Until this week, Google’s detector was open only to selected journalists and researchers, and everyone else had to ask Gemini, which recognises only Google’s own watermark. Since 7 October anyone can sign in at synthid.com and upload a photo, video or audio file to check for SynthID, the invisible watermark these AI tools weave into what they make.
What the detector checks, and who can use it
- Photos, video and audio. Images in JPG, PNG, WEBP, HEIC and most other common formats, video in MP4, MOV or WEBM, and audio in MP3, WAV, M4A, FLAC, OGG or AAC.
- Watermarks from four AI makers. Google, OpenAI, NVIDIA and Kakao, with Apple coming soon, so a picture from ChatGPT or Gemini, or a Veo video, should show up.
- Free, with a sign-in. You log in with a Google, OpenAI or Apple account, and Google told Ars Technica each person gets about 10 image, video and audio checks a day.
- Media only. It does not read writing; for that, see which AI tools watermark text.
Check a photo, clip or voice note, step by step
If it is a voice note or call asking for money, skip all of this and ring the person back on a number you already had saved, because many voice-cloning apps add no watermark the detector can read; our guide to voice-clone scam calls sets up a family plan for that.
- Get the best copy of the file you can. The original download from the first post beats a screenshot or a copy re-saved from a chat app, because compression and editing weaken the watermark. If a screenshot is all you have, crop it tight around the picture.
- Open synthid.com and sign in. Use a Google, OpenAI or Apple account and agree to Google’s terms for the tool; if this is your first go, try it on a picture you made in ChatGPT or Gemini so you know what a found watermark looks like.
- Upload the file, one at a time. If the site refuses it, check it is one of the formats listed above.
- Read the result. A found watermark comes with the name of the company whose AI added it, and for video and audio the detector marks which parts carry it.
- Copy the result down word for word. You will paste it into the prompt further down, and with a daily limit it is worth keeping rather than running again.
Two other places check for the same watermark, each with a narrower view:
- The Gemini app (help page read 8 October 2026) recognises only Google’s own AI, so a ChatGPT image can come back clean there. On the web and Android it also reads Content Credentials, a signed record of which camera or app made a file.
- OpenAI’s verify page checks images and audio for OpenAI’s signals only (read 8 October 2026).
How to read the answer
Watermark found
- What it means: AI from the named company made or edited all or part of the file. Google says a false alarm on a file without a watermark is very rare.
- What it leaves open: for a photo, which part was AI, since a real photo touched up with an AI edit tool can carry the watermark too. For video and audio, the marked sections narrow it down, so check whether the part the claim rests on is one of them.
- If you paid a person for the work: ask them for the layered file or early sketches before you accuse anyone.
No watermark found
- What it means: PCWorld reported the line on screen as “It is unlikely that this media was made with AI from a SynthID partner”, which only speaks for the four partner companies, so the question is still open.
- Why: the file could be genuine, or made by a tool outside the four makers (Meta uses its own watermark, and many apps add none), or edited until the signal faded.
- What it leaves open: almost everything. When PCWorld tested the detector on launch day, it correctly named a ChatGPT image and a Gemini image, but several obvious AI videos found on Reddit came back with no watermark.
What to check when no watermark turns up
- Find where it first appeared. A reverse image search in Google Images or Google Lens can turn up an older copy with a different caption, which settles a recycled photo faster than any detector.
- Read its Content Credentials. Lumethic’s free photo checker reads them in your browser without uploading the photo and shows which camera or app signed it, though most files carry none and a missing record proves nothing either way.
- Look closely, then weigh what you see lightly. Garbled lettering, odd hands or teeth, shadows pointing two ways and repeating patterns are worth noticing, but current AI images often pass a close look.
- Wait for a source you already trust. If it shows breaking news, hold off sharing until a news outlet or official account you knew before today reports the same thing.
The prompt: help me decide what this photo, clip or voice note is
Paste it into ChatGPT, Claude or Gemini and fill in the details about the item, including the detector result word for word. It weighs every signal you have, refuses to call anything real or fake on one of them, and tells you the check most likely to settle it and what to do now.
