I might be missing something, but is there anything currently implemented that verifies callback (POST) events actually originate from Docusign?
I might be missing something, but is there anything currently implemented that verifies callback (POST) events actually originate from Docusign?