Webhook

Telegram Update callback

Configure the Telegram interface, its bot token, public webhook and TELEGRAM_WEBHOOK_SECRET_TOKEN. Telegram sends a JSON Update and the exact X-Telegram-Bot-Api-Secret-Token header. An AgentOS bearer key does not replace this callback secret.

Outside APP_ENV=development, missing or incorrect header values return 403. With a header present but no server secret configured, validation can fail with 500. Development mode bypasses this secret check.

A recognized message or edited message returns {"status":"processing"} and runs in an in-process background task. Other updates can return ignored, and repeated update IDs can return duplicate. These acknowledgements do not establish completed delivery or restart durability. The generated empty request schema does not describe the required Update payload.

POST/telegram/webhook

Response Body

application/json

curl --request POST 'https://example.com/telegram/webhook'
{  "status": "string"}