C2PA Remover: Remove Content Credentials from Images and Videos
Images and videos you make with ChatGPT, Gemini, Adobe Firefly, or a modern Leica or Nikon camera can carry a C2PA manifest — a signed record of where the file came from. OutWatermark AI is a free C2PA remover that reads and removes that manifest, entirely in your browser, with no upload and no account. Drop your file into the free C2PA remover → to see the full manifest before you decide what to keep.
What C2PA content credentials are
C2PA is the Coalition for Content Provenance and Authenticity, an open standard backed by Adobe, OpenAI, Google, Microsoft, Intel, and major camera manufacturers. When software creates or edits a file, it can attach a cryptographically signed manifest that documents the file's history. On Adobe, OpenAI, and Google surfaces, that manifest appears as "Content Credentials" — a small badge that tells a viewer who produced the file and how.
Think of it as a birth certificate stored inside the file. The manifest is not baked into the pixels; it sits in a separate metadata container next to the image or video data. That separation matters twice over: it means the record can be read without touching the content, and it can be removed without re-encoding the content.
A C2PA manifest typically records a handful of fields:
- Producer — who or what generated the file, such as a specific AI model or a camera.
- Actions — what was done to it, like
c2pa.createdor a later edit. - Timestamp — when each action happened.
- Instance ID — a unique identifier for the asset.
Those fields are stored in a CBOR structure inside a JUMBF box. OutWatermark AI decodes that CBOR and prints the producer, actions, timestamp, and instance ID as readable text, so you can inspect what a file claims about itself before removing anything.
Because the manifest is signed, tampering with it breaks the signature — a viewer can tell the record was altered. Removing it entirely is different: there is simply no record left to verify. That gap between "modified provenance" and "no provenance" is why a clean removal is the right move when you want a file with no attached history.
The current C2PA specification is version 2.4. It also defines "durable" Content Credentials: a hard cryptographic binding to the content, paired with a watermark or fingerprint as a soft binding, so provenance can be recovered even after the metadata is gone. That is why removing a manifest is not the same as erasing every trace of a file's origin.
Why you might remove C2PA metadata
People strip C2PA metadata for unglamorous, practical reasons. You might export a clean copy of your own image for a client whose software misreads the manifest. You might not want every viewer of a personal photo to see the model and settings that produced it. Or you might simply prefer a file that contains only what you choose to include.
There is a structural reason too: many platforms remove this metadata for you, automatically. Instagram, Facebook, and LinkedIn re-encode uploads in ways that routinely drop C2PA manifests before anyone sees them. We documented the mechanics in how platforms strip C2PA Content Credentials →. A local remover hands that decision back to you, instead of leaving it to whatever a platform decides to keep or discard.
A photographer might deliver a batch of AI-retouched images and want them to carry only the camera's original EXIF, without a manifest pointing at the generative tool used in post. A local remover makes that kind of control possible before the file is shared anywhere.
New to the topic? Our explainer on what C2PA Content Credentials are → covers the basics in plain language.
How to remove C2PA from an image or video
Three steps in OutWatermark AI:
- Open your file. Drop a JPG, PNG, WebP, MP4, or MOV into the tool. Nothing is uploaded; the file stays on your device.
- Read the report. The tool decodes the CBOR manifest and lists the producer, actions, timestamp, and instance ID, alongside any EXIF, XMP, or generator signatures it finds.
- Download the cleaned version. Confirm you own the file or hold the right to modify it, then download a copy with the manifest removed surgically.
The removal is surgical rather than destructive. In a JPEG the manifest lives in an APP1 jumb segment; in a PNG it is a jumb chunk; in a WebP file a RIFF JUMB chunk; and in MP4 or MOV an ISO-BMFF jumb box. Deleting those containers does not re-encode the media, so the pixels stay byte-for-byte identical.
You can verify this yourself: open the cleaned copy next to the original and compare. The image data is untouched; only the metadata containers were removed.
What the C2PA remover detects and removes
The tool does more than delete a single box. Its detector walks the file structure for everything a generator might have left behind:
- C2PA manifests — the
jumbbox in JPEG, PNG, WebP, MP4, and MOV, decoded to readable fields. - EXIF and XMP — fields such as
Software,Description,digitalSourceType, andtrainedAlgorithmicMediathat name the generator or flag the content as AI-produced. - Generator signatures — text patterns from 13 families of AI generators, including OpenAI, Google, Adobe, Meta, Midjourney, and Stability AI.
You see the report before you download, so you can remove C2PA alone and keep other metadata, or clear everything in one pass.
What the tool cannot do
We list limits plainly, because a tool that hides them wastes your time:
- It does not remove visible watermarks. Logos and text overlays are pixel edits, not provenance metadata. OutWatermark AI leaves them alone.
- It does not guarantee removal of latent signals. Google's SynthID is embedded in the pixels, not in a removable box; that is a separate job with separate limits.
- Video cleanup is surgical, not re-encoded. The manifest box is removed; the video stream itself is untouched.
Is removing C2PA legal?
For content you created or are authorized to modify, removing metadata is a question of controlling your own files. The tool asks you to confirm ownership before any download, because that boundary is what makes the difference between cleanup and misrepresentation.
One thing does not change: since August 2, 2026, Article 50 of the EU AI Act (Regulation 2024/1689) requires AI-generated content to be labelled as such where applicable. Removing the technical signals does not remove that obligation. If a disclosure is required, it is still required after the metadata is gone. See our compliance overview → for the details.
Frequently asked questions
What are Content Credentials?
Content Credentials is the user-facing name for a C2PA manifest — a signed record of a file's producer, actions, and history, shown as a badge on Adobe, OpenAI, and Google surfaces.
Is removing C2PA legal?
Yes, for files you own or are authorized to modify. It is not a way to pass off someone else's work as your own, and it does not override any disclosure requirement under the EU AI Act.
Which formats does the remover support?
Full removal for JPEG, PNG, WebP, MP4, MOV, AVIF, and HEIC.
Is it really free and local?
Yes. The tool is free, requires no account, and runs entirely in your browser. Your files are processed on your device and never uploaded.
Remove C2PA metadata now
Open your file in the free C2PA remover → and see exactly what provenance data it carries before you remove it.