Labels split into visible marks and embedded watermarks, which fail in different ways and fit different scenes
Aliases: visible disclosure · C2PA-style watermark · two disclosure channels
What it is
One image has “synthetic” at top left, readable at a glance. Another embeds an invisible watermark in the pixels; the eye sees nothing, only a detector reads it. Visible labels vs watermarks are two channels: one for the eye, one for machines. They are not strengths of the same mark. They die differently and belong in different scenes.
That generated content must be identifiable is a requirement on the recipient’s side. This entry asks which channel is used to meet it, and where that channel dies.
Why it happens
A visible mark rides on attention: crop, cover, a new thumbnail, re-encode as a pure pixel screenshot, and the words are gone. Its virtue is that no tool is needed; its vice is that it separates from the content. A watermark rides on the carrier: designs that survive crop and compression let it live a few more hops in the pixels, but the eye cannot read it, and without a detector there is no mark. Watermarks also die under paraphrase, redraw, generation through another model — the semantics left, the carrier did not.
Fit therefore follows failure. Recipients who must calibrate on the spot (news, ads) need the visible channel. Post-hoc accountability and cross-platform forensics need the embedded channel. Using only one is going naked at the other’s failure point.
Studying it
The same artefact: visible only, watermark only, both. Along crop, screenshot, paraphrase, regenerate, measure eye-readability and detector recall. Independent variables: channel mix, operation type. Dependent variables: people’s origin judgment, machine detection, rate of both channels failing together.
Report human-side failure and machine-side failure separately. A single “label success rate” will average the two deaths away.
Where it stops holding
Plain-text chat has almost no carrier to embed in; watermarks are weak and a visible sentence is the main channel. Audio and video have more mature watermarks; visible badges are easier to switch off with player chrome. In accessible settings, a colour-only visible mark fails the eye channel too. This entry does not treat whether a missed detection counts as human-made, nor the burden on those who comply.
Applying it
- On exits where a person must judge on the spot, put a visible mark; on exits that may be evidenced or ingested, add a watermark. Default to both, not either-or.
- Do not treat a watermark as a mark for humans. The UI still needs words a person can read.
- Say what each channel fears: visible fears crop; watermark fears paraphrase and regenerate.
- Check: visible only, crop the badge, ask origin; watermark only, no detector, ask origin. The two “cannot tell” answers should map to the two channels’ jobs. Do not let one stand in for the other.
Related
- Same group: L3.10.2 Screenshots, paraphrase, and re-edits strip labels; survival falls with each hop · L3.10.3 A missed detection is not proof the content was not generated; lack of a mark is not evidence of human authorship · L3.10.4 A mark works only when someone verifies, so a usable verification entrance must come with it · L3.10.5 Mandatory marks put the cost on those who comply; those who mean to evade can go around
- Nearby: L3.04 Content Labeling · L3.05 Copyright and Material Provenance
- Search terms:
visible label·embedded watermark·disclosure channel
Cards in the same group
- L3.10.2Screenshots, paraphrase, and re-edits strip labels; survival falls with each hop
- L3.10.3A missed detection is not proof the content was not generated; lack of a mark is not evidence of human authorship
- L3.10.4A mark works only when someone verifies, so a usable verification entrance must come with it
- L3.10.5Mandatory marks put the cost on those who comply; those who mean to evade can go around