Skip to main content
GET
The document as it stands, mid-flight, stamped DRAFT.

Authorizations

Authorization
string
header
required

Authorization: Bearer vsk_live_…. Chosen over a bespoke X-API-KEY header because every client, proxy and log-redaction rule already knows this one. What a key may DO is its scopes — see x-scopes at the root of this document and x-required-scope on each operation. The scope list is not written here because OpenAPI reserves a requirement’s scope array for oauth2 and openIdConnect and requires it to be empty for an http scheme.

Path Parameters

envelopeId
string<uuid>
required

The envelope’s id, as returned by POST /api/v1/envelopes. An envelope id.

Example:

"01960000-0000-4000-8000-0000000000e5"

position
integer
required

Which of the envelope’s documents, 1-based, as documents[].position reports it from GET /api/v1/envelopes/{envelopeId}/documents. ⚠️ There is one spelling of each position: 01, 1.0 and 1 are refused rather than read as 1, so that one document does not answer to five URLs. Which document of the envelope.

Required range: x >= 1
Example:

1

Response

The document as it stands. Content-Disposition: attachment; filename="<title> (draft).pdf", and Cache-Control: no-store — a draft stops being true the moment the next party acts, so nothing may keep a copy of this response.

The PDF bytes. ⚠️ NOT JSON — like GET /api/v1/documents/{id}/pages/{n}, this operation’s success body is not a resource. Its refusals still are: every non-2xx is the same Error envelope in application/json.