# compliance.items.update

Update a compliance item's status (upcoming, in_progress, done or skipped), notes, owner (assigneeUserId of an active administrator or finance member) or snoozedUntil date. Requires id, expectedRevision and idempotencyKey. Automatic refreshes never overwrite these human decisions.

`POST /api/v1/accounting/compliance.items.update`

Permissions: `accounting:read`, `accounting:write` · Roles: admin, finance · Idempotency key required · Send `expectedRevision`

MCP tool: `accounting_compliance_items_update`

## Fields

| Field | Type | Required | Notes |
| --- | --- | --- | --- |
| `id` | string (ID) | Yes | The record's ID. |
| `expectedRevision` | integer | Yes | The record's current revision, from the last time you read it. If someone changed the record since, the request is refused with a conflict so you can reload and check before trying again. at most 9007199254740991; greater than 0. |
| `idempotencyKey` | string | Yes | Any unique text you generate once per intended change, so a retried request only happens once. Send it as the Idempotency-Key header instead if you prefer; if you send both they must match. 8–200 characters. |
| `status` | enum |  | Only include records with this status. One of: `upcoming`, `in_progress`, `done`, `skipped`. |
| `notes` | string |  | Notes kept with the record. at most 4000 characters. |
| `assigneeUserId` | string or null |  |  |
| `snoozedUntil` | string or null |  |  |
| `notifyOnResume` | boolean |  |  |

## Example request

```bash
curl https://app.getoatmilk.com/api/v1/accounting/compliance.items.update \
  -H "Authorization: Bearer $OATMILK_API_KEY" \
  -H "Content-Type: application/json" \
  -H "Idempotency-Key: $(uuidgen)" \
  -d '{
  "id": "9a8b7c6d-5e4f-4a3b-8c2d-1e0f9a8b7c6d",
  "expectedRevision": 3,
  "status": "upcoming"
}'
```

Reference page: https://app.getoatmilk.com/docs/api/compliance.items.update
