openapi: 3.2.0 info: title: WordPress.com REST API — wpcom/v2 namespace Unauth File Upload API version: v2 description: Derived by API Evangelist from the WordPress.com REST API route index published at https://public-api.wordpress.com/wpcom/v2/. Paths, HTTP methods, and parameter names/types/descriptions/defaults are taken verbatim from that index. Response schemas are not published in the route index, so successful responses are described but not schematised; the error envelope was observed live on public-api.wordpress.com. contact: name: Automattic url: https://developer.wordpress.com/docs/api/ x-derived-from: https://public-api.wordpress.com/wpcom/v2/ x-derived-by: API Evangelist enrichment pipeline servers: - url: https://public-api.wordpress.com security: - bearerAuth: [] tags: - name: unauth-file-upload paths: /wpcom/v2/sites/{wpcom_site}/unauth-file-upload: post: operationId: postWpcomV2SitesbyWpcomSiteUnauthFileUpload summary: POST /wpcom/v2/sites/{wpcom_site}/unauth-file-upload tags: - unauth-file-upload responses: '200': description: OK '401': description: Authentication required content: application/json: schema: $ref: '#/components/schemas/WPRestError' '404': description: Not found content: application/json: schema: $ref: '#/components/schemas/WPRestError' parameters: - name: wpcom_site in: path required: true schema: type: string requestBody: content: application/json: schema: type: object properties: token: type: string required: - token /wpcom/v2/sites/{wpcom_site}/unauth-file-upload/remove: post: operationId: postWpcomV2SitesbyWpcomSiteUnauthFileUploadRemove summary: POST /wpcom/v2/sites/{wpcom_site}/unauth-file-upload/remove tags: - unauth-file-upload responses: '200': description: OK '401': description: Authentication required content: application/json: schema: $ref: '#/components/schemas/WPRestError' '404': description: Not found content: application/json: schema: $ref: '#/components/schemas/WPRestError' parameters: - name: wpcom_site in: path required: true schema: type: string requestBody: content: application/json: schema: type: object properties: token: type: string description: The temporary upload JWT token. file_id: type: number required: - token - file_id /wpcom/v2/sites/{wpcom_site}/unauth-file-upload/token: post: operationId: postWpcomV2SitesbyWpcomSiteUnauthFileUploadToken summary: POST /wpcom/v2/sites/{wpcom_site}/unauth-file-upload/token tags: - unauth-file-upload responses: '200': description: OK '401': description: Authentication required content: application/json: schema: $ref: '#/components/schemas/WPRestError' '404': description: Not found content: application/json: schema: $ref: '#/components/schemas/WPRestError' parameters: - name: wpcom_site in: path required: true schema: type: string requestBody: content: application/json: schema: type: object properties: context: type: string description: The context for which the upload token is being generated. claims: type: object description: Additional claims to include in the token. required: - context /wpcom/v2/sites/{wpcom_site}/unauth-file-upload/{file_id}: get: operationId: getWpcomV2SitesbyWpcomSiteUnauthFileUploadbyFileId summary: GET /wpcom/v2/sites/{wpcom_site}/unauth-file-upload/{file_id} tags: - unauth-file-upload responses: '200': description: OK '401': description: Authentication required content: application/json: schema: $ref: '#/components/schemas/WPRestError' '404': description: Not found content: application/json: schema: $ref: '#/components/schemas/WPRestError' parameters: - name: wpcom_site in: path required: true schema: type: string - name: file_id in: path required: true schema: type: string components: schemas: WPRestError: type: object description: WordPress REST API error envelope (observed on public-api.wordpress.com). properties: code: type: string example: rest_unauthorized message: type: string example: Authentication required. data: type: object properties: status: type: integer example: 401 securitySchemes: oauth2: type: oauth2 description: WordPress.com OAuth 2.1, per https://public-api.wordpress.com/.well-known/openid-configuration flows: authorizationCode: authorizationUrl: https://public-api.wordpress.com/oauth2-1/authorize tokenUrl: https://public-api.wordpress.com/oauth2-1/token refreshUrl: https://public-api.wordpress.com/oauth2-1/token scopes: global: '' auth: '' openid: '' profile: '' email: '' users: '' sites: '' posts: '' comments: '' taxonomy: '' follow: '' sharing: '' freshly-pressed: '' notifications: '' insights: '' read: '' stats: '' media: '' menus: '' batch: '' videos: '' bearerAuth: type: http scheme: bearer