How to secure RSPS voting callbacks

Published by: RuneTopic Team   |   August 20, 2026   |   Developer Guides


Callback endpoints should use HTTPS, validate credentials, reject malformed player names and prevent the same vote from being rewarded twice. Return a clear success response only after the reward has been recorded.

Do not trust URL parameters alone

Use the credentials shown in the RuneTopic integration panel and compare secrets with a timing-safe function. Restrict database permissions and keep credentials outside the public web root.

Recent Viewers:
D
K
H
L
G
RuneTopic Settings
Color Scheme
Light
Dark
Layout Mode
Fluid
Detached
Sidebar Size
Default
Condensed
Hover View