Feature

Request Signing

HMAC or cryptographically signed requests.

24 providers 140 APIs 24 declared variants

Callers sign requests with a shared secret or private key so the provider can verify integrity and origin. Common on payments, trading, and webhook-verification surfaces.

24 API providers on the APIs.io network offer request signing. The highest-rated are fal, Ashby, Fintecture, dLocal, Replicate.

Providers

Ranked by API Evangelist rating — Exemplar and Strong are expanded by default.

Exemplar 2 Complete, well-documented, and agent-ready
Strong 8 Solid coverage with minor gaps
Developing 6 Usable, with meaningful gaps to close
Thin 6 Limited public surface area
Emerging 2 Early or largely undocumented

What Providers Actually Declared

This feature is a canonical term. These are the free-text strings providers wrote in their own apis.yml that map onto it.

22 outbound webhook event types — HMAC-SHA256 signed via Ashby-Signature header — with automatic retries and related-webhook ordering guaranteesAWS SigV4 authentication and full IAM integration including ABAC via resource tagsAsynchronous lookup results delivered via webhooks with signed payloads and RR-Request-ID correlationFiles input via signed URLsHMAC-SHA256 authentication (X-RISKIFIED-HMAC-SHA256 + X-RISKIFIED-SHOP-DOMAIN headers) with versioned Accept headerHMAC-SHA256 authentication with API_KEY and nonce/timestamp signingHMAC-SHA256 signed webhooks via Linear-Signature headerHMAC-SHA256 webhook signing via /webhooks/secret with X-Onfleet-Signature headerHMAC-SHA512 Signature AuthenticationOutbound webhooks with HMAC-SHA256 signed payloads (`Certn-Signature`) and replay protectionPayments API authenticated with V2-HMAC-SHA256 signature (X-Login, X-Trans-Key, X-Date)RSA and HMAC AuthenticationRecruiting Webhooks with HMAC SHA-256 signature verificationSHA-256 request signing using per-merchant secureKeyVerification media (documents, photos, videos) retrieval via signed URLsWebhook callbacks for queue completion with HMAC signature verificationWebhook events via POST with HMAC-SHA256 signature verificationWebhook events with signature verification and an in-console Event SimulatorWebhook notifications with signed payloads, retry policy, and exponential backoffWebhook signature verification via public keyWebhooks API for real-time listing change events with PKI-signed payloads and exponential-backoff retriesWebhooks V2 with replay-from-history and RSA-SHA512 signature verificationWebhooks for asynchronous order, charge, subscription, and payout events with signature verification and configurable retriesWebhooks with signature verification

Scroll for all 24