# List a record's files

The files pinned to one record — name, content type, size, document type and any period they cover — oldest first, deleted ones left out. Metadata only, so it answers even before file storage is configured; a download URL is a separate signed read. Any record page.

Access class: `def:read`.

## Endpoint

`GET /v1/definitions/{key}/rows/{rowId}/files`

## Parameters

| Name | In | Type | Required |
| --- | --- | --- | --- |
| key | path | string | Yes |
| rowId | path | string | Yes |
| body | query | null | No |
| params | query | object | No |
| query | query | object | No |

## Responses

### 200

the action's answer

Content type: `application/json`.

```json
{
  "data": [
    {
      "contentType": "string",
      "createdAt": "string",
      "documentType": "string",
      "id": "",
      "name": "string",
      "periodEnd": "string",
      "periodStart": "string",
      "rowId": "",
      "sizeBytes": 1.5,
      "source": "string",
      "statementStatus": "string",
      "uploadedBy": 1.5
    }
  ]
}
```

### default

a refusal: `{"error": "<what a person needs to read>"}`. 401 no credential, 402 the plan does not include this, 403 the seat does not, 404 the thing does not exist or is not yours to see.

Content type: `application/json`.

```json
{
  "error": "string"
}
```
