Development Proxy
In production, your app runs inside the Whop iframe behind a reverse proxy that injects the x-whop-user-token header on every request. Every Whop app verifies that token via whopsdk.verifyUserToken, so you need the same header on localhost to test against real users. The dev proxy injects it for you.
Pick your setup
Two installation modes. Both ship the same proxy binary; the difference is whether the proxy spawns your dev server or runs alongside it.
NextJS / Javascript app
Standalone mode (other frameworks)
Proxy Command Options
The proxy can be configured using the following command line options:

