AI and the new rules of digital trust: Watermarks

natatravel via Getty Images

COMMENTARY | AI watermarking will become more than a tech issue for governments. In time, it could help them authenticate official communications and identify fraudulent ones.

For centuries, watermarks had a quiet, almost passive purpose. A faint emblem in fine paper identified a manufacturer. A portrait embedded in currency helped expose counterfeits. 

A translucent logo across a photograph discouraged unauthorized reuse. In each case, the watermark said something about origin, ownership, or authenticity — but only if someone stopped to look.

Today, the watermark is being assigned a far more ambitious job: helping society distinguish human expression from artificial intelligence-generated content on an enormous scale.

That change moved from policy debate to legal requirement in Europe on Aug. 2, 2026, when important transparency provisions of the European Union’s Artificial Intelligence Act became applicable. Among them is a requirement that providers of systems generating synthetic text, images, audio, or video make their output detectable as artificially generated or manipulated, where technically feasible. 

While this may appear to be a European regulation, it has enormous implications for the US too. Both OpenAI and Anthropic are planning to implement it worldwide. No doubt other AI companies will do the same.

The basic goal is easy to understand: people should have a better chance of knowing when what they see, hear, or read was created by AI.

What Europe is Trying to Protect

The rule is aimed less at punishing ordinary AI use than at combating deception and manipulation. The concerns include deepfakes, impersonation, fraud, fabricated evidence, misleading political material, and the growing difficulty of separating an authentic recording or document from something created artificially.

The regulation does not require a large warning label on every AI-assisted sentence. Nor does it treat every use of AI equally.

An important distinction exists between asking AI to correct punctuation or improve a sentence and asking it to write an entire essay, create a photograph of an event that never happened, or produce a convincing video of a public official saying something that was never said.

That distinction will matter more as AI becomes part of everyday work.

What Exactly is a Digital Watermark?

The word “watermark” can be misleading because the mark may not actually be visible.

Think of it instead as a digital clue placed in or attached to AI-generated material. Special software may be able to examine a photograph, audio recording, video, document, or other content and determine that an AI system played a role in creating it.

Text presents a greater challenge because words can easily be copied, rewritten, shortened, translated, or rearranged. The more something is modified, the harder it may become to identify its AI origins.

That leads to an important limitation.

A watermark does not necessarily prove that something is false. And the absence of a watermark does not prove that something is genuine.

At best, it provides another piece of evidence about where digital material came from and how it may have been created.

What About Copyright?

Watermarking and copyright are related, but not the same. A watermark does not automatically establish ownership. Nor does identifying something as AI-generated automatically mean copyright protection is impossible.

In the United States, copyright protection still depends heavily on human authorship and creative contribution. Someone who simply asks an AI system to generate an article, illustration, or other work may have a weaker claim than someone who substantially edits, restructures, combines, and adds original creative material.

This creates a fascinating new question: At what point does AI-generated material become human-created work?

Consider an author who asks AI for an initial draft but then rewrites large portions, adds original examples, verifies the facts, changes the argument, and shapes the final product according to his or her own judgment. AI clearly participated, but so did the human author.

Watermarks may someday help document that process. They are unlikely, however, to settle the question of authorship by themselves.

The Academic Implications

Education may be one of the areas most affected by this development.

Universities have spent considerable effort trying to determine whether students are submitting AI-generated assignments. Watermarking might seem like a simple solution: check the document and see whether AI created it.

Unfortunately, it will not be that easy.

A student might legitimately use AI for brainstorming, grammar assistance, translation, research organization, or developing an outline. Another student might have AI write an entire paper and then rewrite enough of it to make detection difficult.

That means a watermark should never automatically become proof of academic misconduct.

The more important change may be moving education away from trying to “catch AI” and toward requiring students to demonstrate learning. Faculty can establish clear rules about acceptable AI assistance, require disclosure when appropriate, examine drafts and notes, and occasionally ask students to explain their reasoning or defend their work.

