Skip to main content
AI Watermark Removal

Is it watermarked?

Is ChatGPT Watermarked?

Since May 19, 2026, images generated by ChatGPT have carried Google DeepMind's SynthID pixel watermark stacked on top of OpenAI's own C2PA metadata, a genuine cross-company arrangement most users never notice. Supported audio got the same treatment on July 31, 2026. Ordinary chat text is a different story: OpenAI reportedly built a text watermark years ago, said plainly why it is still not shipped, and has told us more about that decision than Anthropic, Google, or Meta have told us about theirs.

Published 2026-08-11Updated 2026-08-11Confirmed

Key takeaways

  • Confirmed: since May 19, 2026, images from ChatGPT, the OpenAI API, and Codex carry both C2PA Content Credentials metadata and Google DeepMind's SynthID pixel watermark, verifiable at openai.com/verify.
  • Confirmed: OpenAI extended the same SynthID watermarking to supported audio from ChatGPT Voice, GPT-Live, and the API on July 31, 2026, two days before EU AI Act Article 50 took effect, plus a Content Provenance API for third-party checks.
  • Reported: OpenAI built an internal ChatGPT text-watermarking method reportedly around 99.9% effective years ago and held it back, citing circumvention risk, a disproportionate false-positive impact on non-native English writers, and internal survey data suggesting roughly 30% of users would use ChatGPT less if it shipped.
  • Community discussion, unresolved: a June 28, 2026 OpenAI Developer Community thread found that a PNG's valid C2PA metadata gets stripped down to bare file chunks the moment it is re-uploaded into a ChatGPT conversation, even though the original file still verifies fine on openai.com/verify. No OpenAI staff response was found.
  • Hidden Unicode characters, non-breaking spaces, repeated phrases, and writing-style habits get called ChatGPT watermarks constantly online. OpenAI has never named any of them as a mechanism.

Provider map

Text watermark status by provider

Detector guide
How to read this map

Confirmed means an official or primary source documents text watermarking. Contested means official sources disagree with each other. Watchlist means regulation, research, or provider behavior makes the topic worth tracking closely.

Images: confirmed, and the watermark is not OpenAI's own

Confirmed

You will see exactly what is attached to a ChatGPT image, who built each layer, and the one habit that destroys your ability to check.

OpenAI says images generated with ChatGPT, Codex, and the OpenAI API include C2PA Content Credentials metadata and a SynthID watermark, verifiable through a public tool at openai.com/verify. The rollout, dated May 19, 2026, came alongside OpenAI joining the C2PA steering committee and reaching "C2PA Conforming Generator Product" status.

The detail worth pausing on is whose watermark it is. SynthID is Google DeepMind's, so two competing labs now run the same pixel-level signal on their own output.

OpenAI describes the two layers as complementary: "C2PA helps content carry detailed context, SynthID helps preserve a signal when metadata does not survive."

OpenAI's own caveats deserve quoting rather than glossing.

  • "No detection method is foolproof."
  • C2PA metadata "can be stripped, lost through uploads and downloads, or broken by transformations."
  • Provenance signals are "not a guarantee that content is accurate, unedited, legally owned, or presented in the correct context."

So a result of no signal detected does not mean the image was not made by ChatGPT. It can simply mean the metadata did not survive whatever happened to the file after it left OpenAI's servers.

Audio joined in July 2026, three weeks after a system card that never mentioned it

Confirmed

Here are the dates and scope for audio, plus a timing detail that says something about how this got built.

On July 31, 2026, two days before EU AI Act Article 50 transparency rules took effect, OpenAI extended SynthID watermarking to supported audio from ChatGPT Voice, GPT-Live, and the API. It added a Content Provenance API the same day so third parties can check audio for OpenAI's signals programmatically.

GPT-Live's own system card, published three weeks earlier on July 8, 2026, makes zero mention of SynthID, C2PA, or watermarking. The audio provenance rollout was announced separately from, and after, the model's own safety documentation rather than built into it from the start.

