> ## Documentation Index
> Fetch the complete documentation index at: https://docs.cope.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Attach a downloadable file



## OpenAPI

````yaml /api-reference/commerce-v1.openapi.json post /v1/commerce/products/{product_id}/attachments
openapi: 3.0.3
info:
  description: >-
    Public REST API for COPE vendor integrations. Authenticate with a COPE API
    key or Clerk bearer token and call the endpoints described below.
  title: COPE Public API
  version: v1
servers:
  - description: Production
    url: https://api.cope.com
security:
  - cope_sk: []
paths:
  /v1/commerce/products/{product_id}/attachments:
    post:
      tags:
        - Products
      summary: Attach a downloadable file
      operationId: attachCommerceProductAttachment
      parameters:
        - description: product_id public identifier.
          example: prd_A1b2C3d4E5f6G7h8
          in: path
          name: product_id
          required: true
          schema:
            example: prd_A1b2C3d4E5f6G7h8
            pattern: ^prd_[A-Za-z0-9]{16}$
            type: string
      requestBody:
        content:
          application/json:
            schema:
              properties:
                upload_token:
                  type: string
              required:
                - upload_token
              type: object
      responses:
        '200':
          content:
            application/json:
              schema:
                additionalProperties: false
                properties:
                  data:
                    additionalProperties: false
                    properties:
                      access_pending:
                        type: boolean
                      access_trial:
                        type: boolean
                      byte_size:
                        nullable: true
                        type: integer
                      content_type:
                        nullable: true
                        type: string
                      filename:
                        type: string
                      id:
                        example: att_A1b2C3d4E5f6G7h8
                        pattern: ^att_[A-Za-z0-9]{16}$
                        type: string
                      kind:
                        type: string
                      url:
                        nullable: true
                        type: string
                    required:
                      - id
                      - kind
                      - filename
                      - content_type
                      - byte_size
                      - url
                      - access_trial
                      - access_pending
                    type: object
                required:
                  - data
                type: object
          description: Successful response
        '201':
          content:
            application/json:
              schema:
                additionalProperties: false
                properties:
                  data:
                    additionalProperties: false
                    properties:
                      access_pending:
                        type: boolean
                      access_trial:
                        type: boolean
                      byte_size:
                        nullable: true
                        type: integer
                      content_type:
                        nullable: true
                        type: string
                      filename:
                        type: string
                      id:
                        example: att_A1b2C3d4E5f6G7h8
                        pattern: ^att_[A-Za-z0-9]{16}$
                        type: string
                      kind:
                        type: string
                      url:
                        nullable: true
                        type: string
                    required:
                      - id
                      - kind
                      - filename
                      - content_type
                      - byte_size
                      - url
                      - access_trial
                      - access_pending
                    type: object
                required:
                  - data
                type: object
          description: Successful response
        '400':
          content:
            application/problem+json:
              examples:
                invalid_request:
                  summary: Invalid request
                  value:
                    code: invalid_request
                    detail: null
                    errors:
                      - code: missing
                        detail: 'param is missing or the value is empty: product_id'
                        param: product_id
                    request_id: req_123
                    status: 400
                    title: Invalid Request
                    type: https://docs.cope.com/errors/invalid_request
              schema:
                $ref: '#/components/schemas/PublicProblemDetail'
          description: Invalid request
        '401':
          content:
            application/problem+json:
              schema:
                $ref: '#/components/schemas/PublicProblemDetail'
          description: Missing or invalid bearer token
        '403':
          content:
            application/problem+json:
              schema:
                $ref: '#/components/schemas/PublicProblemDetail'
          description: Bearer token is not authorized for this route
        '404':
          content:
            application/problem+json:
              schema:
                $ref: '#/components/schemas/PublicProblemDetail'
          description: Resource not found
        '422':
          content:
            application/problem+json:
              examples:
                validation_failed:
                  summary: Validation failed
                  value:
                    code: validation_failed
                    detail: null
                    errors:
                      - code: blank
                        detail: Name can't be blank
                        param: name
                    request_id: req_123
                    status: 422
                    title: Validation Failed
                    type: https://docs.cope.com/errors/validation_failed
              schema:
                $ref: '#/components/schemas/PublicProblemDetail'
          description: Public commerce validation problem
      security:
        - cope_sk: []
components:
  schemas:
    PublicProblemDetail:
      additionalProperties: false
      properties:
        code:
          type: string
        detail:
          nullable: true
          type: string
        errors:
          items:
            additionalProperties: false
            properties:
              code:
                type: string
              detail:
                type: string
              param:
                type: string
            required:
              - code
              - detail
            type: object
          type: array
        request_id:
          type: string
        status:
          type: integer
        title:
          type: string
        type:
          type: string
      required:
        - type
        - title
        - status
        - code
        - request_id
      type: object
  securitySchemes:
    cope_sk:
      description: >-
        Bearer credential for the public API. Vendor integrations should send a
        live COPE API key (`cope_sk_live_*`). Clerk bearer tokens are also
        accepted when paired with `X-Cope-Business-Id`.
      scheme: bearer
      type: http

````