The real question should not simply be, “Did AI touch this assignment?” It should be, “What intellectual work did the student actually perform?”

Implications for Government

For federal, state, and local governments, AI watermarking will become much more than a technology issue.

Imagine a convincing video appearing online in which a governor announces an evacuation, a mayor claims that drinking water is unsafe, or a police chief supposedly announces that a dangerous suspect has been captured.

How would citizens know whether it was real?

Digital markings could eventually help governments authenticate official communications and identify fraudulent ones. Government agencies may also need policies governing when AI-generated public information should be disclosed, how digital identification information should be preserved as part of public records, and what requirements should be placed on AI vendors.

The implications also extend to courts, law enforcement, public meetings, elections, emergency management, and records management.

But government must be careful not to place too much faith in the technology. A watermark should be treated as a signal — not a verdict. Human verification, due process, judgment and accountability remain essential.

A Signal, Not a Solution

The European approach represents an important attempt to address one of the defining problems of the AI age: we can no longer assume that seeing is believing.

But watermarks will face the same challenge confronting almost every technological safeguard. As soon as methods emerge to identify AI-generated content, others will try to remove, defeat, or manipulate them. Some companies already market tools that claim to detect hidden AI signals, while others promise to make AI-generated material harder to detect.

It could become another technological arms race. That does not make watermarking useless. It means we should understand what it can and cannot accomplish.

The central question is no longer simply, “Is this real?”

Increasingly, we must also ask:

“Where did this come from?”

“What role did AI play?”

And perhaps most importantly:

“Who takes responsibility for it?”

Digital watermarks may help answer the first two questions. But as with so many attempts to regulate rapidly changing technology, they cannot answer the third. That still remains a human responsibility.

Alan R. Shark, a senior fellow at the Public Technology Institute (PTI), is an associate professor at the Schar School of Policy and Government at George Mason University, where he also serves as a faculty member in the Center for Human AI Innovation in Society. He is also a senior fellow of the National Academy of Public Administration and founder and co-chair of its Standing Panel on Technology Leadership. He hosts the podcast series Sharkbytes.net.

X
This website uses cookies to enhance user experience and to analyze performance and traffic on our website. We also share information about your use of our site with our social media, advertising and analytics partners. Learn More / Do Not Sell My Personal Information
Accept Cookies
X
Cookie Preferences Cookie List

Do Not Sell My Personal Information

When you visit our website, we store cookies on your browser to collect information. The information collected might relate to you, your preferences or your device, and is mostly used to make the site work as you expect it to and to provide a more personalized web experience. However, you can choose not to allow certain types of cookies, which may impact your experience of the site and the services we are able to offer. Click on the different category headings to find out more and change our default settings according to your preference. You cannot opt-out of our First Party Strictly Necessary Cookies as they are deployed in order to ensure the proper functioning of our website (such as prompting the cookie banner and remembering your settings, to log into your account, to redirect you when you log out, etc.). For more information about the First and Third Party Cookies used please follow this link.

Allow All Cookies

Manage Consent Preferences

Strictly Necessary Cookies - Always Active

We do not allow you to opt-out of our certain cookies, as they are necessary to ensure the proper functioning of our website (such as prompting our cookie banner and remembering your privacy choices) and/or to monitor site performance. These cookies are not used in a way that constitutes a “sale” of your data under the CCPA. You can set your browser to block or alert you about these cookies, but some parts of the site will not work as intended if you do so. You can usually find these settings in the Options or Preferences menu of your browser. Visit www.allaboutcookies.org to learn more.

Sale of Personal Data, Targeting & Social Media Cookies

Under the California Consumer Privacy Act, you have the right to opt-out of the sale of your personal information to third parties. These cookies collect information for analytics and to personalize your experience with targeted ads. You may exercise your right to opt out of the sale of personal information by using this toggle switch. If you opt out we will not be able to offer you personalised ads and will not hand over your personal information to any third parties. Additionally, you may contact our legal department for further clarification about your rights as a California consumer by using this Exercise My Rights link

If you have enabled privacy controls on your browser (such as a plugin), we have to take that as a valid request to opt-out. Therefore we would not be able to track your activity through the web. This may affect our ability to personalize ads according to your preferences.