Text: still not shipped, and OpenAI said why in real detail

Research/proposal

You will get the full reported rationale, which is more than any rival has offered about its own text-watermarking decision.

According to Wall Street Journal reporting from August 2024, OpenAI built an internal ChatGPT text-watermarking method reportedly around 99.9% effective, years before the 2026 provenance work, and chose not to ship it.

The reasons given, per that reporting, were specific.

  • The method could be circumvented.
  • False positives would land disproportionately on non-native English writers, whose phrasing patterns look more machine-like to some watermark detectors.
  • Internal survey data suggested close to 30% of users would use ChatGPT less often if the feature launched.

That is a genuinely more detailed public rationale than Anthropic, Google, or Meta have offered about their own text-watermarking decisions. It reframes the missing ChatGPT text watermark as a considered tradeoff rather than a technical gap.

Nothing found more recently changes that. OpenAI's 2026 writing on provenance continues to describe text as a future goal, not a status change.

Secondary reporting states that OpenAI's own Responsible AI Provenance Guide says the company does not embed watermarks in text model outputs at all, relying on C2PA metadata for images instead. That specific claim could not be verified against OpenAI's own site, so it stays a secondary-source data point rather than an official confirmation, but it points the same direction as everything else here.

What gets called a ChatGPT watermark and is not one

Rumor/speculation

Here is the list of things people flag as watermarks that OpenAI has never named as a mechanism.

  • Hidden Unicode characters such as zero-width spaces.
  • Non-breaking spaces and other invisible whitespace.
  • Repeated phrases and stock openers.
  • Writing-style habits, punctuation tics, and sentence rhythm.

None of these appear in OpenAI's help-center article on images and audio, or anywhere else in its documentation, as an actual watermarking mechanism.

Given how candid OpenAI has been about why it has not shipped a text watermark, treat any claim that ordinary ChatGPT text already carries one as unconfirmed at best. Cleaning invisible characters out of pasted text is still worth doing for formatting reasons, it just is not defeating a watermark.

FAQ

Does ChatGPT's image watermarking prove ChatGPT text is watermarked too?

No. Image provenance (C2PA plus SynthID) and statistical text watermarking are entirely separate systems built for different modalities. Only the image and audio systems are confirmed deployed, and OpenAI has said its text-watermarking goal remains unmet.

Why has OpenAI not shipped a ChatGPT text watermark?

It reportedly built one, around 99.9% effective by internal measure, and held it back over circumvention risk, a disproportionate false-positive impact on non-native English writers, and survey data suggesting roughly 30% of users would use ChatGPT less if it launched. That is a stated tradeoff, not a technical inability.

Whose watermark is actually on a ChatGPT-generated image?

Both OpenAI's and Google's. OpenAI attaches its own C2PA Content Credentials metadata, then stacks Google DeepMind's SynthID pixel watermark on top, an arrangement OpenAI itself frames as complementary layers rather than a single proprietary system.

Can I trust a result of no watermark detected on a ChatGPT image?

Not fully. OpenAI's own documentation says no detection method is foolproof and that metadata can be stripped by uploads, downloads, or file transformations. One observed case: re-uploading a genuinely OpenAI-generated image into a ChatGPT conversation strips its C2PA metadata down to bare file chunks, even though the original file still verifies elsewhere.

Next steps

  • Read the full provider tracker if you want the dates, quotes, and independent test results behind each claim here. ChatGPT watermark tracker
  • Find out what can and cannot actually be removed from a ChatGPT image, audio clip, or block of text. Remove ChatGPT watermark
  • Paste text you are unsure about into the free in-browser cleaner to see whether it contains invisible Unicode characters. Hidden character cleaner
  • Understand why a watermark and an AI detector answer completely different questions before you rely on either. AI watermark vs AI detector

Sources and citation status