Inbox and uploads

intake.prepare

Prepare a private upload for any file Oatmilk should file: a receipt, vendor bill, issued invoice, bank statement, contractor agreement, tax or company document. Supply filename, mimeType, sizeBytes, sha256, idempotencyKey and optional presetKind. A file already added to the organization returns duplicate: true with addedAt. Otherwise PUT the unchanged bytes to uploadUrl, then call intake.complete. Contributors can file receipts only.

POST/api/v1/accounting/intake.prepare

Permissions

accounting:readaccounting:write

Who can call it

admin, finance, contributor

Retries

Idempotency key required

MCP

accounting_intake_prepare

Fields

  • filenamestringRequired

    The file's name, including its extension.

    1–255 characters

  • mimeTypeenumRequired

    The file's type, such as image/jpeg or application/pdf.

    application/pdfimage/jpegimage/pngimage/webpimage/heicimage/heifmessage/rfc822text/csvtext/plaintext/markdownapplication/vnd.openxmlformats-officedocument.wordprocessingml.documentapplication/vnd.openxmlformats-officedocument.spreadsheetml.sheet
  • sizeBytesintegerRequired

    The file's size in bytes.

    1 to 52428800

  • sha256stringRequired

    The SHA-256 hash of the file's exact bytes, as 64 lowercase hex characters.

    SHA-256 hash as 64 lowercase hex characters

  • sourceenum

    Where the record came from.

    droppastepickerapi

    Default "api"

  • presetKindenum
    receiptvendor_billissued_invoicebank_statementcontractor_agreementtax_documentcompany_documentother
  • idempotencyKeystringRequired

    Any unique text you generate once per intended change, so a retried request only happens once. Send it as the Idempotency-Key header instead if you prefer; if you send both they must match.

    8–200 characters

Example

curl https://app.getoatmilk.com/api/v1/accounting/intake.prepare \
  -H "Authorization: Bearer $OATMILK_API_KEY" \
  -H "Content-Type: application/json" \
  -H "Idempotency-Key: $(uuidgen)" \
  -d '{
  "filename": "receipt.pdf",
  "mimeType": "application/pdf",
  "sizeBytes": 1,
  "sha256": "9f2b5c1d7e3a4b6c8d0e2f4a6b8c0d2e4f6a8b0c2d4e6f8a0b2c4d6e8f0a2b4c"
}'
Response
{
  "data": { … }
}

Try it

Try it

Checks your input with this action’s real schema and answers like the API, with synthetic data. No key needed, and nothing changes.

POST/api/v1/accounting/intake.prepare
curl https://app.getoatmilk.com/api/v1/accounting/intake.prepare \
  -H "Authorization: Bearer $OATMILK_API_KEY" \
  -H "Content-Type: application/json" \
  -H "Idempotency-Key: $(uuidgen)" \
  -d '{
  "filename": "receipt.pdf",
  "mimeType": "application/pdf",
  "sizeBytes": 1,
  "sha256": "9f2b5c1d7e3a4b6c8d0e2f4a6b8c0d2e4f6a8b0c2d4e6f8a0b2c4d6e8f0a2b4c"
}'

More in Inbox and uploads.