Spot AI images: which generators leave traces in the file
For stores labelling AI images under Article 50 of the EU AI Act: what ChatGPT, Gemini, Midjourney and others write into their files, with a source for every row.
OpenAI, Google, Adobe, Microsoft, Amazon and Runway write C2PA provenance records into their images, and OpenAI and Google also embed the invisible SynthID watermark. Grok, Ideogram and others document no marking, while Stable Diffusion and ComfyUI store the prompt in the PNG file.
Metadata disappears with screenshots, edits and many uploads, so a file without traces does not prove a photo is real. For labelling in your store under Article 50 of the EU AI Act, the file is not enough anyway, because a deep fake needs a visible label (Commission guidelines para. 117).
Comparison: what each generator leaves in the file
Status as of 11 October 2026. Every row is based on the vendor's help pages and developer documentation or on the public list of C2PA conforming products, and the links in the last column lead to the sources. “Not documented” means we found no source, not that the marking is absent.
| Generator | C2PA | IPTC | Invisible watermark | PNG data | Left after upload? | Sources |
|---|---|---|---|---|---|---|
| ChatGPT OpenAI | Yes since 02/2024 | Not documented | Yes SynthID, since 05/2026 | Not documented | Often not C2PA is easily lost, SynthID may remain | ↗ ↗ C2PA ↗ ↗ |
| Gemini | Yes Nano Banana, since 11/2025 | Partly shown in 2024 (IPTC) | Yes SynthID | Not documented | Often not C2PA is easily lost, SynthID is built to survive compression | ↗ ↗ C2PA ↗ ↗ ↗ ↗ |
| Midjourney Midjourney | Not documented | Not documented own ID tag documented | Not documented | Not documented | Often not Tag is lost with screenshots and social media | ↗ C2PA |
| Adobe Firefly Adobe | Yes since 2023 | Not documented | Not documented | Not documented | Often not Record is lost with screenshots and non-C2PA exports | ↗ ↗ ↗ |
| Stable Diffusion Stability AI · AUTOMATIC1111 · ComfyUI · InvokeAI | Partly Stability API only | Not documented | Partly depends on the program | Yes parameters, prompt, workflow | Original only Prompt fields only in the saved file | ↗ C2PA ↗ ↗ ↗ ↗ ↗ ↗ |
| Flux Black Forest Labs | Partly API yes, self-hosted no | Not documented | Partly reference code and fal.ai | Partly EXIF in the reference code | Often not Metadata is lost through editing and compression | ↗ ↗ ↗ ↗ |
| Canva Canva | Not documented C2PA member, exports not documented | Not documented | Not documented | Not documented | Not documented not documented | ↗ ↗ ↗ |
| Microsoft Designer Microsoft | Yes Designer, Bing, Copilot | Not documented IPTC term inside C2PA | Not documented | Not documented | Often not Record is lost with screenshots and many uploads | ↗ ↗ ↗ ↗ |
| Meta AI Meta | Not documented | Yes value not stated | Yes since 12/2023 | Not documented | Partly Watermark resilient per Meta, metadata is not | ↗ ↗ ↗ |
| Shopify Magic Shopify | Not documented | Not documented | Yes technology not named | Not documented | Not documented watermark technology not named | ↗ |
| Grok xAI | Not documented | Not documented | Not documented | Not documented | Not documented nothing documented | ↗ C2PA |
| Leonardo.ai Leonardo | Not documented | Not documented | Not documented | Not documented | Not documented nothing documented | ↗ |
| Ideogram Ideogram | Not documented | Not documented | Not documented | Not documented | Not documented nothing documented | ↗ |
| Photoroom Photoroom | Not documented | Not documented | Not documented | Not documented | Not documented nothing documented | ↗ |
| Runway Runway | Yes conformant since 09/2026 | Not documented | Not documented | Not documented | Often not metadata | ↗ C2PA |
| Amazon Titan / Nova Canvas Amazon (Bedrock) | Yes Bedrock, conformant since 07/2026 | Not documented | Yes with detection API | Not documented | Partly C2PA only if unedited | ↗ C2PA |
| Samsung Galaxy AI Samsung | Yes AI edits from S25 | Not documented | Not documented | Not documented | Partly visible mark stays | ↗ ↗ |
| Google Pixel / Google Fotos | Yes Pixel 10, Photos | Yes on AI edits | Not documented | Not documented | Often not metadata | ↗ C2PA ↗ |
“Left after upload?” refers to metadata (C2PA, IPTC, PNG fields). An invisible watermark is more robust, but it cannot be checked in the browser.
