Xoolink integration recipes beta
Four paths connect Xoolink to an organization's usual stack. Slack and Yousign are native connections. HubSpot and Notion use a controlled recipe: read-only Xoolink API, signed webhook, then a server-side or automation relay.
A recipe is not direct access to your target account. Never paste a HubSpot or Notion key into Xoolink. Keep each platform's secrets in the vault of your server or automation relay.
Slack · native connection
- In the organization's admin dashboard, click View connection.
- Choose Connect Slack, authorize Xoolink and select a channel.
- Use Test in the destination list to confirm delivery.
Xoolink does not keep the Slack OAuth token. Only the channel destination is encrypted. See the Slack and webhooks guide.
HubSpot · CRM recipe
- Click Prepare the recipe. Xoolink preselects the three read permissions and the six public cycles.
- Create the Xoolink key and put it in your relay's vault. It is used to re-read the current public state after a signal.
- Expose an HTTPS URL that verifies the Xoolink signature, deduplicates on
X-Xoolink-Event-Id, then writes to HubSpot with your own HubSpot integration's permissions. - Paste only that HTTPS URL into Xoolink. Keep the standard JSON format.
data.idKeep this Xoolink identifier in a dedicated property so you update the same record instead of duplicating it.
type · title · status · urlAdd the summary, expertise, date, location and last update depending on the CRM object you choose.
need.created · need.updated · event.created · event.updatedUpsert by external identifier, then re-read the resource through the API if your mapping needs the full current state.
need.withdrawn · event.cancelledMove the record to withdrawn or cancelled. Do not recreate content that is no longer public.
Notion · watch-list recipe
- Click Prepare the recipe, then create a time-limited Xoolink key.
- In Notion, prepare a database shared with your integration, containing at minimum a unique Xoolink identifier.
- Your relay verifies the webhook, looks up a row by external identifier, then creates or updates that row.
- Paste the relay's HTTPS URL into the Xoolink webhook form and send a test.
Xoolink ID · Name · Type · Status · URLThe identifier prevents duplicates; the URL keeps the Xoolink page as the source of truth.
Expertise · Date · Location · UpdatedThese fields make a filterable watch list without copying any private data.
Yousign · native connection
Yousign comes in after a Xoolink pact has been consented to and sealed. The admin connects the organization's account; signers then receive their personal link. See the electronic signature guide.
Order of going live
- Start with a test environment and a 30- or 90-day Xoolink key.
- Verify the signature before parsing or writing the data.
- Answer
2xxquickly, process in a queue afterwards, and make every write idempotent. - Test creation, update, withdrawal and cancellation before switching on the real flow.
- Watch the Xoolink delivery log and rotate any exposed secret.