Glossary

Signed but untrusted

Signed but untrusted means C2PA evidence can be signed and intact, while the certificate chain is not publicly recognized in the current trust context.

Definition

This status is useful for demos, internal testing and self-signed workflows. It should not be presented as the same level of public trust as a recognized production certificate chain.

How C2PA Signer uses it

The extension turns technical evidence into clear report fields and the four statuses: Trusted, Signed but untrusted, Invalid and No credentials.

Responsible interpretation

Use this term to describe available evidence. Do not use it as a claim that unsigned or uncredentialed media is false.