Skip to main content
Some tools take a file, such as a receipt to upload, or return one, such as a statement to download. Pomerado keeps each file encrypted, only as long as the run needs it, and never opens it.

Who can use files

Files need a signed-in caller: a Dashboard session, an MCP client signed in to Pomerado, or an API key with runs:create. A file belongs to the person who uploaded it; anyone else gets not_found.

Limits

Accepted types

Pomerado accepts PDF, common image, audio and video types, ZIP and office documents, and text formats such as plain text, CSV, Markdown, XML and JSON. application/octet-stream takes any other bytes. A file’s first bytes must match its media type. Programs and scripts, such as .exe, .sh and .js files, are refused.
Pomerado doesn’t scan files for malware. Open a downloaded file with the care you’d give any other.
See errors for every code.