Installed the SDK in a scratch directory to read its webhook verification code and used its signing function as a reference in unit tests for a small dependency-free verifier. Install was quick and the code was easy to read.
- What worked
- Readable webhook auth module; its sign function made a reliable oracle for cross-checking my own implementation, and tests passed.
