🔒All inputs are processed locally in your browser. Nothing is transmitted, stored, or logged. Inputs disappear when you close the tab.

OCG-Industries Showcase · Cluster ⑬ Machine, AI and Software Integrity

C2PA Content Credential
Verification

Enter a content credential twice, once as it was signed and once as you received it: asset title, issuer, capture device, edit actions, and the content digest you hold. This tool fingerprints each side, names which fields moved if any did, and tells you whether the issuer is present at all. An edit made after signing changes the derived fingerprint, so the mismatch shows up as a fact about the two manifests rather than something a reviewer has to eyeball field by field. Author identity here is self-asserted unless the asset is separately signed. This checks field mutation, it does not validate a certificate chain.

Data: C2PA Specification 2.1 content credentials · illustrative demo, no external data

Credential Fields STEP 1

As signed

As received

Leave the received side blank to see how the tool treats an empty manifest.

Status
Credential intact, issuer missing, mutated, or empty
Manifest Match
Signed and received fingerprints
Mutated Fields
Of 5 credential fields
Detail
Signed digest (mutation detector, not a cryptographic digest)
Received digest (mutation detector, not a cryptographic digest)
Manifest match
Mutated fields
Mutated field count
Assertion count
Issuer present
Status
Policy Mandate v2.0 · what is this?