Create a work item attachment upload
Attachments are files uploaded against a work item. Create an attachment.
Path Parameters
slug:requiredstringThe workspace slug. It appears in your Plane URLs — in https://app.plane.so/my-team/projects/, the slug is my-team.
project_id:requiredstringThe project the resource belongs to. Accepts the project UUID or its bare identifier, for example ENG.
work_item_id:requiredstringThe work item the resource hangs off. Accepts the work item UUID or its PROJ-123 identifier.
Body Parameters
name:requiredstringDisplay name.
size:requiredintegerThe size.
external_id:optionalstringYour system's identifier for this record, for sync and import correlation.
Nullable.
external_source:optionalstringThe system external_id came from, for example github or jira.
Nullable.
type:optionalstringThe type.
Response shaping
fields:optionalstringComma-separated list of fields to return. Unrequested keys are omitted, not returned as null. id always comes back. Pass all for every requestable field. An unknown name is a 400. See Sparse fields.
Requestable here: asset_url, attributes, content_type, created_at, created_by_id, external_id, external_source, id, is_uploaded, name, size, work_item_id.
Scopes
projects.work_items.attachments:write
Errors
| Status | Code | Cause |
|---|---|---|
400 | invalid_request | The request body or a query parameter failed validation. |
401 | unauthorized | Missing or invalid credentials. |
402 | payment_required | The feature this endpoint belongs to isn't enabled on your plan or is switched off. |
403 | forbidden | Your role or token scope doesn't allow this. |
404 | not_found | No such resource, or it's outside your tenant. |
406 | not_acceptable | The Accept header asks for a representation the API can't produce. |
409 | conflict | A business rule blocks the write — see the notes above. |
413 | payload_too_large | The request body is over the size limit. |
415 | unsupported_media_type | The Content-Type isn't one this endpoint accepts. |
429 | rate_limited | Throttled. Honor the Retry-After header before retrying. |
curl -X POST \
"https://api.plane.so/api/v2/workspaces/my-team/projects/4af68566-94a4-4eb3-94aa-50dc9427067b/work-items/9c1f0b3d-6d2e-4c9a-8b41-2f7e5a0d6c88/attachments/" \
-H "X-Api-Key: $PLANE_API_KEY" \
-H "Content-Type: application/json" \
-d '{
"name": "Example name",
"size": 1,
"external_id": null,
"external_source": null,
"type": "example"
}'import requests
response = requests.post(
"https://api.plane.so/api/v2/workspaces/my-team/projects/4af68566-94a4-4eb3-94aa-50dc9427067b/work-items/9c1f0b3d-6d2e-4c9a-8b41-2f7e5a0d6c88/attachments/",
headers={"X-Api-Key": "your-api-key"},
json={
"name": "Example name",
"size": 1,
"external_id": None,
"external_source": None,
"type": "example"
},
)
print(response.json())const response = await fetch(
"https://api.plane.so/api/v2/workspaces/my-team/projects/4af68566-94a4-4eb3-94aa-50dc9427067b/work-items/9c1f0b3d-6d2e-4c9a-8b41-2f7e5a0d6c88/attachments/",
{
method: "POST",
headers: {
"X-Api-Key": "your-api-key",
"Content-Type": "application/json",
},
body: JSON.stringify({
name: "Example name",
size: 1,
external_id: null,
external_source: null,
type: "example",
}),
},
);
const data = await response.json();{
"asset_url": "https://example.com",
"attributes": null,
"content_type": "example",
"created_at": "2026-01-14T09:22:41.478363Z",
"created_by_id": "16c61a3a-512a-48ac-b0be-b6b46fe6f430",
"external_id": null,
"external_source": null,
"id": "b7e42a19-3c5d-4f80-9a26-8d1c0f4e7b53",
"is_uploaded": false,
"name": "Example name",
"size": 1,
"work_item_id": "f960d3c2-8524-4a41-b8eb-055ce4be2a7f"
}
