- Added ability to mark webhook header values as secret, preventing plain‑text exposure in the Web App, API responses, and logs.
- Secret headers are only transmitted to the webhook target and can be set via the Web App editor or Content Management API.
- Affects both the Web App and Content Management API.