All articles
Every guide on this site, grouped by topic rather than publish date: what's confirmed per provider, how the mechanism actually works, what regulation requires, and where removal and detection claims hold up.
Core
AI Text Watermark Removal
What removing an AI text watermark involves: the under-$50 lab attack that worked, real signal loss found in SynthID Text, and EU exemptions few mention.
AI Text Watermark: How Statistical Watermarking Works
A text watermark hides in which words a model picks. The mechanism, the one concrete detection number, and where testing says it breaks.
What Is AI Watermarking?
Visible labels, invisible signals, C2PA metadata, and statistical watermarking are four mechanisms sharing one name, and how each actually works.
AI Watermark Removal: What It Can and Cannot Mean
What AI watermark removal actually involves: stripped metadata, scrubbed text marks, and the $50 attack that broke a research watermark, not a product.
Can AI Watermarks Be Removed?
A signal-by-signal look at removing an AI watermark. Metadata, pixels, audio, and text fail differently, and evidence contradicts the marketing.
AI Watermark vs AI Detector
Why an inserted watermark and an after-the-fact detector score differ, with evidence GPTZero, Originality.ai, and ZeroGPT don't check for watermarks.
Provider trackers
Claude Watermark: Confirmed Facts, Reports, and Rumors
What Anthropic has confirmed about Claude's text watermark and file metadata: the rollout timeline, the missing detector, and rumors that don't hold up.
Anthropic Watermark: The Company, the Law, the Timeline
Anthropic as a company: what it committed to, which EU rules forced the August 2026 date, where it sits on C2PA, and the dated timeline behind the rollout.
ChatGPT Watermark: Text, Images, C2PA, and SynthID
OpenAI built a ChatGPT text watermark and shelved it. Images and audio got C2PA and SynthID instead, and testers keep finding gaps.
Is ChatGPT Watermarked?
ChatGPT images and audio carry a confirmed watermark, Google's tech, not OpenAI's. Chat text carries nothing, and OpenAI explained why.
Gemini Watermark: SynthID Text, Images, Audio, and Video
What Google confirmed about Gemini watermarking, the contradiction over Gemini text, and what researchers found trying to break SynthID.
Is Gemini Watermarked?
A direct answer on Gemini watermarking across images, audio, video, and text, including the marketing-vs-forum-reply contradiction.
Is Grok Watermarked? One Clause Says Yes, Nothing Says How
xAI's policy bans stripping watermarks from Grok's output, then never says what the watermark is. What's confirmed, contested, and marketing.
Is Llama Watermarked? Meta's Own Documents Say Nothing
Meta's Llama model cards never mention watermarking, Meta ships image/audio watermarks under other names, and its EU signature skips text.
DeepSeek Watermark: What China's Labeling Law Requires
DeepSeek's policies confirm visible AI labels under China's GB 45438-2025 law. The invisible-watermark claim doesn't hold up against its own docs.
Is DeepSeek Watermarked?
DeepSeek labels output because Chinese law requires it, not a confirmed invisible watermark. The regulation asks for more than DeepSeek admits.
Meta AI Watermark: Content Seal, Audio, and Shelved Research
Meta runs two shipped watermarking product lines and has open-sourced a third that covers text. No Meta product marks Meta AI chat text today.
LLM Watermarking: Claude vs Gemini vs ChatGPT vs Llama
A cross-provider synthesis of LLM text watermarking in 2026: Claude, Gemini, ChatGPT, Grok, Llama, DeepSeek, and why OpenAI shelved its own.
Removal guides
Remove Claude Watermark: Real Mark, No Way to Check Yet
Anthropic confirms every supported Claude model weaves a watermark into its text. Weeks after rollout, there's still no public detector.
Remove ChatGPT Watermark: Text vs Image Provenance
Three things get called the ChatGPT watermark. Only two exist, they fail in opposite ways, and the third was shelved before it shipped.
Remove Gemini Watermark: What SynthID Text Can Survive
Google says SynthID text survives light paraphrasing but not thorough rewriting, and a forum reply disputes whether the API applies it at all.
Remove DeepSeek Watermark: What's Actually There to Remove
DeepSeek's confirmed marking is a visible label anyone can delete. The "invisible watermark" claim traces to one uncorroborated report.
How the mechanism actually works
Token Probability Watermarking
How watermarking biases token selection during generation, the patent describing it without naming SynthID, and the $50 attack that stole its rule.
