Checkout webhooks
Listen for checkout.session.completed before fulfilling orders or granting access.
Webhook handlers should verify signatures and handle retries idempotently.
Related: Checkout Sessions API.
Original source: https://docs.stripe.com/checkout/fulfillment