ProvSeal

C2PA and Content Credentials glossary

Clear definitions for the terms used to verify, explain and test-sign Content Credentials — provenance, integrity, trust status, certificates and reports.

Terms behind Content Credentials

The building blocks for reading, explaining and verifying Content Credentials.

Content Credentials

Signed provenance and integrity information attached to media.

Why it matters
They help reviewers understand declared origin, actions and validation status.
In ProvSeal
Shown through file/page reports and the four status labels.
StandardRead guide

C2PA

An open technical standard for attaching and verifying provenance information in digital media.

Why it matters
It gives tools a shared way to carry signed evidence across media workflows.
Do not confuse with
A visual judgment about whether media is true.
ManifestRead detail

C2PA manifest

The structured record that can include declared actions, ingredients, hashes, signer information and signatures.

Why it matters
The manifest is the evidence a verifier reads and validates.
In ProvSeal
Displayed in the full report with actions, certificate data and validation details.
EvidenceRead detail

Provenance signals

Evidence about where content came from, what was declared and whether the signed information still matches the observed file.

Why it matters
They support review workflows without turning C2PA into fake detection.
Related
Integrity signals, manifest report, certificate chain.
IntegrityRead detail

Integrity signals

Cryptographic checks showing whether a file still matches the signed manifest.

Why it matters
If bytes change without a valid updated manifest, verification can fail.
In ProvSeal
Usually reflected as Invalid when C2PA evidence exists but validation fails.

Ingredient

A source asset or input declared inside a C2PA manifest.

Why it matters
Ingredients can help explain the relationship between an output file and its declared sources.
Related
Actions, manifest, report export.
IdentityRead detail

CAWG

Creator Assertions Working Group — identity assertions for people and organizations in Content Credentials.

Why it matters
It helps separate tool identity from creator or publisher identity.
Related
CAI, C2PA certificate, Content Credentials.
EcosystemRead detail

CAI

Content Authenticity Initiative — community and open-source tools that promote Content Credentials adoption.

Why it matters
It drives ecosystem adoption around the C2PA technical standard.
Related
Content Credentials, C2PA Manifest, CAWG.

The four ProvSeal statuses

Use these labels consistently across file verification, page scan badges and reports.

Trusted

The C2PA evidence is valid and the certificate chain is recognized by the trust context.

Signed but untrusted

Signed C2PA evidence exists, but the certificate chain is not publicly recognized or trusted in the current context.

Read detail →

Invalid

C2PA evidence exists, but integrity or signature validation failed.

No credentials

No C2PA evidence was detected. This does not mean the content is fake.

Terms that separate signing from public trust

A valid signature and a publicly recognized trust chain are not the same thing.

CertificateRead detail

Signing certificate

A certificate used to sign C2PA manifests and bind declared provenance information to media.

Test certificate

A certificate generated for demos, development or internal validation. It is not a publicly trusted production certificate.

Trusted certificate

A certificate that chains to a recognized trust source and can support a Trusted status.

Terms for signing media and reading reports

How ProvSeal turns signing material and manifests into reviewable output.

Test signing

Creating C2PA-signed media with demo or development signing material to validate workflows before production rollout.

Manifest report

A readable explanation of detected C2PA data, declared actions, signer information, certificate details and validation status.

ExportRead docs

JSON export

A structured report format for internal review, documentation, automation or integration workflows.

Terms used in review and integration workflows

The standards, lists and programs that connect C2PA into real review and publishing pipelines.

Certificate chain

The path from a signing certificate to a recognized authority or trust anchor.

Trust listRead detail

C2PA Trust List

A list of recognized trust sources used by verifiers to evaluate whether signed credentials should be treated as trusted.

ProgramOpen docs

Conformance Program

A process used to evaluate whether products and implementations align with C2PA requirements.

Responsible C2PA wording

ProvSeal helps inspect evidence. It should not be presented as fake detection, AI detection or a guarantee of truth.

  • Not fake detection.
  • Unsigned content is not automatically false.
  • Test certificates are for demos and development.
  • Public trust requires a recognized certificate chain.
Read limitations

See these terms in the product

Install the free extension to verify files, scan pages and read status badges with the same vocabulary.