Local-disk storage dev fallback (never present in production)
Only registered when the service falls back to local-disk file storage because no R2 credentials are configured AND the service is not running in production (see internal/storage/local.go) — the route does not exist at all otherwise. Serves the file an HMAC-signed "key"/"exp"/"sig" query string authorizes, standing in for a real R2 presigned URL. Unauthenticated by design: the signature is the credential, scoped to a single key and short TTL, and this whole code path never runs in production.
View as MarkdownQuery Parameters
Content-Disposition header value for the response.
Response Body
application/pdf
application/json
curl -X GET "https://example.com/v1/dev-storage/file?key=string&exp=string&sig=string""string"This contract, served by the running instance (password-protected)
The embedded copy of this OpenAPI document — backs the reference UI above and is handy for local codegen against a running instance. Same Basic Auth gate as /docs.
List documents
Documents the caller can read: their own (active-org-scoped; legacy rows without org_id stay visible) plus any shared with the organization by a teammate. status/q/needsMe filter the page and `total`; counts/toSignCount/waitingCount/hasShared always describe the scope-only set, unaffected by status/q/needsMe/sort/limit/offset — same convention as Templates' `categories`, so switching tabs or typing a search never makes the other tabs' counts move. The result is paged only when limit or offset is sent; without either, every matching document is returned (as before this endpoint was paginated), up to 1000, and limit reports how many came back — total > that count means the list was cut off.