Fetch and atomically archive the next actual source page, retaining encrypted contents, provenance and exact custody chain
/bank-records/ingests/{ingest}/pagesDedicated records:bank staff authority and step-up within five minutes required; customers, services, API keys and third parties refuse. Source retention mappings, release, retention events, disposition and dispose_versions (removal of an unheld inventory source's retained row versions superseded through a nonfuture time, carried to the source by the repair route and worker only while no hub hold covers that source) need independent approval. Holds take effect immediately for existing/future archived facts and stay pending at each source until actual acknowledgment. An attachment the source or hub verification refuses for good, or that staff declare unretrievable after exhausted transport fetches, is recorded as a capture failure rather than blocking the ingest. Ingestion uses dedicated service connections and retained exact source snapshots/pages; users cannot upload or assert source contents. Discovery freezes complete membership and hashes with the requesting staff subject/purpose; every read is audited before release. Full external referenced documents remain outside explicit metadata projection coverage.
Path parameters
ingeststringRequiredHeaders
Idempotency-KeystringOptionalSend on every write that creates or changes money or state; a replay with the same key returns the original result with 200.
Body parameters
afterintegerRequiredpurposestringRequiredReturns
200 OK
actorstringRequiredattachments_failedintegerOptionalattachments_pendingintegerOptionalcategorystringRequiredchain_sha256stringRequiredcompletebooleanRequiredComplete is true once every source page is archived and every attachment those pages declared is captured or recorded as a failure; SourceComplete covers the pages alone.
created_atstring · date-timeRequiredcursorintegerRequiredidstringRequiredrequestobjectRequired2 child attributes
policy_idstringRequiredpurposestringRequiredsnapshotobject or nullOptional10 child attributes
databasestringRequireddescriptionobjectRequired7 child attributes
capturestringOptionalcoveragestringRequiredexcludedarray of stringsRequiredprojection_sha256stringRequiredservicestringRequiredsourcestringRequiredversionstringRequiredidstringRequiredmvcc_snapshotstringRequiredrequestobjectRequired4 child attributes
on_behalf_ofstringRequiredpurposestringRequiredrequest_idstringRequiredExample req_2tVh8nqLxq4GbDe0K1F6S9zRcWm
sourcestringRequiredroot_sha256stringRequiredrowsintegerRequiredschemastringRequiredshapeobject or nullOptional6 child attributes
attachmentsarray of stringsRequiredcolumnsarray of objectsRequired2 child attributes
namestringRequiredtypestringRequiredexcludedarray of stringsRequiredkeyarray of stringsRequiredredactedarray of stringsRequiredsha256stringRequiredtaken_atstring · date-timeRequiredsource_completebooleanOptionaltargetobjectRequired2 child attributes
servicestringRequiredsourcestringRequiredErrors
Every error is a problem document with a stable code. See Errors.
400401403404409412413422424429500503