2026-06-19 · JPEG · 1 sample
Adobe Firefly
Valid C2PA Content Credentials with digitalSourceType=trainedAlgorithmicMedia; the signature is cryptographically valid while the signing certificate is untrusted in the browser trust list.
Answer
What did this experiment find?
Valid C2PA Content Credentials with digitalSourceType=trainedAlgorithmicMedia; the signature is cryptographically valid while the signing certificate is untrusted in the browser trust list.
This result applies to the 1 documented sample tested on with aicheck 0.2.0 (c2pa-rs 0.82, wasm). It should not be generalized to every file exported by Adobe Firefly.
Experiment Summary
| Platform | Adobe Firefly |
|---|---|
| Tested at | 2026-06-19 |
| Research page updated | 2026-07-10 |
| Sample count | 1 |
| File format | JPEG |
| Parser version | aicheck 0.2.0 (c2pa-rs 0.82, wasm) |
| Browser/system | Browser-local WASM parser in Chromium/Playwright local preview; aicheck 0.2.0; c2pa-rs 0.82. |
| Source/license | MIT via contentauth/example-assets |
Provenance of this research record
Source, license, and authorship
Expected Signals
- C2PA manifest present
- digitalSourceType=trainedAlgorithmicMedia
- Cryptographic signature validates
Actual Signals
- C2PA state: valid
- Manifest reports trainedAlgorithmicMedia
- Signing certificate is not trusted by this browser-local trust list
Misses
- The browser trust list does not upgrade this sample to trusted.
Limitations
- Valid means the signature is cryptographically valid, not that the signer is a configured trust root.
- The sample is a public fixture, not a fresh production export from every Adobe Firefly workflow.
Reproducible Steps
Run the test locally with C2PA Validator. The file remains in the browser.
- Open the C2PA Validator.
- Upload /samples/verified-ai-credentials.jpg.
- Confirm the status summary and raw manifest JSON.
- Compare validation_status with the expected signal list.
Sample Provenance
Adobe Firefly image with valid Content Credentials
- digitalSourceType = trainedAlgorithmicMedia and the signature is cryptographically valid.
- The signing certificate is not in this engine's trust list (untrusted), so the result is reported as 'valid' rather than 'trusted'.
Related Tools and Platform Guides
References
Sources
- Upstream fixture repository ↗ — MIT via contentauth/example-assets.
- Adobe Firefly image with valid Content Credentials — Content Authenticity Initiative example assets (contentauth/example-assets, MIT).
- AICheck365 experiment registry (JSON) — record ID
firefly-jpeg-2026-06, tested 2026-06-19.