Discord attachment file_types: image-only option for Sume video

Discord ATTACHMENT command options now accept file_types. Limit a slash command to images, then pass the attachment's public URL to a Sume image-to-video job.

4 min readSume
All posts

Discord's changelog for August 5 says File Upload components and ATTACHMENT command options now accept file_types arrays. Set the array on your slash command's attachment option so users can only pick image files, then send the attachment's public HTTPS URL to a Sume image-to-video job as image_url.

The Discord change is from its developer changelog, read 2026-10-01. Sume behavior is from Video generation, Webhooks and Jobs and results.

What does file_types change for a bot?

The changelog entry is titled File Type Filtering. The snapshot gives no accepted-value list, so check Discord's command-option reference for the exact format before you ship. The entry does not say how strictly the filter is enforced, so still validate what arrives in your handler.

How does the attachment reach Sume?

Sume video inputs must be public HTTPS media URLs; localhost, private-network and non-HTTPS URLs are rejected. For image-to-video the request is prompt plus image_url as the first frame. See the image-to-video handoff for the request shape.

Handoff from a Discord interaction to a Sume job, read 2026-10-01.
StepDetail
Slash command optionATTACHMENT with file_types set to images
Input to SumeAttachment URL as image_url, public HTTPS only
Submitmode: "webhook" with webhook_url
Webhook URL rulePublic HTTPS; localhost and private networks rejected
FallbackPoll status_url until terminal

How do I answer the user without blocking?

Acknowledge the command, submit the job, and post the result when it finishes. Send mode: "webhook" with webhook_url; the submit returns 202 with the job envelope. If you cannot take webhooks, poll status_url until it reports terminal. Keep the job_id so you can update the original Discord message.

Do I still validate the file?

Yes. Treat the attachment as untrusted input: confirm the content type, and check the URL is HTTPS before submit, since Sume rejects non-HTTPS URLs. Send an Idempotency-Key derived from the interaction id so a repeated delivery does not create a second paid job. More bot patterns are in Discord bot AI video generation.

Sources

Related posts

More in Integrations

All Integrations posts

Written by Sume