KintsugiKintsugi

Reject a certificate import

POST/certificate-imports/{certificate_import_id}/reject

Reject a certificate import in the resolved organization, moving it to REJECTED and out of the review queue. Returns the updated import. Returns 409 if the import has already been approved, and 404 if it does not exist or belongs to an organization your credential cannot access. A free plan is refused with 403 PLAN_UPGRADE_REQUIRED. A paid plan without exemption certificate management is refused with 403 FORBIDDEN.

Authorization

Api-KeystringRequired

Your secret API key. Include it with every request.

Headers

Api-Versiondate

Release date, as YYYY-MM-DD. Defaults to 2026-07-21.

Organization-Idstring

Target organization id (Organization-Id selector).

Connection-Idstring

Target connection id; resolves to its organization.

Entity-Idstring

Platform entity id; resolves to a connection's organization.

Entity-Sourcestring

Optional source to disambiguate an Entity-Id.

Path parameters

certificate_import_idstringRequired

The unique identifier of the certificate import to reject.

Response

idstringRequired

Kintsugi's unique identifier for the certificate import.

uploadSessionIdstringRequired

Identifier of the upload batch this import belongs to.

fileNamestringRequired

Name the file was uploaded under.

mimeTypestringRequired

Media type of the uploaded file.

reviewStatusPublicCertificateImportReviewStatusEnumRequired

Where this import sits in the OCR review flow.

Available options:QUEUEDPROCESSINGUNSUPPORTEDSUGGESTED_REJECTDUPLICATENEEDS_REVIEWREADY_TO_APPROVEAPPROVEDREJECTED
customerIdstringRequired

Customer that OCR matched this certificate to, or null when no customer has been matched.

customerMatchStatusPublicCustomerMatchStatusEnumRequired

Outcome of the OCR customer match, or null before matching has run.

Available options:MATCHEDSUGGESTEDUNMATCHED
createdAtstringRequired

When the import was created, as an RFC-3339 UTC timestamp.

updatedAtstringRequired

When the import was last updated, as an RFC-3339 UTC timestamp; equal to createdAt for an import that has not been modified since creation.

200

Successful Response

400

The request was invalid.

401

Authentication failed or was missing.

403

The credential is not permitted for this request.

404

The requested resource was not found.

409

The request conflicts with existing state.

422

The request failed validation.

500

An unexpected error prevented the request from completing.

cURL
POST /certificate-imports/{certificate_import_id}/reject
-H "Api-Key: ***"
-H "Api-Version: 2026-07-21"
Example request
https://api.trykintsugi.com/certificate-imports/{certificate_import_id}/reject
Response
{
"id": "ecim_2mNpQr7Ls8f3k",
"uploadSessionId": "a1b2c3d4-e5f6-4a7b-8c9d-0e1f2a3b4c5d",
"fileName": "resale-certificate.pdf",
"mimeType": "application/pdf",
"reviewStatus": "QUEUED",
"customerId": "cust_2mNpQr7Ls8f3k",
"customerMatchStatus": "MATCHED",
"createdAt": "2026-07-28T12:00:00Z",
"updatedAt": "2026-07-28T12:05:00Z"
}
Reject a certificate import (2026-07-21) | Kintsugi API Reference