What the columns mean
- C2PA (Content Credentials): a signed provenance record in the file. It names the issuer, the tool and often the source type, such as “created using generative AI”. Any change made outside a C2PA-aware program breaks the signature.
- IPTC Digital Source Type: a field in the XMP metadata with a fixed value, for example
trainedAlgorithmicMedia. Google Merchant Center requires it for AI images and reads it from your product feed. - Invisible watermark: a signal in the pixels, such as SynthID from Google DeepMind. It survives cropping and compression better than metadata, but only the vendor's verification service can read it.
- PNG data: text fields such as
parametersorworkflowin which local programs store the prompt and settings. They are not a provenance record, but they are a strong hint.
Checking metadata is not AI detection
Our checker shows what is written in the file. It does not analyse pixels and does not estimate a probability.
A finding proves that AI was involved, but not what it did, whether it generated the whole picture, replaced a background or only removed noise. The labelling duty depends on that.
A missing finding proves nothing. Metadata is lost through screenshots, cut-outs, re-exports and many uploads. In addition, providers whose AI systems were placed on the market before 2 August 2026 only have to implement machine-readable marking under Article 50(2) by 2 December 2026 (Article 111(4) AI Act, added by Regulation (EU) 2026/1744). Until then, unmarked AI images can lawfully be in circulation.
What is left after uploading
Whether the traces survive the upload into your store depends on the platform. Shopify merchants reported in the community forum that the CDN stripped XMP metadata. Shopify staff wrote in July and September 2026 that this had been fixed, but there is no changelog entry. After re-encoding on delivery, the signature of a C2PA manifest no longer matches the file in any case.
According to the Content Authenticity Initiative, platforms may remove C2PA data if their software does not support the standard. Its answer is “Durable Content Credentials”, where a watermark or a fingerprint of the image points to a copy of the record stored online.
So check the original file from the generator, not the image in your store.
Generators one by one
ChatGPT
C2PA record since 2024, SynthID since May 2026. Only OpenAI can check the watermark.
ReadAI generatorGemini
SynthID in every image, C2PA since November 2025, a visible sparkle depending on the plan.
ReadAI generatorMidjourney
Its own ID tag in every file, checked at midjourney.com/verify, no C2PA documented.
ReadAI generatorAdobe Firefly
Content Credentials with model and version since 2023, including Generative Fill in Photoshop.
ReadAI generatorStable Diffusion
Prompt and settings in PNG fields, C2PA only through the Stability API.
ReadAI generatorFlux
API with C2PA, reference code with EXIF and watermark, third-party services mostly undocumented.
ReadAI generatorCanva
Visible label in Dream Lab, C2PA member, nothing documented for Magic Media.
ReadAI generatorMicrosoft Designer
Content Credentials in Designer, Bing Image Creator and Copilot, since 2023.
ReadAI generatorMeta AI
Visible marker, IPTC metadata and an invisible watermark, no C2PA documented.
ReadAI generatorShopify Magic
Invisible watermark on every generated image, no visible label in the store.
ReadLabelling in your store: the file is not enough
If you use an AI tool to create or edit images for your own store, you are a deployer under the AI Act (Article 3(4), Commission guidelines para. 12, 14). If the image is a deep fake, it has needed a visible label since 2 August 2026 (Article 50(4)). The generator's machine-readable marking does not count, because your customers cannot see it (para. 117). The labelling check tells you whether an image is affected, and the label tool adds the label.
