API key types
Create only the key type required by the integration. Copy a new secret immediately and store it in a server-side secrets manager; the complete value may not be shown again.
Webhook endpoints
The Webhooks tab lets you create, update, enable, disable, and remove organization-scoped HTTPS endpoints. Anyway signs deliveries with its platform Ed25519 key; verification uses the published public key rather than a per-endpoint shared secret.Merchant API
Review the stable server API and its generated contract.
Webhook API
Verify signatures and implement idempotent fulfillment.