WhoSharedIt

How to Protect Client Photos Without Ruining the Image

Event photographers know the scene well: you shoot a graduation, put up the proof gallery, and parents screenshot the previews instead of buying. Wedding photographers know the other version: the client gets the gallery, posts to Instagram, and the images circulate uncredited — or turn up in a vendor's ad that nobody licensed.

The standard answer has always been a watermark. It stopped working, and it's worth understanding exactly why before deciding what to do instead.

The visible watermark lost the fight

Until recently, covering an image with a large logo did the job. Removing it took effort, required real Photoshop skill, and the result looked bad enough not to be worth it.

Today, inpainting models reconstruct what's underneath a logo in seconds. It doesn't matter whether the mark is small and discreet or stretched across a subject's face — the model reads the surrounding context and fills the gap convincingly.

That puts photographers in a corner: a small mark comes off easily, a large one also comes off and additionally ruins the experience of the person browsing the gallery deciding whether to buy. Making the watermark bigger isn't a strategy anymore, it's just a worse gallery.

Which is why you see photographers concluding that watermarks are pointless now. That conclusion is correct about the visible kind. It overlooks the fact that another kind exists.

What an invisible watermark is

An invisible, or forensic, watermark is an identifier encoded into the image data itself, distributed across the whole frame as changes small enough that the eye doesn't register them.

The structural difference from a visible mark is this: there is no overlay. There's no object drawn on top of the photo that an algorithm can locate and remove. The identifier is part of the image.

Practical consequence: a watermark-removal tool can't target it, because there's nothing visually out of place to detect.

What it survives and what it doesn't

Worth being direct here, because this market is full of overselling.

A well-implemented invisible mark typically survives:

  • screenshots
  • re-sharing through WhatsApp and other apps that recompress heavily
  • resizing and resolution reduction
  • saving to JPEG at lower quality
  • moderate cropping

And typically degrades under:

  • aggressive cropping that leaves little of the original frame
  • AI upscaling
  • full regeneration of the image by a generative model
  • screenshots of screenshots, stacking losses

No watermark is impossible to remove. Anyone selling one as unremovable is lying, and the lie collapses on the first real test. That's precisely why an honest implementation returns a confidence score instead of a binary answer: if the signal is degraded, you need to know.

Metadata doesn't solve this

A suggestion that always comes up is filling in IPTC and XMP fields with your name, copyright, and contact details.

Worth doing — it helps with organization and legitimate licensing. But it doesn't work as leak protection, for a simple reason: nearly every social platform strips metadata on upload, and no metadata survives a screenshot.

Metadata lives in the file header. The path your photos actually travel — Instagram, WhatsApp, screenshot, repost — destroys headers. What survives that path is what lives inside the pixels. You can check what metadata actually survives a repost with our free metadata tools.

A different mark for each recipient

The strongest use of invisible watermarking isn't proving authorship. It's knowing where the leak came from.

If you deliver the same gallery to 200 people and everyone receives identical files, an image that shows up improperly points to nobody. If each gallery visitor downloads a copy carrying its own identifier, that same image points to a specific account.

That solves concrete day-to-day situations: figuring out which guest redistributed proof photos, knowing which vendor passed along the wedding material, identifying which client's copy ended up in an unlicensed ad.

The main gain is prevention, not pursuit

Almost no photographer is going to sue a graduate's parent. And they don't need to.

The most valuable practical effect is the notice itself. When the gallery page states that each download is individually identified, casual theft drops significantly. The person about to screenshot instead of paying thinks twice once they understand the copy carries their name.

Traceability is insurance for the rare case where you actually need to act. The everyday problem is solved by deterrence.

What to do now

If you deliver proof galleries, start with the cheapest step: state clearly that each visitor's access is individualized. That costs nothing and changes behavior.

Then, if the volume justifies it, adopt invisible marking at delivery. The technology is old and public — DWT-DCT methods, Adobe's TrustMark, the C2PA Content Credentials standard. What was missing was availability in a form a photographer working alone could actually use, without building a technical pipeline.

A different copy for every client

WhoSharedIt tags every gallery photo with an invisible per-recipient identifier — with zero file retention after processing.

Try it free
→ Invisible Watermarking: What It Is and How It Works → How to Find Out Which Student Leaked Your Online Course ← Back to the blog