SynthID Detector

(synthid.com)

46 points | by ilreb 1 hour ago

15 comments

  • jdranczewski 3 minutes ago
    Finally, the previous implementations were very silly! OpenAI had a nice tool, but it only detected their own watermarks, and Google's process was "upload the image to Gemini and ask if it's AI generated", which seemed like a perplexing waste of tokens and breath.

    (While a sibling comment points out putting the image through Google Image Search as an alternative, I don't remember this being signposted in the support article I've read, so I unfortunately didn't know about it)

  • Tiberium 48 minutes ago
    It's baffling that this requires auth. OpenAI's own tool (https://openai.com/research/verify/) doesn't require auth.

    Even Google themselves previously offered a no-auth way (just very niche): if you uploaded an image to Google Image search, and went to "About this image", it would show if the image was Google AI-generated. Now it doesn't.

    • possibilistic 27 minutes ago
      These are "spy"marks, not watermarks:

      https://brand.io/article/spymarks/

      We need to inform everyone that this technology can encode database identifiers and enough entropy to uniquely identify you as an author (or downloader).

      This extends to other forms of media as well.

      • cubefox 7 minutes ago
        They are not spymarks if they don't encode any personal IDs and are merely used to indicate that an image was AI-generated. I don't think Google or OpenAI use SynthID to include personal data.
        • morkalork 2 minutes ago
          And there lies the rub. You can't verify if they do or don't embed such content. These companies are just like "trust me bro".
    • Retr0id 20 minutes ago
      It's presumably so they can rate-limit people who are trying to reverse-engineer or otherwise strip it (e.g. iteratively tweaking until it stops getting detected)
      • user43928 2 minutes ago
        I wonder how relevant this really is.

        How hard can it be to download a set of real images and generated ones in order to train a model to detect and strip the watermark with minimal perceptual difference?

    • wodenokoto 27 minutes ago
      The EULA you have to accept hints that they are afraid you are going to abuse it to remove synthID - e.g, set up and edit and check loop
      • dannyw 11 minutes ago
        That’s the justification, but the EULA incorporates Google’s regular consumer terms; which means what you upload can also be used for advertising and targeting; and basically any purpose whatsoever by Google.
    • brokensegue 38 minutes ago
      Yeah I've been wanting to run a ton of Wikipedia images through the detector to see if fakes snuck in. Doesn't seem to be a practical way to do this. Even Open AIs tool has a low rate limit
    • apefulsin 39 minutes ago
      Any access to a watermark detector can be used to remove the watermark. Presumably they want to be able to track who is doing that.
    • lelandfe 46 minutes ago
      I've never seen it mentioned anywhere so I will just here complain that Google also removed the ability to paste images into Google Image search some years ago for no apparent reason. It worked great and I used it all the time.
      • mh- 14 minutes ago
        Click the little camera icon in the search box and it pops a modal that says Search any image with Google Lens.

        The textbox below it says Paste image link, but you can actually paste an image from your clipboard here, too.

        • lelandfe 13 minutes ago
          You’re a hero. So glad I complained. Why would they not just keep this working with the main text box focused…
          • mh- 11 minutes ago
            No idea. I used it a lot too, not sure if pasting here worked from the beginning of them introducing this Google Lens thing or not.
      • dannyw 16 minutes ago
        I wonder if it’s a deliberate anti-user decision to get more URLs and less pasted images.

        URLs expand Googlebot’s indexes; pasted images don’t.

      • bossyTeacher 26 minutes ago
        I might be missing something but Google Image Search still works for me.
      • RugnirViking 40 minutes ago
        this + image translate with copy+paste is the only reason I ever use yandex of all places...
  • Retr0id 15 minutes ago
    It's a real shame Google isn't more transparent about how it actually works, and doesn't provide any mechanism for classifying images in bulk or offline.

    This is the best SynthID write-up I've found so far: https://fyx.me/articles/attempting-model-extraction-of-googl...

    It covers how it actually works (probably), and how to train your own classifier for it, with some seemingly decent results.

    • MisterMunchkin 7 minutes ago
      They don't want you to know, because they're the baddies. Imagine how much money they can get from advertisers if they're able to identify every single piece of code, reddit thread, email, GitHub readme that you've ever written based on your secret ID. They're creaming themselves just thinking about it.

      "Excellent work acquiring that outlook data Anat, now let's cross check the defunct company emails against YouTube videos edited with Google PrivateEditAI™ to figure out what the social security number of this YouTube account is."

      • Avicebron 2 minutes ago
        Unfortunately this is the truth, no one can be given a benefit of the doubt because despite years of good grace they have been anti-user and enshittified everything they touch.
    • elevation 6 minutes ago
      > It's a real shame Google isn't more transparent about how it actually works

      > classifying images in bulk or offline

      You've described exactly the elements spammers and fraudsters need to be able to defeat this mechanism.

      • Retr0id 4 minutes ago
        Well it's not a very good mechanism then, is it.
  • sarkarghya 8 minutes ago
  • nialv7 28 minutes ago
    Why the hell do I need to sign in?
  • cubefox 6 minutes ago
    There is a rate limit of around 10 checks in 24 hours.
  • jakozaur 34 minutes ago
    I worry we’ll have to approach this the other way around: verify that photos came from a camera, using hardware support like Apple’s Reference Image, rather than try to detect every AI generated one.

    In many situations, photos are evidence. AI tools make convincing fakes, such as images of defect product.

  • sha-3 33 minutes ago
    No option to detect generated text. SynthID also watermarks text, right?
    • nonethewiser 5 minutes ago
      Thats what I was expecting. I thought so.
  • ChrisArchitect 8 minutes ago
  • m00dy 14 minutes ago
  • anon48293 15 minutes ago
    Hey OpenAi, generate a text of 100 words.

    Hey Gemini, find a synonym for every second adjective. Replace in text.

    Hey Grok, find a synonym for every third proper noun. Replace in text.

    Hey …

    • MisterMunchkin 5 minutes ago
      Ah but that's the genius of the scheme. Every single one of those providers will detect your secret ID and refuse the request. And sneak their own one in for good measure.
  • pbronez 36 minutes ago
    This is a Google Deepmind project to “Identify AI generated media”

    More detail at https://deepmind.google/models/synthid/

    For those who, like me, were hoping it was a vision model to identify synthesizer models from photos of concerts and music studios!

  • tosh 28 minutes ago
    is this by Google?
    • spuz 23 minutes ago
      Yes but OpenAI, NVIDIA, Kakao, Apple have said they will also implement SynthID
  • latexr 1 hour ago
    Can’t be used without signing in with a Google, Apple, or ChatGPT account.
    • giancarlostoro 49 minutes ago
      Also it can't detect any Synths in The Commonwealth.
  • 0dayman 33 minutes ago
    [dead]