> ## Documentation Index
> Fetch the complete documentation index at: https://open.manus.ai/docs/llms.txt
> Use this file to discover all available pages before exploring further.

# webhook.publicKey

> Gets the public key for verifying webhook signatures. See the [Webhook Security](https://open.manus.ai/docs/v2/webhooks-security) guide for verification examples.

<sup>Questions or issues? Contact us at [api-support@manus.ai](mailto:api-support@manus.ai).</sup>

<Tip>
  **Auth:** API Key only — not available with OAuth tokens.
</Tip>

<Note>
  Cache the public key on your server. It rarely changes, and fetching it on every webhook request adds unnecessary latency. See the [Webhook Security](https://open.manus.ai/docs/v2/webhooks-security) guide for verification examples.
</Note>


## OpenAPI

````yaml GET /v2/webhook.publicKey
openapi: 3.1.0
info:
  title: Manus OpenAPI v2
  description: >-
    API for integrating Manus into your workflow. All responses are wrapped with
    {"ok": true, "request_id": "...", ...} for success and {"ok": false,
    "request_id": "...", "error": {"code": "...", "message": "..."}} for errors.
  version: 2.0.0
servers:
  - url: https://api.manus.ai
security:
  - ApiKeyAuth: []
paths:
  /v2/webhook.publicKey:
    get:
      summary: GetWebhookPublicKey
      description: >-
        Gets the public key for verifying webhook signatures. See the [Webhook
        Security](https://open.manus.ai/docs/v2/webhooks-security) guide for
        verification examples.
      operationId: openapi.v2.OpenapiV2Service.GetWebhookPublicKey
      parameters:
        - name: x-manus-api-key
          in: header
          required: true
          schema:
            type: string
          description: >-
            API key for authentication. This endpoint does not support OAuth2
            tokens. See
            [Authentication](https://open.manus.ai/docs/v2/authentication).
      responses:
        '200':
          description: Public key retrieved successfully.
          content:
            application/json:
              schema:
                type: object
                properties:
                  ok:
                    type: boolean
                    example: true
                    description: Whether the request was successful.
                  request_id:
                    type: string
                    description: Unique identifier for this API request.
                  public_key:
                    type: string
                    description: >-
                      PEM-encoded RSA public key for verifying webhook
                      signatures.
                  algorithm:
                    type: string
                    description: Signature algorithm. Always "RSA-SHA256".
                    example: RSA-SHA256
        4XX:
          description: Error response.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ErrorResponse'
      security: []
components:
  schemas:
    ErrorResponse:
      type: object
      description: Standard error response format returned when a request fails.
      properties:
        ok:
          type: boolean
          example: false
          description: Always false for error responses.
        request_id:
          type: string
          description: >-
            Unique identifier for this API request, useful for debugging with
            support.
        error:
          type: object
          description: Error details.
          properties:
            code:
              type: string
              description: >-
                Machine-readable error code (e.g., "invalid_argument",
                "not_found", "permission_denied", "rate_limited").
            message:
              type: string
              description: Human-readable error description explaining what went wrong.
  securitySchemes:
    ApiKeyAuth:
      type: apiKey
      in: header
      name: x-manus-api-key

````