curl --request GET \
--url https://api.onlyx.ai/v1/creators/{creatorId}/media/{mediaId}/thumbnail \
--header 'Authorization: Bearer <token>'import requests
url = "https://api.onlyx.ai/v1/creators/{creatorId}/media/{mediaId}/thumbnail"
headers = {"Authorization": "Bearer <token>"}
response = requests.get(url, headers=headers)
print(response.text)const options = {method: 'GET', headers: {Authorization: 'Bearer <token>'}};
fetch('https://api.onlyx.ai/v1/creators/{creatorId}/media/{mediaId}/thumbnail', options)
.then(res => res.json())
.then(res => console.log(res))
.catch(err => console.error(err));"<string>"Get a thumbnail
Returns a small preview image of one vault item as image bytes, not JSON. Only small previews are served: full-size originals and videos are not available through the API. The call needs your credential, so a browser cannot load thumbnailUrl directly in an <img> tag: fetch it on your server. Responses may be cached privately for five minutes; check the Content-Type header for the image format. Limited to 60 calls per 60 seconds per credential. An item with no stored preview is 404 MEDIA_NOT_AVAILABLE.
Scope: requires media:read.
Rate limits: 60 requests per 60 seconds per credential — on top of the general limit of 120 requests per 60 seconds per credential.
curl --request GET \
--url https://api.onlyx.ai/v1/creators/{creatorId}/media/{mediaId}/thumbnail \
--header 'Authorization: Bearer <token>'import requests
url = "https://api.onlyx.ai/v1/creators/{creatorId}/media/{mediaId}/thumbnail"
headers = {"Authorization": "Bearer <token>"}
response = requests.get(url, headers=headers)
print(response.text)const options = {method: 'GET', headers: {Authorization: 'Bearer <token>'}};
fetch('https://api.onlyx.ai/v1/creators/{creatorId}/media/{mediaId}/thumbnail', options)
.then(res => res.json())
.then(res => console.log(res))
.catch(err => console.error(err));"<string>"Authorizations
An API key (onx_sk_…) created in OnlyX under Settings → API & MCP, or an OAuth access token (onx_at_…) issued to a connected app. Send it as Authorization: Bearer <credential>. API keys may also be sent as X-API-Key: <key>.
Path Parameters
The creator id (cre_…), from GET /v1/creators.
40The vault media id (digits), from GET /v1/creators/{creatorId}/media.
^\d{1,25}$Response
The thumbnail image.
The response is of type file.