Skip to content
AdCrunch
Esc
navigateopen⌘Jpreview

Finalize an uploaded Asset

Completes a reserved Asset from the object that actually landed, and promotes it to ready.

This is the only real validation point: a presigned PUT carries no policy document, so nothing could have stopped the client sending a different type — or far more bytes — than it declared. A refused upload is deleted rather than left to bill as an orphan.

Pass advertiserId to place the file in the same call. The answer is the Asset either way. A registration that could not start does not fail this call, because the file is stored and only the registration needs retrying — read GET /assets/{id} for the Registration and its state.

POST/assets/{id}/finalize
Authorization
AuthorizationBearer token · headerrequired

Send Authorization: Bearer <credential>. Two credentials work.

An API key (acr_…) is what a server integration uses. Create one in the AdCrunch console under Settings → API keys — see https://docs.adcrunch.dev/account/api-keys. A key is bound to the organization that was active when you created it, and it keeps acting on that organization whatever you do later. It carries the permissions of the member who created it.

A session issued by the AdCrunch sign-in flow also works, which is how the console calls this service from the browser.

Either way the organization comes from the credential. There is no organization parameter.

Path parameters
idstringrequired
matches ^(ast_)[\s\S]{0,}$
Request body
requiredapplication/json
advertiserIdstring

Place the file in this advertiser’s library in the same call. Optional.

matches ^(acc_)[\s\S]{0,}$
Responses
200

The stored Asset, now ready. kind, mimeType and sizeBytes are read off the stored object rather than taken from your declaration. It carries no Registration, whether or not you asked for one.

contentHashstringrequired

AdCrunch’s own hash of the stored bytes. A hint for de-duplication, never an identity, and never a provider’s hash. Empty when the store reports none.

createdAtnumberrequired

Milliseconds since the Unix epoch, UTC.

createdBystringrequired

The user who reserved the upload.

deletedAtnumber | nullrequired

Always null here. A deleted Asset is not answered.

durationMsnumber | nullrequired

How long the video runs, in milliseconds, where that is known. null for an image.

filenamestringrequired

The name the file was uploaded under. Never a lookup key.

heightnumber | nullrequired
idstringrequired
keystringrequired

Where the bytes are held. Read-only, and never sent by you.

kindstringrequired

Read from the stored bytes at finalize, and never from what you declared. It selects how a provider takes the file.

Allowed:imagevideo
mimeTypestringrequired

Read from the stored object at finalize.

namestring | nullrequired

The name a person gave this Asset, and what a provider receives at a future registration. null until somebody renames it, and the filename is the fallback.

organizationIdstringrequired
sizeBytesnumberrequired

Read from the stored object at finalize.

statusstringrequired

ready once the bytes have been inspected. A pending Asset is a reservation whose bytes have not arrived, and no operation here answers one.

Allowed:pendingready
updatedAtnumber | nullrequired

Milliseconds since the Unix epoch, UTC.

widthnumber | nullrequired
401

No credential, or one that does not resolve. Send an API key or a session. See the security scheme. error is unauthorized.

errorstringrequired

A stable code for the failure. This is the field to branch on. It does not change for a given failure.

Allowed:unauthorized
messagestringrequired

A sentence to show a person. Written to say what to do next. Reworded whenever it can be said better, so never branch on it.

403

The caller does not hold asset:write. error is forbidden.

errorstringrequired

A stable code for the failure. This is the field to branch on. It does not change for a given failure.

Allowed:forbidden
messagestringrequired

A sentence to show a person. Written to say what to do next. Reworded whenever it can be said better, so never branch on it.

404

No reservation with that id in this organization. error is not_found.

errorstringrequired

A stable code for the failure. This is the field to branch on. It does not change for a given failure.

messagestringrequired

A sentence to show a person. Written to say what to do next. Reworded whenever it can be said better, so never branch on it.

409

The reservation exists and no bytes have arrived. error is not_uploaded.

errorstringrequired

A stable code for the failure. This is the field to branch on. It does not change for a given failure.

messagestringrequired

A sentence to show a person. Written to say what to do next. Reworded whenever it can be said better, so never branch on it.

413

The stored file is over the limit for its kind, whatever was declared at reservation. error is too_large, and the object has been discarded.

errorstringrequired

A stable code for the failure. This is the field to branch on. It does not change for a given failure.

messagestringrequired

A sentence to show a person. Written to say what to do next. Reworded whenever it can be said better, so never branch on it.

415

The stored file is not an accepted type, whatever was declared at reservation. error is unsupported_type, and the object has been discarded.

errorstringrequired

A stable code for the failure. This is the field to branch on. It does not change for a given failure.

messagestringrequired

A sentence to show a person. Written to say what to do next. Reworded whenever it can be said better, so never branch on it.

422

The request did not match this operation’s schema. This is the framework’s own shape, not the error/message one.

errorsobject[]required

One entry per failing field.

foundanyrequired

What was sent.

messagestringrequired
onstringrequired

Which part of the request failed: body, query or params.

propertystringrequired

The field that failed.

typestringrequired
Allowed:validation
Request
curl -X POST "https://api.adcrunch.dev/assets/string/finalize" \
  -H "Authorization: Bearer YOUR_TOKEN" \
  -H "Content-Type: application/json" \
  -d '{
  "advertiserId": "string"
}'
Response
{
  "contentHash": "string",
  "createdAt": 0,
  "createdBy": "string",
  "deletedAt": 0,
  "durationMs": 0,
  "filename": "string",
  "height": 0,
  "id": "string",
  "key": "string",
  "kind": "image",
  "mimeType": "string",
  "name": "string",
  "organizationId": "string",
  "sizeBytes": 0,
  "status": "pending",
  "updatedAt": 0,
  "width": 0
}