Targeting cookies may be set through our site by our advertising partners. They may be used by those companies to build a profile of your interests and show you relevant adverts on other sites. They do not store directly personal information, but are based on uniquely identifying your browser and internet device. If you do not allow these cookies, you will experience less targeted advertising.

Social media cookies are set by a range of social media services that we have added to the site to enable you to share our content with your friends and networks. They are capable of tracking your browser across other sites and building up a profile of your interests. This may impact the content and messages you see on other websites you visit. If you do not allow these cookies you may not be able to use or see these sharing tools.

If you want to opt out of all of our lead reports and lists, please submit a privacy request at our Do Not Sell page.

Save Settings
Cookie Preferences Cookie List

Cookie List

A cookie is a small piece of data (text file) that a website – when visited by a user – asks your browser to store on your device in order to remember information about you, such as your language preference or login information. Those cookies are set by us and called first-party cookies. We also use third-party cookies – which are cookies from a domain different than the domain of the website you are visiting – for our advertising and marketing efforts. More specifically, we use cookies and other tracking technologies for the following purposes:

Strictly Necessary Cookies

We do not allow you to opt-out of our certain cookies, as they are necessary to ensure the proper functioning of our website (such as prompting our cookie banner and remembering your privacy choices) and/or to monitor site performance. These cookies are not used in a way that constitutes a “sale” of your data under the CCPA. You can set your browser to block or alert you about these cookies, but some parts of the site will not work as intended if you do so. You can usually find these settings in the Options or Preferences menu of your browser. Visit www.allaboutcookies.org to learn more.

Functional Cookies

We do not allow you to opt-out of our certain cookies, as they are necessary to ensure the proper functioning of our website (such as prompting our cookie banner and remembering your privacy choices) and/or to monitor site performance. These cookies are not used in a way that constitutes a “sale” of your data under the CCPA. You can set your browser to block or alert you about these cookies, but some parts of the site will not work as intended if you do so. You can usually find these settings in the Options or Preferences menu of your browser. Visit www.allaboutcookies.org to learn more.

Performance Cookies

We do not allow you to opt-out of our certain cookies, as they are necessary to ensure the proper functioning of our website (such as prompting our cookie banner and remembering your privacy choices) and/or to monitor site performance. These cookies are not used in a way that constitutes a “sale” of your data under the CCPA. You can set your browser to block or alert you about these cookies, but some parts of the site will not work as intended if you do so. You can usually find these settings in the Options or Preferences menu of your browser. Visit www.allaboutcookies.org to learn more.

Sale of Personal Data

We also use cookies to personalize your experience on our websites, including by determining the most relevant content and advertisements to show you, and to monitor site traffic and performance, so that we may improve our websites and your experience. You may opt out of our use of such cookies (and the associated “sale” of your Personal Information) by using this toggle switch. You will still see some advertising, regardless of your selection. Because we do not track you across different devices, browsers and GEMG properties, your selection will take effect only on this browser, this device and this website.

Social Media Cookies

We also use cookies to personalize your experience on our websites, including by determining the most relevant content and advertisements to show you, and to monitor site traffic and performance, so that we may improve our websites and your experience. You may opt out of our use of such cookies (and the associated “sale” of your Personal Information) by using this toggle switch. You will still see some advertising, regardless of your selection. Because we do not track you across different devices, browsers and GEMG properties, your selection will take effect only on this browser, this device and this website.

Targeting Cookies

We also use cookies to personalize your experience on our websites, including by determining the most relevant content and advertisements to show you, and to monitor site traffic and performance, so that we may improve our websites and your experience. You may opt out of our use of such cookies (and the associated “sale” of your Personal Information) by using this toggle switch. You will still see some advertising, regardless of your selection. Because we do not track you across different devices, browsers and GEMG properties, your selection will take effect only on this browser, this device and this website.