> ## Documentation Index
> Fetch the complete documentation index at: https://docs.zuba.com/llms.txt
> Use this file to discover all available pages before exploring further.

> ## Agent Instructions
> Money amounts are always major-unit decimal strings (e.g. "1000.00"), never floats and never minor units, in every request, response, and webhook payload.
> Authentication is OAuth 2.0 client credentials: exchange the Client ID and Client Secret at the Token URL for a 24-hour JWT and cache it; do not request a token per call.
> Set a unique clientRef on every money-moving request; it is the idempotency key, and retries return the original resource.
> Quotes are single-use, intent-locked, and expire fast: always read expiresAt, consume the quote with the executor matching its intent, and re-quote on expiry instead of retrying.
> Prefer webhooks over polling for payout, order, and deposit status tracking.
> Use the sandbox (api.sandbox.zuba.com) with its deterministic magic values before touching production.

# Request a presigned upload URL for a SWIFT purpose-of-payment document



## OpenAPI

````yaml /openapi.json post /v1/payouts/pop-documents/upload-url
openapi: 3.0.0
info:
  contact: {}
  description: >-
    Comprehensive payment platform API supporting fiat and crypto payments,
    currency conversion, and compliance management
  title: Zuba Payment Platform API
  version: '1.0'
servers: []
security: []
tags:
  - description: Manage M2M API keys and credentials
    name: API Keys
  - description: Internal ledger accounts and transactions
    name: Ledger
  - description: Handle incoming payments and deposits
    name: Pay-ins
  - description: Manage payouts, beneficiaries, and SEPA transfers
    name: Payouts
  - description: Manage outbound webhook endpoints and deliveries
    name: Webhooks
paths:
  /v1/payouts/pop-documents/upload-url:
    post:
      tags:
        - Payouts
      summary: Request a presigned upload URL for a SWIFT purpose-of-payment document
      operationId: PayoutController_requestPopUploadUrl
      parameters: []
      requestBody:
        content:
          application/json:
            schema:
              $ref: '#/components/schemas/RequestPopUploadDto'
        required: true
      responses:
        '200':
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/RequestPopUploadResponse'
          description: Presigned URL and document key returned
        '400':
          description: Invalid file type or size
        '401':
          description: Unauthorized
        '403':
          content:
            application/json:
              schema:
                oneOf:
                  - $ref: '#/components/schemas/GenericErrorResponseDto'
                  - $ref: '#/components/schemas/PaymentsNotEnabledErrorResponseDto'
          description: >-
            Insufficient role, API key missing the create:payouts scope, or
            payments_not_enabled (the client is not payments-enabled; complete
            merchant verification to activate payments)
        '500':
          description: Internal Server Error
      security:
        - bearer: []
components:
  schemas:
    RequestPopUploadDto:
      properties:
        fileName:
          type: string
        fileSize:
          type: number
        mimeType:
          enum:
            - application/pdf
            - image/jpeg
            - image/png
          type: string
      required:
        - fileName
        - fileSize
        - mimeType
      type: object
    RequestPopUploadResponse:
      properties:
        documentKey:
          description: >-
            Document key to pass as purposeOfPaymentDocumentKey on POST
            /v1/payouts.
          example: pop-documents/cc82fa1d-.../9f1c.../invoice.pdf
          type: string
        uploadUrl:
          description: Presigned S3 PUT URL; upload the document body here.
          example: https://s3.example/pop-documents/...?X-Amz-Signature=...
          type: string
      required:
        - uploadUrl
        - documentKey
      type: object
    GenericErrorResponseDto:
      properties:
        error:
          description: Error type identifier
          example: BAD_REQUEST
          type: string
        message:
          description: Error message
          example: Bad Request
          type: string
        path:
          description: Request path that generated the error
          example: /v1/beneficiaries
          type: string
        statusCode:
          description: HTTP status code
          example: 400
          type: number
        timestamp:
          description: ISO timestamp when the error occurred
          example: '2024-01-15T10:30:00.000Z'
          type: string
      required:
        - statusCode
        - message
        - error
        - timestamp
        - path
      type: object
    PaymentsNotEnabledErrorResponseDto:
      properties:
        detail:
          description: Human-readable action required to enable payments
          example: >-
            Payments are not enabled. Complete merchant verification to activate
            payments.
          type: string
        error:
          description: Stable lowercase discriminator for new integrations
          example: payments_not_enabled
          type: string
        message:
          description: Stable legacy discriminator retained for v1 clients
          example: PAYMENTS_NOT_ENABLED
          type: string
        path:
          description: Request path that generated the error
          example: /v1/beneficiaries
          type: string
        statusCode:
          description: HTTP status code
          example: 400
          type: number
        timestamp:
          description: ISO timestamp when the error occurred
          example: '2024-01-15T10:30:00.000Z'
          type: string
      required:
        - statusCode
        - message
        - error
        - timestamp
        - path
        - detail
      type: object
  securitySchemes:
    bearer:
      bearerFormat: JWT
      description: Enter Auth0 JWT token
      scheme: bearer
      type: http

````