Signature verification is only one control. Limit request size, accept expected content types, reject unsupported event types, protect secrets, and avoid logging sensitive payloads by default. If events contain personal or payment-related information, define who can view them and when raw bodies are redacted or deleted.
Operational reporting should distinguish invalid deliveries, accepted events, processing failures, retries, dead-letter items, and reconciliation discoveries. Alert on a sustained backlog or an event that exceeds its processing target; do not page someone for every individual retry. A review screen should provide the event, linked business record, last error, attempt history, and safe next actions.