Built on C2PA Content Credentials

Nothing on your image you didn't put there.

Sign your own photographs, carry a mark you control, and read what any file says about itself.

Start signing
Drop a photograph here, or browseJPEG · PNG · WebP · HEIC · TIFF
Try one:

You sign it once.

How signing works

Signing adds two things: a credential that says who made the file, and an invisible mark that points back to it. The picture is untouched.

  1. 03Your credentialwho, when, with what · signed
  2. 02Your markin the pixels · invisible · points to 03
  3. 01The photographuntouched
one sheetthree sheets · one file · looks the same

Free to inspect. Pay when you sign for a living.

All plans

Inspecting any file is free on every plan.

You hold the keys

Signing happens on your device or in your camera.

Invisible by default

The mark can't be seen. A proof overlay is your call.

Survives the upload

Stripped metadata is found again through your mark.

Reads any file

Yours, someone else's, a generator's, or nothing at all.

An open standard

C2PA Content Credentials. Anyone can verify without us.

Never removes

A mark that isn't yours is reported and left alone.

What survives being passed around?

Full breakdown

Figures from the research, each cited on its own page.

Survival profile by methodQualitative, from the literature. Full bar survives, half partial, hollow lost.
Durable CredentialJPEGCropShotRegenSynthID-ImageJPEGCropShotRegenTrustMarkJPEGCropShotRegenTree-RingJPEGCropShotRegenManifest aloneJPEGCropShotRegenProof overlayJPEGCropShotRegen
qualitative

A platform strips it. Your mark finds it again.

Durable credentials

Most platforms throw metadata away on upload. The mark survives, and leads back to the credential you published.

01At capture

signedmanifest + mark

02After upload

strippedexif · xmp · manifest

03On inspection

found againp 0.9947 · through your mark

Drop in any file and see what it says.

Your uploads

Four things a file can turn out to say. Only one of them is yours.

12dp 400
12Adp 400
13dp 400
13Adp 400
verified

Signed by you.

no credential

Nothing attached.

someone else's

Reported, not removed.

tampered

Changed after signing.

Every reading is a record you can keep.

Where it lives

Readings come back as plain data: what was found, who signed it, how sure the detector is.

{
  "file": {
    "name": "harbour-dusk.jpg",
    "sha256": "ce9b8905ff5d21f4…e88e76a88",
    "width": 6240,
    "height": 4160
  },
  "state": "verified",
  "credential": {
    "standard": "C2PA 2.2",
    "signer": "Example Studio",
    "signed": "2026-10-07T09:12:44Z",
    "key": "hardware"
  },
  "mark": {
    "bits": 96,
    "present": true,
    "confidence": 0.9961
  },
  "other_marks": []
}
Sample record. Every reading can be downloaded in this shape.

Here's what we'll never do.

Our rules

Four lines we don't cross, on any plan.

01

Remove a mark you didn't put there.

02

Call a credential a lock.

03

Hold your keys.

04

Add anything visible unless you ask.

Curious how it works? We wrote it down.

All research

Field notes on credentials and watermarks, cited and dated.

Questions people ask first.

Does deprint remove watermarks?

No. It never removes a mark you didn't put there. A generator's disclosure watermark or another studio's credential is reported in plain words and left in place.

Is a credential copy protection?

No. A credential is a signed statement about a file: who made it, when, and with what. It lets anyone check that statement. It does not stop a copy being made.

What happens to my signed files if I leave?

They stay signed. The credential is inside the file and the signature keeps verifying. You can export the manifests you published, so recovery lookups keep working if you host them yourself.

Do you hold my signing keys?

No. Keys live in your camera or on your device. We never receive them and cannot recover them.

Can I inspect a file without signing anything?

Yes. Inspecting is free on every plan and has no monthly limit.

Start signing your work.

Start signing