AI Potluck
Back to Gap Map Product / UX / Assurance & compliance evidence

invisible-watermark

ShieldMnt
open source / Overall score: 3.0

invisible-watermark is a Python library and command-line tool that embeds and decodes invisible watermarks in images using frequency-domain methods (DWT-DCT and DWT-DCT-SVD) or the RivaGAN neural encoder. The fast default method suits embedding on the fly, while the other two are several times slower on a CPU. The maintainers describe it as experimental and warn that decoding is not guaranteed.

Tagged self-attested: decoding needs no key, but nothing ties the mark to whoever embedded it. Last pushed in 2023.

Openness

5 medium confidence
5.0
license
MIT(OSI)
source
public
core features withheld
no

The whole library is MIT-licensed in a small public repository, and nothing in its tree sits under other terms.

Adoption

3 medium confidence
3.0

PyPI downloads of invisible-watermark measure the package. They count installs, including those pulled in by other software, not checks for a watermark.

Capability

3 low confidence
3.0

Anyone can decode the mark with the same open library, without a key, so the check does not depend on the embedder. The maintainers say decoding can fail even on untouched images, and the mark proves nothing about who placed it, two steps below NVIDIA's hardware attestation.

Verified 2026-09-26