Misc
Generate signed upload URLs
Mirrors GraphQL generateUploadUrls. If type is in auth-required types (e.g. AVATAR), x-api-key must resolve to a user.
POST
Authorizations
Headers
HMAC-SHA256 signature: HMAC-SHA256(secretKey, timestamp + METHOD + path + body). Required for API-key authenticated requests (JWT/OAuth session auth is exempt).
Request timestamp in epoch milliseconds. Required with x-signature for API-key auth. Rejected if drift exceeds 5 minutes.
Body
application/json
Response
Signed URL rows.
The response is of type any.