World Privacy Forum Warns C2PA Content Credentials Risk User Privacy
World Privacy Forum released a report arguing that the C2PA standard for AI deepfake detection creates privacy risks and potential bias against marginalized voices.
The World Privacy Forum released a report warning that the Coalition for Content Provenance and Authenticity (C2PA) standard risks user privacy. The nonprofit argues that while the system aims to combat AI-generated deepfakes through digital Content Credentials, it creates a technical layer of media infrastructure that generates vast amounts of shareable creator data. This data could potentially link to government identity systems or biometrics.
The C2PA standard is backed by major technology companies including Google, Microsoft, Meta, Adobe, Amazon, and OpenAI. Google has already integrated the standard into its Pixel 10 phones, and Meta is adopting it for creators.
Beyond privacy concerns, the report cautions that C2PA trust lists may sideline independent journalists, small media outlets, and marginalized voices who cannot meet verification criteria. The World Privacy Forum also warned that bad actors could manipulate the framework by applying credentials in misleading ways.