Transloadit
Pricing
  • File Uploads
  • File Importing
  • Batch Processing
  • Video Encoding
  • Audio Encoding
  • Image Processing
  • Document Processing
  • Artificial Intelligence
  • File Filtering & Security
  • Media Cataloging
  • File Compression
  • Code Evaluation
  • File Exporting
  • Smart CDN
  • View all services
  • Explore integrations
  • Explore live demos
  • Uppy
  • TransloaditKit
  • Android SDK
  • Node.js SDK
  • Python SDK
  • Ruby SDK
  • Go SDK
  • Java SDK
  • PHP SDK
  • Zapier
  • MCP Server
  • Transloadit CLI
  • Terraform
  • Essentials
  • Best Practices
  • FAQ
  • Robots
  • API
  • Formats
  • Build your first app
  • About
  • Comparisons
  • Open Source
  • Testimonials
  • Jobs
  • Security
  • Posts
  • DevTimes
  • DevTips
  • Press
  • Research
  • Case Studies
  • Solutions
  • Guides
  • Glossary
  • Legal
  • Tools
  • Helping Coursera bring education to millions around the world
  • Transloadit Support
  • Open Source Support
  • Service level agreement
EssentialsRobotsFAQAPIFormatsBest Practices
File Uploads
  • /upload/handle
    Handle uploads
File Importing
  • /azure/import
    Import files from Azure
  • /backblaze/import
    Import files from Backblaze
  • /box/import
    Import files from Box
  • /mega/import
    Import files from MEGA S4 Object Storage
  • /cloudfiles/import
    Import files from Rackspace Cloud Files
  • /cloudflare/import
    Import files from Cloudflare R2
  • /digitalocean/import
    Import files from DigitalOcean Spaces
  • /dropbox/import
    Import files from Dropbox
  • /ftp/import
    Import files from FTP servers
  • /google/import
    Import files from Google Cloud Storage
  • /http/import
    Import files from web servers
  • /minio/import
    Import files from MinIO
  • /s3/import
    Import files from Amazon S3
  • /sftp/import
    Import files from SFTP servers
  • /supabase/import
    Import files from Supabase Storage
  • /swift/import
    Import files from OpenStack Swift
  • /tigris/import
    Import files from Tigris
  • /transloadit/import
    Import files from Transloadit Storage
  • /vimeo/import
    Import videos from Vimeo
  • /wasabi/import
    Import files from Wasabi
Video Encoding
  • /video/adaptive
    Convert videos to HLS, MPEG-Dash and CMAF
  • /video/artwork
    Extract or insert video artwork
  • /video/concat
    Concatenate videos
  • /video/encode
    Transcode, resize, or watermark videos
  • /video/merge
    Merge video, audio, images into one video
  • /video/ondemand
    Stream videos with on-demand encoding
  • /video/split
    Split video
  • /video/subtitle
    Add subtitles to videos
  • /video/thumbs
    Extract thumbnails from videos
  • Video presets
Audio Encoding
  • /audio/artwork
    Extract or insert audio artwork
  • /audio/concat
    Concatenate audio
  • /audio/split
    Split audio
  • /audio/encode
    Encode audio
  • /audio/loop
    Loop audio
  • /audio/merge
    Merge audio files into one
  • /audio/waveform
    Generate waveform images from audio
  • Audio presets
Image Processing
  • /image/bgremove
    Remove the background from images
  • /image/enhance
    Enhance images
  • /image/merge
    Merge several images into one image
  • /image/optimize
    Optimize images without quality loss
  • /image/resize
    Convert, resize, or watermark images
Document Processing
  • /document/autorotate
    Auto-rotate documents
  • /document/convert
    Convert documents into different formats
  • /document/extract
    Extracts text and embedded images
  • /document/merge
    Merge documents into one
  • /document/optimize
    Optimize PDF file size
  • /file/read
    Read file contents
  • /document/split
    Extracts pages
  • /document/thumbs
    Extract thumbnail images from documents
  • /html/convert
    Take screenshots of webpages or HTML files
Artificial Intelligence
  • /document/ocr
    Recognize text in documents (OCR)
  • /image/describe
    Recognize objects in images
  • /image/facedetect
    Detect faces in images
  • /image/generate
    Generate images from text prompts
  • /image/upscale
    Upscale images
  • /image/ocr
    Recognize text in images (OCR)
  • /speech/transcribe
    Transcribe speech in audio or video files
  • /text/speak
    Synthesize speech in documents
  • /text/translate
    Translate text in documents
  • /ai/chat
    Generate AI chat responses
  • /video/generate
    Generate videos from text prompts
File Filtering & Security
  • /file/filter
    Filter files
  • /file/verify
    Verify the file type
  • /file/virusscan
    Scan files for viruses
Media Cataloging
  • /file/hash
    Hash files
  • /file/preview
    Generate a preview thumbnail
  • /meta/write
    Write metadata to media
File Compression
  • /file/compress
    Compress files
  • /file/decompress
    Decompress archives
Code Evaluation
  • /http/request
    Call HTTP endpoints
  • /script/run
    Run scripts in Assemblies
File Exporting
  • Downloading
  • /azure/store
    Export files to Microsoft Azure
  • /backblaze/store
    Export files to Backblaze
  • /box/store
    Export files to Box
  • /mega/store
    Export files to MEGA S4 Object Storage
  • /cloudfiles/store
    Export files to Rackspace Cloud Files
  • /cloudflare/store
    Export files to Cloudflare R2
  • /digitalocean/store
    Export files to DigitalOcean Spaces
  • /dropbox/store
    Export files to Dropbox
  • /ftp/store
    Export files to FTP servers
  • /google/store
    Export files to Google Cloud Storage
  • /minio/store
    Export files to MinIO
  • /s3/store
    Export files to Amazon S3
  • /sftp/store
    Export files to SFTP servers
  • /supabase/store
    Export files to Supabase Storage
  • /swift/store
    Export files to OpenStack Swift
  • /tigris/store
    Export files to Tigris
  • /transloadit/store
    Store files in Transloadit Storage
  • /tus/store
    Export files to Tus-compatible servers
  • /vimeo/store
    Export files to Vimeo
  • /wasabi/store
    Export files to Wasabi
  • /youtube/store
    Export files to YouTube
Smart CDN
  • /file/serve
    Serve files to web browsers
  • /tlcdn/deliver
    Cache and deliver files globally
  • Pricing