Frequently asked questions
Can metadata reliably tell me whether an image is AI-generated?
No. Metadata only shows what the generator wrote into the file and what has survived since. A finding proves AI was used, a missing finding proves nothing.
Which generators add C2PA?
According to the sources in the table, OpenAI (ChatGPT and the API), Google (Gemini image models), Adobe Firefly, Microsoft, Amazon (Bedrock) and Runway. For Midjourney, Grok, Ideogram and several others we found no source.
Can I check SynthID in the browser?
No, our checker only reads metadata. SynthID sits in the pixels and can only be checked by the vendors, by Google in the Gemini app and by OpenAI for its own images at openai.com/verify.
Is the C2PA marking enough as an AI label in my store?
No. Your customers cannot see it, so under the guidelines deployers cannot rely on it (para. 117). A deep fake needs a visible label on the image.
May I remove the metadata from AI images?
We advise against it. The guidelines recommend preserving existing markings, and the metadata documents the origin towards platforms such as Google Merchant Center. Our tools never remove metadata.
Sources
Para. refers to the paragraph number in the European Commission's guidelines on Article 50, C(2026) 5054.
- OpenAI: Advancing content provenanceOpenAI · Platform · 19 May 2026
- OpenAI Help: C2PA und SynthID in OpenAI-BildernOpenAI · Platform · 6 Feb 2024
- OpenAI: Bildprüfung (verify)OpenAI · Platform · 19 May 2026
- Google DeepMind: SynthIDGoogle DeepMind · Platform · 11 Oct 2026
- Microsoft Learn: Content Credentials in Azure OpenAIMicrosoft · Platform · 11 Oct 2026
- C2PA: Verzeichnis konformer ProdukteC2PA · Standard · 11 Oct 2026
- Google Cloud: Content Credentials für generierte BilderGoogle · Platform · 11 Oct 2026
- Google: KI-Bildprüfung in der Gemini-AppGoogle · Platform · 11 Oct 2026
- Google: Nano Banana ProGoogle · Platform · 11 Oct 2026
- Google AI for Developers: Bilderzeugung mit der Gemini APIGoogle · Platform · 11 Oct 2026
- IPTC: Googles KI-Transparenz auf Basis von IPTC-StandardsIPTC · Standard · 1 Oct 2024
- Midjourney Help Center: Content AuthenticityMidjourney · Platform · 11 Oct 2026
- Content Authenticity Initiative: C2PA und FireflyContent Authenticity Initiative · Association · 21 Mar 2023
- Adobe: Generative Fill in PhotoshopAdobe · Platform · 23 May 2023
- Content Authenticity Initiative: Durable Content CredentialsContent Authenticity Initiative · Association · 11 Oct 2026
- Content Authenticity Initiative: So funktionieren Content CredentialsContent Authenticity Initiative · Association · 11 Oct 2026
- AUTOMATIC1111 Stable Diffusion WebUI: Quellcode images.pyGitHub · Standard · 11 Oct 2026
- ComfyUI: Quellcode nodes.py (SaveImage)GitHub · Standard · 11 Oct 2026
- InvokeAI: Quellcode image_files_disk.pyGitHub · Standard · 11 Oct 2026
- Fooocus: Quellcode meta_parser.pyGitHub · Standard · 11 Oct 2026
- CompVis Stable Diffusion: Referenzskript txt2img.py (Wasserzeichen)GitHub · Standard · 11 Oct 2026
- Hugging Face Diffusers: SDXL-WasserzeichenGitHub · Standard · 11 Oct 2026
- Stability AI: Integrity Transparency ReportStability AI · Platform · 11 Oct 2026
