[Treasury Prime SDK docs]: Treasury Prime intentionally sends a thin payload and does not guarantee delivery order. Always re-fetch the object via WebhookEvent fetch rather than trusting embedded state. Validate the webhook signature against the authorization header with your webhook user and secret. Subscribe to network_transfer.create and network_transfer.update for status changes, or poll GET on the transfer for a definitive answer.

Context: Never trust the webhook payload's embedded state.