Serve the authorized indexed renderer with access-checked, private no-store thumbnail bytes.
GET
/api/v1/files/thumb/{hash}
const url = 'https://example.com/api/v1/files/thumb/example?s=1&kind=media&v=2';const options = {method: 'GET', headers: {Authorization: 'Bearer <token>'}};
try { const response = await fetch(url, options); const data = await response.json(); console.log(data);} catch (error) { console.error(error);}curl --request GET \ --url 'https://example.com/api/v1/files/thumb/example?s=1&kind=media&v=2' \ --header 'Authorization: Bearer <token>'Route: /api/v1/files/thumb/{hash}. Inputs: hash, s, kind, v. Safe reads can use bounded retries.
Authorizations
Section titled “Authorizations”Parameters
Section titled “Parameters”Path Parameters
Section titled “Path Parameters”hash
required
string
Query Parameters
Section titled “Query Parameters”s
required
integer format: int32
kind
Public names for the renderer families carried by Files thumbnail URLs.
string
Renderer family. Omission keeps existing media URLs valid.
v
integer format: int32
Legacy v=1 and current v=2 URL identities are accepted; private thumbnail bytes are never cached.
Example
2Responses
Section titled “Responses”Media typeimage/webp
Media typeapplication/json
The standard API error response: { "error": { ... } }.
object
Example
{ "error": { "code": "bad_request" }}