Text AI watermarks will always be trivial to remove
- AI
- Regulation
- Security
- Privacy
- Developer Tools
The post argues that text watermarking is much weaker than image or video watermarking because text has no stable container. Once output becomes ordinary words in an email, document, or chat, anyone can strip formatting, paraphrase it, translate it, or ask another model to rewrite it. That makes hidden signals fragile by design. The piece contrasts steganographic watermarking, like token-choice biasing or invisible characters, with cryptographic signing, which can prove provenance only if the signature travels with the text artifact. For plain text pasted around the internet, that artifact usually does not exist.
Do not plan compliance, moderation, or trust systems around AI text watermarking as a durable control. At best it is a cheap friction layer for unsophisticated abuse, so pair it with process checks, provenance where users opt in, and human accountability.
-
seangoedecke.com
- Discuss on HN