Export files to Amazon S3

🤖/s3/store exports encoding results to Amazon S3.

/s3/store Robot

If you are new to Amazon S3, see our tutorial on using your own S3 bucket.

The URL to the result file in your S3 bucket will be returned in the Assembly Status JSON. A returned URL does not make a private object public or grant read access. If your S3 bucket has versioning enabled, the version ID of the file will be returned within meta.version_id.

Warning

Configure private buckets explicitly. The Robot’s default acl is still "public-read". For a private bucket, set acl: "bucket-default" and do not supply ACL or grant headers. This omits the generated ACL header and works with Bucket owner enforced Object Ownership⁠, where ACLs are disabled. Keep S3 Block Public Access enabled. Setting acl: "private" still sends an ACL and is not equivalent to omitting it.

Warning

Use DNS-compliant bucket names. Follow AWS’s bucket naming rules⁠. The url_prefix parameter changes returned URLs; it does not change the bucket or its access permissions.

Limit access

Use a dedicated AWS identity with access limited to the destination bucket and object prefix. Do not use AWS root access keys⁠. Store its access key ID, secret access key, bucket name and region as key, secret, bucket and bucket_region in Template Credentials, then reference their name with credentials. Trusted backend integrations can instead supply those parameters directly; do not expose AWS secrets in browser instructions.

The following is an identity-based IAM policy⁠, attached to that dedicated identity, not a bucket policy. It intentionally has no Principal. Replace {BUCKET_NAME} and use a Robot path beginning with uploads/, or adapt both the policy prefix and the path together.

This example covers uploads and failed multipart-upload cleanup with an explicit bucket_region, acl: "bucket-default", no ACL/grant headers, no tags and S3-managed encryption (SSE-S3). Existing bucket policies, organization controls or endpoint policies can still deny access.

