---
title: "Changes to A callback that can be any capability URL (i.e., a URL that is infeasible to guess) that can be notified when an exchange step is performed. The URL SHOULD be a capability URL to ensure that it can only be used by parties with whom the URL is shared without a need for authorization tokens, periodic token refresh, nor client registration. If the suggested URL format with \"localCallbackId\" is used, then the \"localCallbackId\" value must express at least 128-bits of random information in order to ensure the full callback URL can be treated as a capability URL. It is also recommended that a new capability URL be created per exchange and only used by that exchange."
method: POST
path: "/callbacks/{localCallbackId}"
---

# Changes to A callback that can be any capability URL (i.e., a URL that is infeasible to guess) that can be notified when an exchange step is performed. The URL SHOULD be a capability URL to ensure that it can only be used by parties with whom the URL is shared without a need for authorization tokens, periodic token refresh, nor client registration. If the suggested URL format with "localCallbackId" is used, then the "localCallbackId" value must express at least 128-bits of random information in order to ensure the full callback URL can be treated as a capability URL. It is also recommended that a new capability URL be created per exchange and only used by that exchange.

`POST /callbacks/{localCallbackId}`

> Every recorded change to this endpoint, newest first.

## Timeline

Changed in 1 of 67 revisions.

- **2025-11-18** `4eeec5906405` — 1 info

## Changes

- **2025-11-18** `4eeec5906405` — 1 info
  - endpoint added

---

[Operation](https://skmtc.dev/w3c/apis/verifiable-credential-api-for-lifecycle-management/docs/callbacks/:localCallbackId/post.md) · [API](https://skmtc.dev/w3c/apis/verifiable-credential-api-for-lifecycle-management.md) · [Page](https://skmtc.dev/w3c/apis/verifiable-credential-api-for-lifecycle-management/changes/callbacks/:localCallbackId/post)
