How to verify C2PA Content Credentials
How to verify C2PA Content Credentials
You do not need software or an account. A browser-based verifier reads the manifest that travels inside the file and shows you what it found.
Step 1 — Open the verifier
Go to the C2PA verifier. Everything runs locally in your browser via WebAssembly; your file is never uploaded.
Step 2 — Add your file
Drag a JPG, PNG, WebP or AVIF onto the page, or paste an image URL. No install, no sign-up.
Step 3 — Read the report
The report shows:
- Signer — the certificate holder who claimed to have produced the file.
- Tool / generator — which app or device created or edited it.
- Signed at — the timestamp.
- Validation state — whether the signature chain is intact.
- AI declared — whether a C2PA assertion flags AI-generated or AI-edited content.
- Recognised organisation — whether the signer matches a known major issuer (Adobe, OpenAI, Google, Leica, and others), not just whether a signature is cryptographically valid.
What the results mean
A valid signature proves the manifest was not altered after signing. It does not prove the scene is true — only that the stated signer stands behind the record. And “no credentials found” is inconclusive: most images online simply never carried one.