Produce a password-protected copy of a draft PDF
Encrypts the PDF via convert-worker pdfengines (qpdf) and stores an encrypted artifact; download_url fetches it. The working draft stays unencrypted — Seal’s own pipeline cannot read encrypted PDFs. Honours the org egress.allow_convert gate.
POST
/documents/pdf/protectAuthorization
AuthorizationBearer token · headerrequiredPass your API key as a Bearer token. API keys are scoped to specific operations — configure scopes in your organization's Settings → Developer → API Keys.
Request body
requiredapplication/jsonidstringrequireduser_passwordstringPassword required to open the PDF
max length 128
owner_passwordstringPassword granting full access (defaults to user)
max length 128
allow_printingbooleanallow_copyingbooleanallow_modifyingbooleanallow_annotatingbooleanallow_filling_formsbooleanallow_assemblingbooleanResponses
200
Protected copy created
successbooleanstorage_idstringsizeintegerdownload_urlstring | null