_uuid": "value",
    "identity_app_uuid": "value"
  }
}