# Stripe webhook incident timeline
A privacy-aware checklist for diagnosing retries and out-of-order event delivery.
## Procedure
1. Record event ID, type, creation time, and delivery attempt.
2. Record the idempotency decision and resulting application state.
3. Compare ordering assumptions with stored object versions.
4. Keep secrets and full customer payloads out of logs.
5. Reconcile through an authoritative API read before remediation.
## Verification
Check the result against the source conversation, state remaining uncertainty, and record any case where this procedure should not be reused.
## Handoff
State what changed, what remains uncertain, and the next safe action.