# Could usernames be included in user\_badge webhook payload?

**URL:** <https://meta.discourse.org/t/could-usernames-be-included-in-user-badge-webhook-payload/413448>\
**Category:** Support\
**Tags:** badges, webhooks\
**Created:** [September 28, 2026, 2:25am UTC](https://meta.discourse.org/t/could-usernames-be-included-in-user-badge-webhook-payload/413448 "2026-09-28T02:25:16Z")\
**Posts on this page:** 1\
**Showing post:** 7

<div class="post-metadata">

**Author:** ![burke](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/burke/32/4211_2.png) [@burke](https://meta.discourse.org/u/burke)\
**Post date:** [September 29, 2026, 4:31am UTC](https://meta.discourse.org/t/could-usernames-be-included-in-user-badge-webhook-payload/413448/7 "2026-09-29T04:31:48Z")

</div>

> [@itsbhanusharma](#):
>
> What’s the issue with an admin API key? This is supposed to be a background job ig?

Principal of Least Privilege. This external service will be running on another server and only needs read access to Discourse to do it’s job. The fewer master keys floating around across infrastructure, the better.

---

_[View the full topic](https://meta.discourse.org/t/could-usernames-be-included-in-user-badge-webhook-payload/413448)._