{
  "Version": "2012-10-17",
  "Statement": [
    {
      "Sid": "UploadAndAbortWithinPrefix",
      "Effect": "Allow",
      "Action": ["s3:PutObject", "s3:AbortMultipartUpload"],
      "Resource": "arn:aws:s3:::{BUCKET_NAME}/uploads/*"
    }
  ]
}

The uploader uses either PutObject or CreateMultipartUpload, UploadPart and CompleteMultipartUpload; failed multipart uploads can trigger AbortMultipartUpload. AWS maps the successful upload operations to s3:PutObject. Write access can overwrite an existing object key; it is not add-only. Choose unique object paths and consider versioning for recovery.

Add permissions only for features you use, following AWS’s operation permission reference⁠:

  • Without an explicit bucket_region, region discovery can require s3:GetBucketLocation and fallback s3:ListBucket on the bucket ARN, arn:aws:s3:::{BUCKET_NAME}, without an object suffix. Supplying the correct region avoids these discovery requests.
  • ACL or grant headers require s3:PutObjectAcl; tags require s3:PutObjectTagging on the allowed object prefix. bucket-default does not remove ACL/grant headers you supply in headers.
  • Downloading private results requires separate read authorization. Even a URL generated with sign_urls_for needs the signing identity to have the appropriate read permissions.

S3 applies its bucket encryption configuration⁠ when no encryption override is sent. You can request SSE-KMS through headers, using x-amz-server-side-encryption: aws:kms and x-amz-server-side-encryption-aws-kms-key-id. When either bucket default encryption or request headers select SSE-KMS⁠, the uploading identity needs kms:GenerateDataKey on the relevant key, plus kms:Decrypt for multipart uploads. For a customer-managed key, grant these permissions with a compatible KMS key policy; the base S3 policy above does not include them. Do not add blanket kms:* or sts:* grants.

Short-lived AWS credentials are a matching set of key, secret and session_token. Have a trusted backend obtain and refresh all three, then supply them together when it creates the Assembly. It can pass them directly in Robot instructions or save and update them together through the Template Credentials API. Keep all three out of browser instructions; replacing only the session token does not refresh expired access keys. This Robot passes the supplied credentials to S3; it does not assume a role or refresh expired credentials. Keep temporary credentials valid for the upload.

Keep your credentials safe
Since you need to provide credentials to this Robot, always use this together with Templates and/or Template Credentials, so that you can never leak any secrets while transmitting your Assembly Instructions.

Usage example

Export uploaded files to my_target_folder in an S3 bucket:

{
  "steps": {
    "exported": {
      "credentials": "YOUR_AWS_CREDENTIALS",
      "path": "my_target_folder/${unique_prefix}/${file.url_name}",
      "robot": "/s3/store",
      "use": ":original"
    }
  }
}

Parameters

  • interpolate

    boolean | Record<string, boolean>

    Controls whether Assembly Variables are interpolated for individual instruction fields.

    By default, most Robot instruction fields interpolate Assembly Variables. Set this to false to treat every instruction field as literal text, or set an individual field path to false to treat only that field as literal text. For Robot-specific fields that are literal by default, set this to true or set that field path to true to opt back into interpolation.

    Use field names such as path, or dotted paths such as ffmpeg.vf for nested objects.

  • output_meta

    Record<string, boolean> | boolean | Array<string>

    Allows you to specify a set of metadata that is more expensive on CPU power to calculate, and thus is disabled by default to keep your Assemblies processing fast.

    For images, you can add "has_transparency": true in this object to extract if the image contains transparent parts and "dominant_colors": true to extract an array of hexadecimal color codes from the image.

    For images, you can also add "blurhash": true to extract a BlurHash⁠ string — a compact representation of a placeholder for the image, useful for showing a blurred preview while the full image loads.

    For images, "thumbhash": true instead extracts a base64-encoded ThumbHash⁠ into meta.thumbhash, together with meta.has_alpha (whether an alpha channel exists, even when fully opaque). It describes EXIF-oriented pixels and uses the first frame of animated images. Extraction is best-effort: images above 40 megapixels, unsupported formats, or a failed/bounded decode produce no placeholder. Successful extraction adds a metadata charge equivalent to 20% of that file's bytes. No ThumbHash surcharge applies when disabled or when no hash is produced.