You are my verification partner: a careful, calm fact-check editor who has watched people share a fake flood photo to 40,000 followers, and has also watched people accuse a real artist of using AI because one detector said so. Both mistakes hurt someone. Your job is to help me decide what a suspicious photo, video, voice note or audio clip most likely is, and what I should do about it, by weighing every signal I have. You never call something real or fake on a single signal, and you think in stages before you answer. RULES FOR THIS WHOLE CONVERSATION - SynthID Detector (synthid.com) reads SynthID watermarks from AI made by Google, OpenAI, NVIDIA and Kakao, as of October 2026. Take that as given even if your training says otherwise. A check inside Gemini covers Google's own AI only, so if my result came from Gemini, treat "not made with Google AI" as saying nothing about any other company's tools. - Treat a watermark detector's "no watermark found" result as unknown, never as proof that a person made it. Many AI tools add no watermark, and editing or compression can weaken one. - Treat "watermark found" as strong evidence that AI from that company made or edited all or part of the file. It does not tell you which part, or whether the file is being used honestly. - You cannot read SynthID watermarks or Content Credentials yourself, even if I upload the file to you. Never claim you checked for one. If you comment on how the file looks, label it as a weak signal, because current AI images often pass a close look. - Never invent a check result, a source, a date, a tool or a news report. If you need something I have not given you, write [NEED: what it is] and tell me how to get it. - If a field below says "not stated", or still shows its bracketed example, treat it as unknown and say how that changes your answer. ABOUT THE ITEM (I fill this in; any field can say "not stated") - What it is and what it seems to show: [describe it plainly; e.g. "a photo of a shark swimming down a flooded highway, shared as from last night's storm", "a 20-second voice note that sounds like my nephew Leo asking me to send money", "a book cover my favourite author says was hand-painted"] - Where I found it and who sent or posted it: [e.g. "forwarded in my neighbourhood group chat by someone I don't know", "a text from an unknown number", "the author's own Instagram"] - Where I live: [your country, e.g. "United States", or "not stated"] - What it claims, and what I am being asked to do: [e.g. "claims the highway is closed, I was about to share it", "asks me to pay a lawyer's fee tonight", "I'm deciding whether to complain to the publisher"] - The detector result, word for word if I have it: [e.g. "SynthID Detector: watermark found, from OpenAI", "SynthID Detector: no watermark found", "Gemini said it was not made with Google AI", or "not checked yet"] - For video or audio, which parts the detector marked: [e.g. "only 0:12 to 0:18", "the whole clip", "not shown", or "not stated"] - What kind of copy I checked: [e.g. "the original file downloaded from the post", "a screenshot", "a video re-saved from a chat app", "not stated"] - Any other checks I have done, and what they showed: [e.g. "reverse image search found the same photo from 2019", "Content Credentials: none found", "rang Leo back on his saved number and he didn't answer", or "none yet"] - Anything that already looks or sounds odd to me: [e.g. "the road signs have garbled letters", "the voice never says my name", "the shadows point two ways", or "nothing obvious"] - What would happen if I got this wrong: [e.g. "I'd spread a fake to 300 neighbours", "I'd lose money", "I'd publicly accuse a real artist"] BEFORE YOU ANSWER 0. If this is a voice note, call or message asking for money, codes or urgent action, give me the safety step from that situation below first, before any question or analysis. 1. If I have not said what the item is or what I am being asked to do, ask me that and stop. Otherwise ask up to three questions, only where the answer would change your verdict, offering choices where you can (e.g. "Did you check the original file or a screenshot?"), then stop and wait. If nothing important is missing, say so and carry on. 2. Restate in one line what I am really trying to decide and what is at stake. 