Investigations: Create file upload

Prepare to attach an evidence file to an investigation. This endpoint does not accept the file. It returns a URL to send the file to and an identifier to pass to the create job endpoint afterwards.

Upload the file with an HTTP PUT to upload_url and send upload_headers exactly as returned by this endpoint. The URL grants access to that one file and stops working at expire_time; a file uploaded before that stays usable afterwards. Prepare one upload per file.

Start the investigation promptly after uploading. There is a limit on how many uploaded files you may hold without using them and starting an investigation from a file releases its slot. A file that no investigation references is discarded once it passes the service's retention window for unused uploads. A file an investigation does reference is kept with that investigation for as long as the investigation itself.

To use this endpoint, your organization must have access to the Adversary Investigation module.

This endpoint does not cost any credits to execute.

Recent Requests
Log in to see full request history
TimeStatusUser Agent
Retrieving recent requests…
LoadingLoading…
Body Params
string
enum
required

The media type of the file to upload. Send it bare: a type carrying parameters, such as a charset, is not accepted.

Allowed:
string

The original name of the file. Used only as display metadata on the investigation; it does not affect where the file is stored.

int64
required
≥ 1

The size of the file in bytes. The largest a single file may be is set by the service and can change; sending more returns an unprocessable entity response. The upload itself is limited independently, so understating this does not raise the limit.

Query Params
uuid
required

The ID of a Censys organization to associate the request with. See the Getting Started docs for more information.

Headers
uuid

The ID of a Censys organization to associate the request with. See the Getting Started docs for more information. Note: The header parameter is supported for atypical use cases; we recommend always providing this field via the query parameter.

string
enum
Defaults to application/json

Generated from available response content types

Allowed:
Responses

Language
Credentials
Bearer
LoadingLoading…
Response
Click Try It! to start a request and see the response here! Or choose an example:
application/json
application/problem+json