# Self-Service Request Approved

Delivered when a self-service request has been approved — by a portal admin (`manual` mode), the tenant's `POST /decision` call (`webhook` mode), or automatically server-side (`automatic` mode).
Fires for **all verification modes** so the tenant has an audit trail of every decision. Fetch the resulting status, offer id, and merged claims via `GET /b2b/v1/self-service/requests/{requestId}`.

Endpoint: POST self_service.request.approved
Version: 1.2.0

## Header parameters:

  - `X-Webhook-Event` (string, required)
    Event type (same as `event` field in body).

  - `X-Webhook-Signature` (string, required)
    HMAC-SHA256 hex digest of the raw request body. Verifying is **recommended** — see the [Webhooks guide](../guides/webhooks.md#verifying-signatures).

  - `X-Webhook-Timestamp` (string, required)
    Unix timestamp of the event.

  - `X-Webhook-Signature-Previous` (string)
    Present during the 24-hour secret rotation grace period — signature with the previous secret.

## Request fields (application/json):

  - `event` (string, required)
    Event type identifier (same value as the `X-Webhook-Event` header).

  - `tenant_id` (string, required)
    Your organization ID.
    Example: 550e8400-e29b-41d4-a716-446655440000

  - `timestamp` (string, required)
    When the event occurred (RFC 3339 UTC).
    Example: 2026-05-16T10:00:00Z

  - `data` (object, required)

  - `data.request_id` (string, required)
    ID of the self-service request. Fetch the full snapshot (status, captured claims, extra fields, identification result, offer id, admin-claims schema) via `GET /b2b/v1/self-service/requests/{requestId}`.
    Example: 8a3b1f2e-9c4d-4e5a-b1c2-d3e4f5a6b7c8

