You can register custom http handlers;
WebAPI.Register("/create_account", context =>
{
// never reveal the secret key, this is used to prevent spoofing
string secret = context.Request.Queries["secret"];
if (secret != "A1B2C3D4E5F6") // this should really be stored in a config file...