Local processing
ProvSeal processes supported media files directly in the local extension environment.
ProvSeal Security
How ProvSeal handles files, certificates, page content and trust decisions. Designed for local-first provenance and integrity workflows.
Verification and signing workflows are designed to run locally, without uploading your files to a ProvSeal backend.
ProvSeal processes supported media files directly in the local extension environment.
Verification and signing workflows are designed to run locally, without uploading your files to a ProvSeal backend.
The extension may read selected local files, visible media on the current tab, and signing material that you explicitly import or generate.
Selected media stays in the browser context for the requested verify, inspect or sign action.
When you select or drop a file into the extension, the file is used only for the requested action: verify, inspect, or sign.
ProvSeal does not use your files for advertising, profiling, training, or unrelated analytics.
C2PA signing requires a certificate and private key. ProvSeal supports test certificates for development and demo workflows, and may support imported signing material such as .p12 or .pfx files.
A test certificate is useful for learning, demos and internal validation. It can show how a C2PA signing workflow works, but it does not mean the signature is publicly trusted.
For production trust, organizations should use certificates issued through the C2PA trust ecosystem.
Status labels explain available evidence in the extension UI. They are not truth verdicts.
The media contains valid Content Credentials and the certificate chain is recognized by the configured trust sources.
The media contains a cryptographically valid signature, but the certificate is not recognized as publicly trusted.
The media contains C2PA data, but integrity or signature validation failed.
No C2PA evidence was detected. This does not mean the content is fake.
ProvSeal requests only the permissions needed to provide its core features: file verification, local signing, page media scan, context menu actions, download of signed files, and local settings.
Permissions are not used for advertising, tracking, profiling, or unrelated browsing history collection.
The use of information received from extension permissions adheres to applicable store User Data Policy requirements, including Limited Use.
User data is used only to provide and improve the extension's single purpose: local C2PA Content Credentials signing, verification and page media analysis.
ProvSeal is a member of the Content Authenticity Initiative (CAI), a community supporting digital content provenance and transparency. This membership is separate from the C2PA Conformance Program and does not constitute certification of ProvSeal.
Install the free extension, explore Enterprise local signing, or read the full documentation.