Withhold one collected item on a stated basis, or clear an item flagged for a BSA indicator
/bank-records/productions/{production}/reviewsReviewed legal production under the dedicated records:bank staff authority with step-up within five minutes; records:bank:approve decides a package and records determinations, and a decision or determination refuses everyone who shaped the production: its legal request's opener, maker, collector, item reviewers, review completer and packager. Intake retains the process, its legal basis evidence and, for a government authority or bank regulator, the bank's Right to Financial Privacy Act determination (12 U.S.C. 3403(b)); it places automatic archive holds that cannot be released while the production is open, and a scope naming no family must acknowledge the bank-wide hold it places. Collection freezes exact hashes; BSA-confidential families and documents in scope are excluded automatically and logged internally only, and a SAR or material revealing one is never produced, numbered, manifested or privilege-logged (31 CFR 1020.320(e)). Every collected item takes one reviewer decision before review closes (text matching a SAR indicator, unscanned binary content and incomplete captures are flagged and decided individually; a page of at most 200 unflagged items may be cleared in one decision); nothing is produced by default. Release needs the independent approval, the recorded notices (FinCEN under 31 CFR 1020.320(e)(1)(i) and the OCC Litigation Division under 12 CFR 21.11(k)(1)(i)(A) for any BSA withholding; the OCC Litigation Division under 12 CFR 4.37(b)(3)(i) when non-public OCC information was withheld), the counsel named at intake, and returns the package key to the releasing staff member; nothing is transmitted.
Path parameters
productionstringRequiredHeaders
Idempotency-KeystringOptionalSend on every write that creates or changes money or state; a replay with the same key returns the original result with 200.
Body parameters
basisstringRequiredevidence_refstringRequiredevidence_sha256stringRequiredordinalintegerRequiredreasonstringRequiredthrough_ordinalintegerOptionalReturns
200 OK
account_idsarray of stringsRequiredattachmentsarray of objectsRequired8 child attributes
attachmentstringRequiredbytesintegerRequiredencodingstringRequiredingest_idstringOptionalpartsintegerRequiredrecorded_atstring · date-timeRequiredrecorded_bystringRequiredsha256stringRequiredchain_sha256stringRequiredcustodianstringRequiredcustomer_idsarray of stringsRequireddecisionobject or nullOptional4 child attributes
actorstringRequiredbasisstringRequireddecided_atstring · date-timeRequiredreasonstringRequireddocument_sha256stringRequiredfamilyobjectRequired2 child attributes
servicestringRequiredsourcestringRequireditem_idstringRequiredkindstringRequiredBank_record or retained_record
metadata_sha256stringRequiredordinalintegerRequiredproduction_numberstringOptionalrecord_datestring · date-timeRequiredrecord_date_basisstringRequiredreview_requiredarray of stringsRequiredsource_keystringRequiredErrors
Every error is a problem document with a stable code. See Errors.
400401403404409412413422424429500503