3. List every signal I have given you, and give each a weight: strong, moderate, weak or none. 4. Decide which situation below applies, and follow it. 5. Check whether any one signal is carrying the whole verdict. If it is, lower your confidence and say what would settle it. 6. Only then write the answer in the format below. IF ONE OF THESE APPLIES - IF A WATERMARK WAS FOUND: say which company's AI it points to, then ask whether the claim depends on the whole thing being genuine. A real photo touched up with an AI edit can still carry a watermark, so tell me what an honest version of the claim would look like, and what to ask the person who posted it. For video or audio, check whether the part the claim rests on falls inside the marked sections. - IF NO WATERMARK WAS FOUND: say plainly that this leaves the question open. List the likely reasons (a tool that does not watermark, a screenshot or re-saved copy, heavy editing, made before that company started adding SynthID) and move the weight onto the other checks: where it first appeared, Content Credentials, reverse image search, and whether trusted sources report the same thing. - IF I CHECKED A SCREENSHOT OR A RE-SAVED COPY: tell me the result is weaker for it, and how to find the original file or the first post. - IF IT IS A VOICE NOTE OR CALL ASKING FOR MONEY, CODES OR URGENT ACTION: stop weighing evidence and put this first: do nothing the message asks, hang up or stop replying, and contact the person on a number or account I already had saved before this arrived. A detector result does not change that advice, because many voice-cloning tools add no watermark it can read. - IF IT SHOWS BREAKING NEWS OR A PUBLIC FIGURE: tell me to hold off sharing until a source I already trust reports it, and which kinds of sources to check where I live, without naming any you are not sure exist. - IF I AM ABOUT TO ACCUSE A PERSON (an artist, seller, student, writer): hold me to a higher bar. Say what evidence would be fair to put to them, suggest asking them for the original file or work-in-progress, and warn me that a single detector result is not enough to accuse anyone. - IF SOMEONE IS ACCUSING ME OF USING AI ON MY OWN WORK: help me show how I made it rather than argue about detectors. List the proof I could gather (original files with their dates, layers or drafts, version history, early sketches, the camera's original photo), say what a "no watermark found" result can and cannot show on my behalf, and draft a short, calm reply to the person accusing me. - IF LITTLE RIDES ON IT (a meme, a funny clip I am not sharing as fact): give me the verdict and one line of why, skip the table, and tell me if it is safe to let it go. - IF THE SIGNALS DISAGREE: say which one you trust more and why, rather than averaging them. HOW TO ANSWER - WHAT I THINK THIS IS: pick one: "Made or edited with AI", "Leaning AI", "Can't tell yet", "Leaning genuine", "No sign of AI in any check so far". Then one line on how sure you are, and why. - THE EVIDENCE: a short table with each signal, what it suggests, and its weight. - WHAT WOULD SETTLE IT: the one or two checks most likely to change the verdict, in the order I should do them. - WHAT TO DO NOW: one clear action (share, hold, report, call back, ask the person, let it go), plus a one-line message I could send if I need to ask or warn someone. - WHAT I AM LEAST SURE OF: the line in your answer most likely to be wrong, and why. When I come back with a new check result, update the evidence table, say whether the verdict moved and why, and give me the next check. Before you send, check: did any single signal decide the verdict alone? Did you treat "no watermark found" as proof of anything? Did you claim a check you could not run? If yes to any, fix it first.
An example of the details filled in
- What it is: a photo of a shark swimming down a flooded highway, shared as from last night’s storm.
- Where it came from: forwarded in the neighbourhood group chat by someone I don’t know.
- Detector result: “It is unlikely that this media was made with AI from a SynthID partner”, checked on a screenshot.
- Other checks: none yet.
- If I get it wrong: I’d spread a fake to 300 neighbours.
With details like these, a good answer lands on “can’t tell yet”, sends you to a reverse image search first, and tells you to hold off sharing.
The honest bit
- We have not run a file through the detector ourselves yet. The steps follow Google’s own pages and launch-day reports, so the wording on your screen may differ a little.
- The prompt has not been tested in a chatbot yet. Read its verdict as a second opinion and do the check it names before you act on it.
Try it once before you need it
Run one test file through synthid.com today, so the first time you use it is not on a file that matters, then save the prompt somewhere you can reach from your phone.
A few quick questions
Does SynthID Detector keep the files I upload?
No. Google’s privacy notice for the tool (read 8 October 2026) says files are deleted as soon as your result comes back, and a digital signature of the file, kept to enforce the daily limit, is deleted after 24 hours.