Skip to content
Free: label AI images under the EU AI Act in your browser.Open the tool
EN
AI-LabelAI images, EU AI Act
AI generatorsUpdated 11 October 202611 primary sources

How to tell if an image was made with Stable Diffusion

Which fields AUTOMATIC1111, ComfyUI, InvokeAI and the Stability AI API write into the file and what it means for AI labelling under Article 50 of the EU AI Act.

Drop images hereor click or paste (Ctrl/Cmd+V). JPEG, PNG, WebP, AVIF, HEIC, GIF, TIFF. Up to 50 files.
Your images stay on your device.Reads C2PA, IPTC, XMP, EXIF and PNG text chunks

Local Stable Diffusion programs such as AUTOMATIC1111, ComfyUI and InvokeAI write the prompt and settings into text fields of the PNG file, while only the Stability AI API adds a C2PA provenance record. The checker above shows prompt, seed and model as long as the fields are in the file.

If the image in your store is a deep fake, Article 50(4) of the EU AI Act requires a visible label, and prompt fields do not replace it (Commission guidelines para. 117).

What Stable Diffusion writes into the file

Stable Diffusion is an open model. Which traces end up in the file depends mainly on the program, and Stability AI's hosted services behave differently from programs on your own computer.

TraceStatus October 2026Source
C2PA (Content Credentials)Partly Only through Stability AI's API and hosted services: a record with AI note, model and version, sealed with a Stability AI certificate, on the C2PA list of conforming products since 26 August 2026. For its openly released models, Stability AI says no provenance is applied during generation.↗ C2PA
IPTC Digital Source Type (XMP)Not documented Neither the local programs nor Stability AI document an IPTC field.none found
Invisible watermarkPartly The original Stable Diffusion 1 reference script and the SDXL pipeline in the diffusers library embed an invisible watermark, diffusers only when the required package is installed. AUTOMATIC1111 and ComfyUI contain no code for it. In InvokeAI it is an optional node.↗ ↗ ↗ ↗ ↗
Prompt and settings in the fileYes AUTOMATIC1111 and Forge: PNG field parameters with prompt, negative prompt, seed and model; for JPEG and WebP in the EXIF field UserComment. ComfyUI: prompt and workflow as JSON. InvokeAI: invokeai_metadata, older versions sd-metadata. Fooocus: parameters, but off by default.↗ ↗ ↗ ↗
Visible mark on the imageNot documented Not documented.none found

C2PA (Content Credentials) is a signed provenance record in the file, IPTC Digital Source Type a metadata field on how the image was made, for example trainedAlgorithmicMedia for fully AI-generated images. An invisible watermark sits in the pixels, and only the vendor can read it.

How to check a Stable Diffusion image

  1. Drag the original file from Stable Diffusion into the box above. It is read in your browser, not uploaded. Screenshots and copies from stores or social networks usually no longer carry the data.
  2. If a PNG file contains one of the fields from the table, the checker names the program and shows prompt, negative prompt, seed and model under “Prompt and settings”.
  3. The prompt view currently only reads PNG fields, not the EXIF field UserComment that AUTOMATIC1111 and Forge use for JPEG and WebP.
  4. If the image comes from the Stability AI API, the checker shows the C2PA record under “Content Credentials (C2PA)”.

More detail in the Prompt reader and AI image checker and Content Credentials viewer.

The checker is not an AI detector. It only shows what the file says. An empty result does not prove a real photo, not least because providers of AI systems placed on the market before 2 August 2026 have until 2 December 2026 to add machine-readable marking (Article 111(4) AI Act).

What survives uploads and edits

The prompt fields are notes kept by the program, not provenance records, and only exist in the file the program saved. A screenshot does not carry them, and any program that saves the file again may leave them out.

Saving them can be switched off in these programs, and Fooocus has it off by default. The checker cannot read an invisible watermark, if there is one.

Labelling duty in your store under the EU AI Act

If you use Stable Diffusion to create or edit images for your own store, you are a deployer, even when an agency or an employee works on your instructions (Article 3(4) AI Act, Commission guidelines para. 12, 14). If the image is a deep fake, meaning realistic and falsely appearing authentic, you have had to label it visibly since 2 August 2026 (Article 50(4) AI Act). The labelling check tells you whether that applies, and the guide to the labelling duty explains the rules.

The traces in the table do not replace that label, because people cannot see them straight away (guidelines para. 117). Still, keep them in the file, as the guidelines recommend. They document where the image came from.

The stored prompt shows what was meant to be generated, such as a person or a whole scene. That helps you decide whether the image is a deep fake, and it documents your decision.

How Stable Diffusion labels its own output

Stability AI seals the C2PA record in its API and hosted services with its own certificate, and says no provenance is applied when its openly released models generate images. According to Stability AI, other watermarking methods degraded image quality.

The local programs store the prompt and settings mainly so that an image can be recreated later. As far as our research shows, they add no visible mark by default.

Frequently asked questions

Where is the prompt stored in a Stable Diffusion image?

In PNG text fields, in “parameters” for AUTOMATIC1111 and Forge, in “prompt” and “workflow” for ComfyUI and in “invokeai_metadata” for InvokeAI. For the prompt alone there is the prompt reader.

Does Stable Diffusion add an invisible watermark?

It depends on the program. The original reference script and the diffusers SDXL pipeline embed one, AUTOMATIC1111 and ComfyUI do not, and in InvokeAI it is an optional node.

Is an image without a prompt field a real photo?

You cannot conclude that. The fields can disappear when the file is saved again, with screenshots and with many uploads, and saving them can be switched off.

Sources

Para. refers to the paragraph number in the European Commission's guidelines on Article 50, C(2026) 5054.

  1. AUTOMATIC1111 Stable Diffusion WebUI: Quellcode images.pyGitHub · Standard · 11 Oct 2026
  2. ComfyUI: Quellcode nodes.py (SaveImage)GitHub · Standard · 11 Oct 2026
  3. InvokeAI: Quellcode image_files_disk.pyGitHub · Standard · 11 Oct 2026
  4. Fooocus: Quellcode meta_parser.pyGitHub · Standard · 11 Oct 2026
  5. CompVis Stable Diffusion: Referenzskript txt2img.py (Wasserzeichen)GitHub · Standard · 11 Oct 2026
  6. Hugging Face Diffusers: SDXL-WasserzeichenGitHub · Standard · 11 Oct 2026
  7. Stability AI: Integrity Transparency ReportStability AI · Platform · 11 Oct 2026
  8. C2PA: Verzeichnis konformer ProdukteC2PA · Standard · 11 Oct 2026
  9. Regulation (EU) 2024/1689 (AI Act)EUR-Lex · Law · 12 Jul 2024
  10. Commission Guidelines on the transparency obligations under Article 50 AI Act, C(2026) 5054 finalEuropäische Kommission · Commission · 20 Jul 2026
  11. Regulation (EU) 2026/1744 (Digital Omnibus on AI)EUR-Lex · Law · 24 Jul 2026

Label your first AI image

Free in your browser, with the EU icon and text in 24 languages. On Shopify, the app labels your whole store.