- Black Forest Labs: FLUX.1 Kontext dev (Modellkarte)Hugging Face · Platform · 11 Oct 2026
- Black Forest Labs: FLUX.2 READMEGitHub · Platform · 11 Oct 2026
- Black Forest Labs: FLUX Quellcode util.pyGitHub · Standard · 11 Oct 2026
- fal.ai: Verifyfal.ai · Platform · 11 Oct 2026
- Black Forest Labs: API-IntegrationsrichtlinienBlack Forest Labs · Platform · 11 Oct 2026
- Canva: AI Product TermsCanva · Platform · 11 Oct 2026
- Canva Hilfe: Dream LabCanva · Platform · 11 Oct 2026
- C2PA: MitgliederC2PA · Standard · 11 Oct 2026
- Microsoft: FAQ zu Microsoft DesignerMicrosoft · Platform · 11 Oct 2026
- Bing: Release Notes zu Bing Image CreatorMicrosoft · Platform · 1 Sept 2023
- Microsoft: Responsible-AI-FAQ zu Image CreatorMicrosoft · Platform · 11 Oct 2026
- Bing Image Creator: NutzungsbedingungenMicrosoft · Platform · 11 Oct 2026
- IPTC: Microsoft kennzeichnet generative KI mit IPTC und C2PAIPTC · Standard · 24 May 2023
- Meta: KI-Bilder auf Facebook, Instagram und Threads kennzeichnenMeta · Platform · 6 Feb 2024
- Meta: Updates zu Meta AI (Imagine)Meta · Platform · 6 Dec 2023
- Meta: Ansatz zur Kennzeichnung KI-generierter InhalteMeta · Platform · 5 Apr 2024
- Meta: AI images in adsMeta · Platform · 3 Oct 2026
- Shopify Hilfe: Medien mit KI erzeugenShopify · Platform · 11 Oct 2026
- Shopify Hilfe: Inhalte mit Sidekick erzeugenShopify · Platform · 11 Oct 2026
- Shopify Community: CDN stripping IPTC metadataShopify Community · Platform · 4 Sept 2026
- Google Merchant Center: preserving image metadataGoogle · Platform · 1 Feb 2024
- xAI: Bilderzeugung (API-Dokumentation)xAI · Platform · 11 Oct 2026
- Leonardo.ai Hilfe: Videos erzeugenLeonardo.ai · Platform · 11 Oct 2026
- Ideogram: Häufige FragenIdeogram · Platform · 11 Oct 2026
- Photoroom: DokumentationPhotoroom · Platform · 11 Oct 2026
- Runway: SafetyRunway · Platform · 11 Oct 2026
- AWS: Responsible AI für Amazon Nova CanvasAmazon Web Services · Platform · 11 Oct 2026
- Samsung: Galaxy-S25-Reihe weltweit verfügbarSamsung · Platform · 7 Feb 2025
- Samsung: Generative Fotobearbeitung auf dem Galaxy S24Samsung · Platform · 11 Oct 2026
- Google: Content Credentials auf Pixel und AndroidGoogle · Platform · 1 Sept 2025
- Google: Transparenz bei KI-Bearbeitung in Google FotosGoogle · Platform · 24 Oct 2024
- IPTC: Pixel 10 unterstützt C2PA mit IPTC Digital Source TypeIPTC · Standard · 20 Aug 2025
- Regulation (EU) 2024/1689 (AI Act)EUR-Lex · Law · 12 Jul 2024
- Regulation (EU) 2026/1744 (Digital Omnibus on AI)EUR-Lex · Law · 24 Jul 2026
- Commission Guidelines on the transparency obligations under Article 50 AI Act, C(2026) 5054 finalEuropäische Kommission · Commission · 20 Jul 2026
Read next
Check an AI image
Shows whether your image carries AI traces: C2PA, IPTC, generator.
OpenTechnologyUnderstanding AI metadata
C2PA, IPTC and watermarks: what the file says.
ReadBasicsWhen AI images need a label
Article 50 AI Act in plain words, with the exceptions.
ReadQuestionnaireDo I need a label?
A few questions from the EU guidelines, answered with a citation.
OpenLabel your first AI image
Free in your browser, with the EU icon and text in 24 languages. On Shopify, the app labels your whole store.