    Set this option on the Step producing the image, such as /upload/handle for uploaded originals or /image/resize for processed outputs. Setting it only on /transloadit/store does not request extraction: storage preserves the producer's metadata. Transloadit Storage persists a generated hash with its immutable version and returns it in stored results and native asset reads. Direct S3 uploads do not generate placeholders. A placeholder contains image information, so protect it with the same access controls as the full image.

    For videos, you can add the "colorspace": true parameter to extract the colorspace of the output video.

    For videos, you can also add "interlaced": true to detect whether the video is interlaced. This combines the cheap ffprobe field_order flag with a bounded idet sampling pass over the first frames of the source, exposing interlaced, field_order, and a diagnostic interlace_detection object under file.meta. This is computationally expensive and billed accordingly.

    For audio, you can add "mean_volume": true to get a single value representing the mean average volume of the audio file.

    You can also set this to false to skip metadata extraction and speed up transcoding.

  • user_meta

    Record<string, any>(default: {})

    Adds custom JSON metadata to each emitted file without changing its contents. Nested objects and arrays are supported.

    Inheritance depends on the Robot. Values merge with existing user_meta on the output file; the current Step replaces matching top-level keys. Assign required keys explicitly when a Robot creates fresh outputs.

    In processing Steps, ${file.*} refers to the first input and ${result.*} to the emitted file. Values are evaluated per output after the Robot runs, before subsequent metadata extraction and temporary storage. On :original, values are evaluated per upload before metadata extraction.

    Downstream Steps read ${file.user_meta.key}. See Custom metadata for a complete example and inheritance rules.

  • result

    boolean(default: false)

    Whether the results of this Step should be present in the Assembly Status JSON

  • queue

    batch

    Setting the queue to 'batch', manually downgrades the priority of jobs for this step to avoid consuming Priority job slots for jobs that don't need zero queue waiting times

  • force_accept

    boolean(default: false)

    Force a Robot to accept a file type it would have ignored.

    By default, Robots ignore files they are not familiar with. 🤖/video/encode, for example, will happily ignore input images.

    With the force_accept parameter set to true, you can force Robots to accept all files thrown at them. This will typically lead to errors and should only be used for debugging or combatting edge cases.

  • ignore_errors

    boolean | Array<meta | execute>(default: [])

    Ignore errors during specific phases of processing.

    Setting this to ["meta"] will cause the Robot to ignore errors during metadata extraction.

    Setting this to ["execute"] will cause the Robot to ignore errors during the main execution phase.

    Setting this to true is equivalent to ["meta", "execute"] and will ignore errors in both phases.

  • use

    string | Array<string> | Array<object> | object

    Specifies which Step(s) to use as input.

    • You can pick any names for Steps except ":original" (reserved for user uploads handled by Transloadit)
    • You can provide several Steps as input with arrays:
      {
        "use": [
          ":original",
          "encoded",
          "resized"
        ]
      }
      
    • You can also tag input Steps with as to pass semantic intent to robots:
      {
        "use": [
          {
            "name": ":original",
            "as": "image"
          },
          {
            "name": ":original",
            "as": "mask"
          }
        ]
      }
      
    Tip

    That's likely all you need to know about use, but you can view Advanced use cases.

  • credentials

    string

    Please create your associated Template Credentials in your Transloadit account and use the name of your Template Credentials as this parameter's value. They will contain the values for your S3 bucket, key, secret and bucket_region.

    While we recommend to use Template Credentials at all times, some use cases demand dynamic credentials for which using Template Credentials is too unwieldy because of their static nature. If you have this requirement, feel free to use the following parameters instead: "bucket", "bucket_region" (for example: "us-east-1" or "eu-west-2"), "key", "secret".

  • path

    string(default: "${unique_prefix}/${file.url_name}")

    The path at which the file is to be stored. This may include any available Assembly variables. The path must not be a directory.

  • url_prefix

    string(default: "http://{bucket}.s3.amazonaws.com/")

    The URL prefix used for the returned URL, such as "http://my.cdn.com/some/path/".

