# list_comment_attachments

Source: https://modulify.ai/docs/api/comments/list-comment-attachments

Lists the images attached to one comment or reply, with their public URLs.

- Title: List the images on a comment
- Scope: `comments:read`
- Access: Read only
- Endpoint: `POST /v1/list_comment_attachments`

Images reach a comment only through `upload_comment_attachment`, because the comment box in the editor has no attach control and the Comments panel does not show them. Every attachment URL is world-readable by anyone holding it. Each attachment carries the id that `delete_comment_attachment` takes. See [Comments](https://modulify.ai/docs/editor/comments#from-an-ai-client-over-mcp).

## Request

Call it with a `POST` to `https://api.modulify.ai/v1/list_comment_attachments`, sending the inputs below as a JSON object. The token needs the `comments:read` scope.

It only reads and changes nothing, so retrying it is safe.

```bash
curl -X POST https://api.modulify.ai/v1/list_comment_attachments \
  -H "Authorization: Bearer YOUR_TOKEN" \
  -H "Content-Type: application/json" \
  -d '{"commentId":"COMMENT_ID"}'
```

Over MCP, the same method is the [list_comment_attachments tool](https://modulify.ai/docs/mcp/comments/list-comment-attachments).

## Inputs

| Input | Type | Required | Description |
| --- | --- | --- | --- |
| `commentId` | string | Yes | The comment or reply id. |

## Response

Every call answers with the [JSON envelope](https://modulify.ai/docs/api/requests-and-responses#the-response) of `success`, `message`, `data`, `code` and `version`. `data` holds the result described above, and on a method that returns a total, `count` carries it. The [response headers](https://modulify.ai/docs/api/requests-and-responses#headers-on-every-method-call) carry the call's `X-Request-Id` and what is left of your per-minute budget in `X-RateLimit-Limit`, `X-RateLimit-Remaining` and `X-RateLimit-Reset`. [Errors](https://modulify.ai/docs/api/errors) explains every status code a call can answer with.