.png)
HiBob Integration Guide
Integrate HiBob workforce, employment, time-off, payroll-related, and organizational data with enterprise systems through REST APIs, selected webhook events, and Martini workflows.
HiBob integration options at a glance
HiBob’s primary integration mechanism is its REST API, which provides access to People, Employment, Work, Time off, Payroll, and Company structure data according to account configuration and service-user permissions. HiBob also supports webhook-style notifications for selected events, although coverage is not universal. Martini can consume these APIs, receive supported notifications through an inbound API endpoint, and orchestrate scheduled synchronization when events are unavailable. Service-user credentials and tokens can be stored securely in Martini environment configuration. Large transfers may require pagination, workflow-level batching, controlled concurrency, and rate-limit-aware retries.
Common HiBob integration patterns
Common HiBob data objects used in integrations
Authentication and security considerations
Service-user authentication
HiBob API access generally uses a service-user ID and service-user token through HTTP Basic Authentication. Exact requirements vary by API product and endpoint.
Least privilege
Assign only the People, Employment, Work, Time off, Payroll, or organizational permissions required by each workflow. Use separate service users for distinct integration responsibilities where practical.
Credential and data protection
- Store HiBob credentials in Martini environment configuration or secrets management.
- Do not embed tokens in workflows, API definitions, logs, or source-controlled mappings.
- Minimize employee, compensation, payroll, and absence fields sent to downstream systems.
- Restrict access to Martini APIs and protect sensitive payloads in operational logging.
Operational considerations for HiBob integrations
Pagination and rate limits
HiBob list endpoints may be paginated. Implement endpoint-specific page handling, controlled concurrency, and backoff for HTTP 429 responses.
State and idempotency
Store synchronization checkpoints outside transient workflow payloads. Use stable HiBob identifiers for upserts and tolerate duplicate webhook notifications.
Webhook reconciliation
Treat a webhook as a signal to retrieve the current resource rather than assuming its payload is complete. Use scheduled reconciliation for unsupported or missed events.
Schema and date handling
Account-specific fields and organizational structures can change. Validate required values, tolerate optional fields, and normalize timestamps, time zones, and date-only values explicitly.
Testing and error handling
Test with representative People, Employment, Work, Time off, and organizational data. Separate retryable transport and rate-limit errors from authorization, validation, and business-state failures.
Why use Martini instead of scripts or point-to-point integrations?
Orchestrate more than one API call
Martini coordinates HiBob retrieval, pagination, enrichment, transformation, business rules, and downstream writes in maintainable workflows rather than scattering logic across scripts.
Support event and scheduled models
Martini can receive selected HiBob webhook notifications while also providing scheduled REST synchronization and reconciliation for events without webhook coverage.
Centralize security and operations
Environment configuration, secrets management, validation, retries, checkpoints, and operational logging provide consistent controls for sensitive HR integrations.
Create reusable integration assets
Martini can expose controlled APIs and reusable workflows so multiple applications consume governed HiBob data without creating separate point-to-point implementations.