  • acl

    bucket-default | private | public | public-read(default: "public-read")

    The ACL used for this file. The default remains "public-read", which can conflict with S3 Block Public Access and disabled ACLs. For modern private buckets, explicitly set "bucket-default" to omit the generated ACL header, and do not supply ACL/grant headers in headers. "private" still sends an ACL.

  • check_integrity

    boolean(default: false)

    Calculate and submit the file's checksum in order for S3 to verify its integrity after uploading, which can help with occasional file corruption issues.

    Enabling this option adds to the overall execution time, as integrity checking can be CPU intensive, especially for larger files.

  • headers

    Record<string, string>(default: {"Content-Type":"${file.mime}"})

    An object containing a list of headers to be set for this file on S3, such as { FileURL: "${file.url_name}" }. This can also include any available Assembly Variables. You can find a list of available headers here⁠.

    Object Metadata can be specified using x-amz-meta-* headers. Note that these headers do not support non-ASCII metadata values⁠.

  • tags

    Record<string, string>(default: {})

    Object tagging allows you to categorize storage. You can associate up to 10 tags with an object. Tags that are associated with an object must have unique tag keys.

  • host

    string(default: "s3.amazonaws.com")

    The host of the storage service used. This only needs to be set when the storage service used is not Amazon S3, but has a compatible API (such as hosteurope.de). The default protocol used is HTTP, for anything else the protocol needs to be explicitly specified. For example, prefix the host with https:// or s3:// to use either respective protocol.

  • no_vhost

    boolean(default: false)

    Set to true if you use a custom host and run into access denied errors.

  • sign_urls_for

    string | number

    This parameter provides signed URLs in the result JSON (in the signed_url and signed_ssl_url properties). The number that you set this parameter to is the URL expiry time in seconds. If this parameter is not used, no URL signing is done.

  • session_token

    string

    The session token belonging to the temporary AWS access key ID and secret access key supplied for this upload. The Robot does not assume a role or refresh these credentials; they must remain valid for the upload.

Demos

  • Encode video, extract thumbnails and store on S3
  • Amazon S3 storage service

Related blog posts

  • API update: renaming Robots for better clarity April 7, 2010
  • Addressing S3 put request inconsistencies at Transloadit May 16, 2011
  • Introducing /s3/store Robot's 'url_prefix' parameter May 26, 2011
  • Launching SFTP Robot & unveiling new homepage August 21, 2011
  • All Robots now support expanded Assembly Variables April 27, 2012
  • Switching to official S3 CLI for enhanced file exporting February 5, 2015
  • Addressing the S3 incident with fixes and discounts February 17, 2015
  • New pricing model for future Transloadit customers February 7, 2018
  • No-code real-time video uploading with Bubble & Transloadit August 2, 2019
  • Export files to DigitalOcean Spaces with ease December 9, 2019
  • Creating audio waveform videos with FFmpeg & Node.js January 4, 2021
  • New feature: auto-transcribe videos with subtitles March 8, 2021
  • Transloadit’s 2021 milestones and progress January 31, 2022
  • Expanding our API for better Terraform provisioning December 6, 2022
  • What is content localization? February 24, 2023
  • How to set up an S3 bucket to use with Transloadit March 25, 2023
  • Automatically correct page orientation in documents December 10, 2024
  • Automatic background removal from images March 10, 2025
  • Generate stunning images from text using AI April 1, 2025
  • Upscale and enhance low-res images in one Assembly March 18, 2026
  • Extract text and images from PDFs with /document/extract August 1, 2026
  • Switching from Cloudinary, Filestack, Mux, or Uploadcare September 9, 2026
Previous page ← /minio/storeNext page /sftp/store →
Contact support⁠

TransloaditChecking status…

Product

  • Services
  • Pricing
  • Demos
  • Tools
  • Security
  • Support

Company

  • About/Press
  • Blog/Jobs
  • Comparisons/Compliance matrix
  • Research
  • Open source
  • Solutions
  • Pioneers of the web

Docs

  • Getting started
  • Transcoding
  • FAQ
  • API
  • Guides/DevTips
  • Supported formats

More

  • Platform status⁠
  • Community forum⁠
  • Uppy
  • tus⁠

© 2009–2026 Transloadit-II GmbH

PrivacyTermsImprint
EnglishDeutschEspañolPortuguês (Brasil)