Live data from Hacker News

OpenAI Adopts Google's SynthID Watermark for AI Images with Verification Tool

openai.com

31–40 of 198 posts

Re: OpenAI Adopts Google's SynthID Watermark for AI Images with Verification Tool

#31

Aren't these kinds of watermarks easy to remove or distort? Seems like they're only helpful as long as people are relying on them sparingly so it's not worth the effort to circumvent. If social media platforms started banning images with these watermarks seems like they'd be stripped out overnight.

I imagine the technique of having AI recreate the image from scratch based on a very detailed description might work.

Re: OpenAI Adopts Google's SynthID Watermark for AI Images with Verification Tool

#32
post #31

Aren't these kinds of watermarks easy to remove or distort? Seems like they're only helpful as long as people are relying on them sparingly so it's not worth the effort to circumvent. If social media platforms started banning images with these watermarks seems like they'd be stripped out overnight.

I imagine the technique of having AI recreate the image from scratch based on a very detailed description might work.

That'd not work with today's technology. No open model's prompt adherence is anywhere remotely close to ChatGPT/NanoBanana. 'remotely' here is a funny understatement, as I don't have a strong enough word in my vocabulary to describe how far the open models are behind the closed ones.

Writing a more detailed description does not make the models stick to it more.

Re: OpenAI Adopts Google's SynthID Watermark for AI Images with Verification Tool

#33

While these are great, isn’t the problem that malicious actors will create systems that do not use synthID

It helps significantly in the current moment. A lot of people are lazy and are getting caught quickly by SynthID. Eventually it won’t matter when image generation is cheap. But few self-host today and few are willing to pay unsubsidized prices, so the vast majority are using the Gemini, OpenAI, and Midjourney. If all 3 adopted SynthID, only a small fraction would use something else.

These systems should be removed.

This is antithetical to freedom and privacy.

There should be no way for anyone to track down who posted a political meme, anti-religious message, or any other legally protected speech. This will come back to bite us in the ass if we keep building it.

Soon every image or communication we make will be watermarked if we continue to let this shit seep into the commons. Everything from your phone photos, to your screenshots, to your social media posts.

One day soon Republicans or Democrats or whoever doesn't like your freedoms will use this tech to identify you and control you.

There are laws for harms - CSAM, revenge porn, etc. Social media platforms can identify, ban, and report abusers. The framework of the law can take care of the rest.

Our digital footprint should not be tracked and barcoded.

Re: OpenAI Adopts Google's SynthID Watermark for AI Images with Verification Tool

#34
post #31

Earlier quoted context omitted.

I imagine the technique of having AI recreate the image from scratch based on a very detailed description might work.

That'd not work with today's technology. No open model's prompt adherence is anywhere remotely close to ChatGPT/NanoBanana. 'remotely' here is a funny understatement, as I don't have a strong enough word in my vocabulary to describe how far the open models are behind the closed ones. Writing a more detailed description does not make the models stick to it more.

Definitely. I run an entire site built around a series of benchmarks that focus on prompts of increasingly difficult complexity with a focus on adherence, and even the state-of-the-art local models are probably only about thirty percent as good as proprietary models like Gemini 3.1 Flash Image and GPT Image 2.

Comparing Qwen-Image, Flux.2, ZiT, NB2, and gpt-image-2

https://genai-showdown.specr.net/?models=qi,nbp3,f2d,g2,zt

Re: OpenAI Adopts Google's SynthID Watermark for AI Images with Verification Tool

#35

Good. Despite people saying it will be removed, I have seen no reproducible repo demonstrating it.

Stable Diffusion with 10%~15% denoising strength. Done. I tested the day 1 when Nano Banana Pro was released and it worked. It still works today for Nano Banana 2. I didn't post this anywhere because I (arrogantly) thought saying it publicly would make the internet worse. But it was pure arrogancy: if I came up with this the first day then of course other millions of programmers did too. That being said, it'll introd…

> if I came up with this the first day then of course other millions of programmers did too.

Don't sell yourself short. I'm sure it was only hundreds of thousands.

Re: OpenAI Adopts Google's SynthID Watermark for AI Images with Verification Tool

#36

Aren't these kinds of watermarks easy to remove or distort? Seems like they're only helpful as long as people are relying on them sparingly so it's not worth the effort to circumvent. If social media platforms started banning images with these watermarks seems like they'd be stripped out overnight.

Define easily. There is an approach that apparently works and is based on spectral analysis of the images. https://github.com/aloshdenny/reverse-SynthID

FWIW there are a few people in the issues saying that the tool is giving false negatives and the output image gets flagged by the actual Gemini API as having SynthID. Most recently 3 weeks ago without a response.

Re: OpenAI Adopts Google's SynthID Watermark for AI Images with Verification Tool

#37
This is just performative nonsense.

As someone that creates things with tools with different media I would just hard avoid this tool that adds...

arbitrary metadata not of my choosing.

Should I seriously make a texture for a videogame with this weird DRM glorp in it?

How old is photoshop and why is it exempt?

Re: OpenAI Adopts Google's SynthID Watermark for AI Images with Verification Tool

#39

This is just performative nonsense. As someone that creates things with tools with different media I would just hard avoid this tool that adds... arbitrary metadata not of my choosing. Should I seriously make a texture for a videogame with this weird DRM glorp in it? How old is photoshop and why is it exempt?

Just because something isn't perfect doesn't mean it's not useful. I've already seen posts online that were able to be proven as falsified because someone ran the images through Google for SynthID checks.

> How old is photoshop and why is it exempt?

For one, it's not developed by Google or OpenAI. The barrier to entry to making realistic but deceptive images with Photoshop is far higher than with AI, and there are already techniques that can, imperfectly, be used to detect the use of traditional image editing.

Re: OpenAI Adopts Google's SynthID Watermark for AI Images with Verification Tool

#40
post #33

Earlier quoted context omitted.

It helps significantly in the current moment. A lot of people are lazy and are getting caught quickly by SynthID. Eventually it won’t matter when image generation is cheap. But few self-host today and few are willing to pay unsubsidized prices, so the vast majority are using the Gemini, OpenAI, and Midjourney. If all 3 adopted SynthID, only a small fraction would use something else.

These systems should be removed. This is antithetical to freedom and privacy. There should be no way for anyone to track down who posted a political meme, anti-religious message, or any other legally protected speech. This will come back to bite us in the ass if we keep building it. Soon every image or communication we make will be watermarked if we continue to let this shit seep into the commons. Everything from you…

That's a lot of hyperbole, there's no cause/effect relationship I can think of here that could realistically produce your slippery slope.

Google or anyone else could start adding those unique tracking watermarks you're concerned about any time they want, regardless of whether they use this AI detection watermark, that to be clear can not track you in any way.

Post reply on HN