Supplier portal

Upload one evidence file, link token in a header (public; multipart, one part named file)

The token travels in the X-Greentally-Share-Token header. Rules: the evidenceFiles section (409 SECTION_NOT_REQUESTED), a request open for answers (409 INVALID_STATE), one upload or delete at a time per link (409 UPLOAD_IN_PROGRESS), at most 20 files (409 TOO_MANY_FILES) of 10 MiB (413 FILE_TOO_LARGE), .pdf, .png, .jpg, .jpeg, .csv or .xlsx with matching content (415 UNSUPPORTED_MEDIA_TYPE), 503 OBJECT_STORE_UNAVAILABLE when no file store is configured or it fails.

post/shared/supplier-request/files

Headers

X-Greentally-Share-Tokenstring required

A public link's token, kept out of the URL (spec 2026-10-05). Missing, sent twice, malformed or unknown: the same 404 NOT_FOUND. Never logged, never echoed.

Response

The stored file

Changes

Changed in 1 of the 10 revisions of this API.1