C2PA manifest inspector

C2PA Content Credentials viewer & verifier

Inspect supported images, video, audio, and PDFs for C2PA manifest presence, signature validity, trust, issuer, generator, and action history. The report keeps provenance evidence separate from content classification.

  • Images, video, audio, and PDF
  • Signature validity and trust
  • Issuer and action history
A Content Credentials photograph followed by signed history cards and a verification result

Content Credentials viewer

Server analysis
  1. Checking service
  2. Choose file
  3. Inspect content
  4. View report

Step 1 of 4: Checking service.

Service check

Preparing the provenance inspector

Confirming the inspection service is ready before anything is sent.

How the Content Credentials viewer works

Content Credentials are C2PA provenance records that can describe capture, generation, or edits. This viewer separates a marker, cryptographic validity, and trust status, and never equates a credential with AI origin.

Validity before confidence

A marker-only, valid, invalid, trusted, untrusted, or unknown state is displayed explicitly.

Returned issuer and generator

Issuer, generator, and actions are displayed only when structured C2PA data provides them.

Missing credential context

Screenshots, re-encoding, and platform pipelines can strip manifests, so absence is reported as file context rather than an origin classification.

Open C2PA validation

The viewer uses the open C2PA toolchain and separates signature validity from signer trust in the returned report.

Evidence you can use

Every report separates cryptographic credentials, declared metadata, and provider-controlled verification. You can see exactly what ran before deciding what the file proves.

  • C2PA Content Credentials parsing and cryptographic validation for supported files.
  • Declared EXIF, XMP, IPTC, container, and generator metadata evidence.
  • A precise boundary and official path for provider-controlled verification when one exists.

Frequently asked questions

What are Content Credentials?

Content Credentials (C2PA) are cryptographically signed metadata that can record how a file was captured, generated, or edited. They are provenance records, not a universal statement that content is AI-generated.

Which files can I inspect?

JPEG, PNG, WebP, AVIF, HEIC, TIFF, PDF, MP4/MOV video, and WAV/MP3 audio. Files without credentials are reported as having no manifest rather than as an error.

Does a missing manifest mean a file is not AI-generated?

No. Manifests are stripped by screenshotting, re-encoding, and many platform pipelines. Absence of C2PA proves nothing about origin - it only means no credentials survived in this file.

How does this viewer verify C2PA credentials?

The viewer uses the open C2PA toolchain to parse the manifest and report signature validity separately from signer trust. The linked official C2PA guidance and verifier provide an additional reference for high-stakes trust decisions.