curl --request GET \
--url https://api.gigstack.io/v2/payments/{id}/support-documents \
--header 'Authorization: Bearer <token>'const options = {method: 'GET', headers: {Authorization: 'Bearer <token>'}};
fetch('https://api.gigstack.io/v2/payments/{id}/support-documents', options)
.then(res => res.json())
.then(res => console.log(res))
.catch(err => console.error(err));import requests
url = "https://api.gigstack.io/v2/payments/{id}/support-documents"
headers = {"Authorization": "Bearer <token>"}
response = requests.get(url, headers=headers)
print(response.text){
"success": true,
"data": [
{
"id": "doc_1234567890",
"document_type": "contract",
"name": "Contrato de servicios 2026",
"description": null,
"file_url": "https://firebasestorage.googleapis.com/v0/b/gigstackpro.appspot.com/o/teams%2Fteam_1234567890%2Fdocuments%2Fcontrato-2026.pdf?alt=media&token=9f1c7d84-3b2e-4a56-8c0d-1e7f5b9a2c43",
"file_name": "contrato-2026.pdf",
"file_size": 284913,
"mime_type": "application/pdf",
"compliance_status": "pending_review",
"created_at": 1767225600000,
"linked_entities": [
{
"entity_type": "payment",
"entity_id": "payment_1234567890",
"linked_at": 1767225600000
}
]
}
],
"message": "Support documents retrieved successfully",
"timestamp": 1767225600000
}List support documents
Availability: This operation has no configured public API gateway route and is not available through the documented base URL.
Retrieve all supporting documents attached to a payment.
gigstack Connect: View documents for other teams’ payments using the team parameter.
Documents are returned sorted by creation date (newest first).
curl --request GET \
--url https://api.gigstack.io/v2/payments/{id}/support-documents \
--header 'Authorization: Bearer <token>'const options = {method: 'GET', headers: {Authorization: 'Bearer <token>'}};
fetch('https://api.gigstack.io/v2/payments/{id}/support-documents', options)
.then(res => res.json())
.then(res => console.log(res))
.catch(err => console.error(err));import requests
url = "https://api.gigstack.io/v2/payments/{id}/support-documents"
headers = {"Authorization": "Bearer <token>"}
response = requests.get(url, headers=headers)
print(response.text){
"success": true,
"data": [
{
"id": "doc_1234567890",
"document_type": "contract",
"name": "Contrato de servicios 2026",
"description": null,
"file_url": "https://firebasestorage.googleapis.com/v0/b/gigstackpro.appspot.com/o/teams%2Fteam_1234567890%2Fdocuments%2Fcontrato-2026.pdf?alt=media&token=9f1c7d84-3b2e-4a56-8c0d-1e7f5b9a2c43",
"file_name": "contrato-2026.pdf",
"file_size": 284913,
"mime_type": "application/pdf",
"compliance_status": "pending_review",
"created_at": 1767225600000,
"linked_entities": [
{
"entity_type": "payment",
"entity_id": "payment_1234567890",
"linked_at": 1767225600000
}
]
}
],
"message": "Support documents retrieved successfully",
"timestamp": 1767225600000
}Authorizations
Authentication Method: HTTP Bearer token.
The runtime requires the literal Bearer prefix — a bare token in the
Authorization header is rejected with 401 unauthorized.
Header Format: Authorization: Bearer YOUR_API_KEY
Your API key is a JWT. Live keys operate on live data (livemode: true);
test keys operate on isolated test data (livemode: false).
Get your key at: app.gigstack.pro/settings?tab=api
Errors: credential failures are answered by the authentication layer with a raw
{ "message": … } body, not the standardized envelope — 401 for a missing, malformed or
expired token, 403 for a revoked key or a plan without API access. See the Unauthorized
and AuthForbidden responses.
Path Parameters
Payment ID
Query Parameters
gigstack Connect: Target team ID for multi-team access.
Requires gigstack Connect enabled on your team and shared billing account.
Also requires the multipleIssuerAccounts feature on your plan. Requests targeting a
team other than the one your API key belongs to return 403 without it.
Only API keys can use it: an OAuth access token sent with another team's id is rejected with
403 Team mismatch with OAuth token.
Optional — omit it entirely unless you are acting on another team. It deliberately
carries no example value so generated snippets do not emit ?team=undefined; when the
parameter is absent, the team is derived from your API key.
Example: ?team=team_xyz789