Statistical Text Watermarking
How generation-time token nudges create a detectable watermark in AI text, designed to be un-guessable without a key, and how it was cracked.
Text Watermark Robustness: What Actually Survives an Edit
What robustness means for a text watermark, the 800-token floor detection depends on, and why four SynthID Text audits tell a rockier story.
Paraphrasing AI Watermarks: What One Rewrite Actually Does
The most-studied attack on AI text watermarks, from the 2023 paper arguing paraphrasing wins to 2026 data showing 98.3% signal loss.
Hidden Unicode AI Watermark: Proves Almost Nothing
Copy text from Claude or ChatGPT and you'll often find an invisible character. Four Unicode characters explain nearly all of them.
Zero-Width Space Watermark: Real Technique, Wrong Mechanism
Zero-width space steganography is real and decades old, but it isn't how Google's or Anthropic's watermarks work, and proves nothing.
SynthID Watermark: Text, Images, Audio, and Video
How SynthID marks images, audio, and video, how SynthID Text marks model output through token sampling, and what red teams found attacking it.
AI Watermarking Research: A Map of the Literature
The academic field in one page: the 2023 green-list paper, the schemes that rebuilt it, the $50 stealing attack, and SynthID's patents.
AI Watermark Spoofing: Forging Someone Else's Signal
What AI watermark spoofing means, the under-$50 attack that pulled it off, and why the same lab that built the attack published the test that catches it.
Do Em Dashes Mean AI Wrote It? What the Data Shows
One test gave six chatbots identical prompts. Two produced zero em dashes. Here's where the rule came from, and why it never worked as a tell.
Detection
AI Text Watermark Detector
How text watermark detectors work, why Claude's mark has no public detector, why Google's may check nothing, and why GPTZero isn't in this category.
Claude Watermark Detector: There Isn't One Yet
No public Claude watermark detector exists. Here's what Anthropic has actually committed to, why the delay may be deliberate, and what to use instead.
AI Watermark Detector
What an AI watermark detector checks across image, video, and audio, why a scheme mismatch causes a false negative, and why a clean result proves nothing.
AI Detector False Positives: Why They Happen So Often
Real, documented AI-detector false positives, the mechanical reason they happen, and why a watermark check beats a detector score.
Regulation and disclosure
EU AI Act and AI Watermarking: Article 50 Explained
How EU AI Act Article 50 forces providers to mark synthetic content, what counts as compliance, what it costs to get wrong, and the deadline.
Machine-Readable AI Marking: EU AI Act Article 50 Rules
What machine-readable marking means under EU AI Act Article 50, why it's tech-neutral, and uneven enforcement readiness across the EU.
AI-Generated Content Disclosure: EU Article 50 Duties
How EU AI Act Article 50 disclosure duties differ from machine-readable marking, who they fall on, and where the exemptions sit.
Provenance and metadata standards
C2PA Content Credentials for AI Provenance
What's actually inside a C2PA Content Credentials manifest, how hard binding makes tampering visible, and what a verified credential does not prove.
C2PA vs SynthID
Why C2PA Content Credentials and SynthID watermarks fail in opposite ways, what survives a screenshot, and who can actually run each detector.
AI Content Provenance: What It Proves, and What It Doesn't
What content provenance records, how it differs from watermarking and detection, and the limits the vendors state in their own words.
AI Signature: Watermarks, Metadata, and Style Signals
Four things get called an AI signature: a signed C2PA manifest, an invisible watermark, a writing tic like the em dash, and a detector's verdict.
Metadata AI Watermarking
What a C2PA manifest contains, the two free tools that read and delete one, and why metadata isn't the same thing as a hidden watermark.
Other media (image, video, audio)
Image AI Watermarking: OpenAI, Google, Meta, and Amazon
How OpenAI, Google, Meta and Amazon mark AI images, what the invisible layer survives, and where testing found the signal falling off.
Video AI Watermarking: Sora, SynthID, and Nova Reel
OpenAI, Google, Amazon and Microsoft each watermark AI video differently. One test found OpenAI's own provenance claim backwards.
Audio AI Watermarking: OpenAI, Meta, and Google SynthID
OpenAI's audio watermark landed two days before an EU deadline, Meta watermarked audio a year earlier, and its patent lists Ian Goodfellow.