Provider hub

Claude Watermark & Content Provenance

Claude uses two documented marking systems. They are not interchangeable, and AI Watermark Center can currently inspect only one of them.

Published
Last verified
Review
Reviewed against primary sources

Claude and Anthropic are named here only to describe publicly documented product behaviour. AI Watermark Center is independent and is not affiliated with Anthropic.

Current status

As of 15 August 2026, Anthropic documents machine-readable marking for supported new Claude models. Models launched in the EU on or after 2 August 2026 are described as supporting marking at launch. Anthropic says it is working to add marking to eligible older models during a legal transition period. Model-by-model coverage beyond that launch-date rule is not verified here.

Text: statistical watermark

Official documentation describes a statistical, token-choice watermark: when a supported model generates text, keyed randomness can influence which already-plausible next word is selected. Nothing extra is appended, and Anthropic states there are no hidden characters in that mechanism. Detection, according to Anthropic, depends on a key. A public detection API has been announced as forthcoming, not as a generally released third-party product we can integrate.

Files: C2PA / Content Credentials

For supported generated files such as PNG, JPG, and SVG, Anthropic documents signed C2PA provenance metadata. That metadata is a different mechanism from the text watermark: it sits in file metadata rather than in token choices. Presence of credentials is not an AI/human verdict.

What is officially documented

  • Supported new models produce machine-readable marks.
  • Text marking is statistical, not visible, and not hidden Unicode.
  • Short, factual, proofread, and code-heavy text may carry less usable signal.
  • Translations generated by Claude are described as carrying the text watermark because Claude chooses the words.
  • The watermark is not described as identifying an individual user.
  • A detected mark indicates Claude may have processed the content; it does not prove Claude wrote every word.

What AI Watermark Center can currently inspect

  • Hidden Unicode and formatting controls in pasted text.
  • Embedded EXIF, GPS, and Content Credentials in JPEG, PNG, and WebP.

What cannot currently be independently verified

Provider detection capability: Announced, not generally released. AI Watermark Center integration: Not integrated. AI Watermark Center does not operate Anthropic’s key and does not claim to detect or remove Claude’s text watermark. Independent tests of copied Unicode are pending collection.

Claim records

Official evidence can confirm a mechanism or rule one out. Status below is the claim conclusion, not the source-authority badge alone.

Claude, Statistical, Documented. Expand for full claim, sources, and limits.

Anthropic · Claude · Text · Statistical watermark

ClaimClaude uses a statistical / SynthID-Text-derived text watermark on supported new models

Current status
Documented
Evidence authority
Official documentation
AWC support
Not available
Provider public detection
Announced, not generally released
AWC integration
Not integrated
Last verified
Support detail
Statistical watermark detection is not available. Anthropic’s keyed detector is announced, not integrated here.
Product / model / surface scope
Supported new models, including models launched in the EU on or after 2 August 2026.
Limitations
Detection depends on a key. Short, factual, proofread, and code-heavy text may carry less usable signal. Older outputs are not assumed to be marked.
Notes
Hidden Unicode is not the official watermark mechanism. Independent verification requires Anthropic’s detection capability.
Primary sources
Claude, Other, Ruled out. Expand for full claim, sources, and limits.

Anthropic · Claude · Text · Other

ClaimHidden Unicode is Claude's official text watermark mechanism

Current status
Ruled out by provider documentation
Evidence authority
Official documentation
AWC support
Available
Provider public detection
Not applicable
AWC integration
Not applicable
Last verified
Support detail
Unicode inspection is available. It is unrelated to Claude’s statistical text watermark and does not detect that watermark.
Notes
Anthropic states that text watermarking adds nothing extra and uses no hidden characters. Absence of Unicode findings is not absence of a statistical watermark. Related AWC research: Claude Unicode exploratory protocol (collecting; no published samples).
Related AWC research
Primary sources
Claude, C2PA, Conditional / partial. Expand for full claim, sources, and limits.

Anthropic · Claude · Generated file · C2PA / Content Credentials

ClaimClaude attaches C2PA Content Credentials to supported generated files

Current status
Conditional / partial
Evidence authority
Official documentation
AWC support
Available
Provider public detection
Unknown
AWC integration
Not integrated
Last verified
Support detail
Embedded Content Credentials inspection is available for JPEG, PNG, and WebP. Anthropic also mentions SVG; this inspector does not support SVG.
Product / model / surface scope
Supported generated files according to Anthropic documentation.
Limitations
Presence of credentials is not an AI/human verdict. Public third-party detection of Claude file credentials is unknown.
Notes
Official documentation mentions supported types such as PNG, JPG, and SVG. Coverage is conditional on the generated file type.
Primary sources

Anthropic states that Claude’s official text watermark is not based on hidden characters. The scanner checks Unicode artifacts only.

Sources

  1. How Claude’s text watermarking works — Anthropic

    Published August 14, 2026. Accessed August 15, 2026.

    Primary source for the statistical text-watermark mechanism, hidden-character denial, detection-key dependency, and limitations.

  2. How Claude marks AI-generated content — Anthropic / Claude Help Center

    Accessed August 15, 2026.

    Primary source for launch timing, product surfaces, C2PA file provenance, and mark-detection limitations.