---
title: "Get attachments"
method: GET
path: "/ats/attachments"
tags: ["Unified ATS API"]
---

# Get attachments

`GET /ats/attachments`

Retrieve all attachments.

These attachments are already synced, so this endpoint never calls the ATS and the files sit in the destination you configured.

The on-demand alternatives call the ATS and return a `data_url` we host: [get candidate attachments](/ats/v1/get-candidates-candidate-id-attachments) for every file of one candidate, [get application attachments](/ats/v1/get-applications-application-id-attachments) for the files of one application.

Top level filters use AND, while individual filters use OR if they accept multiple arguments. That means filters will be resolved like this: `(id IN ids) AND (remote_id IN remote_ids)`

## Query parameters

- `cursor` string — An optional cursor string used for pagination. This can be retrieved from the `next` property of the previous page response.
- `page_size` integer — The number of results to return per page. Maximum is 250.
- `updated_after` string, date-time — Filter the entries based on the modification date in format `YYYY-MM-DDTHH:mm:ss.sssZ`. Returns records where either the record itself **OR** its nested data has been updated since this timestamp, even if the record's own `changed_at` field remains unchanged. If you want to track entry deletion, also set the `include_deleted=true` query parameter, because otherwise, deleted entries will be hidden. For more details, see [Understanding changed_at vs updated_after Behavior](https://docs.kombo.dev/ats/getting-started/fetching-data#understanding-changed_at-vs-updated_after-behavior). For this endpoint, only changes to the returned record itself are considered.
- `include_deleted` 'true' | 'false' — By default, deleted entries are not returned. Use the `include_deleted` query param to include deleted entries too.
- `ignore_unsupported_filters` 'true' | 'false' — When set to `true`, filters targeting fields not supported by this integration will be ignored instead of filtering out all results.
- `ids` string — Filter by a comma-separated list of IDs such as `222k7eCGyUdgt2JWZDNnkDs3,B5DVmypWENfU6eMe6gYDyJG3`.
- `remote_ids` string — Filter by a comma-separated list of remote IDs.
- `candidate_ids` string — Filter by a comma-separated list of candidate IDs. Prefer filtering by `candidate_ids` when you want every file a candidate has, across all their applications.
- `application_ids` string — Filter by a comma-separated list of application IDs. We will only return attachments that the ATS filed under _any_ of these applications, which excludes the files that hang off the candidate directly.

## Headers

- `X-Integration-Id` string, required

## Response `200`

GET /ats/attachments Positive response

- GetAtsAttachmentsPositiveResponse
  - `status` 'success', required
  - `data` object, required
    - `next` string, nullable, required — Cursor string that can be passed to the `cursor` query parameter to get the next page. If this is `null`, then there are no more pages.
    - `results` object[], required
      - `id` string, required — The globally unique ID of this object generated by Kombo. We recommend using this as a stable primary key for syncing.
      - `remote_id` string, required — The raw ID of the object in the remote system. We don't recommend using this as a primary key on your side as it might sometimes be compromised of multiple identifiers if a system doesn't provide a clear primary key.
      - `candidate_id` string, required — The Kombo ID of the candidate this attachment belongs to. The ID can be used to retrieve the candidate from the `get candidates` endpoint.
      - `application_id` string, nullable, required — The Kombo ID of the application this attachment belongs to, when the ATS files it under one specific application. Many systems attach files to the candidate instead, in which case this is `null`.
      - `type` 'CV' | 'COVER_LETTER' | 'OTHER', nullable, required — What the file is used for in the ATS. Anything that is neither a CV nor a cover letter is reported as `OTHER`.
      - `file_name` string, nullable, required — The name of the file as reported by the ATS.
      - `content_ref` object, nullable — Where we stored the file in the bucket you configured. The file is written before the attachment shows up here, so this is set on every attachment you can read.
        - `type` 's3', required
        - `bucket` string, required — The bucket the object was written to.
        - `key` string, required — The full object key, including the prefix configured on the file destination.
      - `remote_created_at` string, date-time, nullable, required — The date and time the object was created in the remote system.
      - `remote_updated_at` string, date-time, nullable, required — A timestamp retrieved from the remote system, describing when the resource was last updated.
      - `remote_data` object, nullable, required — Includes the data fetched from the remote system. Please be aware that including this in you scope config might violate other scopes that are set. Remote data always has the endpoint path that we got the data from as the top level key. For example, it could look like: `{ "/companies": { ... }}` This is not available on all plans. Reach out to Kombo if you need it.
      - `changed_at` string, date-time, required — The timestamp when this specific record was last modified. This field only updates when properties directly on this record change, NOT when related or nested models change. For filtering that considers nested data changes, use the `updated_after` parameter which will return records when either the record itself OR its related models have been updated.
      - `remote_deleted_at` string, date-time, nullable, required — The date and time the object was deleted in the remote system. Objects are automatically marked as deleted when Kombo can't retrieve them from the remote system anymore. Kombo will also anonymize entries 14 days after they disappear.

## Other responses

- `default` — The standard error response with the error codes for the ATS use case.

## Changes

- **2026-09-11** `fa30e590de2d` — 1 info
  - endpoint added

[Change history](https://skmtc.dev/kombo/apis/kombo-api/changes/ats/attachments/get.md)

---

[API](https://skmtc.dev/kombo/apis/kombo-api.md) · [All operations](https://skmtc.dev/kombo/apis/kombo-api/llms.txt) · [OpenAPI document](https://skmtc.dev/kombo/apis/kombo-api/revisions/ef324542c002?raw)
