Photo privacy notes/

A careful checklist before you share a photo

Check the image, its attached details, and any credentials before making a sharing copy. Metadata cleanup has limits.

Photo privacy is not a single switch. A file can include details that are useful for finding and licensing an image, sensitive information such as location, a signed provenance record, and a watermark embedded in the pixels. Before you share a copy, decide which of those details you need to keep.

1. Start with a photo you may share

Check that you took the photo or have permission to use it. Removing details from a file does not change who owns the copyright, release a person’s likeness, or grant permission to publish the image. Metadata can include creator and rights information, so removing it may also remove useful context for later use.

2. Keep the original

Save an unchanged original before making a sharing copy. The original may contain camera settings, time and location, captions, credit lines or a Content Credential. You may need these details to organize the image, document its history or confirm a signed claim.

3. Review what is attached

Common photo metadata standards include EXIF, IPTC and XMP. Depending on the file and the camera or editing software, metadata may describe how the picture was captured, who created it, what it depicts, its rights, or where and when it was made. Look for location and device details if privacy is your concern. Look for creator and rights information if attribution matters.

4. Choose changes field by field

Removing all metadata is not always the best choice. A caption or copyright notice may help the next person understand and credit the work. A GPS coordinate may be safer to remove before a public post. If you use a metadata cleanup tool, read its list of fields and keep a record of the copy you changed.

5. Check credentials and watermarks separately

A C2PA Content Credential is a signed record with its own content binding. Editing or re-encoding a file can affect whether a credential verifies. An invisible watermark such as SynthID is embedded in image content; it is not an ordinary metadata field. Removing EXIF, IPTC or XMP does not establish that a watermark is absent.

6. Review the copy before sending it

Open the processed copy. Confirm that it still looks right, that the output format is what you expect, and that the details you intended to remove are gone. Keep both files clearly named so you do not mistake the copy for the original. If provenance matters, verify the credential with a suitable verifier rather than relying on a blank metadata panel.

Deprint preview limits

The deprint preview demonstrates ordinary metadata cleanup and a simulated SynthID step. The simulated step does not detect, remove or weaken SynthID. The preview cannot establish whether an image is AI-generated or who made it. Treat its sample results as interface examples, not evidence.

Sources

  1. IPTC: What is photo metadata?
  2. C2PA Content Credentials Specification
  3. Google DeepMind: SynthID