Digital Watermarking

Required for algorithms 1-4, 6-9. Type 5 (Zero-bit) ignores this.

💡 The secret file must be smaller than the cover image. Select a cover image first to see available capacity below.

Audio Watermarking

v7

File Fingerprinting

Advanced Pixel Injection

Document file to embed as secret message

Face Biometric Rights

🔒 All face processing is 100% local. Data never leaves your device.

Metadata Reader

Reads EXIF, dimensions, format, and color mode. All processing in pure JavaScript.

File Timestamping

Creates an OpenTimestamps (.ots) proof file from your file's SHA-256 hash. Fully compatible with the OpenTimestamps protocol. Automatically submits to the calendar aggregator for a blockchain attestation.

Decentralized Identity (DID)

Generate a Decentralized Identifier (DID) keypair and cryptographically sign your file fingerprints to prove you created this content.

No DID identity found. Generate one above.

Your DID

Algorithm

Your keys are stored locally in this browser (localStorage).


Signature Status

Signature

Signed By

C2PA Content Provenance

Read C2PA content provenance metadata from images. Displays manifests, assertions, actions, ingredients, and signature info.

Digital Passport

Generate a signed Digital Passport PDF, DOCX, or EPUB with your image, user info, and results from other tools. Paste your results below, then click Generate.

Your Information *

Social Links (optional)

Music Links (optional)

Tool Results (upload from other sections)

Certificate ready! Choose a format:

Forensic Analyzer

Analyze images for tamper signals using ELA, noise inconsistency, JPEG structure, and copy-move detection. Everything runs locally in your browser.

File Converter

Removal Tools

ID Forge

Generate UUIDs, ULIDs, Nano IDs, SWHIDs and more

Document Watermarking

Embed invisible watermarks in documents (TXT, PDF, DOCX, DOC). Three algorithms for text steganography — 100% client-side.

Processing document...

Processing document...

About RedoSan Authenticity

What is RedoSan Authenticity?

RedoSan Authenticity is a free, open-source, client-side digital authenticity toolkit. It provides a comprehensive suite of tools for watermarking, fingerprinting, forensic analysis, provenance tracking, and content verification — all running entirely in your browser or via a Node.js CLI. No files are ever uploaded to any server; every operation happens locally on your machine.

Why Was It Built?

Digital content authenticity is increasingly critical in an age of AI-generated media, deepfakes, and misinformation. Existing solutions often require uploading sensitive files to third-party servers or expensive commercial software. RedoSan Authenticity was created to provide a free, private, and comprehensive alternative that puts control back in the hands of creators, journalists, and forensic analysts.

Complete Tool Suite

Technical Architecture

The application is built entirely with vanilla JavaScript — no frameworks, no build tools, no backend. It runs as a Progressive Web App (PWA) with offline support via Service Worker caching. The same algorithms power both the browser interface and the Node.js CLI, ensuring consistent results across environments.

All cryptographic operations use the Web Cryptography API (crypto.subtle) in the browser and Node.js native crypto in the CLI. Image manipulation uses the HTML5 Canvas API. Document processing uses JSZip for DOCX, PDF-lib for PDF manipulation, and jsPDF for PDF generation. Audio processing uses raw PCM data manipulation with FFT transforms implemented from scratch.

Who Is It For?

Privacy by Design

Privacy is not a feature — it is the foundation. RedoSan Authenticity processes everything locally in your browser. No images, no metadata, no personal information ever leaves your device. The only network requests are for loading CDN-hosted libraries (with SRI integrity checks) and contacting OpenTimestamps calendar servers (for timestamp creation and verification).

Open Source

RedoSan Authenticity is fully open source under the GNU General Public License v2.0. The complete source code is available on GitHub. Contributions, bug reports, and feature requests are welcome.

Internationalization

The interface is available in 8 languages: العربية (Arabic), Deutsch (German), English, Español (Spanish), Français (French), 日本語 (Japanese), 한국어 (Korean), and 中文 (Chinese). Right-to-left (RTL) layout is fully supported for Arabic.

Version

Current version: v1.6 — featuring Multi-Page Architecture (MPA), standalone tool pages, Document Watermarking, Audio Watermarking, DID, C2PA, Digital Certificates, File Converter, and 277+ unit tests across 35 test files with 40+ CI/CD workflows.

Privacy Policy

Last updated: June 2026

Our Commitment to Privacy

RedoSan Authenticity is designed to be 100% private by default. The application runs entirely client-side — in your browser or via the Node.js CLI. No files, metadata, personal information, or analytics data are ever collected, stored, or transmitted to any server. Every watermark, fingerprint, timestamp, and certificate is generated locally on your machine.

Data Collection

We collect nothing. RedoSan Authenticity has no backend server, no database, no user accounts, no tracking cookies, no analytics service, and no telemetry. The application is hosted statically on GitHub Pages and all processing occurs in your browser's JavaScript runtime or the Node.js CLI environment.

How It Works

When you upload a file to any tool in RedoSan Authenticity, the file is read into your browser's memory using the HTML5 File API. All subsequent processing — hashing, watermark embedding, pixel manipulation, metadata extraction, timestamp creation, certificate generation — happens entirely within the JavaScript runtime of your browser. The processed result is offered as a downloadable file or displayed on screen. No data is written to any disk on the server, nor is any data transmitted over the network (with the explicit exception of OpenTimestamps, described below).

Network Requests

The application makes the following network requests, all of which are necessary for functionality:

Third-Party Code

The following third-party libraries are loaded and executed client-side:

All libraries are loaded with SRI integrity hashes. No library has access to your files beyond what is explicitly passed to it by the application code. All libraries execute in your browser's sandboxed JavaScript environment.

Security

Children's Privacy

RedoSan Authenticity does not knowingly collect any personal information from children. The application is not directed at children under the age of 13. As no data is collected from any user at any age, there is no risk of inadvertent data collection from minors.

Changes to This Policy

This privacy policy may be updated occasionally to reflect changes in the application or legal requirements. The date of the last update will always be displayed at the top of this page. Continued use of the tool after any changes constitutes acceptance of the updated policy.

Contact

If you have questions about this privacy policy or the privacy practices of RedoSan Authenticity, please open an issue on GitHub or start a discussion in the Discussions section.

Contact Us

Have questions, suggestions, or found a bug? We'd love to hear from you.

Follow Us

Stay connected and follow RedoSan on social media.

RedoSan
💬
🤖 RedoSan Assistant