Key takeaways
- Record whether an image is captured, commissioned, licensed, generated, or materially edited before it enters the CMS.
- Check rights, consent, likeness, trademarks, sensitive context, and misleading implications—not only visual quality.
- Preserve origin and edit history with Content Credentials where the toolchain supports them, plus an internal record when it does not.
- Write alt text for the editorial purpose of the final image and disclose synthetic media in proportion to its risk and context.
01
Treat origin as part of the asset, not a note in someone’s inbox
Create an asset record before publication: creator or model and service, date, prompt or brief reference, source files, license or usage basis, releases, material edits, reviewer, article, and retention rule. Do not embed personal prompts, secrets, or unnecessary source material in public metadata.
Keep the unedited original and the approved derivative when agreements permit. Hash or version them so the team can establish which file was published. A compressed WebP without a source record becomes difficult to audit as soon as the person who made it leaves.
Swipe to compare every column
| Check | Question | Evidence |
|---|---|---|
| Origin | How was the asset created? | Source file, service, brief, date |
| Rights | Can this organization publish and modify it? | License, contract, release, policy |
| Representation | Could it imply a real person, event, client, or result? | Context review and disclosure decision |
| Edits | What materially changed? | Version history and approved derivative |
| Accessibility | What does the image contribute? | Purposeful alt text or decorative treatment |
02
Review the implication, not only the pixels
A technically polished image can still fabricate a customer, office, product interface, research event, or campaign result. Avoid presenting generated people as employees or clients and generated dashboards as evidence. When a scene is illustrative, the surrounding page must not imply documentary proof.
Inspect hands, screens, signage, private information, medical or financial context, cultural representation, and accidental trademarks. Remove or replace visible synthetic text that makes the asset feel careless. Redact supplied screenshots without obscuring the evidence the caption asks a reader to inspect.
03
Use Content Credentials as a provenance layer, not a truth badge
C2PA Content Credentials can bind assertions about origin and edits to an asset and make tampering evident. They do not establish that the depicted claim is true, that consent was obtained, or that the publisher’s interpretation is fair. Those remain editorial responsibilities.
Preserve credentials through supported editing and export tools. Verify them before upload and after delivery. When a CMS or optimization pipeline strips them, retain the manifest or validation result in the internal asset record and document the limitation.
04
Disclose enough for the context and risk
A decorative abstract texture may need only an internal record. A photorealistic scene attached to a case study, public event, named person, or contested claim needs an explicit label or should not be used. Write a policy that accounts for realism, subject, consequence, and the chance of mistaken documentary interpretation.
Generate accessible alt text from what the final image contributes, then have a person check it against the rendered asset. Do not expose the generation prompt as alt text. Track uniqueness, compression, visual defects, missing provenance, and disclosures during the same publication gate as copy and links.
Primary sources and further reading
Use the source material to validate details against your own context and current platform configuration.
- C2PA: Specifications and implementation guidance
- C2PA: Content Credentials explainer
- Google Search Central: Article image guidance
This field note follows the XenGrowth editorial policy: primary sources where available, visible limitations, material review dates, and no invented first-hand experience.
Stay with the problem



