Reproduce the actual failure
Separate a signature error, wrong route, method mismatch, timeout, server error, and a successful delivery that fails to update application state.
Paddle · Next.js · Vercel · one existing route
A reachable URL is not proof of a safe billing event. This fixed milestone identifies the current failure, repairs one bounded route, verifies agreed sandbox events, and leaves a traceable handoff without asking for secrets in chat.
DELIVERY CONTROLS
Separate a signature error, wrong route, method mismatch, timeout, server error, and a successful delivery that fails to update application state.
Read the unmodified request body, verify Paddle-Signature with the destination-specific secret, and keep that secret inside the client-owned Vercel environment.
Acknowledge quickly, deduplicate by event_id, and use occurred_at where the existing data model must protect against out-of-order events.
Run selected sandbox subscription or transaction events through Paddle's simulator and return traceable deployment evidence and remaining risks.
THE $250 BOUNDARY
The title of a support request cannot diagnose the defect. The fixed scope covers one route and one evidence loop; anything broader is quoted only after the failure and current billing model are visible.
ACCEPTANCE EVIDENCE
The original symptom, reproduction path, and identified failure class.
Raw-body handling, destination-secret location, and signature-verification result without exposing the secret.
Duplicate and ordering behavior for the agreed event types, limited to the current data model.
Simulator evidence, deployed route, changed files, configuration checklist, and explicit remaining risks.
FIRST QUALIFICATION